| |
|
Date: Apr 15, 2026 |
|
|
|
Date: Apr 15, 2026
|
| |
|
Cyber Security News
|  |
Mirax Android RAT Turns Devices into SOCKS5 Proxies Reaching 220000 via Meta Ads
A nascent Android remote access trojan called Mirax has been observed actively targeting Spanish-speaking countries, with campaigns reaching more than 220,... Read More...
| |
|  |
108 Malicious Chrome Extensions Steal Google and Telegram Data Affecting 20000 Users
Cybersecurity researchers have discovered a new campaign in which a cluster of 108 Google Chrome extensions has been found to communicate with the same command-... Read More...
| |
|  |
CISA Adds 6 Known Exploited Flaws in Fortinet Microsoft and Adobe Software
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added half a dozen security flaws to its Known Exploited Vulnerabilities (K... Read More...
| |
|  |
JanelaRAT Malware Targets Latin American Banks with 14739 Attacks in Brazil in 2025
Banks and financial institutions in Latin American countries like Brazil and Mexico have continued to be the target of a malware family called JanelaRAT.
A modi... Read More...
| |
|
Best Practices
|  |
China-linked cloud credential heist runs on typos and SMTP
China-aligned hackers have deployed a Linux-based ELF backdoor to steal cloud credentials at scale from workloads across AWS, GCP, Azure,... Read More...
| |
|  |
Adobe Patches Actively Exploited Zero-Day That Lingered for Months
An attacker has been using maliciously crafted PDF files to exploit a zero-day in Adobe Acrobat and Reader for at least four months. Read More...
| |
|  |
Hackers have been exploiting an unpatched Adobe Reader vulnerability for months
Adobe Reader vulnerabilities have been exploited for decades by threat actors taking advantage of the universal use of the utility to foo... Read More...
| |
|  |
How botnet-driven DDoS attacks evolved in 2H 2025
The second half of 2025 marked a pivotal shift in the world of distributed denial-of-service (DDoS) attacks. Organizations across the glo... Read More...
| |
|  |
Hackers exploit a critical Flowise flaw affecting thousands of AI workflows
Threat actors have found a way to inject arbitrary JavaScript into the Flowise low-code platform for building custom LLM and agentic syst... Read More...
| |
|  |
Iran-linked PLC attacks cause real-world disruption at critical US infra sites
As the US and Iran agreed to a ceasefire on Tuesday, six US federal agencies have warned that Iran-affiliated threat actors have compromi... Read More...
| |
|
New Threats and Vulnerabilities
|  |
Bitter-Linked Hack-for-Hire Campaign Targets Journalists Across MENA Region
An apparent hack-for-hire campaign likely orchestrated by a threat actor with suspected ties to the Indian government targeted journalists, activists, and ... Read More...
| |
|  |
New Chaos Variant Targets Misconfigured Cloud Deployments Adds SOCKS Proxy
Cybersecurity researchers have flagged a new variant ofmalware called Chaosthat'scapable of hitting misconfigured cloud deployments, marking an e... Read More...
| |
|  |
Masjesu Botnet Emerges as DDoS-for-Hire Service Targeting Global IoT Devices
Cybersecurity researchers have lifted the curtain on a stealthy botnet that's designed for distributed denial-of-service (DDoS) attacks.
Called Masjesu, th... Read More...
| |
|  |
Adobe Patches Actively Exploited Acrobat Reader Flaw CVE-2026-34621
Adobe has released emergency updates to fix a critical security flaw in Acrobat Reader that has come under active exploitation in the wild.
The vulner... Read More...
| |
|
Patch Management
|  |
New PHP Composer Flaws Enable Arbitrary Command Execution — Patches Released
Two high-severity security vulnerabilities have been disclosed in Composer, a package manager for PHP, that, if successfully exploited, could res... Read More...
| |
|  |
APT28 Deploys PRISMEX Malware in Campaign Targeting Ukraine and NATO Allies
The Russian threat actor known as APT28 (aka Forest Blizzard and Pawn Storm) has been linked to a fresh spear-phishing campaign targeting Ukraine and its a... Read More...
| |
|  |
Marimo RCE Flaw CVE-2026-39987 Exploited Within 10 Hours of Disclosure
A critical security vulnerability in Marimo, an open-source Python notebook for data science and analysis, has been exploited within 10 hours of public dis... Read More...
| |
|  |
EngageLab SDK Flaw Exposed 50M Android Users Including 30M Crypto Wallet Installs
Details have emerged about a now-patched security vulnerability in a widely used third-party Android software development kit (SDK) called EngageLab&n... Read More...
| |
|
AI and Security
|  |
AI-powered mainframe exits are a bubble set to pop: Gartner
Analysts reckon 70 percent of projects will fail, and 75 percent of vendors in the field will go away
Most mainframe users who turn to AI for help migrating leg... Read More...
| |
|  |
Claude is getting worse according to Claude
Brief outage follows growing number of quality complaints
Once the AI darling of programmers everywhere, Anthropic's Claude has been stumbling mightily, both in... Read More...
| |
|  |
WARNING: Oracles AI obsession could mean higher prices and worse support
Advisers say fewer staff could mean slower answers and tougher renewals
Oracle customers have been warned to watch for changes in support and pricing as Larry E... Read More...
| |
|
|
|
|
|