C0XMO Botnet Targets DD-WRT Routers
The C0XMO botnet spreads via a DD-WRT router flaw, exploiting CVE-2021-27137, and kills rival malware, with a modular design allowing operators to update its techniques and expand capabilities.
HalluSquatting is an attack where researchers pre-compute fake repository, package, or skill names that AI coding agents predictably invent, register those names first, and load them with malicious instructions.
The C0XMO botnet spreads via a DD-WRT router flaw, exploiting CVE-2021-27137, and kills rival malware, with a modular design allowing operators to update its techniques and expand capabilities.
Chinese spies are posing as recruiters on professional networking sites to target government and military personnel with access to sensitive information.
Over 900 US gas station tank gauge systems are exposed to attacks, vulnerable to security flaws including hardcoded credentials and SQL injection vulnerabilities.
Threat actors are exploiting AI chatbot queries to harvest computing power, while an unpatched Comodo flaw allows remote attackers to crash targeted Windows endpoints.
Hackers are actively exploiting a critical vulnerability in the Everest Forms Pro plugin to take complete control of WordPress sites, creating rogue administrator accounts.
Apple has removed Russia's state-backed messaging app Max from its App Store, citing compliance with sanctions regulations, affecting around 20 million Russian users.
The European Commission proposes laws and strategies to reduce reliance on foreign technology, focusing on semiconductors, cloud computing, and open-source software.
Hackers are actively exploiting a high-severity SolarWinds Serv-U flaw, tracked as CVE-2026-28318, to crash servers, with over 12,000 Serv-U servers exposed online.
Toshiba and Muji warned visitors of suspicious sign-in screens on their websites, potentially collecting credentials, after an issue with the external service hosted at polyfill[.]io.