Attackers are exploiting CVE-2026-76504 to access Cisco SD-WAN Manager APIs as admin without credentials; fixed releases are ...
Threat actors are abusing ChatGPT Custom GPTs to disguise them as legitimate product offerings and direct unsuspecting ...
Glow found over 13,000 internal images from 300+ organizations exposed in public GitHub repos during AI-assisted code reviews ...
Citrix NetScaler CVE-2026-88772 is exploited in the wild and can enable remote code execution through a DTLS buffer overflow.
Unknown attackers exploit a patched Citrix NetScaler flaw to gain root access and deploy web shells and a tunneler.
Microsoft says phishing attacks abuse MSP360 and ScreenConnect to maintain redundant remote access on compromised Windows endpoints.
Given that the browser is where business apps are accessed and used, it makes sense that attacks are happening there too.
Attackers exploited CVE-2026-73570 in Zimbra to deploy web shells and access mailbox data on servers with SNMP notifications enabled.
OpenSSL fixed a DTLS flaw rated High that can leak heap memory or crash software using OpenSSL for DTLS; no attacks are reported.
CSuite phishing targets Microsoft 365 sessions and deploys remote-access tools, with 51% of 351 sandbox submissions coming from the U.S.
Six browser attack techniques in 2026 span ClickFix, OAuth abuse, malicious extensions, credential stuffing, and session hijacking.
Read the latest updates about Search results for OpenSSL on The Hacker News cybersecurity and information technology ...