Global

Attackers Exploit MLflow SSRF Vulnerability to Exfiltrate Cloud Credentials

Two critical vulnerabilities affecting MLflow, an open-source artificial intelligence (AI) platform, and FUXA, a web-based SCADA/HMI software, are currently being exploited by attackers. Reports...

Microsoft Copilot Personal Vulnerabilities Allow One-Click Data Exfiltration from Connected Apps

Varonis Threat Labs has identified three vulnerabilities in Microsoft Copilot Personal, collectively named CoSnitch, which could enable attackers to extract data from connected applications...

BlackFile Cybercrime Group Continues Targeting Financial Sector with New Extortion Demands

A cybercrime group known as BlackFile continues to target the financial sector, with reports indicating that it remains active and has been shifting its...

Heights Finance Data Breach Exposes Financial Information of Nearly 750,000 Customers

Cybercriminals breached the cloud system of Heights Finance, a debt consolidation loan company, in May, compromising sensitive financial information and personal data of approximately...

Snowflake GitHub Actions Vulnerability Allows Command Injection via Crafted Issues

Cybersecurity researchers at Wiz have disclosed a GitHub Actions workflow injection vulnerability in Snowflake's public snowflakedb/snowflake-connector-net repository. This vulnerability could be exploited through a...

Trump’s National Security Memo Authorizes Private Sector Involvement in Offensive Hacking Against Transnational Criminal Organizations

President Donald Trump has signed a national security memorandum that allows private sector companies to assist law enforcement in conducting offensive hacking operations against...

Flock Safety Implements Stricter Privacy Controls Following Misuse of License Plate Readers by Law Enforcement

The controversial license plate reader company Flock Safety is implementing new policies to address the misuse of its technology by law enforcement, following significant...

Enterprise Cyber Defenses Show Improvement at Perimeter but Struggle Internally, Reports Blue Report 2026

Enterprise defenses are showing notable improvements at the perimeter, but internal vulnerabilities remain a significant concern, according to the Blue Report 2026 by Picus...

Recent Articles

Cyber Warriors Conclave Chapter X — Beyond the Ballroom