Threat actors are exploiting 3 new Windows security flaws in their attacks to get SYSTEM or higher administrator access. Since the beginning of the month, a security expert called “Chaotic Eclipse” or “Nightmare-Eclipse” has shared proof-of-concept exploit code for all three security problems. Two of the flaws, called BlueHammer and RedSun, …
Read More »U.S Maine could be first state to impose ban on large, new data centers
Maine lawmakers have passed a bill that could make it the first ​U.S. state to put a moratorium on new data centers as ‌opposition to the electricity-hungry facilities grows across the country over their impact on household energy bills and the environment. The bill, which still needs final approval from …
Read More »
Experts Warn at NDSS Symposium 2026
New Attack Turns Fiber Optic Cables Into Spying Devices
Researchers at NDSS 2026 show a hidden listening attack that turns normal FTTH telecom fiber cables into quiet spying tools. These tools cannot be seen by RF scanners and are safe from ultrasonic jammers. Security experts from The Hong Kong Polytechnic University, The Chinese University of Hong Kong, and the …
Read More »IRGC claims it targeted Oracle data center in UAE; Dubai denies
Iran’s Islamic Revolutionary Guard Corps (IRGC) targeted the data center and information infrastructure of US company Oracle in the United Arab Emirates, the state-run IRNA news agency reported, but Dubai authorities denied the claim. According to IRNA, the Revolutionary Guard said the Oracle facility in the UAE was targeted in …
Read More »India set to ban sale of Hikvision, TP-Link, Dahua CCTVs
India is reportedly preparing to bar Chinese video surveillance giants such as Hikvision, Dahua, and TP-Link from selling internet-connected CCTV cameras and related hardware from April 1. This comes as starting next month, the new certification rules under the Standardisation Testing and Quality Certification (STQC) rule will take effect, making …
Read More »FBI confirms breach of Director Patel’s inbox: Media report
The FBI has confirmed the compromise, saying that the stolen data was not recent and did not include any government data as reported by bleeping computer. Prior to that, The Handal hacker group claim to breach the personal email account of FBI Director Kash Patel alleging taht they compromised “the so …
Read More »
ALERT
Abuse of Microsoft Azure Monitor for Sending Phishing Emails from Real Addresses
Microsoft Azure Monitor is being misused in a new phishing scheme that makes bad emails seem real. Attackers are using the service to send back phishing emails that look like real Microsoft security warnings. Threat actors are pretending to be the Microsoft Security Team in fake billing emails. These emails …
Read More »Hackers Allegedly Selling Exploit for Windows RDS 0-Day Flaw
A hacker is reportedly selling a zero-day exploit for a Windows Remote Desktop Services vulnerability, CVE-2026-21533, for $220,000 on the dark web. This exploit takes advantage of poor privilege management to give attackers local admin access. A new user, Kamirmassabi, is auctioning an exploit for CVE-2026-21533 on a dark web …
Read More »Thousands of iPhones likely Compromised via Coruna Exploit Kit with 23 Vulns
Google’s Threat Intelligence Group found Coruna, a complex iOS exploit kit with 23 exploits in five chains, affecting thousands of iPhones on iOS 13.0 to 17.2.1 in 2025. The Coruna exploit kit is a sophisticated iOS attack tool by GTIG that targets iPhones from iOS 13.0 (September 2019) to iOS 17.2.1 …
Read More »AWS UAE suffers AZ outage after “objects strike data center”
Amazon’s cloud computing division Amazon Web Services (AWS) has reported a temporary shutdown at one of its data centres in the United Arab Emirates after objects struck the facility, causing sparks and a fire. The incident has led to connectivity issues and increased error rates across several AWS services in …
Read More »
InfoSecBulletin Cybersecurity for mankind