Aggregator
U.S. CISA adds a flaw in Cisco Catalyst SD-WAN to its Known Exploited Vulnerabilities catalog
Cisco security advisory (AV26-471)
New Malware Framework Enables Screen Control, Browser Artifact Access, and UAC Bypass
A newly uncovered malware framework is raising serious alarms across the cybersecurity community. Researchers have identified a previously unknown implant called TencShell, a sophisticated tool capable of giving attackers full remote control over a compromised system. The discovery highlights how threat actors are quietly repurposing publicly available offensive tools to carry out targeted intrusions with […]
The post New Malware Framework Enables Screen Control, Browser Artifact Access, and UAC Bypass appeared first on Cyber Security News.
CVE-2026-44193 | OPNsense up to 26.1.6 XMLRPC opnsense.restore_config_section argument injection (GHSA-xxp9-93cr-x54p / WID-SEC-2026-1344)
CVE-2026-0989 | libxml2 RelaxNG Parser recursion (Nessus ID 296249 / WID-SEC-2026-0126)
CVE-2026-0992 | libxml2 resource consumption (Nessus ID 296249 / WID-SEC-2026-0126)
CVE-2026-0990 | libxml2 XML Parser xmlCatalogXMLResolveURI recursion (Nessus ID 296249 / WID-SEC-2026-0126)
ODNI taps officials to coordinate response to foreign election threats
Впервые в истории вооружённые четвероногие роботы пройдут боевые испытания в спецоперациях США
CVE-2026-6923 | Nuvoton NPCT7xx Elliptic Curve improper protection of physical side channels
node-ipc npm Package with 822K Weekly Downloads Compromised in Supply Chain Attack
A widely used JavaScript inter-process communication library has been weaponized again. Socket and Stepsecurity have confirmed that three newly published versions of node-ipc, a package with over 822,000 weekly downloads, contain obfuscated stealer and backdoor payloads, marking the second major supply chain compromise of this package since 2022. The affected versions are [email protected], [email protected], and […]
The post node-ipc npm Package with 822K Weekly Downloads Compromised in Supply Chain Attack appeared first on Cyber Security News.