Critical LiteSpeed cPanel Plugin Vulnerability Enables Root Privilege Escalation Attacks
CISA has warned of active exploitation targeting a critical LiteSpeed cPanel plugin vulnerability that enables root privilege escalation. Security teams are urged to patch affected systems immediately to prevent unauthorized access and potential server compromise.
New Sniper Dz Scam Operation Exploits MENA Users with Fraudulent Facebook Offers
A new Sniper Dz scam campaign is targeting users across the Middle East and North Africa (MENA) through fraudulent Facebook offers and deceptive browser alerts. Researchers warn that the operation uses social engineering tactics to lure victims into financial scams, credential theft, and other online fraud activities.
Hidden Ad Tracking Operations Found Across 152 Chrome Browser Extensions
Security researchers discovered 152 Chrome browser extensions secretly conducting ad tracking and generating fake Google search traffic, highlighting growing concerns around browser extension security and user privacy.
Critical Oracle PeopleSoft Zero-Day RCE Vulnerability Actively Exploited by ShinyHunters
Cybersecurity researchers have identified an active exploitation campaign targeting Oracle PeopleSoft environments through a critical Remote Code Execution (RCE) vulnerability tracked as CVE-2026-35273. The flaw affects Oracle PeopleSoft PeopleTools and [...]
Critical GreatXML Vulnerability Enables Windows BitLocker Bypass via Recovery Partition XML Files
A newly disclosed Windows security vulnerability known as GreatXML has raised concerns among cybersecurity professionals. The exploit allows attackers to potentially bypass Microsoft BitLocker by abusing XML files stored within [...]