North Korean PurpleBravo Campaign Targeted 3,136 IP Addresses via Fake Job Interviews
21
Jan
2026

North Korean PurpleBravo Campaign Targeted 3,136 IP Addresses via Fake Job Interviews

As many as 3,136 individual IP addresses linked to likely targets of the Contagious Interview activity have been identified, with…

report-ad-banner
21
Jan
2026

Hacktivists Became More Dangerous In 2025

Hacktivists became significantly more dangerous in 2025, moving beyond their traditional DDoS attacks and website defacements to target critical infrastructure…

Fortinet
21
Jan
2026

Fortinet admins report patched FortiGate firewalls getting hacked

Fortinet customers are seeing attackers exploiting a patch bypass for a previously fixed critical FortiGate authentication vulnerability (CVE-2025-59718) to hack…

New AI Malware Era Begins as Advanced VoidLink Malware Emerges as the First Fully AI-Driven Threat Framework
21
Jan
2026

New AI Malware Era Begins as Advanced VoidLink Malware Emerges as the First Fully AI-Driven Threat Framework

The cybersecurity landscape has entered a dangerous new chapter with the discovery of VoidLink, the first documented advanced malware framework…

21
Jan
2026

GNU InetUtils Vulnerability Exploited via “-f root” to Achieve Full System Control

A critical authentication bypass vulnerability in GNU InetUtils’ telnetd server allows remote attackers to gain root access without credentials by…

Two rats
21
Jan
2026

Can you use too many LOLBins to drop some RATs?

Recently, our team came across an infection attempt that stood out—not for its sophistication, but for how determined the attacker…

LastPass theft
21
Jan
2026

Fake Lastpass emails pose as password vault backup alerts

LastPass is warning of a new phishing campaign disguised as a maintenance notification from the service, asking users to back…

Research Finds 64% of Third-Party Apps Access Sensitive Data
21
Jan
2026

Research Finds 64% of Third-Party Apps Access Sensitive Data

Boston, MA, USA, January 21st, 2026, CyberNewsWire Reflectiz today announced the release of its 2026 State of Web Exposure Research,…

Critical Zoom Vulnerability Enables Remote Code Execution via Command Injection
21
Jan
2026

Critical Zoom Vulnerability Enables Remote Code Execution via Command Injection

A critical command injection vulnerability in Zoom Node Multimedia Routers (MMRs) has been disclosed, potentially allowing meeting participants to execute…

Researchers warn VoidProxy phishing platform can bypass MFA
21
Jan
2026

Backup request is actually a phishing campaign, LastPass warns

LastPass on Tuesday warned of a phishing campaign with false claims that the company is conducting maintenance and asking customers…

Cybersecurity abstract
21
Jan
2026

Black Basta’s alleged ringleader identified as authorities raid homes of other members

Law enforcement agencies from multiple European countries are still pursuing leads on people involved in the Black Basta ransomware group,…

GitLab
21
Jan
2026

GitLab warns of high-severity 2FA bypass, denial-of-service flaws

GitLab has patched a high-severity two-factor authentication bypass impacting community and enterprise editions of its software development platform. Tracked as…