Shwapno said that hackers got into its customer database and want a ransom of $1.5 million, which is over Tk 18.3 crore. The news came out after customer names, phone numbers, and buying histories started appearing on social media. Sabbir Hasan Nasir, the managing director of Shwapno, said hackers took …
Read More »OAuth Device Code Phishing Hits 340+ Microsoft 365 Orgs
Cybersecurity experts are highlighting an ongoing phishing effort that is aiming at Microsoft 365 accounts in over 340 organizations in the U.S., Canada, Australia, New Zealand, and Germany. The event, according to Huntress, was first seen on February 19, 2026. After that, more cases appeared quickly. This campaign uses Cloudflare …
Read More »
270M iPhones Vulnerable to ‘DarkSword’ Exploit
270m iPhones Vulnerable to ‘DarkSword’ Exploit: Hack code now on GitHub
The iPhone is said as one of the safest smartphones now, but like Android phones, it has been attacked by hackers who use various flaws. Last week, a cybersecurity expert found a hacking scheme aimed at iPhone users using a tool named DarkSword. Now, someone has uploaded a new version of …
Read More »
ALERT
BGD CIRT warn of Botnet, APT, RAT and Malware attack during holidays
Bangladesh is preparing for a nationwide Eid holiday; on the contrary a different kind of “celebration” is occurring in the dark corners of the web. While most professionals are logging off for a well-deserved break, automated scripts are just getting started, scanning for “digital silence.” According to cyber security alert …
Read More »Google Alert Zero-Day For 3.5 billion Chrome Users: Forbes
Google has released a second Chrome security update just 48 hours after the first, confirming two zero-day vulnerabilities that are being actively exploited. Google has issued an urgent security update for two zero-day vulnerabilities, CVE-2026-3909 and CVE-2026-3910. Google Confirms CVE-2026-3909 And CVE-2026-3910 are already being exploited. Although full access to the …
Read More »ShinyHunters reportedly ‘Breach 400 Companies’ via Salesforce Experience Cloud
Salesforce warns customers about threats to public Experience Cloud sites, as the ShinyHunters group claim to exploit a new bug. The danger stems from attempts to take advantage of “overly permissive” guest user configurations, the company says in a trust site post reminiscent of the voice phishing incidents of late 2025. …
Read More »
ALERT
Apple Unveils Emergency Updates For iOS 15.8.7 to Block ‘Coruna’ Exploit Kit
Apple released an urgent security update, iOS 15.8.7 and iPadOS 15.8.7, to safeguard older devices from the serious ‘Coruna’ exploit kit threat. On March 11, 2026, a critical patch was released that brings fixes from newer iOS versions to protect users of older devices from cyberattacks. The Coruna exploit kit targets …
Read More »Hackers leverage CloudFlare Anti-Security to Steal Microsoft 365 Login Credentials
Security researchers recently identified a phishing campaign targeting Microsoft 365 users that takes advantage of CloudFlare’s anti-bot and verification systems. Attackers employ various anti-detection techniques to ensure only genuine victims access the credential-stealing sites. CloudFlare Used as a Protective Shield The campaign begins with a phishing domain hosted behind CloudFlare …
Read More »Hacker offers to sell Bangladeshi courier “Steadfast” full database
Steadfast Courier, a leading logistics and package delivery service operating in Bangladesh, has reportedly been compromised. The hacker offers to sell the full database of the company on a forum for $2,000. The allegedly compromised data includes: Customer full names Phone numbers Detailed delivery addresses Package tracking IDs Cash-on-Delivery (COD) …
Read More »Seedworm hackers found inside US bank, airline, tech networks
An Iran-related hacking group (Seedworm) has infiltrated multiple US organizations since early February, heightening fears of potential larger cyber operations linked to rising geopolitical tensions in the Middle East. New backdoors used by Seedworm Researchers from Symantec and Carbon Black have connected the activity to Seedworm (also known as MuddyWater), …
Read More »
InfoSecBulletin Cybersecurity for mankind