“Cyber warfare is as much about psychological strategy as technical prowess.”
― James Scott
-

CRESCENTHARVEST Campaign Targets Iran Protest Supporters With RAT Malware [email protected] (The Hacker News)
Cybersecurity researchers have disclosed details of a new campaign dubbed CRESCENTHARVEST, likely targeting supporters of Iran’s ongoing protests to conduct information theft and long-term espionage. The Acronis Threat Research Unit (TRU) said it observed the activity after January 9, with the attacks designed to deliver a malicious payload that serves as a remote access trojan…
-
Dell RecoverPoint for Virtual Machines Zero Day Attack
What is the Attack? The attack involves the threat cluster UNC6201 (a suspected China-nexus Advanced Persistent Threat (APT)) actively exploiting a critical zero-day vulnerability in Dell’s RecoverPoint for Virtual Machines platform. The flaw (CVE-2026-22769) stems from hard-coded credentials embedded within the appliance, allowing unauthenticated remote attackers to gain administrative access. Because RecoverPoint is a disaster…
-

Citizen Lab Finds Cellebrite Tool Used on Kenyan Activist’s Phone in Police Custody [email protected] (The Hacker News)
New research from the Citizen Lab has found signs that Kenyan authorities used a commercial forensic extraction tool manufactured by Israeli company Cellebrite to break into a prominent dissident’s phone, making it the latest case of abuse of the technology targeting civil society. The interdisciplinary research unit at the University of Toronto’s Munk School of…
-

Grandstream GXP1600 VoIP Phones Exposed to Unauthenticated Remote Code Execution [email protected] (The Hacker News)
Cybersecurity researchers have disclosed a critical security flaw in the Grandstream GXP1600 series of VoIP phones that could allow an attacker to seize control of susceptible devices. The vulnerability, tracked as CVE-2026-2329, carries a CVSS score of 9.3 out of a maximum of 10.0. It has been described as a case of unauthenticated stack-based buffer…
-

Critical Flaws Found in Four VS Code Extensions with Over 125 Million Installs [email protected] (The Hacker News)
Cybersecurity researchers have disclosed multiple security vulnerabilities in four popular Microsoft Visual Studio Code (VS Code) extensions that, if successfully exploited, could allow threat actors to steal local files and execute code remotely. The extensions, which have been collectively installed more than 125 million times, are Live Server, Code Runner, Markdown Preview Enhanced, andRead More
-
How to evaluate NGFW products to strengthen cybersecurity
Next-generation firewalls are critical tools in today’s evolving threat landscape. Learn how to evaluate and select an NGFW that will bolster your company’s cybersecurity posture.Read More
-

Cybersecurity Tech Predictions for 2026: Operating in a World of Permanent Instability [email protected] (The Hacker News)
In 2025, navigating the digital seas still felt like a matter of direction. Organizations charted routes, watched the horizon, and adjusted course to reach safe harbors of resilience, trust, and compliance. In 2026, the seas are no longer calm between storms. Cybersecurity now unfolds in a state of continuous atmospheric instability: AI-driven threats that adapt in…
-

Dell RecoverPoint for VMs Zero-Day CVE-2026-22769 Exploited Since Mid-2024 [email protected] (The Hacker News)
A maximum severity security vulnerability in Dell RecoverPoint for Virtual Machines has been exploited as a zero-day by a suspected China-nexus threat cluster dubbed UNC6201 since mid-2024, according to a new report from Google Mandiant and Google Threat Intelligence Group (GTIG). The activity involves the exploitation of CVE-2026-22769 (CVSS score: 10.0), a case of hard-coded…
-

3 Ways to Start Your Intelligent Workflow Program [email protected] (The Hacker News)
Security, IT, and engineering teams today are under relentless pressure to accelerate outcomes, cut operational drag, and unlock the full potential of AI and automation. But simply investing in tools isn’t enough. 88% of AI proofs-of-concept never make it to production, even though 70% of workers cite freeing time for high-value work as the primary…
-

Notepad++ Fixes Hijacked Update Mechanism Used to Deliver Targeted Malware [email protected] (The Hacker News)
Notepad++ has released a security fix to plug gaps that were exploited by an advanced threat actor from China to hijack the software update mechanism to selectively deliver malware to targets of interest. The version 8.9.2 update incorporates what maintainer Don Ho calls a “double lock” design that aims to make the update process “robust…
“Security used to be an inconvenience sometimes, but now it’s a necessity all the time.”
― Martina Navratilova
