Cyber Security

Cyber Security
Cyber Security

nmapUnleashed Makes Nmap Scanning More Comfortable and Effective

nmapunleashed-makes-nmap-scanning-more-comfortable-and-effective

nmapUnleashed Tool nmapUnleashed emerges as a powerful CLI wrapper enhancing Nmap’s capabilities for penetration testers and network auditors. Released in late January 2026 by developer Sharkeonix, this open-source tool streamlines complex scans while retaining full Nmap compatibility. nmapUnleashed, or “nu,” wraps Nmap to add multithreading, allowing up to customizable parallel scans (default 4 threads) for […]

Transparent Tribe Hacker Group Attacking Indias Startup Ecosystem

transparent-tribe-hacker-group-attacking-indias-startup-ecosystem

The threat landscape for India’s technology sector has taken an unexpected turn. A Pakistan-based hacking group called Transparent Tribe has shifted its focus from traditional government targets to the country’s vibrant startup ecosystem, particularly companies working in cybersecurity and intelligence domains. The group, also tracked as APT36, has been active since 2013 and now uses […]

CISA Orders Removal of Active Network Edge Devices to Reduce Security Risks

cisa-orders-removal-of-active-network-edge-devices-to-reduce-security-risks

CISA Removal of Edge Devices CISA has issued Binding Operational Directive (BOD) 26-02, ordering Federal Civilian Executive Branch (FCEB) agencies to eliminate “end of support” (EOS) edge devices from their networks. This directive, developed in coordination with the Office of Management and Budget (OMB), addresses the significant security risks posed by unsupported hardware that resides […]

Hackers Leveraging Windows Screensaver to Deploy RMM Tools and Gain Remote Access to Systems

hackers-leveraging-windows-screensaver-to-deploy-rmm-tools-and-gain-remote-access-to-systems

Cybersecurity threats are constantly evolving, and a recent campaign highlights a deceptive new tactic where attackers leverage Windows screensaver (.scr) files to compromise systems. This method allows threat actors to deploy legitimate Remote Monitoring and Management (RMM) tools, granting them persistent remote access while effectively bypassing standard security controls. By utilizing trusted software and cloud […]

Betterment Data Breach Exposes 1.4 million Customers Personal Details

betterment-data-breach-exposes-1.4-million-customers-personal-details

Betterment Data Breach Betterment has disclosed a social engineering–driven data breach that exposed personal information for approximately 1.4 million customer accounts, significantly expanding the fallout from a January 2026 security incident tied to fraudulent crypto scam messages. In early January 2026, Betterment, a leading automated investment and robo‑advisory platform, detected unauthorized access to systems used […]

Attackers Mimic RTO Challan Notifications to Deliver Android Malware

attackers-mimic-rto-challan-notifications-to-deliver-android-malware

A sophisticated Android malware campaign targeting Indian users has emerged, disguising itself as legitimate Regional Transport Office (RTO) challan notifications. The malicious applications are distributed outside the Google Play Store, primarily through WhatsApp and similar messaging platforms, exploiting user trust in government services. Threat actors send fake traffic violation alerts to victims, instructing them to […]

Beware of Weaponized Voicemail Messages that Allows Hackers to Remote Access to Your System

beware-of-weaponized-voicemail-messages-that-allows-hackers-to-remote-access-to-your-system

Cybercriminals are increasingly shifting tactics toward social engineering to bypass traditional security defenses, catching many users off guard. A sophisticated new campaign dubbed “Voicemail Trap” explicitly targets users with fake voicemail notifications designed to look like routine business communications. These messages often appear to come from trusted financial entities and use convincing German-language lures to […]

SystemBC Botnet Hijacked 10,000 Devices Worldwide to Use for DDoS Attacks

systembc-botnet-hijacked-10,000-devices-worldwide-to-use-for-ddos-attacks

The SystemBC malware family, a persistent threat first documented in 2019, has evolved into a massive botnet infrastructure controlling over 10,000 hijacked devices globally. Functioning primarily as a SOCKS5 proxy and a backdoor, this malware enables threat actors to mask their malicious traffic and maintain long-term access to compromised networks. By converting infected systems into […]

Chrome Vulnerabilities Let Attackers Execute Arbitrary Code and Crash System

chrome-vulnerabilities-let-attackers-execute-arbitrary-code-and-crash-system

Chrome Vulnerabilities Arbitrary Code Google has released a critical security update for the Chrome Stable channel, addressing two high-severity vulnerabilities that expose users to potential arbitrary code execution (ACE) and denial-of-service (DoS) attacks. The update pushes the browser version to 144.0.7559.132/.133 for Windows and macOS, and 144.0.7559.132 for Linux. The technology giant confirmed that the […]

GlassWorm Infiltrated VSX Extensions with More than 22,000 Downloads to Attack Developers

glassworm-infiltrated-vsx-extensions-with-more-than-22,000-downloads-to-attack-developers

GlassWorm has emerged as a serious threat to developers using the Open VSX Registry, where popular VSX extensions were silently turned into delivery vehicles for malware. Threat actors compromised a trusted publisher account and pushed poisoned updates that looked like routine releases but actually carried a staged loader. These extensions, which had more than 22,000 […]