ThreatsDay Bulletin: OAuth Trap, EDR Killer, Signal Phishing, Zombie ZIP, AI Platform Hack & More

12/03/2026 0 Comments 0 tags

Another Thursday, another pile of weird security stuff that somehow happened in just seven days. Some of it is clever. Some of it is lazy. A few bits fall into

How to Scale Phishing Detection in Your SOC: 3 Steps for CISOs

12/03/2026 0 Comments 0 tags

Phishing has quietly turned into one of the hardest enterprise threats to expose early. Instead of crude lures and obvious payloads, modern campaigns rely on trusted infrastructure, legitimate-looking authentication flows,

Attackers Don’t Just Send Phishing Emails. They Weaponize Your SOC’s Workload

12/03/2026 0 Comments 0 tags

The most dangerous phishing campaigns aren’t just designed to fool employees. Many are designed to exhaust the analysts investigating them. When a phishing investigation takes 12 hours instead of five

Six Android Malware Families Target Pix Payments, Banking Apps, and Crypto Wallets

12/03/2026 0 Comments 0 tags

Cybersecurity researchers have discovered half-a-dozen new Android malware families that come with capabilities to steal data from compromised devices and conduct financial fraud. The Android malware range from traditional banking

Apple Issues Security Updates for Older iOS Devices Targeted by Coruna WebKit Exploit

12/03/2026 0 Comments 0 tags

Apple on Wednesday backported fixes for a security flaw in iOS, iPadOS, and macOS Sonoma to older versions after it was found to be used as part of the Coruna

CISA Flags Actively Exploited n8n RCE Bug as 24,700 Instances Remain Exposed

12/03/2026 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a critical security flaw impacting n8n to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation.

Researchers Trick Perplexity’s Comet AI Browser Into Phishing Scam in Under Four Minutes

11/03/2026 0 Comments 0 tags

Agentic web browsers that leverage artificial intelligence (AI) capabilities to autonomously execute actions across multiple websites on behalf of a user could be trained and tricked into falling prey to

Critical n8n Flaws Allow Remote Code Execution and Exposure of Stored Credentials

11/03/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed details of two now-patched security flaws in the n8n workflow automation platform, including two critical bugs that could result in arbitrary command execution. The vulnerabilities are

What Boards Must Demand in the Age of AI-Automated Exploitation

11/03/2026 0 Comments 0 tags

“You knew, and you could have acted. Why didn’t you?”  This is the question you do not want to be asked. And increasingly, it’s the question leaders are forced to

Dozens of Vendors Patch Security Flaws Across Enterprise Software and Network Devices

11/03/2026 0 Comments 0 tags

SAP has released security updates to address two critical security flaws that could be exploited to achieve arbitrary code execution on affected systems. The vulnerabilities in question listed below –