Application Security

Microsoft Configuration Manager SQL Injection Alert
Application Security
Microsoft Configuration Manager SQL Injection Alert
A SQL injection flaw in Microsoft Configuration Manager patched in October 2024 is currently exploited, posing a significant risk to unpatched systems, including businesses and ...
Integration of Criminal IP with IBM QRadar Enhancing IP Threat Intelligence
Application Security
Integration of Criminal IP with IBM QRadar: Enhancing IP Threat Intelligence
Security operations centers (SOC) can enhance their threat detection capabilities with the integration of IP-based intelligence from Criminal IP into IBM's QRadar. This integration offers ...
Ivanti Endpoint Manager Mobile Critical Vulnerabilities Exploited by a Single Threat Actor
Application Security
Ivanti Endpoint Manager Mobile Critical Vulnerabilities Exploited by a Single Threat Actor
Cybersecurity experts have identified a single threat actor responsible for exploiting critical vulnerabilities in Ivanti Endpoint Manager Mobile. These vulnerabilities, CVE-2026-21962 and CVE-2026-24061, are actively ...
Dangerous Chrome Extensions Leak Personal Data and Track Users
Application Security
Dangerous Chrome Extensions Leak Personal Data and Track Users
A recent investigation revealed that over 300 Chrome extensions, collectively downloaded more than 37 million times, are involved in leaking or stealing user data. These ...
Google Groups Exploited in Lumma Stealer Malware Campaign
Application Security
Google Groups Exploited in Lumma Stealer Malware Campaign
Attackers are using Google Groups to distribute Lumma Stealer malware, targeting credentials across Windows and Linux platforms. They exploit Google services, deploying trojanized "Ninja Browser" ...
Texas-Based Financial Services Provider Marquis Cites SonicWall Breach for Ransomware Incident
Application Security
Texas-Based Financial Services Provider Marquis Cites SonicWall Breach for Ransomware Incident
Marquis Software Solutions suffered a ransomware attack in August 2025, impacting multiple banks. Rolling out explanations, the company attributes this compromise to a security flaw ...
The DockerDash Vulnerability Understanding Its Impact on Docker Desktop and CLI
Application Security
The DockerDash Vulnerability: Understanding Its Impact on Docker Desktop and CLI
Researchers recently identified a critical flaw named DockerDash in Ask Gordon. This AI assistant, integrated into Docker Desktop and CLI, exposed users to risks of ...
Malicious VS Code Extensions Spread GlassWorm Loader
Application Security
Malicious VS Code Extensions Spread GlassWorm Loader
Hackers hijacked an account to publish harmful VS Code extensions, distributing the GlassWorm malware loader. This compromised open-source repositories impacting numerous users by embedding malicious ...
Microsoft's Strategy to Eliminate NTLM in Favor of Kerberos
Application Security
Microsoft’s Strategy to Eliminate NTLM in Favor of Kerberos
Microsoft outlines its plan to discontinue NTLM, pushing for Kerberos-based solutions due to NTLM's vulnerability to attacks. Their strategy aims at enhanced security for Windows ...
Firefox Introduces Options to Control AI Features
Application Security
Firefox Introduces Options to Control AI Features
Mozilla is responding to user concerns by allowing control over AI features in Firefox's next update. Users can choose to disable these features entirely or ...