Aggregator
Please support the site operations by clicking ads.
Hackers Abuse Trusted Google Services to Hide Credential-Stealing Phishing Attacks
Criminals are using trusted Google services as cover for a wide phishing campaign that steals corporate credentials and, in some cases, installs remote-access software. The malicious path runs through Google-owned domains before reaching attacker-controlled pages for users and filters. The emails use familiar workplace themes, including document reviews, expiring mailboxes, package deliveries, payment notices, voicemail […]
The post Hackers Abuse Trusted Google Services to Hide Credential-Stealing Phishing Attacks appeared first on Cyber Security News.
CVE-2026-78488 | Dell Secure Connect Gateway os command injection
CVE-2026-78480 | Dell Secure Connect Gateway missing authentication
CVE-2026-19843 | Red Hat Directory Server/Enterprise Linux 389-ds-base os command injection
CVE-2026-18453 | Red Hat 389 Directory Server/Enterprise Linux Paged Results op_shared_search null pointer dereference
CVE-2026-6377 | Next4Biz Information CSM up to 07092026 path traversal
CVE-2026-18355 | Red Hat Directory Server/Enterprise Linux up to 388 SASL I/O Layer sasl_io_start_packet heap-based overflow
Дроны, хакеры и диверсанты в одной системе. Германия строит национальный киберкупол
⚡ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and More
Natural Resources Wales Exposes Sensitive Employee Data in Spreadsheet Breach
Natural Resources Wales has disclosed a personal data breach involving a spreadsheet containing sensitive diversity information belonging to former and current employees. The incident affected people employed by Natural Resources Wales (NRW) between April 2013 and March 2018. The organization said the spreadsheet was inadvertently published online, making the information accessible before it was removed. […]
The post Natural Resources Wales Exposes Sensitive Employee Data in Spreadsheet Breach appeared first on Cyber Security News.
CVE-2026-80170 | Dell Secure Connect Gateway hard-coded credentials
Microsoft to Retire Manifest V2 Extensions and Switch to V3 for Improved Security and Performance
Microsoft will retire support for Manifest V2 browser extensions in Microsoft Edge by early 2027, requiring users, enterprises, and developers to move to Manifest V3. The transition is intended to strengthen browser security, improve performance, and reduce the risks linked to legacy extension code. Microsoft announced the change in Message Center notification MC1467356, published on […]
The post Microsoft to Retire Manifest V2 Extensions and Switch to V3 for Improved Security and Performance appeared first on Cyber Security News.