Category: CyberSecurityNews

Hackers Claim Breach of WIRED Database Containing 2.3 million Subscriber Records
29
Dec
2025

Hackers Claim Breach of WIRED Database Containing 2.3 million Subscriber Records

Hackers have leaked a database containing over 2.3 million WIRED subscriber records, marking a major breach at Condé Nast, the…

MongoDB Servers at Critical Risk
28
Dec
2025

MongoDB Servers at Critical Risk

A high-severity unauthenticated information-leak vulnerability in MongoDB Server, dubbed MongoBleed after the infamous Heartbleed bug, is now being actively exploited…

Ubisoft Rainbow Six Siege Servers Breach linked to MongoBleed Vulnerability
28
Dec
2025

Ubisoft Rainbow Six Siege Servers Breach linked to MongoBleed Vulnerability

The chaos surrounding Ubisoft escalated significantly today as the first group of hackers, previously known for silent exploits, initiated a…

87,000+ MongoDB Instances Vulnerable to MongoBleed Flaw Exposed Online
28
Dec
2025

87,000+ MongoDB Instances Vulnerable to MongoBleed Flaw Exposed Online

A high-severity vulnerability in MongoDB Server that allows unauthenticated remote attackers to siphon sensitive data from database memory. Dubbed “MongoBleed”…

Mongobleed PoC Exploit Tool Released for MongoDB Flaw that Exposes Sensitive Data
27
Dec
2025

Mongobleed PoC Exploit Tool Released for MongoDB Flaw that Exposes Sensitive Data

A proof-of-concept (PoC) exploit dubbed “mongobleed” for CVE-2025-14847, a critical unauthenticated memory leak vulnerability in MongoDB’s zlib decompression handling. Dubbed…

TeamViewer DEX Vulnerabilities Let Attackers Trigger DoS Attack and Expose Sensitive Data
27
Dec
2025

TeamViewer DEX Vulnerabilities Let Attackers Trigger DoS Attack and Expose Sensitive Data

Multiple critical vulnerabilities in TeamViewer DEX Client’s Content Distribution Service (NomadBranch.exe), formerly part of 1E Client. Affecting Windows versions before…

M-Files Vulnerability Let Attacker Capture Session Tokens of Other Active Users
27
Dec
2025

M-Files Vulnerability Let Attacker Capture Session Tokens of Other Active Users

An information disclosure vulnerability in M-Files Server enables authenticated attackers to capture and reuse session tokens from active users. Potentially…

TrustWallet Chrome Extension Hacked - Users Reporting Millions in Losses
26
Dec
2025

TrustWallet Chrome Extension Hacked – Users Reporting Millions in Losses

Many Trust Wallet users saw their wallets drained of over $7 million after a security breach in the Chrome browser…

Parrot 7.0 Released with New Penetration Testing and AI Tools
26
Dec
2025

Parrot 7.0 Released with New Penetration Testing and AI Tools

Parrot OS 7.0, codenamed Echo, launches as a complete system rewrite based on Debian 13, bringing KDE Plasma 6, Wayland…

Critical Langchain Vulnerability Let attackers Exfiltrate Sensitive Secrets from AI systems
26
Dec
2025

Critical Langchain Vulnerability Let attackers Exfiltrate Sensitive Secrets from AI systems

A critical vulnerability in LangChain’s core library (CVE-2025-68664) allows attackers to exfiltrate sensitive environment variables and potentially execute code through…

Google Now Allows Users to Change Their @gmail.com Email Address
25
Dec
2025

Google Now Allows Users to Change Their @gmail.com Email Address

For years, one of the most persistent frustrations for Google users has been the inability to alter their primary email…

Net-SNMP Vulnerability Enables Buffer Overflow and the Daemon to Crash
25
Dec
2025

Net-SNMP Vulnerability Enables Buffer Overflow and the Daemon to Crash

A new critical vulnerability affecting the Net-SNMP software suite has been disclosed, posing a significant risk to network infrastructure worldwide….