First Malicious MCP Server Found Stealing Emails in Rogue Postmark-MCP Package
29
Sep
2025

First Malicious MCP Server Found Stealing Emails in Rogue Postmark-MCP Package

Sep 29, 2025Ravie LakshmananMCP Server / Vulnerability Cybersecurity researchers have discovered what has been described as the first-ever instance of…

MIND Raises $30 Million for Data Loss Prevention
29
Sep
2025

SafeHill Emerges from Stealth With $2.6 Million Pre-Seed Funding

Chicago-based SafeHill, formerly known as Tacticly, has emerged from Stealth with a $2.6 million pre-seed funding round led by Mucker…

Threat Actors Weaponizing Facebook and Google Ads as Financial Platforms to Steal Sensitive Data
29
Sep
2025

Threat Actors Weaponizing Facebook and Google Ads as Financial Platforms to Steal Sensitive Data

Cybercriminals expand malvertising campaigns from Facebook to Google Ads and YouTube, hijacking accounts to distribute crypto-stealing malware targeting financial platform…

Microsoft Flags AI-Driven Phishing
29
Sep
2025

LLM-Crafted SVG Files Outsmart Email Security

Microsoft is calling attention to a new phishing campaign primarily aimed at U.S.-based organizations that has likely utilized code generated…

Project Zero Exposes ASLR Bypass In Apple Serialization Flaw
29
Sep
2025

Project Zero Exposes ASLR Bypass In Apple Serialization Flaw

Google Project Zero has revealed a new technique capable of bypassing Address Space Layout Randomization (ASLR) protections on Apple devices….

Hacker arrested
29
Sep
2025

Dutch Teens Arrested for Allegedly Helping Russian Hackers

Two teenage boys were arrested in the Netherlands over suspicions of spying for pro-Russian hackers, Dutch authorities announced. The two…

Hackers Weaponizing SVG Files to Deliver PureMiner Malware and Steal Sensitive Information
29
Sep
2025

Hackers Weaponizing SVG Files to Deliver PureMiner Malware and Steal Sensitive Information

In recent weeks, a sophisticated phishing campaign has emerged, targeting organizations in Ukraine with malicious Scalable Vector Graphics (SVG) files…

Tile Tracking Tags Can Be Exploited by Tech-Savvy Stalkers, Researchers Say
29
Sep
2025

Tile Tracking Tags Can Be Exploited by Tech-Savvy Stalkers, Researchers Say

Tile trackers, used to locate everything from lost keys to stolen pets, are used by more than 88 million people…

New Olymp Loader Malware-as-a-Service Promises Defender Bypass with Auto Certificate Signing
29
Sep
2025

New Olymp Loader Malware-as-a-Service Promises Defender Bypass with Auto Certificate Signing

Olymp Loader, a newly emerged Malware-as-a-Service (MaaS) offering, has rapidly gained traction across underground forums and Telegram since its debut…

Windows Heap Exploitation Vulnerability With Record's Size Field Leads to Arbitrary R/W
29
Sep
2025

Windows Heap Exploitation Vulnerability With Record’s Size Field Leads to Arbitrary R/W

A critical vulnerability in Windows heap management demonstrates how improper handling of record-size fields enables arbitrary memory read and write…

Formbricks Signature Verification Flaw Lets Attackers Reset User Passwords
29
Sep
2025

Formbricks Signature Verification Flaw Lets Attackers Reset User Passwords

A critical vulnerability in the open source Formbricks experience management toolbox allows attackers to reset any user’s password without authorization. Published three…

Harrods data breach
29
Sep
2025

Harrods Data Breach Affects 430,000 Customer Records

Luxury department store Harrods recently disclosed a data breach, in which, hackers stole information linked to approximately 430,000 customer records….