proxyblue.yourcyber.news

  • China-Linked UAT-8099 Targets IIS Servers in Asia with BadIIS SEO Malware

    China-Linked UAT-8099 Targets IIS Servers in Asia with BadIIS SEO Malware

    Cybersecurity researchers have discovered a new campaign attributed to a China-linked threat actor known as UAT-8099 that took place between late 2025 and early 2026.
    The activity, discovered by Cisco Talos, has targeted vulnerable Internet Information Services (IIS) servers located across Asia, but with a specific focus on targets in Thailand and Vietnam. The scale of the campaign is currently
    January 30, 2026
  • Badges, Bytes and Blackmail

    Badges, Bytes and Blackmail

    Behind the scenes of law enforcement in cyber: what do we know about caught cybercriminals? What brought them in, where do they come from and what was their function in the crimescape?

    Introduction: One view on the scattered fight against cybercrime
    The growing sophistication and diversification of cybercrime have compelled law enforcement agencies worldwide to respond through increasingly

    January 30, 2026
  • Ex-Google Engineer Convicted for Stealing 2,000 AI Trade Secrets for China Startup

    Ex-Google Engineer Convicted for Stealing 2,000 AI Trade Secrets for China Startup

    A former Google engineer accused of stealing thousands of the company’s confidential documents to build a startup in China has been convicted in the U.S., the Department of Justice (DoJ) announced Thursday.
    Linwei Ding (aka Leon Ding), 38, was convicted by a federal jury on seven counts of economic espionage and seven counts of theft of trade secrets for taking over 2,000 documents containing
    January 30, 2026
  • SmarterMail Fixes Critical Unauthenticated RCE Flaw with CVSS 9.3 Score

    SmarterMail Fixes Critical Unauthenticated RCE Flaw with CVSS 9.3 Score

    SmarterTools has addressed two more security flaws in SmarterMail email software, including one critical security flaw that could result in arbitrary code execution.
    The vulnerability, tracked as CVE-2026-24423, carries a CVSS score of 9.3 out of 10.0.
    “SmarterTools SmarterMail versions prior to build 9511 contain an unauthenticated remote code execution vulnerability in the ConnectToHub API
    January 30, 2026
  • Two Ivanti EPMM Zero-Day RCE Flaws Actively Exploited, Security Updates Released

    Two Ivanti EPMM Zero-Day RCE Flaws Actively Exploited, Security Updates Released

    Ivanti has rolled out security updates to address two security flaws impacting Ivanti Endpoint Manager Mobile (EPMM) that have been exploited in zero-day attacks, one of which has been added by the U.S. Cybersecurity and Infrastructure Security Agency (CISA) to its Known Exploited Vulnerabilities (KEV) catalog.
    The critical-severity vulnerabilities are listed below –

    CVE-2026-1281 (CVSS score:

    January 29, 2026
  • Chinese APTs Hacking Asian Orgs With High-End Malware

    Chinese APTs Hacking Asian Orgs With High-End Malware

    Advanced persistent threat (APT) groups have deployed new cyber weapons against a variety of targets, highlighting the increasing threats to the region.
    January 29, 2026
  • Trump Administration Rescinds Biden-Era SBOM Guidance

    Trump Administration Rescinds Biden-Era SBOM Guidance

    Federal agencies will no longer be required to solicit software bills of material (SBOMs) from tech vendors, nor attestations that they comply with NIST’s Secure Software Development Framework (SSDF). What that means long term is unclear.
    January 29, 2026
  • More Critical Flaws on n8n Could Compromise Customer Security

    More Critical Flaws on n8n Could Compromise Customer Security

    A new around of vulnerabilities in the popular AI automation platform could let attackers hijack servers and steal credentials.
    January 29, 2026
  • Researchers Find 175,000 Publicly Exposed Ollama AI Servers Across 130 Countries

    Researchers Find 175,000 Publicly Exposed Ollama AI Servers Across 130 Countries

    A new joint investigation by SentinelOne SentinelLABS, and Censys has revealed that the open-source artificial intelligence (AI) deployment has created a vast “unmanaged, publicly accessible layer of AI compute infrastructure” that spans 175,000 unique Ollama hosts across 130 countries.
    These systems, which span both cloud and residential networks across the world, operate outside the
    January 29, 2026
  • ‘Semantic Chaining’ Jailbreak Dupes Gemini Nano Banana, Grok 4

    ‘Semantic Chaining’ Jailbreak Dupes Gemini Nano Banana, Grok 4

    If an attacker splits a malicious prompt into discrete chunks, some large language models (LLMs) will get lost in the details and miss the true intent.
    January 29, 2026
1 2 3 … 27
Next Page→

proxyblue.yourcyber.news

  • Blog
  • About
  • FAQs
  • Authors
  • Events
  • Shop
  • Patterns
  • Themes

Twenty Twenty-Five

Designed with WordPress