loader image
SinoTrack GPS Flaws Let Hackers Control Vehicles Remotely

SinoTrack GPS tracking devices contain two security vulnerabilities that could allow unauthorized remote access to vehicles, according to a recent disclosure. The flaws affect the web management interface used to control the devices, exposing them to potential exploitation via default or weak passwords. If successfully exploited, the vulnerabilities could grant attackers access to device profiles, […]

Windows 10 Update Fixes Start Menu, Printer Bugs

Microsoft rolled out the June 2025 non-security preview update for Windows 10 version 22H2, introducing 13 fixes and improvements. This Windows 10 update fixes several issues, including a Start Menu bug that blocked users from launching the interface. The update, labeled KB5061087, also addresses problems affecting USB multi-function printers, where scanning features failed to operate […]

OneClik Malware Hits Energy Sector, Trellix Says

Cybersecurity firm Trellix has uncovered a sophisticated campaign using the OneClik malware, which targets organizations in the energy, oil and gas sectors. The campaign exploits Microsoft’s ClickOnce deployment technology to deliver malicious payloads and evade traditional detection methods. OneClik malware hits energy firms by embedding itself in cloud-hosted environments, enabling attackers to bypass endpoint defenses […]

Google Fixes Chrome Zero-Day Exploited in Attacks

Google fixed a critical zero-day vulnerability in its Chrome browser after confirming active exploitation in the wild. The flaw, identified as CVE-2025-6554, affects the browser’s V8 JavaScript and WebAssembly engine. In this latest update, Google fixes Chrome zero-day exposure by correcting a type confusion issue that could allow remote attackers to execute arbitrary code. The […]

Langflow RCE Flaw Rated 9.8 Joins CISA Risk List

A critical vulnerability affecting Langflow, a popular low-code platform for developing agentic AI workflows, has been added to the U.S. Cybersecurity and Infrastructure Security Agency’s (CISA) Known Exploited Vulnerabilities (KEV) Catalog. The flaw, identified as a remote code execution (RCE) bug with a CVSS severity score of 9.8, poses a significant threat to systems utilizing […]

Microsoft Unveils AI Agents to Control Windows Settings

Microsoft on Thursday introduced new artificial intelligence agents designed to streamline user interaction with Windows settings, as part of its latest Copilot+ PC experience rollout. The tools aim to simplify the process of configuring and customizing Windows devices by allowing AI to make system adjustments on behalf of users. The announcement highlights Microsoft’s continued investment […]

Agenda Hackers Add NETXLOADER, SmokeLoader to Attacks

The Agenda ransomware group has enhanced its cyberattack toolkit by integrating two new components: the well-known SmokeLoader malware and a .NET-based loader dubbed NETXLOADER, according to research from Trend Micro. First spotted in campaigns launched in November 2024, the updated attack chain offers increased stealth and complexity, allowing the group to bypass detection mechanisms more […]

Anonymous Hacks US Deportation Airline GlobalX Data

Hackers affiliated with the Anonymous collective have allegedly breached systems belonging to Global Crossing Airlines (GlobalX), a U.S.-based charter airline contracted for deportation flights. According to reports, the attackers claim to have stolen sensitive flight data, including logs and operational details linked to the airline’s services for U.S. immigration authorities. The cyber intrusion appears to […]

EU Launches Database to Track Cybersecurity Flaws

The European Union on Tuesday unveiled a centralized vulnerability database aimed at strengthening cybersecurity across the bloc. The platform will serve as an aggregated repository of information related to security flaws found in a wide range of digital products and services. By consolidating data on software and hardware vulnerabilities, the EU seeks to improve transparency […]

glibc Flaw Lets Hackers Run Code on Millions of Linux Systems

A critical vulnerability in the GNU C Library (glibc) is putting millions of Linux systems at risk of local privilege escalation and arbitrary code execution, according to a security advisory published May 16. Tracked as CVE-2025-4802, the flaw affects glibc versions 2.27 through 2.38 and stems from improper handling of the LD_LIBRARY_PATH environment variable in […]

EU Court Bans Tracking-Based Ads Over Consent Rules

A Brussels Court of Appeal ruled Wednesday that tracking-based online advertising practices violate European privacy laws, citing insufficient consent mechanisms. The decision targets the core of how digital advertisers operate across the EU, where user data is routinely collected and shared to serve personalized ads. The court found that current implementations of consent do not […]

Elon Musk Fans Hit by Satirical PowerShell Ransomware

A newly uncovered ransomware campaign is targeting supporters of Elon Musk with a mix of technical sophistication and satirical messaging, according to researchers at KrakenLabs. Identified as a variant of the Fog ransomware family, the attack chain begins with phishing emails containing PDFs labeled “Pay Adjustment.” These lure victims to a Netlify-hosted ZIP file that […]