CISA Adds Gladinet and Control Web Panel Flaws to Known Exploited Vulnerabilities List
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two new security flaws affecting Gladinet and Control Web Panel (CWP) to its Known Exploited Vulnerabilities (KEV) catalog. The agency [...]
Microsoft Teams Vulnerabilities Expose Users to Impersonation and Social Engineering Attacks
Cybersecurity researchers have revealed four critical vulnerabilities in Microsoft Teams that could have allowed attackers to impersonate colleagues, manipulate messages, and carry out social engineering attacks on users. The flaws, [...]
Lampion Stealer Evolves: Silent Credential Theft via ClickFix Attacks
Researchers have discovered a new wave of attacks using the Lampion banking trojan, a malware active since 2019 and now targeting users of Portuguese banks more aggressively. The attackers have [...]
WhatsApp Rolls Out Passkey Encryption for Backups
WhatsApp has rolled out passkey-encrypted backups, a major upgrade that makes protecting chat history easier and more secure. Instead of relying on passwords or lengthy encryption keys, WhatsApp now allows [...]
Patch Now: CISA Releases Detections for Zero-Day WSUS Exploit
On October 29, 2025, CISA released new guidance to help organizations detect and reduce attacks exploiting CVE-2025-59287, a critical flaw in Microsoft’s WSUS. The bug allows attackers to run code [...]