The Vidar 2.0 infostealers is deployed through fake free game cheats on GitHub and Reddit
cyberintel.kalymoon.com · 54441 articles · updated every 4 hours · grows forever
The Vidar 2.0 infostealers is deployed through fake free game cheats on GitHub and Reddit
Gartner has urged security teams to get involved in AI projects from the start to avoid costly incident response
A newly updated version of the Vidar infostealer, dubbed Vidar 2.0, is actively spreading through hundreds of fake game cheat repositories on GitHub and targeted posts on Reddit. The malware disguises…
A fake Telegram download website is actively pushing dangerous malware onto unsuspecting users by disguising a malicious installer as a legitimate setup file. The site, hosted at the domain telegrgam[…
A well-resourced Iranian nation-state group known as Boggy Serpens — also tracked as MuddyWater — has sharply escalated its cyberespionage operations, running sustained and targeted campaigns against …
A new wave of targeted attacks is quietly hitting Argentina’s judicial system, using fake court documents to lure legal professionals into installing a dangerous piece of malware. The campaign, formal…
Microsoft has temporarily halted the automatic installation of the Microsoft 365 Copilot app on Windows devices. According to a recent update in the Microsoft 365 Message Center on March 16, 2026, the…
A high-severity Windows vulnerability dubbed “RegPwn” (CVE-2026-24291) is an elevation-of-privilege flaw that allows low-privileged users to gain full SYSTEM access. The MDSec red team discovered the …
A vulnerability, which was classified as problematic , has been found in Bee Content Design Befree SDK up to 3.46.x . Affected by this vulnerability is an unknown functionality of the component Conten…
A vulnerability classified as critical was found in Linux Kernel up to 6.19.3 . Affected is the function ib_create_send_mad . Executing a manipulation can lead to out-of-bounds read. This vulnerabilit…
A vulnerability classified as critical has been found in Linux Kernel up to 6.18.16/6.19.6/7.0-rc1 . This impacts the function mmap of the component perf . Performing a manipulation results in use aft…
A vulnerability described as critical has been identified in Linux Kernel up to 6.12.76/6.18.16/6.19.6/7.0-rc1 . This affects the function ieee80211_ml_reconfiguration of the component wifi . Such man…
A vulnerability marked as critical has been reported in Linux Kernel up to 6.19.3 . The impacted element is the function siw_get_hdr of the component RDMA . This manipulation causes null pointer deref…
A vulnerability labeled as critical has been found in Linux Kernel up to 6.19.5 . The affected element is the function run_unpack of the component ntfs3 . The manipulation results in denial of service…
A vulnerability identified as problematic has been detected in Linux Kernel up to 6.18.16/6.19.6/7.0-rc2 . Impacted is the function siphash of the component tcp . The manipulation leads to algorithm d…
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.18.17/6.19.7/7.0-rc2 . This issue affects the function call_rcu . Executing a manipulation can lead to state issue. …
A vulnerability was found in Linux Kernel up to 6.19.5 . It has been rated as critical . This vulnerability affects the function ntfs_load_attr_list of the component ntfs3 . Performing a manipulation …
A vulnerability was found in Linux Kernel up to 6.12.76/6.18.16/6.19.6/7.0-rc2 . It has been declared as critical . This affects the function nvme_pr_read_keys . Such manipulation of the argument num_…
A vulnerability was found in Linux Kernel up to 6.19.5 . It has been classified as critical . Affected by this issue is the function indx_find of the component ntfs3 . This manipulation causes denial …
A vulnerability was found in WebberZone Contextual Related Posts Plugin up to 4.2.1 on WordPress and classified as problematic . Affected by this vulnerability is an unknown functionality. The manipul…
A vulnerability has been found in Yoast Duplicate Post Plugin up to 4.5 on WordPress and classified as critical . Affected is the function clone_bulk_action_handler/republish_request of the component …
A vulnerability, which was classified as critical , was found in langflow-ai Langflow up to 1.8.1 . This impacts an unknown function of the component Public Flow Build Endpoint . Executing a manipulat…
A vulnerability, which was classified as problematic , has been found in parse-server . This affects an unknown function of the component Deep Copy . Performing a manipulation results in improperly co…