Saturday , June 20 2026

Alert

270M iPhones Vulnerable to ‘DarkSword’ Exploit
270m iPhones Vulnerable to ‘DarkSword’ Exploit: Hack code now on GitHub

iPhone

The iPhone is said as one of the safest smartphones now, but like Android phones, it has been attacked by hackers who use various flaws. Last week, a cybersecurity expert found a hacking scheme aimed at iPhone users using a tool named DarkSword. Now, someone has uploaded a new version of …

Read More »

ALERT
CISA warns to patch DarkSword iOS flaws exploited in attacks

flaws

An urgent warning about three important Apple flaws that are being used by hackers. These security flaws, known as CVE-2025-31277, CVE-2025-43510, and CVE-2025-43520, were added to CISA’s list of Known Exploited Vulnerabilities (KEV). Security experts have connected this group of three flaws to the advanced DarkSword iOS attack method. Hackers …

Read More »

ALERT
Abuse of Microsoft Azure Monitor for Sending Phishing Emails from Real Addresses

Azure Monitor

Microsoft Azure Monitor is being misused in a new phishing scheme that makes bad emails seem real. Attackers are using the service to send back phishing emails that look like real Microsoft security warnings. Threat actors are pretending to be the Microsoft Security Team in fake billing emails. These emails …

Read More »

CISA Alerts Apple, Craft CMS, Laravel Bugs in KEV, Patching Deadline by April 3

CISA

U.S. Cybersecurity and Infrastructure Security Agency (CISA) added five security problems affecting Apple, Craft CMS, and Laravel Livewire to its Known Exploited Vulnerabilities (KEV) list on Friday. They are telling federal agencies to fix these issues by April 3, 2026. The vulnerabilities that have come under exploitation are listed below:  …

Read More »

CVE-2026-20131
Interlock Ransomware gang exploits Cisco FMC zero-day since January

Interlock ransomware

The Interlock ransomware group has been exploiting a remote code execution (RCE) flaw in Cisco’s Secure Firewall Management Center (FMC) software in zero-day attacks since late January. Cisco fixed the security issue (CVE-2026-20131) on March 4. They warned that this flaw could let attackers run any Java code as root …

Read More »

Bishop Fox Unveils Critical Pre-Auth SQL Injection in FortiClient EMS

Bishop Fox

Cybersecurity experts at Bishop Fox have unveiled an in-depth look at a critical vulnerability in FortiClient EMS, which is Fortinet’s central tool for managing endpoint security. This issue lets an attacker who is not logged in run any SQL commands, which could completely take over the management server and its …

Read More »

ALERT
BGD CIRT warn of Botnet, APT, RAT and Malware attack during holidays

holidays

Bangladesh is preparing for a nationwide Eid holiday; on the contrary a different kind of “celebration” is occurring in the dark corners of the web. While most professionals are logging off for a well-deserved break, automated scripts are just getting started, scanning for “digital silence.” According to cyber security alert …

Read More »

Google Alert Zero-Day For 3.5 billion Chrome Users: Forbes

zero-day

Google has released a second Chrome security update just 48 hours after the first, confirming two zero-day vulnerabilities that are being actively exploited. Google has issued an urgent security update for two zero-day vulnerabilities, CVE-2026-3909 and CVE-2026-3910. Google Confirms CVE-2026-3909 And CVE-2026-3910 are already being exploited. Although full access to the …

Read More »

ALERT
Apple Unveils Emergency Updates For iOS 15.8.7 to Block ‘Coruna’ Exploit Kit

iOS 15.8.7

Apple released an urgent security update, iOS 15.8.7 and iPadOS 15.8.7, to safeguard older devices from the serious ‘Coruna’ exploit kit threat. On March 11, 2026, a critical patch was released that brings fixes from newer iOS versions to protect users of older devices from cyberattacks. The Coruna exploit kit targets …

Read More »