n8n Warns of CVSS 10.0 RCE Vulnerability Affecting Self-Hosted and Cloud Versions

07/01/2026 0 Comments 0 tags

Open-source workflow automation platform n8n has warned of a maximum-severity security flaw that, if successfully exploited, could result in authenticated remote code execution (RCE). The vulnerability, which has been assigned

Webinar: Learn How AI-Powered Zero Trust Detects Attacks with No Files or Indicators

07/01/2026 0 Comments 0 tags

Security teams are still catching malware. The problem is what they’re not catching. More attacks today don’t arrive as files. They don’t drop binaries. They don’t trigger classic alerts. Instead,

Microsoft Warns Misconfigured Email Routing Can Enable Internal Domain Phishing

07/01/2026 0 Comments 0 tags

Threat actors engaging in phishing attacks are exploiting routing scenarios and misconfigured spoof protections to impersonate organizations’ domains and distribute emails that appear as if they have been sent internally.

Ongoing Attacks Exploiting Critical RCE Vulnerability in Legacy D-Link DSL Routers

07/01/2026 0 Comments 0 tags

A newly discovered critical security flaw in legacy D-Link DSL gateway routers has come under active exploitation in the wild. The vulnerability, tracked as CVE-2026-0625 (CVSS score: 9.3), concerns a

Two Chrome Extensions Caught Stealing ChatGPT and DeepSeek Chats from 900,000 Users

06/01/2026 0 Comments 0 tags

Cybersecurity researchers have discovered two new malicious extensions on the Chrome Web Store that are designed to exfiltrate OpenAI ChatGPT and DeepSeek conversations alongside browsing data to servers under the

Unpatched Firmware Flaw Exposes TOTOLINK EX200 to Full Remote Device Takeover

06/01/2026 0 Comments 0 tags

The CERT Coordination Center (CERT/CC) has disclosed details of an unpatched security flaw impacting TOTOLINK EX200 wireless range extender that could allow a remote authenticated attacker to gain full control

VS Code Forks Recommend Missing Extensions, Creating Supply Chain Risk in Open VSX

06/01/2026 0 Comments 0 tags

Popular artificial intelligence (AI)-powered Microsoft Visual Studio Code (VS Code) forks such as Cursor, Windsurf, Google Antigravity, and Trae have been found to recommend extensions that are non-existent in the

Fake Booking Emails Redirect Hotel Staff to Fake BSoD Pages Delivering DCRat

06/01/2026 0 Comments 0 tags

Source: Securonix Cybersecurity researchers have disclosed details of a new campaign dubbed PHALT#BLYX that has leveraged ClickFix-style lures to display fixes for fake blue screen of death (BSoD) errors in

What is Identity Dark Matter?

06/01/2026 0 Comments 0 tags

The Invisible Half of the Identity Universe Identity used to live in one place – an LDAP directory, an HR system, a single IAM portal. Not anymore. Today, identity is

Critical AdonisJS Bodyparser Flaw (CVSS 9.2) Enables Arbitrary File Write on Servers

06/01/2026 0 Comments 0 tags

Users of the “@adonisjs/bodyparser” npm package are being advised to update to the latest version following the disclosure of a critical security vulnerability that, if successfully exploited, could allow a