Critical Exploit Lets Hackers Bypass Authentication in WordPress Service Finder Theme

09/10/2025 0 Comments 0 tags

Threat actors are actively exploiting a critical security flaw impacting the Service Finder WordPress theme that makes it possible to gain unauthorized access to any account, including administrators, and take

Hackers Exploit WordPress Sites to Power Next-Gen ClickFix Phishing Attacks

08/10/2025 0 Comments 0 tags

Cybersecurity researchers are calling attention to a nefarious campaign targeting WordPress sites to make malicious JavaScript injections that are designed to redirect users to sketchy sites. “Site visitors get injected

Chinese Hackers Weaponize Open-Source Nezha Tool in New Attack Wave

08/10/2025 0 Comments 0 tags

Threat actors with suspected ties to China have turned a legitimate open-source monitoring tool called Nezha into an attack weapon, using it to deliver a known malware called Gh0st RAT

LockBit, Qilin, and DragonForce Join Forces to Dominate the Ransomware Ecosystem

08/10/2025 0 Comments 0 tags

Three prominent ransomware groups DragonForce, LockBit, and Qilin have announced a new strategic ransomware alliance, once underscoring continued shifts in the cyber threat landscape. The coalition is seen as an

Step Into the Password Graveyard… If You Dare (and Join the Live Session)

08/10/2025 0 Comments 0 tags

Every year, weak passwords lead to millions in losses — and many of those breaches could have been stopped. Attackers don’t need advanced tools; they just need one careless login.

Severe Figma MCP Vulnerability Lets Hackers Execute Code Remotely — Patch Now

08/10/2025 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a now-patched vulnerability in the popular figma-developer-mcp Model Context Protocol (MCP) server that could allow attackers to achieve code execution. The vulnerability, tracked as

OpenAI Disrupts Russian, North Korean, and Chinese Hackers Misusing ChatGPT for Cyberattacks

08/10/2025 0 Comments 0 tags

OpenAI on Tuesday said it disrupted three activity clusters for misusing its ChatGPT artificial intelligence (AI) tool to facilitate malware development. This includes a Russian‑language threat actor, who is said

BatShadow Group Uses New Go-Based ‘Vampire Bot’ Malware to Hunt Job Seekers

07/10/2025 0 Comments 0 tags

A Vietnamese threat actor named BatShadow has been attributed to a new campaign that leverages social engineering tactics to deceive job seekers and digital marketing professionals to deliver a previously

Google’s New AI Doesn’t Just Find Vulnerabilities — It Rewrites Code to Patch Them

07/10/2025 0 Comments 0 tags

Google’s DeepMind division on Monday announced an artificial intelligence (AI)-powered agent called CodeMender that automatically detects, patches, and rewrites vulnerable code to prevent future exploits. The efforts add to the

New Research: AI Is Already the #1 Data Exfiltration Channel in the Enterprise

07/10/2025 0 Comments 0 tags

For years, security leaders have treated artificial intelligence as an “emerging” technology, something to keep an eye on but not yet mission-critical. A new Enterprise AI and SaaS Data Security