Latest security news
- Malicious Twitch Extension Exposes 31,000 Users' OAuth Tokens
- Human Attacker Hits Machine-Speed Exploitation of Marimo RCE
- Defense Cyber Spending Set to Surge Amid Rising Attacks on Military Systems
- ENISA launched the CRA Single Reporting Platform for actively exploited vulnerabilities
- Revolut Confirms Data Breach Through Fake Government Requests
- Hackers Exploit Maximum Severity Flaw in GitLab
- OpenAI Agent Swarm Hacks RubyGems Package Manager
- WhatsApp Restricted Chat locks a conversation to your primary phone
- Debian 13.7 ships the fixes behind 92 security advisories, updates 106 packages
- What we know about the Revolut data breach so far
- Turn it off and on again, but for critical infrastructure
- Permify: Open-source authorization as a service
- Hackers Favor US Eastern Business Hours in M365 Phishing Campaign
- Most Organizations Skip Permissions Reviews Before Deploying AI Tools
- CISA Updates Insider Threat Guide With New Mitigation Advice
- MantaxOtax Android Malware Combines Ransomware With Spyware
- FBI Publishes First-Ever Cyber Strategy, With Focus on Disrupting Threat Actors
- Anthropic Reveals Yet Another Cybersecurity Incident
- OFAC Sanctions Chinese Scam Platform Xinbi Guarantee
- Researchers Build WeChat Zero-Click Worm Hijacking Phones via Calls
- Gigabud Uses Android App Cloning to Evade Fraud Detection
Socket has discovered a Twitch browser extension forwarding users' OAuth tokens to a Russian bot service
(C) Do-Know.com (http://do-know.com/). Do not copy without permission from info at do-know.com.