Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

Rescana
rescana.com > post > active-exploitation-alert-toxicpanda-2-0-and-golddigger-banking-malware-escalate-on-device-fraud-against-android-users-g

Active Exploitation Alert: ToxicPanda 2.0 and GoldDigger Banking Malware Escalate On-Device Fraud Against Android Users Globally

5+ day, 9+ hour ago   (255+ words) Persistence is achieved by exploiting Accessibility Services to automate the disabling of battery optimization and auto-start restrictions, ensuring the malware remains active even after device reboots or system updates. Device Admin privileges are leveraged to prevent uninstallation and enable remote…...

Rescana
rescana.com > post > active-exploitation-of-mlflow-ssrf-vulnerability-cve-2026-64849-enables-cloud-credential-theft-and-account-compromise

Active Exploitation of MLflow SSRF Vulnerability (CVE-2026-64849) Enables Cloud Credential Theft and Account Compromise

5+ day, 9+ hour ago   (698+ words) Rescana Active Exploitation of MLflow SSRF Vulnerability (CVE-2026-64849) Enables Cloud Credential Theft and Account Compromise A critical vulnerability has been identified and is being actively exploited in MLflow, a widely used open-source platform for managing the machine learning lifecycle. The…...

Rescana
rescana.com > post > massive-azure-entra-credential-theft-exposes-fortune-500-employee-directories-in-global-exfiltration-campaign

Massive Azure/Entra Credential Theft Exposes Fortune 500 Employee Directories in Global Exfiltration Campaign

1+ week, 15+ hour ago   (392+ words) The exposure of service accounts and privileged users provides attackers with a roadmap for subsequent social engineering, spear-phishing, and privilege escalation attacks. The structured nature of the data enables highly targeted Business Email Compromise (BEC) and impersonation campaigns, as attackers…...

Rescana
rescana.com > post > critical-command-injection-vulnerability-in-snowflake-snowflake-connector-net-github-actions-exposes-jira-credentials

Critical Command Injection Vulnerability in Snowflake snowflake-connector-net GitHub Actions Exposes Jira Credentials

1+ week, 15+ hour ago   (371+ words) This workflow was triggered on the issues: opened event, allowing any GitHub user to initiate it. The vulnerability originated from a change introduced in commit 094038e and merged via PR #1218 on June 18, 2026. The change replaced a previously safe pattern using environment…...

Rescana
rescana.com > post > critical-cve-analysis-malicious-sim-card-code-execution-vulnerability-in-quectel-and-qualcomm-based-cellular-iot-devices

Critical CVE Analysis: Malicious SIM Card Code Execution Vulnerability in Quectel and Qualcomm-Based Cellular IoT Devices

1+ week, 6+ day ago   (408+ words) Rescana Critical CVE Analysis: Malicious SIM Card Code Execution Vulnerability in Quectel and Qualcomm-Based Cellular IoT Devices Recent research by the University of Birmingham and Fuzzware has revealed a critical vulnerability in the way certain cellular IoT devices handle SIM…...

Rescana
rescana.com > post > active-exploitation-alert-critical-microsoft-sharepoint-cve-2026-50522-vulnerability-targeted-in-global-attacks

Active Exploitation Alert: Critical Microsoft SharePoint CVE-2026-50522 Vulnerability Targeted in Global Attacks

1+ week, 6+ day ago   (253+ words) Victims have reported a range of impacts, from data theft and credential compromise to full-scale ransomware incidents resulting in operational downtime and financial losses. The theft of machineKey values and subsequent token forgery has enabled attackers to bypass authentication controls…...

Google News
rescana.com > post > wesco-cloud-crm-data-breach-exfilsquad-data-theft-and-supply-chain-risks-analyzed

Wesco Cloud CRM Data Breach: ExfilSquad Data Theft and Supply Chain Risks Analyzed – Rescana

1+ week, 6+ day ago   (445+ words) ExfilSquad has a documented history of targeting large organizations in the supply chain, education, and public sector verticals, including previous breaches at Analog Devices, the UK’s Police National Legal Database, and Newcastle University. The group’s focus on cloud environments and…...

Rescana
rescana.com > post > iranian-linked-cyberattacks-target-u-s-municipal-water-and-wastewater-systems-2026-multistate-incident-analysis

Iranian-Linked Cyberattacks Target U.S. Municipal Water and Wastewater Systems: 2026 Multistate Incident Analysis

1+ week, 6+ day ago   (363+ words) The attacks did not rely on custom malware or commodity toolkits; instead, they leveraged the inherent vulnerabilities of poorly secured OT environments. This approach allowed attackers to manipulate system parameters, such as water pressure, and disrupt human machine interfaces, which…...

Rescana
rescana.com > post > ceva-logistics-cyberattack-disrupts-european-warehouses-and-exposes-customer-data-cybersecurity-incident-analysis

Ceva Logistics Cyberattack Disrupts European Warehouses and Exposes Customer Data: Cybersecurity Incident Analysis

1+ week, 6+ day ago   (240+ words) No threat actor or group has been publicly attributed to this incident. There is no historical pattern or repeat targeting of Ceva Logistics by a known group documented in the sources. While the logistics sector has previously been targeted by…...

Rescana
rescana.com > post > active-exploitation-alert-head-mare-hacktivists-exploit-trueconf-vulnerabilities-to-trojanize-client-installers-with-pha

Active Exploitation Alert: Head Mare Hacktivists Exploit TrueConf Vulnerabilities to Trojanize Client Installers with PhantomCore and PhantomGraph Backdoors

2+ week, 2+ day ago   (531+ words) Rescana Active Exploitation Alert: Head Mare Hacktivists Exploit TrueConf Vulnerabilities to Trojanize Client Installers with PhantomCore and PhantomGraph Backdoors In July 2026, Kaspersky researchers identified that the Head Mare hacktivist group exploited a chain of vulnerabilities in unpatched TrueConf video conferencing…...