A vulnerability was found in gleam-wisp wisp up to 2.2.1 and classified as problematic . Affected is the function multipart_body . Such manipulation leads to allocation of resources. This vulnerabilit…
cyberintel.kalymoon.com · 47865 articles · updated every 4 hours · grows forever
A vulnerability was found in gleam-wisp wisp up to 2.2.1 and classified as problematic . Affected is the function multipart_body . Such manipulation leads to allocation of resources. This vulnerabilit…
A vulnerability was found in MB connect line mbCONNECT24 and mymbCONNECT24 up to 2.19.4 . It has been classified as critical . Affected by this vulnerability is an unknown functionality of the compone…
A vulnerability was found in MB connect line mbCONNECT24 and mymbCONNECT24 up to 2.19.4 . It has been declared as critical . Affected by this issue is some unknown functionality of the component Setin…
A vulnerability was found in MB connect line mbCONNECT24 and mymbCONNECT24 up to 2.19.4 . It has been rated as critical . This affects an unknown part of the component mb24api Endpoint . The manipulat…
A vulnerability categorized as problematic has been discovered in MB connect line mbCONNECT24 and mymbCONNECT24 up to 2.19.4 . This vulnerability affects unknown code of the component Configuration Fi…
A vulnerability identified as critical has been detected in Dataease SQLbot up to 1.6.0 . This issue affects the function get_es_data_by_http of the file backend/apps/db/es_engine.py of the component …
A vulnerability labeled as critical has been found in appsmithorg appsmith up to 1.97 . Impacted is the function computeDisallowedHosts of the file app/server/appsmith-interfaces/src/main/java/com/app…
A vulnerability marked as problematic has been reported in Shinrays Games Goods Triple App up to 1.200 . The affected element is an unknown function of the file jRwTX.java of the component cats.goods.…
A new malware campaign is actively using WhatsApp to deliver harmful files directly to Windows users, exploiting the widespread trust placed in everyday messaging apps. The threat actors send maliciou…
Microsoft’s terms of service for its Copilot AI assistant include a notable disclaimer that has sparked renewed scrutiny from security and enterprise communities: the product is intended solely for en…
TA416 has returned to Europe with a fresh wave of espionage emails aimed at government and diplomatic staff. The campaign mixes quiet reconnaissance with malware delivery, showing how a patient threat…
Millions of Americans use mobile apps daily without thinking much about where their data actually goes. The Federal Bureau of Investigation has stepped forward to address that. On March 31, 2026, the …
A newly discovered critical vulnerability in the widely used PX4 Autopilot software could allow malicious actors to take complete control over drone operations. The Cybersecurity and Infrastructure Se…
Oracle has executed a massive workforce reduction, eliminating between 20,000 and 30,000 employees globally to free up cash flow for its aggressive artificial intelligence infrastructure investments. …
Cisco has issued an urgent security warning regarding a critical vulnerability in its Smart Software Manager On-Prem (SSM On-Prem) platform. Enterprise organizations widely use this tool to manage the…
Meta has officially alerted approximately 200 WhatsApp users, primarily located in Italy, that their devices were compromised by a weaponized, fraudulent version of the messaging application. This mal…
The OWASP Zed Attack Proxy (ZAP) team has rolled out version 0.3.0 of the OWASP PenTest Kit (PTK) add-on, introducing a transformative workflow upgrade for application security testing. This new relea…
Apple has taken the rare step of expanding the availability of iOS 18.7.7 and iPadOS 18.7.7 to a broader set of devices on April 1, 2026, pushing critical backported security patches to millions of us…
E2e-assure says 80% of critical infrastructure providers could face millions in downtime from cyber-attacks
AI is rapidly changing how software is written, deployed, and used. Trends point to a future where AIs can write custom software quickly and easily: “instant software.” Taken to an extreme, it might b…
Variance has raised a total of $26 million in funding and the latest investment will fuel platform growth. The post Variance Raises $21.5M for Compliance Investigation Platform Powered by AI Agents ap…
The malware can spy on victims, steal their information, and make configuration changes on devices. The post Sophisticated CrystalX RAT Emerges appeared first on SecurityWeek .
The AI recruiting firm is investigating the incident as Lapsus$ claimed the theft of 4TB of Mercor data. The post Mercor Hit by LiteLLM Supply Chain Attack appeared first on SecurityWeek .
In January 2026, a threat actor hacked the hospital’s internal network and stole personal and health information. The post 250,000 Affected by Data Breach at Nacogdoches Memorial Hospital appeared fir…