Attackers exploited CVE-2026-73570 in Zimbra to deploy web shells and access mailbox data on servers with SNMP notifications enabled.
Attackers are exploiting CVE-2026-76504 to access Cisco SD-WAN Manager APIs as admin without credentials; fixed releases are ...
Threat actors are abusing ChatGPT Custom GPTs to disguise them as legitimate product offerings and direct unsuspecting ...
Six browser attack techniques in 2026 span ClickFix, OAuth abuse, malicious extensions, credential stuffing, and session hijacking.
Glow found over 13,000 internal images from 300+ organizations exposed in public GitHub repos during AI-assisted code reviews ...
CSuite phishing targets Microsoft 365 sessions and deploys remote-access tools, with 51% of 351 sandbox submissions coming from the U.S.
Unknown attackers exploit a patched Citrix NetScaler flaw to gain root access and deploy web shells and a tunneler.
Citrix NetScaler CVE-2026-88772 is exploited in the wild and can enable remote code execution through a DTLS buffer overflow.
OpenSSL fixed a DTLS flaw rated High that can leak heap memory or crash software using OpenSSL for DTLS; no attacks are reported.
Microsoft says phishing attacks abuse MSP360 and ScreenConnect to maintain redundant remote access on compromised Windows endpoints.
Given that the browser is where business apps are accessed and used, it makes sense that attacks are happening there too.
Read the latest updates about Search results for OpenSSL on The Hacker News cybersecurity and information technology ...