Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Active Exploitation Alert: ToxicPanda 2.0 and GoldDigger Banking Malware Escalate On-Device Fraud Against Android Users Globally
5+ day, 9+ hour ago (255+ words) Persistence is achieved by exploiting Accessibility Services to automate the disabling of battery optimization and auto-start restrictions, ensuring the malware remains active even after device reboots or system updates. Device Admin privileges are leveraged to prevent uninstallation and enable remote…...
Active Exploitation of MLflow SSRF Vulnerability (CVE-2026-64849) Enables Cloud Credential Theft and Account Compromise
5+ day, 9+ hour ago (698+ words) Rescana Active Exploitation of MLflow SSRF Vulnerability (CVE-2026-64849) Enables Cloud Credential Theft and Account Compromise A critical vulnerability has been identified and is being actively exploited in MLflow, a widely used open-source platform for managing the machine learning lifecycle. The…...
Massive Azure/Entra Credential Theft Exposes Fortune 500 Employee Directories in Global Exfiltration Campaign
1+ week, 15+ hour ago (392+ words) The exposure of service accounts and privileged users provides attackers with a roadmap for subsequent social engineering, spear-phishing, and privilege escalation attacks. The structured nature of the data enables highly targeted Business Email Compromise (BEC) and impersonation campaigns, as attackers…...
Critical Command Injection Vulnerability in Snowflake snowflake-connector-net GitHub Actions Exposes Jira Credentials
1+ week, 15+ hour ago (371+ words) This workflow was triggered on the issues: opened event, allowing any GitHub user to initiate it. The vulnerability originated from a change introduced in commit 094038e and merged via PR #1218 on June 18, 2026. The change replaced a previously safe pattern using environment…...
Critical CVE Analysis: Malicious SIM Card Code Execution Vulnerability in Quectel and Qualcomm-Based Cellular IoT Devices
1+ week, 6+ day ago (408+ words) Rescana Critical CVE Analysis: Malicious SIM Card Code Execution Vulnerability in Quectel and Qualcomm-Based Cellular IoT Devices Recent research by the University of Birmingham and Fuzzware has revealed a critical vulnerability in the way certain cellular IoT devices handle SIM…...
Active Exploitation Alert: Critical Microsoft SharePoint CVE-2026-50522 Vulnerability Targeted in Global Attacks
1+ week, 6+ day ago (253+ words) Victims have reported a range of impacts, from data theft and credential compromise to full-scale ransomware incidents resulting in operational downtime and financial losses. The theft of machineKey values and subsequent token forgery has enabled attackers to bypass authentication controls…...
Wesco Cloud CRM Data Breach: ExfilSquad Data Theft and Supply Chain Risks Analyzed – Rescana
1+ week, 6+ day ago (445+ words) ExfilSquad has a documented history of targeting large organizations in the supply chain, education, and public sector verticals, including previous breaches at Analog Devices, the UK’s Police National Legal Database, and Newcastle University. The group’s focus on cloud environments and…...
Iranian-Linked Cyberattacks Target U.S. Municipal Water and Wastewater Systems: 2026 Multistate Incident Analysis
1+ week, 6+ day ago (363+ words) The attacks did not rely on custom malware or commodity toolkits; instead, they leveraged the inherent vulnerabilities of poorly secured OT environments. This approach allowed attackers to manipulate system parameters, such as water pressure, and disrupt human machine interfaces, which…...
Ceva Logistics Cyberattack Disrupts European Warehouses and Exposes Customer Data: Cybersecurity Incident Analysis
1+ week, 6+ day ago (240+ words) No threat actor or group has been publicly attributed to this incident. There is no historical pattern or repeat targeting of Ceva Logistics by a known group documented in the sources. While the logistics sector has previously been targeted by…...
Active Exploitation Alert: Head Mare Hacktivists Exploit TrueConf Vulnerabilities to Trojanize Client Installers with PhantomCore and PhantomGraph Backdoors
2+ week, 2+ day ago (531+ words) Rescana Active Exploitation Alert: Head Mare Hacktivists Exploit TrueConf Vulnerabilities to Trojanize Client Installers with PhantomCore and PhantomGraph Backdoors In July 2026, Kaspersky researchers identified that the Head Mare hacktivist group exploited a chain of vulnerabilities in unpatched TrueConf video conferencing…...