Anthropic’s MCP Server Vulnerability Let Attackers Escape Server’s Sandbox and Execute Arbitrary Code
03
Jul
2025

Anthropic’s MCP Server Vulnerability Let Attackers Escape Server’s Sandbox and Execute Arbitrary Code

Two high-severity vulnerabilities in Anthropic’s Model Context Protocol (MCP) Filesystem Server enable attackers to escape sandbox restrictions and execute arbitrary…

Let’s Encrypt Expands to Issue SSL/TLS Certificates for IP Addresses
03
Jul
2025

Let’s Encrypt Expands to Issue SSL/TLS Certificates for IP Addresses

Let’s Encrypt, a leading certificate authority (CA) known for providing free SSL/TLS certificates since 2015, has issued its first-ever certificate…

Police dismantles investment fraud ring stealing €10 million
03
Jul
2025

Police dismantles investment fraud ring stealing €10 million

The Spanish police have dismantled a large-scale investment fraud operation that caused cumulative damages exceeding $11.8 million (€10 million). During…

Apache Tomcat and Camel Vulnerabilities Actively Exploited in The Wild
03
Jul
2025

Apache Tomcat and Camel Vulnerabilities Actively Exploited in The Wild

Critical vulnerabilities in Apache Tomcat and Apache Camel are being actively exploited by cybercriminals worldwide, with security researchers documenting over…

Trump Officials Want to Prosecute Over the ICEBlock App. Lawyers Say That’s Unconstitutional
03
Jul
2025

Trump Officials Want to Prosecute Over the ICEBlock App. Lawyers Say That’s Unconstitutional

A spokesperson using ICE’s general press email referred WIRED to a statement issued by acting director Todd M. Lyons on…

Apache Tomcat and Camel Vulnerabilities Actively Targeted in Cyberattacks
03
Jul
2025

Apache Tomcat and Camel Vulnerabilities Actively Targeted in Cyberattacks

The Apache Foundation disclosed several critical vulnerabilities affecting two of its widely used software platforms, Apache Tomcat and Apache Camel,…

03
Jul
2025

Police dismantles investment fraud ring stealing €10 million

The Spanish police have dismantled a large-scale investment fraud operation that caused cumulative damages exceeding $11.8 million (€10 million). During…

Threat Actors Widely Abuse .COM TLD to Host Credential Phishing Website
03
Jul
2025

Threat Actors Widely Abuse .COM TLD to Host Credential Phishing Website

The .COM top-level domain continues to dominate the cybercriminal landscape as the primary vehicle for hosting credential phishing websites, maintaining…

CBP Wants New Tech to Search for Hidden Data on Seized Phones
03
Jul
2025

CBP Wants New Tech to Search for Hidden Data on Seized Phones

United States Customs and Border Protection (CBP) is asking tech companies to pitch digital forensics tools that are designed to…

Azure API Vulnerabilities Expose VPN Keys and Grant Over-Privileged Access via Built-In Roles
03
Jul
2025

Azure API Vulnerabilities Expose VPN Keys and Grant Over-Privileged Access via Built-In Roles

Token Security experts recently conducted a thorough investigation that exposed serious security weaknesses in Microsoft Azure’s Role-Based Access Control (RBAC)…

New Fake Marketplace From China Mimics Top Retail Brands for Fraud
03
Jul
2025

New Fake Marketplace From China Mimics Top Retail Brands for Fraud

Cybersecurity firm Silent Push has exposed a massive phishing scam originating from China, which has created thousands of fake e-commerce…

248,725 Exposed in CIEE One Data Breach
03
Jul
2025

248,725 Exposed in CIEE One Data Breach

Cybercriminals Target Brazil: 248,725 Exposed in CIEE One Data Breach Pierluigi Paganini July 03, 2025 Resecurity found a breach in…