• Cohere AI Terrarium Sandbox Flaw Enables Root Code Execution, Container Escape

    Cohere AI Terrarium Sandbox Flaw Enables Root Code Execution, Container Escape

    Cohere AI Terrarium Sandbox Flaw Enables Root Code Execution, Container Escape A critical security vulnerability has been disclosed in a Python-based sandbox called Terrarium that could result in arbitrary code execution with root privileges. The vulnerability, tracked as CVE-2026-5752, is rated 9.3 on the CVSS scoring system. Terrarium is developed by Cohere AI as an…

  • Mustang Panda’s New LOTUSLITE Variant Targets India Banks, South Korea Policy Circles

    Mustang Panda’s New LOTUSLITE Variant Targets India Banks, South Korea Policy Circles

    Mustang Panda’s New LOTUSLITE Variant Targets India Banks, South Korea Policy Circles Cybersecurity researchers have discovered a new variant of a known malware called LOTUSLITE that is distributed via a theme related to India’s banking sector. Acronis researchers Subhajeet Singha and Santiago Pontiroli said the backdoor communicates with a dynamic DNS-based command-and-control server over HTTPS…

  • Mirai Variant Nexcorium Exploits CVE-2024-3721 to Hijack TBK DVRs for DDoS Botnet

    Mirai Variant Nexcorium Exploits CVE-2024-3721 to Hijack TBK DVRs for DDoS Botnet

    Threat actors are exploiting security flaws in TBK DVR and end-of-life (EoL) TP-Link Wi-Fi routers to deploy Mirai-botnet variants on compromised devices, according to findings from Fortinet FortiGuard Labs and Palo Alto Networks Unit 42. The attack targeting TBK DVR devices has been found to exploit CVE-2024-3721 (CVSS score: 6.3), a medium-severity command injection vulnerability…

  • Researchers Detect ZionSiphon Malware Targeting Israeli Water, Desalination OT Systems

    Researchers Detect ZionSiphon Malware Targeting Israeli Water, Desalination OT Systems

    Cybersecurity researchers have flagged a new malware called ZionSiphon that appears to be specifically designed to target Israeli water treatment and desalination systems. The malware has been codenamed ZionSiphon by Darktrace, highlighting its ability to set up persistence, tamper with local configuration files, and scan for operational technology (OT)-relevant services on the local subnet. According…

  • Anthropic MCP Design Vulnerability Enables RCE, Threatening AI Supply Chain

    Anthropic MCP Design Vulnerability Enables RCE, Threatening AI Supply Chain

    Cybersecurity researchers have discovered a critical “by design” weakness in the Model Context Protocol’s (MCP) architecture that could pave the way for remote code execution and have a cascading effect on the artificial intelligence (AI) supply chain. “This flaw enables Arbitrary Command Execution (RCE) on any system running a vulnerable MCP implementation, granting attackers direct…

  • SGLang CVE-2026-5760 (CVSS 9.8) Enables RCE via Malicious GGUF Model Files

    SGLang CVE-2026-5760 (CVSS 9.8) Enables RCE via Malicious GGUF Model Files

    A critical security vulnerability has been disclosed in SGLang that, if successfully exploited, could result in remote code execution on susceptible systems. The vulnerability, tracked as CVE-2026-5760, carries a CVSS score of 9.8 out of 10.0. It has been described as a case of command injection leading to the execution of arbitrary code. SGLang is…

  • Bluesky Disrupted by Sophisticated DDoS Attack

    Bluesky Disrupted by Sophisticated DDoS Attack

    Bluesky, the decentralised microblogging social media platform, reported service outages last week due to a distributed denial-of-service (DDoS) attack aimed at its systems. The DDoS attack appears to have started late on April 15 (Pacific Time) and continued into the next day. The company described it as a sophisticated attack that caused intermittent app outages.…

  • Russian GRU Hackers Mass Harvest Microsoft Office Tokens from 18,000 Networks

    Russian GRU Hackers Mass Harvest Microsoft Office Tokens from 18,000 Networks

    Hackers linked to Russia’s military intelligence units are using known flaws in older Internet routers to mass harvest authentication tokens from Microsoft Office users, security experts warned today. The spying campaign allowed state-backed Russian hackers to quietly siphon authentication tokens from users on more than 18,000 networks without deploying any malicious software or code. Microsoft…

  • Microsoft Patches 167 Vulnerabilities Including SharePoint Zero-Day and BlueHammer

    Microsoft Patches 167 Vulnerabilities Including SharePoint Zero-Day and BlueHammer

    Microsoft today pushed software updates to fix a staggering 167 security vulnerabilities in its Windows operating systems and related software, including a SharePoint Server zero-day and a publicly disclosed weakness in Windows Defender dubbed “BlueHammer.” Redmond warns that attackers are already targeting CVE-2026-32201, a vulnerability in Microsoft SharePoint Server that allows attackers to spoof trusted…

  • Google Blocks 8.3 Billion Policy-Violating Ads in 2025, Launches Android 17 Privacy Overhaul

    Google Blocks 8.3 Billion Policy-Violating Ads in 2025, Launches Android 17 Privacy Overhaul

    Google this week announced a new set of Play policy updates to strengthen user privacy and protect businesses against fraud, even as it revealed it blocked or removed over 8.3 billion ads globally and suspended 24.9 million accounts in 2025. The new policy updates relate to contact and location permissions in Android, allowing third-party apps…