Calix Flaws

August 25, 2026 Faeem 0

Overview A critical vulnerability in Calix GS7 XGS (GS5239XG) residential routers, widely deployed by U.S. broadband providers, allows attackers to bypass NAT and firewall protections […]

WordPress Sites Attacked

August 25, 2026 Faeem 0

Overview Hackers are actively exploiting two critical authentication bypass vulnerabilities in the miniOrange SAML 2.0 Single Sign On (SSO) plugin for WordPress, tracked as CVE‑2026‑61979 […]

Microsoft Teams Phished

August 24, 2026 Faeem 0

Overview A new phishing campaign targeting Microsoft Teams is delivering a malware family called SynkLoader, designed to steal Windows passwords and provide attackers with persistent […]

Mac Users Tricked

August 24, 2026 Faeem 0

Overview Mac users are being targeted by a ClickFix campaign that disguises itself as a routine CAPTCHA check. Instead of downloading an app, victims are […]

ToxicPanda Android Malware

August 24, 2026 Faeem 0

Overview The ToxicPanda Android malware has evolved into ToxicPanda 2.0, expanding its reach to 349 targeted applications and supporting 167 remote commands. According to Zimperium, […]

Zimbra RCE Vulnerability

August 20, 2026 Faeem 0

Overview CERT Polska has issued an urgent warning: attackers are actively exploiting a critical remote code execution (RCE) vulnerability in the Zimbra Collaboration Suite, tracked […]

Claude AI Finds SAML Security Flaws

August 20, 2026 Faeem 0

Overview Security researchers at Oblique Security have leveraged Anthropic’s Claude AI to uncover serious flaws in Security Assertion Markup Language (SAML) implementations. These weaknesses could […]

Malicious Firefox Extensions

August 20, 2026 Faeem 0

Overview Security researchers at Socket Threat Research have uncovered a campaign dubbed Offside Wallet Theft Factory, involving 40 malicious Mozilla Firefox extensions masquerading as legitimate […]