Vulnerability

7-Zip Leaves Extracted Malware Without Mark-of-the-Web, Bypassing Windows SmartScreen

A 7-Zip flaw can allow malware extracted from a specially crafted archive to lose Windows’ Mark-of-the-Web (MotW) label. Without that label, Windows SmartScreen may...

Botnet Repeatedly Probes 12 Router Diagnostic Endpoints for Exploitable Flaws

Security researchers have observed repeated scans targeting 12 router web paths linked to diagnostic functions, raising concerns that botnet operators are looking for devices...

Chinese-Speaking Operator Runs DarkSword iOS Exploit Kit Across 180 Web Properties

A Chinese-speaking threat operator has deployed the leaked DarkSword iOS exploit kit across at least 180 web properties, according to infrastructure scanning data. The...

Autonomous AI Agent Accidentally Exposes Hacker’s Entire Attack Infrastructure

A Chinese-speaking threat actor has been observed deploying an AI-powered autonomous hacking framework that unintentionally exposed its full operational infrastructure, offering rare insight into...

TA488 Exploits CVE-2026-42897 Outlook Flaw to Deploy OWAReaper Backdoor

Threat actor TA488 has launched a new campaign exploiting CVE-2026-42897, a cross-site scripting vulnerability in Microsoft Outlook Web Access (OWA), to deploy a sophisticated...

Popular

Subscribe