Tuesday , September 8 2026

Alert

“City-Forum” Campaign
“City-Forum” Campaign Attacks Salesforce and ServiceNow Instances Worldwide

Salesforce

A data theft plan is stealing information from anonymous users on Salesforce Experience Cloud and ServiceNow customer portals using special tools. The data theft campaign, called City-Forum by the software security company Reco, comes from one server that has attacked many groups around the world. These groups include phone companies, banks, …

Read More »

Palo Alto Patches 11 New flaws Across PAN-OS, GlobalProtect, and Prisma Access

Palo Alto Networks shared its security bulletin revealing 11 new issues that impact PAN-OS, the GlobalProtect App, Prisma Access Agent, and Prisma Browser. There is also a monthly update for Chromium. The patch batch covers flaws with information leaks, getting extra system rights, buffer overflow, skipping certificate checks, and bypassing …

Read More »

Bangladeshi org listed “the Gentlemen’ ransomware victim list: CIRT warns

Gentlemen

The gentlemen ransomware group targets various industries of Bangladesh. In an advisory Bangladesh e-Government Computer Incident Response Team (BGD e-GOV CIRT) warned that the ransomware operates under a Ransomware-as-a-Service (RaaS) model and is capable of rapidly spreading across corporate networks, encrypting Windows and Linux systems, network storage devices and VMware …

Read More »

Google Chrome 151 Update Fixes 41 Flaws, 6 Critical

Google has launched Chrome version 151.0.7922.108/.109 for Windows and macOS, and version 151.0.7922.108 for Linux. This update brings 41 security fixes for different parts of the browser, such as rendering, graphics, JavaScript, user interface (UI), media, and authentication. Google Chrome 151 Update The update fixes six serious memory issues. Five …

Read More »

TP-Link RCE and SonicWall Zero-Click Flaws Enable Complete Device Compromise

AI generated

TP-Link has shared a security warning about a serious problem with its TL-WR940N V6 wireless router. This problem, known as CVE-2026-12935, might let attackers who haven’t logged in cause a denial-of-service issue or run their code on affected devices in some situations. According to TP-Link, the vulnerability is caused by …

Read More »