The Quick Page/Post Redirect plugin, installed on more than 70,000 WordPress sites, had a backdoor added five years ago that ...
Over 750,000 websites require patching following discovery of DotNetNuke XSS vulnerability ...
GlassWorm, a known malware, has put 73 harmful extensions into OpenVSX's registry. Hackers use it to steal developers' crypto ...
A new wave of the Glassworm campaign is targeting the OpenVSX ecosystem with 73 "sleeper" extensions that turn malicious ...
Google has analyzed AI indirect prompt injection attempts involving sites on the public web and noticed an increase in ...
A person wearing black gloves paints a translucent paste on the face of a person who lies back in a chair. Chemical peels are a popular skin-care treatment with a growing market. Credit: Alamy ...
IntroductionOn March 12, 2026, Zscaler ThreatLabz discovered a malicious ZIP archive containing military-themed document lures targeting Chinese-speaking individuals. Our analysis of this sample ...
Cybersecurity researchers have discovered a new campaign in which a cluster of 108 Google Chrome extensions has been found to communicate with the same command-and-control (C2) infrastructure with the ...
Yuancheng Ryan Lu could barely breathe while he waited for his labmate to adjust the microscope focus. On the slide in front of them were the results of Lu’s latest attempt to turn back time for ...
A North Korean cyberattack that last Monday briefly hijacked one of the most widely used open source projects on the web took weeks to carry out as part of a long-running campaign to target the code’s ...
A vulnerability named ‘AI Agent Traps’ allows attackers to manipulate, deceive, and exploit visiting agents via malicious web content. Malicious web content can be used to manipulate, deceive, and ...