A Malicious SIM Card Can Run Attacker Code Inside the Modems Behind Cellular IoT Devices
A malicious SIM card can order the device it sits in to run commands of the attacker's choosing. On the...
A malicious SIM card can order the device it sits in to run commands of the attacker's choosing. On the...
Attackers shut down a steam turbine and the process-water treatment system at a Polish combined heat and power plant by...
Two security flaws in Paperclip could let attackers execute commands on a network server or a developer's computer. Paperclip is...
Swati KhandelwalAug 03, 2026Vulnerability / Endpoint Security N-able said attackers exploited an authentication bypass in N-central to gain remote administrative...
Apple has patched vulnerabilities that could give attackers root access, execute malicious code or expose protected data across iPhones, Macs...
Opening a Git repository in a vulnerable version of Cursor could be enough to give attackers code execution on a...
JetBrains has patched a critical TeamCity vulnerability that could allow unauthenticated attackers to run operating system commands on exposed, self-hosted...
“Attackers have frontier AI. Defenders need a frontier AI ecosystem.” Nvidia CEO Jensen Huang issued the warning on X as...
Swati KhandelwalJul 25, 2026Vulnerability / Application Security Security firms ThreatBook and Imperva say attackers are targeting a critical flaw in...
The adaptation came in the form of using Microsoft Teams as a social engineering channel. Attackers established conversations to build...
The cycle is over. For years, cybersecurity followed a familiar pattern: defenses improved, attackers adapted, and the back-and-forth continued. Today,...
Microsoft warns attackers are increasingly using AI to accelerate exploitation of newly disclosed vulnerabilities, shrinking the time organizations have to...
Attackers whose methods line up with the data-extortion group ShinyHunters have spent the past year walking into corporate Salesforce environments without exploiting...
Ask an AI coding agent to scan open-source code for security holes, and it might run the attacker's code on...
For years, account takeover (ATO) followed a predictable script. Attackers bought stolen credentials in bulk, ran them through automated tools,...