top of page
download (5).jpg

Malware Tracker

ransomware_tracker.jpg

Ransomware Tracker

C45_Malware_reports.jpg

Malware Reports

Copilot_20260522_174601.png

cyber45 IntelStream

IP-blacklist-300x300_edited_edited_edite

IP Blacklist Check

Latest NEWS

Attackers Exploit Critical Switchvox Flaw to Deploy Reverse Shells Without Credentials

Threat actors are exploiting a severe security vulnerability in Sangoma Switchvox, an enterprise VoIP platform, that could allow unauthenticated remote code execution.

The vulnerability in question is CVE-2026-9586 (CVSS score: 9.3), a critical unauthenticated SQL injection vulnerability in Sangoma Switchvox SMB Edition 8.3 (104997) that can allow attackers to remotely execute arbitrary code as

2 September 2026

From:

info@thehackernews.com (The Hacker News) [The Hacker News]

Critical Langflow Flaw Exploited as Attacks on AI Platform Rise

The attacks targeting CVE-2026-0768 are the latest threat against the low-code AI development platform, which is receiving more attention from adversaries this year.

2 September 2026

From:

Rob Wright [darkreading]

The Guardrails Debate: Security Researcher Changes His Mind

While guardrails are critical, as evidenced by recent high-profile incidents, defenders need help staying ahead of attackers who do not play by the rules.

2 September 2026

From:

Arielle Waldman [darkreading]

Student Loan Breach Exposes 2.5M Records

2.5 million people were affected, in a breach that could spell more trouble down the line.

2 September 2026

From:

Nate Nelson [Threatpost]

Mirage Kitten targeting aviation and FinTech sectors across the Middle East and Africa with a new malware set

Kaspersky researchers have discovered new Mirage Kitten attacks using previously undocumented malware families: NodeRabbit in Node.js and PollCat in JavaScript.

2 September 2026

From:

Omar Amin [Securelist]

ValleyRAT masquerading as adware

Threat actors are distributing the ValleyRAT backdoor disguised as adware. We analyze the infection chain, from the malicious installer to the final payload.

2 September 2026

From:

Pavel Bukhtenko [Securelist]

Breeze Comet Executes Hundreds of Fraudulent Transactions via Brazilian Payment Systems

Brazilian financial services, retail, and e-commerce organizations have become the target of a financially motivated threat actor dubbed Breeze Comet (formerly UNC5669) since 2024.

Google Threat Intelligence Group (GTIG) and Mandiant teams described the threat actor as "specializing in manipulating payment systems and banking software in Brazil to conduct fraudulent transfers." The adversary

2 September 2026

From:

info@thehackernews.com (The Hacker News) [The Hacker News]

13 Malicious Packagist Packages Target Unpatched iPhones to Steal Crypto Wallet Seeds

Cybersecurity researchers have identified a set of 13 malicious Composer theme packages on Packagist that are designed to inject JavaScript into Vietnamese movie and comic streaming sites that install those libraries and initiate the deployment of spyware aimed at unpatched iOS devices.

"The injected code runs two operations against a site's visitors: a mobile ad-fraud and gambling-redirect

2 September 2026

From:

info@thehackernews.com (The Hacker News) [The Hacker News]

iPhone Users Urged to Update to Patch 2 Zero-Days

Separate fixes to macOS and iOS patch respective flaws in the kernel and WebKit that can allow threat actors to take over devices and are under attack.

2 September 2026

From:

Elizabeth Montalbano [Threatpost]

Fake Reservation Links Prey on Weary Travelers

Fake travel reservations are exacting more pain from the travel weary, already dealing with the misery of canceled flights and overbooked hotels.

2 September 2026

From:

Nate Nelson [Threatpost]

bottom of page