loader image
DHS Confirms Hackers Breached HSIN

The Department of Homeland Security confirmed hackers breached the Homeland Security Information Network (HSIN), a critical platform for information-sharing among federal, state, local, and private-sector entities. This cyberattack has triggered an investigation to assess the extent of the breach and its potential impact on sensitive data. HSIN plays a pivotal role in fostering collaboration across […]

EvilTokens Kit Fuels Complete Email Fraud

The Eviltokens kit represents a significant threat, revolutionizing the landscape of device-code phishing. This kit creates a ‘complete business email compromise (BEC) operations environment,’ according to a Talos researcher. Cybercriminals utilize this tool to exploit vulnerabilities, streamline attacks, and increase their potential reward. By focusing on device-code phishing, the kit takes advantage of a critical […]

Oracle E-Business Flaw Under Attack, 950 Exposed

A critical vulnerability in Oracle E-Business Suite, identified as CVE-2026-46817, is currently under active attack, with approximately 950 systems exposed. Defused Cyber researchers reported that this flaw, affecting Oracle Payments versions 12.2.3 through 12.2.15, allows attackers to take over systems without authentication via HTTP. Although Oracle addressed this issue in its latest Critical Patch Update, […]

CISA Adds SharePoint RCE to KEV After Exploits

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) recently added a new vulnerability affecting Microsoft SharePoint Server to its Known Exploited Vulnerabilities catalog. Identified as CVE-2026-45659, this high-severity flaw carries a CVSS score of 8.8. The issue allows remote code execution due to the deserialization of untrusted data, posing significant security risks for users. CISA […]