Zoom Zero-Click Flaws Put Devices at Risk
Zoom has released security updates for four newly discovered vulnerabilities that could allow an attacker to execute code on another meeting participant’s computer remotely. The most serious issue requires no [...]
Android Banking Malware Adopts New Evasion Techniques
Android banking malware continues to evolve as cybercriminals adopt new methods to avoid detection and bypass app store security checks. Instead of distributing banking malware directly, attackers are increasingly using [...]
CISA Warns of Active LoadMaster Attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an alert after confirming that a critical vulnerability in Progress LoadMaster is being actively exploited. The flaw, tracked as CVE-2026-8037, [...]
Critical WordPress Flaw Enables Remote Code Execution
Security researchers have uncovered a serious vulnerability chain in WordPress Core, tracked as CVE-2026-64638 and known as XSS2Shell. The flaw could allow attackers to escalate from a simple login page [...]
Windows Hello Key Flaw Opens Door to Entra ID Access
Security researcher Dirk-jan Mollema has uncovered a new technique that could allow attackers to misuse Windows Hello for Business (WHFB) to authenticate to Microsoft Entra ID services without requiring the [...]