Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
Threat actors have already compromised over 270 Zimbra instances in remote code execution attacks targeting a high-severity Zimbra Collaboration Suite (ZCS) vulnerability.
Thousands of companies were impacted by the 2024-2026 Mirage2FA phishing-as-a-service campaign, which specifically targets Microsoft 365 accounts by abusing legitimate login flows and bypassing multi-factor authentication. The sophisticated campaign affected approximately 4,500 companies in the US and EU, creating significant identity-related security risks.
A new campaign has been discovered using 24 malicious npm packages as free phishing infrastructure, redirecting victims to ClickFix-style fake CAPTCHA pages. These packages abuse unpkg CDN mirrors to host the malicious redirects, and some remain active, posing ongoing risks to developers who may inadvertently install them.
The Norwegian Digitalisation Agency said it was working with its IT partner to stabilize systems affected by a distributed denial-of-service attack, with some services gradually coming back online.
Cybersecurity researchers have identified a new campaign using FTP banners as dead drop resolvers to deliver two novel remote access trojans, E4del and PINHOLE RAT. The malware leverages FTP server banners as a communication channel, connecting to the FTP client upon connection to receive commands and exfiltrate data. This technique enables stealthy command-and-control operations by hiding malicious traffic within legitimate FTP protocol communications.
Vulnerability management has long been a core component of cybersecurity programs. Frontier AI is now driving a systemic revolution in this field, fundamentally changing how organizations discover, prioritize, and remediate security weaknesses.