Cyber News

Over 40,000 Internet-Connected Cameras Exposed, Streaming Live Online

In a startling revelation for 2025, Bitsight TRACE has uncovered more than 40,000 security cameras openly accessible on the internet—streaming…

11 months ago

New Secure Boot Vulnerability Allows Attackers to Install Malware in PC and Server Boot Processes

Security researchers from Binarly have uncovered a major software vulnerability in the Unified Extensible Firmware Interface (UEFI) ecosystem, specifically impacting…

11 months ago

ConnectWise to Update Code Signing Certificates for ScreenConnect, Automate, and RMM

ConnectWise, a leading provider of remote management and cyber protection tools for managed service providers (MSPs), is set to implement…

11 months ago

Linux Malware Authors Targeting Cloud Environments with ELF Binaries

Recent investigations by Unit 42, the threat intelligence arm of Palo Alto Networks, have unearthed a concerning trend: threat actors…

11 months ago

KDE Konsole Terminal Emulator Flaw Allows Remote Code Execution Through Malicious Website URLs

A recently disclosed vulnerability (CVE-2025-49091) in Konsole, KDE’s flagship terminal emulator, enables remote code execution (RCE) via specially crafted URL…

11 months ago

Insyde UEFI Application Vulnerability Enables Digital Certificate Injection Through NVRAM Variable

A critical vulnerability in Insyde H2O UEFI firmware (tracked as CVE-2025-XXXX) allows attackers to bypass Secure Boot protections by injecting…

11 months ago

Outlook Vulnerability Allows Remote Execution of Arbitrary Code by Attackers

On June 10, 2025, Microsoft confirmed a critical security vulnerability (CVE-2025-47176) in Microsoft Office Outlook, enabling attackers to execute arbitrary…

11 months ago

ISPConfig Flaw Allows Attackers to Elevate Privileges to Superadmin and Execute PHP Code Injection

A critical vulnerability has been identified in ISPConfig, a popular web hosting control panel widely used for managing multiple websites…

11 months ago

Instagram Growth Services That Steal User Credentials and Send Them to Attackers

Recent research by cybersecurity experts has unveiled a sophisticated malware campaign masquerading as Instagram growth tools. These malicious packages, primarily…

11 months ago

Apache Kafka SSRF Vulnerability Allows Attackers to Access Arbitrary Files

A concerning security flaw has emerged affecting Apache Kafka, the widely adopted distributed event streaming platform. Researchers have identified a Severe…

11 months ago