Cisco Fixes Actively Exploited Zero-Day CVE-2026-20045 in Unified CM and Webex

22/01/2026 0 Comments 0 tags

Cisco has released fresh patches to address what it described as a “critical” security vulnerability impacting multiple Unified Communications (CM) products and Webex Calling Dedicated Instance that it has been

North Korean PurpleBravo Campaign Targeted 3,136 IP Addresses via Fake Job Interviews

21/01/2026 0 Comments 0 tags

As many as 3,136 individual IP addresses linked to likely targets of the Contagious Interview activity have been identified, with the campaign claiming 20 potential victim organizations spanning artificial intelligence

Zoom and GitLab Release Security Updates Fixing RCE, DoS, and 2FA Bypass Flaws

21/01/2026 0 Comments 0 tags

Zoom and GitLab have released security updates to resolve a number of security vulnerabilities that could result in denial-of-service (DoS) and remote code execution. The most severe of the lot

Exposure Assessment Platforms Signal a Shift in Focus

21/01/2026 0 Comments 0 tags

Gartner® doesn’t create new categories lightly. Generally speaking, a new acronym only emerges when the industry’s collective “to-do list” has become mathematically impossible to complete. And so it seems that

Webinar: How Smart MSSPs Using AI to Boost Margins with Half the Staff

21/01/2026 0 Comments 0 tags

Every managed security provider is chasing the same problem in 2026 — too many alerts, too few analysts, and clients demanding “CISO-level protection” at SMB budgets. The truth? Most MSSPs

VoidLink Linux Malware Framework Built with AI Assistance Reaches 88,000 Lines of Code

21/01/2026 0 Comments 0 tags

The recently discovered sophisticated Linux malware framework known as VoidLink is assessed to have been developed by a single person with assistance from an artificial intelligence (AI) model. That’s according

Chainlit AI Framework Flaws Enable Data Theft via File Read and SSRF Bugs

21/01/2026 0 Comments 0 tags

Security vulnerabilities were uncovered in the popular open-source artificial intelligence (AI) framework Chainlit that could allow attackers to steal sensitive data, which may allow for lateral movement within a susceptible

CERT/CC Warns binary-parser Bug Allows Node.js Privilege-Level Code Execution

21/01/2026 0 Comments 0 tags

A security vulnerability has been disclosed in the popular binary-parser npm library that, if successfully exploited, could result in the execution of arbitrary JavaScript. The vulnerability, tracked as CVE-2026-1245 (CVSS

LastPass Warns of Fake Maintenance Messages Targeting Users’ Master Passwords

21/01/2026 0 Comments 0 tags

LastPass is alerting users to a new active phishing campaign that’s impersonating the password management service, which aims to trick users into giving up their master passwords. The campaign, which

North Korea-Linked Hackers Target Developers via Malicious VS Code Projects

20/01/2026 0 Comments 0 tags

The North Korean threat actors associated with the long-running Contagious Interview campaign have been observed using malicious Microsoft Visual Studio Code (VS Code) projects as lures to deliver a backdoor