“City-Forum” data-theft attacks target Salesforce, ServiceNow portals

A sophisticated data theft campaign has been targeting organizations worldwide, exploiting a common vulnerability in Salesforce Experience Cloud and ServiceNow customer portals. Dubbed “City-Forum” by SaaS security firm Reco, these attacks have been ongoing for over a year, with activity increasing steadily. The attackers are not exploiting vulnerabilities in the platforms themselves but rather stealing … Read more

Hackers leverage new Microsoft SharePoint exploit in attacks

A Critical Microsoft SharePoint Vulnerity is Being Exploited in Real-World Attacks, Putting Thousands at Risk A highly critical security vulnerability in Microsoft’s popular collaboration platform, SharePoint, has been found to be actively being used by hackers in real-world attacks. The flaw, tracked as CVE-2026-55040, allows attackers to bypass authentication and gain access to sensitive data … Read more

The Threat Hiding in Your Hiring Process: How Fake Remote Workers Get In

Cybersecurity Threats Lurking in the Hiring Process: How Fake Remote Workers Gain Access The traditional threat landscape is filled with phishing emails, exploited vulnerabilities, and malicious code. However, a more insidious threat has been lurking in plain sight – one that exploits the very process of hiring new employees to gain access to corporate networks. … Read more

FBI: Hackers target online accounts to steal nude photos

The FBI has issued a public service announcement warning that cybercriminals are targeting adults’ and children’s online accounts, stealing sexually explicit images or videos to blackmail victims or sell on criminal marketplaces. This malicious activity is known as sextortion, where attackers threaten to leak private content unless the victim pays them or provides more intimate … Read more

Hundreds of fake Chrome VPN extensions route traffic through a proxy

Over 737 fake Chrome VPN extensions, masquerading as well-known brands such as Proton VPN and NordVPN, have been discovered routing users’ traffic through SOCKS5 proxies operated by a single provider. This malicious campaign has resulted in nearly 75,000 downloads from the Chrome Web Store, with a significant number of victims hailing from Russia. The extensions, … Read more

Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor

A notorious North Korean hacking group, Lazarus, has successfully exploited a previously unknown vulnerability in Windows operating systems to gain SYSTEM access and deploy a backdoor on compromised machines. This zero-day exploit marks the latest escalation in the group’s arsenal of cyber warfare capabilities. Lazarus, responsible for high-profile attacks including the 2014 Sony Pictures breach, … Read more

Hackers leverage new Microsoft SharePoint exploit in attacks

A Critical Microsoft SharePoint Vulnerability is Being Exploited in Attacks, Leaving Thousands of Servers at Risk A proof-of-concept (PoC) exploit for a critical Microsoft SharePoint vulnerability, tracked as CVE-2026-55040, has been published by cybersecurity company Rapid7. Just hours after its release, threat intelligence companies have already reported that the exploit is being used in attacks … Read more

The Threat Hiding in Your Hiring Process: How Fake Remote Workers Get In

A Sneaky Threat Lurks in Your Hiring Process: How Fake Remote Workers Gain Access In a shocking example of cyber deception, North Korean IT workers have been impersonating nationals of other countries to gain legitimate access to corporate networks. Once employed, these individuals send their salaries back to parent agencies in North Korea, highlighting the … Read more

Plug and Pwn attack uses fake USB devices for Windows SYSTEM access

Windows users are at risk of being exploited through a new class of attacks dubbed “Plug and Pwn,” where fake USB devices can be used to gain SYSTEM privileges on compromised machines. This disturbing trend highlights how even seemingly innocuous features in operating systems can be abused by malicious actors. Security researchers Alejandro Hernando and … Read more

Hundreds of fake Chrome VPN extensions route traffic through a proxy

Hackers Behind Fake VPN Extensions Exposed, Thousands of Users Affected A massive campaign to deceive users has been uncovered by researchers at Socket, with over 737 fake Chrome browser extensions impersonating well-known VPN and proxy services. These extensions were downloaded nearly 75,000 times from the Chrome Web Store, primarily by Russian users seeking tools to … Read more