Critical Security Flaw in GiveWP Donation Plugin Exposes 100,000+ WordPress Sites to RCE Attacks
A severe vulnerability in the GiveWP Donation Plugin, tracked as CVE-2025-0912, has put over 100,000…
Google’s March 2025 Android Security Update Patches Two Actively Exploited Flaws
Google has released the March 2025 Android Security Bulletin, addressing 44 vulnerabilities, including two that…
Trigon: A Newly Unveiled Exploit Targeting an iOS 0-Day Kernel Vulnerability
Security researchers have unveiled a sophisticated new kernel exploit targeting Apple iOS devices, named Trigon.…
Mozilla Revises Firefox Terms Again Following Backlash Over Data License Wording
Mozilla, the maker of the Firefox browser, updated its Terms of Use for the second…
DeepSeek Data Leak: 12,000 Hardcoded API Keys and Passwords Exposed
A recent analysis revealed 11,908 active DeepSeek API keys, passwords, and authentication tokens embedded in…
Bybit Hack Linked to Safe{Wallet} Supply Chain Attack Exploited by North Korean Cybercriminals
The U.S. Federal Bureau of Investigation (FBI) has officially attributed the record-breaking $1.5 billion Bybit…
Millions of WordPress Sites at Risk Due to Plugin Script Injection Vulnerability
A critical security flaw in the Essential Addons for Elementor plugin (CVE-2025-24752) has exposed over…
FatalRAT Phishing Campaign Hits APAC Industries via Chinese Cloud Platforms
Industrial organizations across the Asia-Pacific (APAC) region have been targeted in phishing attacks aimed at…
Australia Bans Kaspersky Software Over National Security Concerns
The Australian government has ordered the removal of all Kaspersky Lab software and web services…
Sophisticated Phishing Campaign Exploits ADFS to Bypass MFA
A newly discovered phishing campaign is actively targeting organizations that rely on Microsoft’s Active Directory…