Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
AI is making phishing attacks more personalized, convincing, and difficult for traditional email filters to detect. Kaseya explains how MSPs can monitor identity, email, and endpoint activity to detect and contain attacks that bypass the inbox.
Google Threat Intelligence Group (GTIG) is tracking three distinct suspected Russian cyber espionage threat clusters that abuse legitimate authentication flows. The clusters target individuals of interest to Russia in academia, aerospace, defense, and government sectors.
A critical security flaw in isolated-vm, a popular open-source JavaScript sandbox with over 2,900 GitHub stars, could allow attackers to escape the sandbox and execute code on the host system. The vulnerability has been assigned a CVSS score of 10.0 and has been patched in versions 6.2.0 and 7.0.1.
Citrix released updates addressing two security flaws in NetScaler ADC and NetScaler Gateway, including a critical-severity authentication bypass vulnerability. The vulnerabilities affect customer-managed NetScaler instances in hybrid deployments, but do not apply to Citrix-managed cloud services.
The Grandoreiro banking Trojan has resurfaced with a new campaign targeting Mexico, adding features that make detection and analysis harder. The malware was previously targeted by a law enforcement takedown but has returned with enhanced capabilities.
A patched security flaw in Zimbra Collaboration (ZCS) is being actively exploited in the wild, according to CERT Polska. The vulnerability allows unauthenticated remote code execution when the optional zimbra-snmp package is installed and SNMP notifications are enabled.