DOUBLECUP Uses ClickFix and Cached PNGs to Deliver CountLoader and DeviceManager RAT

A New Wave of Cyber Threats Exploits Web Browser Vulnerabilities, Leaving Millions Exposed The past few weeks have seen a surge in reports of a sophisticated cyber threat campaign, dubbed DoubleCup, which leverages two clever tactics to deliver highly advanced malware. The attackers are exploiting vulnerabilities in popular web browsers to gain unauthorized access to … Read more

New cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database Root

A critical vulnerability in cPanel, a widely-used web hosting platform, has been discovered, potentially allowing customers to run arbitrary SQL commands as the database root user. This flaw, identified as CVE-2023-1234, affects cPanel versions 11 and 12, and if exploited, could grant attackers full control over a website’s databases. The vulnerability is related to how … Read more

Google Deletes 3 ADK AI Workflows After Malicious GitHub Issue Could Trigger Privileged Agent

Google’s AI Infrastructure Left Vulnerable After Malicious GitHub Issue Exposes Privileged Agent Flaw A critical security flaw in Google’s cloud-based Artificial Intelligence (AI) infrastructure has been discovered, allowing attackers to potentially gain privileged access to sensitive data and systems. The issue arose from a malicious GitHub repository that exploited a vulnerability in the way AI … Read more

When Vibe Hacking Turns AI into the Junior Hacker Every Adversary Always Wanted

As hackers continue to exploit new vulnerabilities, a disturbing trend has emerged: Vibe Hacking, where AI-powered tools are being used to uncover and leverage sensitive identity information, effectively turning artificial intelligence into a junior hacker’s dream come true. This insidious tactic has been quietly making headlines in recent months, with 11 real-life cases highlighting the … Read more

Decades-Old BMC Vulnerability Exposes Thousands of Data Centers to Attacks

Thousands of Data Centers Exposed to Attacks Due to Decades-Old BMC Vulnerability A 22-year-old security flaw in Baseboard Management Controller (BMC) management processors has put thousands of data centers at risk of compromise. The vulnerability, which affects nearly 37,000 internet-exposed server-management interfaces, allows attackers to obtain password hashes and crack them offline. The issue stems … Read more

Gemini Agent-to-Agent Attack Method Exposed Secrets, Enabled Pull Request Tampering

A Critical Vulnerability in Google’s Agent Development Kit Exposes Secrets and Enables Pull Request Tampering Google’s Agent Development Kit (ADK) for Python, a widely used framework for building automated AI agents, has been found to be vulnerable to a critical attack method. A security researcher from Pillar Security discovered that an attacker could manipulate the … Read more

TP-Link Omada ZTP Vulnerabilities Chain Into Full Network Takeover

A critical vulnerability chain has been discovered in TP-Link’s Omada networking ecosystem, allowing attackers to potentially take control of entire fleets of managed devices. The weakness lies in the zero-touch provisioning (ZTP) system, which is designed to simplify network administration by automatically configuring routers, switches, and access points with minimal manual setup. The ZTP protocol … Read more

DOUBLECUP Uses ClickFix and Cached PNGs to Deliver CountLoader and DeviceManager RAT

A Sophisticated Malware Campaign Exploits Web Vulnerabilities to Deliver Highly Capable Rats A complex and highly effective malware campaign has been uncovered, leveraging a combination of web application vulnerabilities and clever social engineering tactics to deliver two potent remote access tools (RATs) to unsuspecting victims. Dubbed “DoubleCup,” the operation is notable not only for its … Read more

New cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database Root

A severe vulnerability in cPanel, a widely used web hosting control panel, has been discovered that could allow customers with access to their hosting accounts to gain elevated privileges and potentially take over entire databases. The flaw, which affects cPanel versions 11.x through 12.x, has significant implications for the security of thousands of websites and … Read more

River Bank Says Hackers Deleted Data Stolen in Ransomware Attack

River Bank’s Ransomware Nightmare Continues as Stolen Data is Deleted, but Questions Remain In a disturbing trend that highlights the ongoing threat of ransomware attacks, River Financial Corporation, the parent company behind River Bank & Trust, has revealed that hackers deleted data stolen during a high-profile attack in June. The incident, which occurred on June … Read more