WinRAR path traversal flaw still exploited by numerous hackers
27
Jan
2026

WinRAR path traversal flaw still exploited by numerous hackers

Multiple threat actors, both state-sponsored and financially motivated, are exploiting the CVE-2025-8088 high-severity vulnerability in WinRAR for initial access and to deliver various…

Attackers Exploiting React2Shell Vulnerability to Attack IT Sectors
27
Jan
2026

Attackers Exploiting React2Shell Vulnerability to Attack IT Sectors

Threat actors have started targeting companies in the insurance, e-commerce, and IT sectors through a critical vulnerability tracked as CVE-2025-55182,…

Hackers Exploit SEO Poisoning to Target Users Seeking Legitimate Tools
27
Jan
2026

Hackers Exploit SEO Poisoning to Target Users Seeking Legitimate Tools

Search engine optimization (SEO) poisoning techniques to trick users into downloading malicious software disguised as legitimate tools. This attack campaign…

Canva, Atlassian, Epic Games Among the 100+ Enterprises Targeted by ShinyHunters Group
27
Jan
2026

Canva, Atlassian, Epic Games Among the 100+ Enterprises Targeted by ShinyHunters Group

A major identity-theft operation is now targeting over 100 high-value organizations across multiple industries. The threat comes from SLSH, a…

Attackers Exploit React2Shell Vulnerability to Target IT Sector Systems
27
Jan
2026

Attackers Exploit React2Shell Vulnerability to Target IT Sector Systems

Active exploitation of a critical vulnerability in React Server Components, tracked as CVE‑2025‑55182 (React2Shell), targeting companies across multiple industry sectors…

ShinyHunters Target 100+ Firms Using Phone Calls to Bypass SSO Security
27
Jan
2026

ShinyHunters Target 100+ Firms Using Phone Calls to Bypass SSO Security – Hackread – Cybersecurity News, Data Breaches, AI, and More

A massive campaign to steal digital identities is hitting more than 100 large organisations. Researchers at pre-emptive cyber defence firm…

SMS phishing
27
Jan
2026

Watch out for AT&T rewards phishing text that wants your personal details

A coworker shared this suspicious SMS where AT&T supposedly warns the recipient that their reward points are about to expire….

Experts Detect Pakistan-Linked Cyber Campaigns Aimed at Indian Government Entities
27
Jan
2026

Experts Detect Pakistan-Linked Cyber Campaigns Aimed at Indian Government Entities

Ravie LakshmananJan 27, 2026Threat Intelligence / Cyber Espionage Indian government entities have been targeted in two campaigns undertaken by a…

Wave of ShinyHunters vishing attacks spreading fast
27
Jan
2026

Wave of ShinyHunters vishing attacks spreading fast

A new and distinct wave of voice phishing (vishing) attacks attributed to the notorious ShinyHunters hacking collective is spreading fast,…

Bank ATMs
27
Jan
2026

US charges 31 more suspects linked to ATM malware attacks

A Nebraska federal grand jury charged 31 additional defendants for their involvement in an ATM jackpotting operation allegedly orchestrated by…

Instagram, Facebook, and WhatsApp to Test New Premium Subscriptions
27
Jan
2026

Instagram, Facebook, and WhatsApp to Test New Premium Subscriptions

Meta is gearing up to roll out premium subscription tiers across its flagship apps, Instagram, Facebook, and WhatsApp, offering users…

Over 6,000 SmarterMail Servers Exposed to Actively Exploited RCE Vulnerability
27
Jan
2026

Over 6,000 SmarterMail Servers Exposed to Actively Exploited RCE Vulnerability

Approximately 6,000 vulnerable SmarterTools SmarterMail installations globally are all exposed to an actively exploited remote code execution vulnerability. The vulnerability,…