Aggregator
Apache Syncope Release Patches for Multiple RCE and SQL Injection Vulnerabilities
Apache has issued critical security updates for its Syncope identity and access management (IAM) platform to address multiple vulnerabilities, including remote code execution (RCE), SQL injection, privilege escalation, server-side request forgery (SSRF), and information disclosure. These flaws affect various versions of Syncope, and administrators are strongly urged to upgrade promptly to the latest secure releases. […]
The post Apache Syncope Release Patches for Multiple RCE and SQL Injection Vulnerabilities appeared first on Cyber Security News.
JetBrains Fixes Critical IntelliJ IDEA Code Execution Flaw and Four TeamCity Vulnerabilities
JetBrains has released security updates to address a critical code execution vulnerability in IntelliJ IDEA, alongside four high-severity vulnerabilities in TeamCity. Development teams and CI administrators are urged to apply these patches immediately to prevent potential remote attacks. JetBrains published a security advisory that details multiple issues across its IDE and server products, including IntelliJ […]
The post JetBrains Fixes Critical IntelliJ IDEA Code Execution Flaw and Four TeamCity Vulnerabilities appeared first on Cyber Security News.
SectopRAT Gives Attackers Remote Access to Passwords, Credit Cards, Cookies and Corporate Files
SectopRAT is at the center of a highly targeted malvertising campaign abusing Anthropic’s Claude platform to deliver a stealthy, HVNC‑enabled RAT that gives attackers deep, persistent access to victims’ passwords, credit cards, cookies and corporate files. The artifact masqueraded as a genuine Claude Desktop installer but redirected victims to claude.ai.download-app[.]us and then to downloading-api.it[.]com/html/claude/win, where […]
The post SectopRAT Gives Attackers Remote Access to Passwords, Credit Cards, Cookies and Corporate Files appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
FakeAgent Campaign Uses Malicious Bing Ads and Claude.ai Artifacts to Infect Corporate Users
A dangerous new malware campaign is tricking corporate workers who simply want a desktop version of a popular AI assistant. Between July 21 and July 22, 2026, at least 29 organizations saw unusual software installs and hidden persistence on their systems after staff searched for the Claude desktop app. The attack begins with paid ads […]
The post FakeAgent Campaign Uses Malicious Bing Ads and Claude.ai Artifacts to Infect Corporate Users appeared first on Cyber Security News.
ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing Link
ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing Link
Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers
Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers
G.O.S.S.I.P 特别推荐 2026-07-24 “千里码”安全漏洞
Twitch не открывается, PlayStation Network не пускает в аккаунт: этот день геймеры запомнят надолго
Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can Do
Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can Do
ChonkyChicken Malware Steals Chrome Credentials, Moves Laterally and Spies on Victims
ChonkyChicken is a newly identified remote access trojan designed to turn one infected Windows device into a platform for credential theft, network movement, and surveillance. The malware is part of the TAG-195, also called Golden Chickens or Venom Spider, malware-as-a-service ecosystem, which supplies tooling to financially motivated criminal operators. Recent campaigns begin with ClickFix lures, […]
The post ChonkyChicken Malware Steals Chrome Credentials, Moves Laterally and Spies on Victims appeared first on Cyber Security News.
Microsoft Confirms No Bloatware Ads in Windows 11; LG Disables McAfee Pop-ups
Microsoft has moved quickly to shut down unwanted antivirus advertising after users discovered that connecting an LG monitor could silently install companion software and trigger a McAfee trial pop-up on Windows 11. The issue surfaced when owners of premium LG displays reported that plugging in their monitors caused Windows Update to deliver the LG Monitor […]
The post Microsoft Confirms No Bloatware Ads in Windows 11; LG Disables McAfee Pop-ups appeared first on Cyber Security News.