Aggregator
OCRFix Botnet Trojan Leveraging ClickFix Phishing and EtherHiding to Conceal Blockchain-Based Command Infrastructure
A newly identified botnet trojan campaign, dubbed OCRFix, has been discovered combining social engineering tricks with blockchain-based command infrastructure to quietly build a network of compromised machines. The campaign blends the well-known ClickFix phishing technique with EtherHiding — a method that stores attacker instructions directly on a public blockchain, making takedowns nearly impossible. The attack […]
The post OCRFix Botnet Trojan Leveraging ClickFix Phishing and EtherHiding to Conceal Blockchain-Based Command Infrastructure appeared first on Cyber Security News.
ClawJacked Bug Enables Covert AI Agent Hijacking
CVE-2026-27904 | isaacs minimatch up to 10.2.2 redos (GHSA-23c5-xmqv-rm74 / Nessus ID 300147)
CVE-2026-25955 | FreeRDP up to 3.22.x xf_AppUpdateWindowFromSurface use after free (GHSA-4g54-x8v7-559x / Nessus ID 300148)
CVE-2026-3201 | Wireshark up to 4.4.13/4.6.3 USB HID Protocol Dissector improperly controlled sequential memory allocation (EUVD-2026-8660 / Nessus ID 300144)
CVE-2026-22206 | SPIP up to 4.4.9 sql injection (Nessus ID 300156)
CVE-2026-3172 | pgvector 0.6.0/0.7.0/0.8.0/0.8.1 integer underflow (Issue 959 / Nessus ID 300149)
CVE-2026-28295 | Red Hat Enterprise Linux 6/7/8/9/10 gvfs server-side request forgery (Nessus ID 300158)
CVE-2025-40932 | Grichter Apache::SessionX up to 2.01 on Perl Default Session ID Generator rand generation of predictable numbers or identifiers (Nessus ID 300157 / CNNVD-202602-4603)
CVE-2026-2765 | Mozilla Firefox up to 147 JavaScript Engine use after free (Nessus ID 299964 / WID-SEC-2026-0497)
CVE-2026-25941 | FreeRDP up to 2.11.7/3.22.x bitmapDataLength out-of-bounds (GHSA-3546-x645-5cf8 / Nessus ID 300163)
CVE-2026-27942 | NaturalIntelligence fast-xml-parser up to 5.3.7 buffer overflow (GHSA-fj3w-jwp8-x2g3 / EUVD-2026-8811)
CVE-2026-2766 | Mozilla Firefox up to 147 JIT use after free (Nessus ID 299964 / WID-SEC-2026-0497)
CVE-2026-2767 | Mozilla Firefox up to 147 WebAssembly use after free (Nessus ID 299895 / WID-SEC-2026-0497)
CVE-2026-27966 | langflow-ai langflow up to 1.7.x code injection (GHSA-3645-fxcv-hqr4 / WID-SEC-2026-0558)
6 Ways Agentic AI Changes How Systems Act and Adapt
UK reduces cyberattack fix times from two months to eight days
The UK government has launched a new vulnerability monitoring service (VMS) that promises to reduce the time needed to fix critical cyber weaknesses across the public sector. Scanning government systems for critical cyber flaws The service, launched as part of the Blueprint for Modern Digital Government, published in January 2025, continuously scans internet-facing systems at around 6,000 public sector organizations. Using commercial and proprietary tools, it detects about 1,000 types of cyber vulnerabilities. When a … More →
The post UK reduces cyberattack fix times from two months to eight days appeared first on Help Net Security.