Claude Cowork Sandbox Flaw Allows Root Access
Security researchers have uncovered a vulnerability chain in Anthropic's Claude Cowork Sandbox that allows a local attacker to bypass multiple security protections and execute arbitrary commands as root inside the [...]
Fake Installers Spread AsyncRAT Using ScreenConnect
Cybersecurity researchers have uncovered a large-scale malware campaign in which threat actors are abusing the legitimate ScreenConnect remote access software to deliver AsyncRAT through fake software installers. Instead of relying [...]
Attackers Target Oracle E-Business Suite Flaw
Security researchers have identified around 950 internet-facing Oracle EBS Flaw instances following expanded internet scanning, while attackers have already begun exploiting CVE-2026-46817 in real-world attacks. The findings were shared by [...]
New ARToken Panel Targets Microsoft 365 Tokens
Security researchers at Cisco Talos have uncovered a phishing-as-a-service (PhaaS) platform called ARToken that appears to be closely linked to the previously identified EvilTokens infrastructure. The platform provides cybercriminals with [...]
CISA Flags SimpleHelp Flaw as Actively Exploited
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2026-48558, a critical vulnerability affecting SimpleHelp remote support software, to its Known Exploited Vulnerabilities (KEV) catalog. The listing confirms that [...]