Category Archives: Threat Alerts
LMDeploy SSRF Vulnerability: CVE-2026-33626 Under Active Exploitation
A high-severity LMDeploy SSRF vulnerability (CVE-2026-33626) is being actively exploited to bypass network segmentation and access sensitive internal metadata in cloud environments. Continue reading
Signal Phishing Campaign: Russian Intelligence Targets Encrypted Apps
A sophisticated Signal phishing campaign orchestrated by Russian intelligence services is targeting high-value government and military officials through social engineering tactics. Continue reading
ClickFix Social Engineering Campaign Exploits Native Windows Tools
The latest ClickFix social engineering campaign utilizes fake CAPTCHA pages to trick users into executing malicious code via native Windows utilities like cmdkey and regsvr32. Continue reading
Firestarter Stealth Backdoor Discovered in Cisco Networking Infrastructure
CISA warns of the Firestarter stealth backdoor, a sophisticated malware targeting Cisco Secure Firewall devices to maintain persistence within critical national infrastructure. Continue reading
UNC6692 Microsoft Teams Campaign Exploits IT Help Desk
Researchers have identified the UNC6692 Microsoft Teams campaign, a sophisticated social engineering threat where attackers impersonate IT staff to deploy SNOW malware via Quick Assist. Continue reading
Bitwarden CLI Compromise: Malicious npm Supply Chain Attack Discovered
A critical Bitwarden CLI compromise has been detected in the npm ecosystem, where attackers breached the CI/CD pipeline to inject credential-stealing code into version 2026.4.0. Continue reading
Apple CVE-2026-28950 Patch: Fix for Persistent Notifications
The Apple CVE-2026-28950 patch fixes a critical privacy flaw in iOS and iPadOS that allowed deleted notification data to remain on devices. Continue reading
notnullOSX Malware: High-Value Crypto Wallets at Risk
New reports reveal that notnullOSX malware is surgically targeting cryptocurrency wallets containing over $10,000 using sophisticated social engineering. Continue reading
Autonomous AI Exploits: WEF Warns of Anthropic Mythos Threat
The World Economic Forum has issued a high-priority alert regarding autonomous AI exploits capable of real-time vulnerability weaponization as demonstrated by Anthropic’s Mythos. Continue reading