Critical AVEVA Software Vulnerabilities Enables Remote Code Execution Under System Privileges
20
Jan
2026

Critical AVEVA Software Vulnerabilities Enables Remote Code Execution Under System Privileges

Seven vulnerabilities were disclosed in Process Optimization (formerly ROMeo) 2024.1 and earlier on January 13, 2026, including a critical flaw…

SolyxImmortal Malware Abuses Discord to Quietly Harvest Sensitive Information
20
Jan
2026

SolyxImmortal Malware Abuses Discord to Quietly Harvest Sensitive Information

A newly discovered information-stealing malware, SolyxImmortal, has emerged as a persistent surveillance threat targeting Windows users. Distributed through underground Telegram…

Threat Actors Leverage Google Ads to Weaponize PDF Editor with TamperedChef
20
Jan
2026

Threat Actors Leverage Google Ads to Weaponize PDF Editor with TamperedChef

A malvertising campaign identified in September 2025 has brought a significant threat to Windows users worldwide. Attackers created fake PDF…

Discord Exploited to Spread Clipboard Hijacker Stealing Cryptocurrency Funds
20
Jan
2026

Discord Exploited to Spread Clipboard Hijacker Stealing Cryptocurrency Funds

CloudSEK’s STRIKE team has uncovered a sophisticated cryptocurrency theft operation orchestrated by the threat actor “RedLineCyber,” who deliberately impersonates the…

Product showcase: PrivacyHawk for iOS helps users track and remove personal data from data brokers
20
Jan
2026

Product showcase: PrivacyHawk for iOS helps users track and remove personal data from data brokers

Every interaction online, from signing up for a newsletter to making a purchase, leaves a trace. These traces are collected…

Hong Kong strives to be ‘fortress’ that safeguards digital security, I&T minister says
20
Jan
2026

Hong Kong strives to be ‘fortress’ that safeguards digital security, I&T minister says

Hong Kong is striving to become a “fortress” that safeguards digital security, the city’s innovation and technology (I&T) minister has…

WhisperPair Vulnerability Allows Attackers to Pair Devices Without User Consent
20
Jan
2026

WhisperPair Vulnerability Allows Attackers to Pair Devices Without User Consent

Google’s Fast Pair technology has revolutionised Bluetooth connectivity, enabling seamless one-tap pairing across supported accessories and account synchronisation for millions…

Confusion and fear send people to Reddit for cybersecurity advice
20
Jan
2026

Confusion and fear send people to Reddit for cybersecurity advice

A strange charge appears on a bank account. An email claims a package is on the way. A social media…

Google Gemini Flaw Allows Access to Private Meeting Details Through Calendar Events
20
Jan
2026

Google Gemini Flaw Allows Access to Private Meeting Details Through Calendar Events

A harmless-looking Google Calendar invite has revealed a new frontier in the exploitation of artificial intelligence (AI).  Security researchers at Miggo…

Privacy teams feel the strain as AI, breaches, and budgets collide
20
Jan
2026

Privacy teams feel the strain as AI, breaches, and budgets collide

Privacy programs are under strain as organizations manage breach risk, new technology, and limited resources. A global study from ISACA…

Apache bRPC Vulnerability Enables Remote Command Injection
20
Jan
2026

Apache bRPC Vulnerability Enables Remote Command Injection

A critical remote command-injection vulnerability has been discovered in Apache bRPC’s built-in heap profiler service, affecting all versions before 1.15.0…

Critical AVEVA Software Flaws Allow Remote Code Execution With SYSTEM Privileges
20
Jan
2026

Critical AVEVA Software Flaws Allow Remote Code Execution With SYSTEM Privileges

AVEVA has disclosed seven critical and high-severity vulnerabilities in its Process Optimization software (formerly ROMeo) that could enable attackers to…