Recent Advisories

Severity ID Title Vendor Product Date Type
NONE HACKREAD:A576A6...

New Linux FIRESTARTER Backdoor Targets Cisco Firepower Devices_HACKREAD:A576A6DCE10819198AD4D16B3E724296

CISA and NCSC warn that FIRESTARTER, a Linux-based backdoor, targets Cisco Firepower devices, evades patches, and enables persistent access even af...

N/A N/A HACKREAD
NONE HACKREAD:1E57F8...

82 Chrome Extensions Found Selling User Data, 6.5 Million Users Affected_HACKREAD:1E57F83EDCACBD23006604A6BA9CC959

LayerX research finds 82 Chrome extensions collecting and selling user data, affecting at least 6.5 million users through disclosed but concerning ...

N/A N/A HACKREAD
NONE HACKREAD:3577F6...

ShinyHunters Leaks Data of Udemy, Zara, 7-Eleven in Salesforce Linked Breach_HACKREAD:3577F6BC991C134C33B7070C557F40A5

ShinyHunters has leaked data linked to Udemy, Zara, and 7-Eleven, with claims of exposed Salesforce records and cloud-based systems.

N/A N/A HACKREAD
NONE HACKREAD:4F48A0...

UNC6692 Hackers Exploit Microsoft Teams to Deploy SNOW Malware_HACKREAD:4F48A0B03C1A78B478FDC62EE4ABFD31

UNC6692 hackers exploit Microsoft Teams with fake IT alerts to deploy SNOW malware, steal credentials, and breach corporate networks in advanced at...

N/A N/A HACKREAD
NONE HACKREAD:ADD6A1...

Vidar Infostealer Spreads via Fake CAPTCHAs, Hides in JPEG and TXT Files_HACKREAD:ADD6A1386367506A68337CD15E47F850

New version of Vidar infostealer spreads via fake CAPTCHAs, hides in JPEG and TXT files, uses fileless attacks and steals browser, crypto wallet data.

N/A N/A HACKREAD
NONE HACKREAD:5B076F...

Microsoft Entra Agent ID Flaw Enabled Tenant Takeover via Privilege Escalation_HACKREAD:5B076F517434705A09C4B6F1C2239E8B

Microsoft Entra Agent ID flaw allowed privilege escalation and tenant takeover via Service Principal abuse, now fully patched by Microsoft.

N/A N/A HACKREAD
NONE HACKREAD:EB4F48...

Fake CAPTCHA Scam Abuses Verification Clicks to Send Costly International Texts_HACKREAD:EB4F4887F83C6F666D60C204D309EE45

Research from Infoblox reveals a massive Click2SMS fraud scheme using fake CAPTCHAs and back button hijacking to trick victims into sending costly ...

N/A N/A HACKREAD
NONE HACKREAD:B59EAF...

New ClickFix attack Hides in Native Windows Tools to Reduce Detection Risk_HACKREAD:B59EAF523F4AEC122600E797A6C04252

Fake CAPTCHA ClickFix attack tricks users into running malicious commands, using cmdkey and regsvr32 to maintain persistence and avoid detection on...

N/A N/A HACKREAD
NONE HACKREAD:03F7A1...

TeamPCP Hijacks Bitwarden CLI, Uses Dependabot to Deploy Shai-Hulud Malware_HACKREAD:03F7A1D53D00E2E2AFB58F3F52B8742B

GitGuardian uncovers TeamPCP attack on Bitwarden CLI, abusing GitHub Dependabot to spread Shai-Hulud and poison AI coding tools.

N/A N/A HACKREAD
NONE HACKREAD:1EAC98...

French Police Arrest HexDex Hacker Over Mass Data Theft and Leaks_HACKREAD:1EAC9850EF673726304D3F0C9B7C71BD

French police arrest HexDex hacker, a 20-year-old suspect accused of mass data theft and leaks targeting government, sports groups, and firms.

N/A N/A HACKREAD