737 Chrome VPN Extensions Caught Routing Traffic Through Proxies. Check If You Have One

A recent investigation has uncovered a shocking number of Chrome VPN extensions that are secretly routing user traffic through proxies, potentially exposing sensitive data and compromising online security. The affected extensions, totaling 737, have been installed by millions of users worldwide, making this a significant threat to internet safety. These VPN extensions, designed to protect … Read more

FBI: Hackers target online accounts to steal nude photos

The FBI has issued a public warning that hackers are targeting social media and online accounts to steal sexually explicit images or videos, often with the intention of blackmailing victims or selling the content on dark web marketplaces. This disturbing trend affects not only adults but also children, with cybercriminals using stolen personal information to … Read more

Lazarus hackers exploited Windows zero-day to target defense firms

Lazarus Hackers Unleash Sophisticated Attack on Defense Sector Using Zero-Day Vulnerity North Korean threat group Lazarus has been exploiting a Windows zero-day vulnerability (CVE-2026-68820) to target defense firms in Europe and India as part of its long-standing Operation Dream Job campaign. The hackers have used the flaw, which was patched by Microsoft earlier this month, … Read more

Enterprise Defenses Recovered at the Edge and Collapsed Inside

Cybersecurity teams are facing a new challenge as threat actors exploit identity exposure to bypass enterprise defenses, not just at the edge but also deep within internal networks. In a growing trend, hackers are using exposed identities and cross-domain privilege escalation to create active attack paths that can remain hidden even after initial breach points … Read more

OpenAI, Anthropic, Google API Flaw Let Weaker AI Models Decode Stronger Models’ Reasoning

A Critical Flaw in AI API Security Exposes Weaker Models’ Secrets A recent discovery has highlighted a significant vulnerability in the way some artificial intelligence (AI) models interact with each other. Researchers have found that weaker AI models can decode the reasoning behind stronger models’ decisions, potentially exposing sensitive information and undermining trust in AI … Read more

737 Chrome VPN Extensions Caught Routing Traffic Through Proxies. Check If You Have One

**Multiple Chrome VPN Extensions Caught Redirecting Traffic Through Proxies, Putting Users’ Data at Risk** A disturbing discovery has been made in the world of cybersecurity, as multiple popular Chrome VPN extensions have been caught routing users’ internet traffic through unauthorized proxies. This revelation highlights a critical vulnerability that could compromise sensitive information and leave users … Read more

New Microsoft Defender ‘ShieldBreak’ zero-day grants SYSTEM privileges

A New Zero-Day Exploit in Microsoft Defender Allows System Privileges Grab In a shocking revelation, a security researcher known as Nightmare Eclipse has unleashed a new zero-day exploit in Microsoft Defender called ShieldBreak. This vulnerability is particularly concerning because it can be used to gain SYSTEM privileges on fully patched Windows 10, Windows 11, and … Read more

Signal adds new security feature to thwart man-in-the-middle attacks

Signal’s Latest Move: Automatic Key Verification Takes Aim at Man-in-the-Middle Attacks In a significant step to strengthen its users’ online security, messaging app Signal has introduced Automatic Key Verification – a new feature designed to detect and prevent man-in-the-middle (MitM) attacks. This innovative system uses Cloudflare and Trail of Bits as trusted third-party auditors to … Read more

Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations

Cybersecurity experts have sounded an alarm after discovering that malicious LiteLLM releases linked to a Trivy hack may have exposed over 2,100 organizations worldwide. The threat actors exploited vulnerabilities in the popular security scanning tool, using it as a springboard for privilege escalation and domain hopping attacks. The Trivy hack allowed attackers to create customized … Read more

Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access

A critical vulnerability in VMware vCenter has been exploited by attackers, giving them persistent remote access to affected systems. VMware’s virtualization platform is used by over 500,000 organizations worldwide, including some of the largest enterprises and government agencies. This means that a significant number of companies are potentially vulnerable to this attack. The vulnerability, tracked … Read more