RedWing MaaS Packages Android Bank Fraud as a Telegram Rental Service

A sophisticated Android malware campaign, dubbed RedWing MaaS, has been discovered masquerading as a Telegram rental service, targeting unsuspecting users and facilitating bank fraud on a massive scale. The malicious packages, sold through online forums, have been spreading rapidly across the globe, compromising mobile devices and enabling cybercriminals to drain bank accounts. RedWing MaaS is … Read more

The GitHub Actions Attack Pattern Your CI Security Scanners Miss

A Critical Vulnerability in GitHub Actions Exposes Thousands of Repositories to Attack A recent discovery by researchers at Novee Security has shed light on a critical vulnerability in GitHub Actions that can leave thousands of repositories exposed to attack. Dubbed “Cordyceps,” this weakness allows an attacker with a free GitHub account to induce both trusted … Read more

Spain arrests suspected member of pro-Russian hacktivist groups

Spanish authorities have made a significant arrest in their efforts to disrupt pro-Russian hacktivist groups. A man suspected of being an active member of CyberArmy of Russia Reborn (CARR) and Z-Pentest has been taken into custody by Spain’s National Police. These groups, while often referred to as “hacktivists,” have been linked to a series of … Read more

Hidden backdoor in Tenda router firmware grants admin access

A hidden authentication backdoor has been discovered in multiple versions of Tenda router firmware, potentially allowing attackers to gain administrator access to the device’s web management panel. The issue remains unfixed due to an inability to contact the Chinese manufacturer. The vulnerability, tracked as CVE-2026-11405 by the CERT Coordination Center (CERT/CC), lies within the ‘login()’ … Read more

Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo Data

GitHub users, take heed: a publicly disclosed issue could be putting private repository data at risk. A flaw in GitHub’s Agentic Workflows feature – designed to automate tasks and simplify development workflows – has been identified as vulnerable to exploitation by malicious actors. The bug, discovered through responsible disclosure, can trick the system into leaking … Read more

DEBULL Tooling Abuses Microsoft Device-Code Flow to Target M365 Accounts

A sophisticated cyber attack is making headlines, with attackers exploiting a previously unknown vulnerability in Microsoft’s device-code flow to gain unauthorized access to Microsoft 365 (M365) accounts. Dubbed “DEBULL,” this tactic has been linked to an advanced threat actor that has successfully compromised multiple high-profile organizations. The DEBULL tooling leverages the device-code flow, a security … Read more

Spain arrests suspected member of pro-Russian hacktivist groups

Spanish authorities have made a significant arrest in their efforts to crack down on pro-Russian hacktivist groups. A man suspected of being an active member of CyberArmy of Russia Reborn (CARR) and Z-Pentest, two groups linked to multiple attacks targeting critical infrastructure in the US and Europe, has been taken into custody by Spain’s National … Read more

Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across Tenants

A Critical Flaw in Writer AI Exposes Session Tokens Across Tenants, Leaving Thousands at Risk of Unauthorized Access A disturbing security vulnerability has been discovered in the popular writing assistant tool Writer AI, which could potentially allow an attacker to leak sensitive session tokens across tenants. The flaw, which affects thousands of users, highlights the … Read more

Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo Data

A GitHub Issue Exposed by a Hacker Has Revealed How Private Repository Data Can Leaked Through Automated Workflows, Highlighting the Growing Concern of AI-Powered Security Threats. The security community is abuzz with concern after a public GitHub issue revealed that automated workflows on the platform can inadvertently leak sensitive repository data. The issue, which has … Read more