Aggregator
CERT-In Recommends 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted Attacks
EU Finalizes Record DMA Fine Against Google Over Search Self-Preferencing Abuse
The European Union is on the verge of issuing its largest-ever penalty under the Digital Markets Act, targeting Alphabet’s Google for allegedly manipulating search results to favor its own services over competitors, a move set to further strain transatlantic tech relations. Brussels has formally accused Google and its parent company, Alphabet, of violating the Digital Markets […]
The post EU Finalizes Record DMA Fine Against Google Over Search Self-Preferencing Abuse appeared first on Cyber Security News.
Iran-Linked Hackers Target US Aviation with Phishing and SEO Poisoning Campaign
Nimbus Manticore Expanded Attacks With AI-Assisted Malware and Fake Zoom Installers
Хакеры использовали уязвимость механизма синхронизации GitHub и Packagist для внедрения инфостилера
CVE-2026-9523 | Acrel Electrical EEMS Enterprise Power Operation and Maintenance Cloud Platform getCalcmeterDetailDayListTree sql injection (EUVD-2026-31782)
CVE-2026-9524 | xianrendzw EasyReport up to 2.0.17.0522_Beta REST Endpoint execute reportParams sql injection (EUVD-2026-31783)
CVE-2026-9525 | itsourcecode Electronic Judging System 1.0 /admin/edit_judge.php judge_id sql injection (EUVD-2026-31784)
CVE-2026-9526 | itsourcecode Electronic Judging System 1.0 /admin/edit_team.php num_id sql injection (EUVD-2026-31786)
CVE-2026-9538 | BINGOS Archive::Tar up to 3.9 on Perl Header _read_tar memory allocation (EUVD-2026-31775)
BTMOB: A stealthy RAT burrowing deep into Android devices
CVE-2026-9532 | Totolink CA750-PoE 6.2c.510 Setting /cgi-bin/cstecgi.cgi setUploadUserData FileName os command injection (EUVD-2026-31794)
CVE-2026-9533 | Totolink CA750-PoE 6.2c.510 Setting /cgi-bin/cstecgi.cgi recvUpgradeNewFw fwUrl/magicid os command injection (EUVD-2026-31791)
CVE-2026-9495 | koa router 14.x access control (SNYK-JS-KOAROUTER-12215044 / EUVD-2026-31792)
CVE-2026-9496 | pacote up to 11.2.7 addGitSha redos (SNYK-JS-PACOTE-8225084 / EUVD-2026-31793)
CVE-2026-9534 | Totolink CA750-PoE 6.2c.510 Setting /cgi-bin/cstecgi.cgi setWiFiWpsConfig PIN os command injection (EUVD-2026-31796)
CVE-2026-3314 | Hitachi Ops Center Analyzer prior 11.0.8-00 missing password field masking (sec-2026-120 / EUVD-2026-31795)
CISA orders feds to patch actively exploited Drupal vulnerability
Phishing Services Use RCS and iMessage to Bypass Traditional SMS Security Filters
A new wave of phishing operations is quietly changing the way cybercriminals steal financial data from everyday people. Rather than relying on traditional SMS messages that carriers can easily flag and block, threat actors are now using encrypted messaging channels like Rich Communication Services (RCS) and Apple iMessage to deliver malicious links directly to victims’ […]
The post Phishing Services Use RCS and iMessage to Bypass Traditional SMS Security Filters appeared first on Cyber Security News.