Critical SmarterMail Vulnerability Puts Email Servers at Serious Risk
The Cyber Security Agency of Singapore (CSA) has issued an urgent warning about a critical security flaw affecting SmarterMail, a widely used email and collaboration platform. The vulnerability, tracked as CVE-2025-52691, has been given the highest possible severity score of…
How Hackers Exploit Google Cloud Workflows to Run Stealthy Phishing Campaigns

In this campaign, attackers begin by directing victims through a seemingly legitimate workflow that gives the attack an air of authenticity. The initial link sends users to content hosted on googleusercontent[.]com, a trusted Google-controlled domain, which helps lower suspicion. At…
Why Most Attack Surface Management Programs Struggle to Show Real ROI

Attack Surface Management (ASM) is often sold as a way to reduce risk. In reality, what many organizations get is more data. Security teams roll out ASM tools, asset inventories expand, alerts start firing, and dashboards fill up quickly. There…
APT36 Transparent Tribe Uses Sophisticated RAT Malware in New Espionage Campaigns

Transparent Tribe Expands Espionage Campaigns Using Advanced RAT Techniques A long-running cyber espionage group known as Transparent Tribe has been linked to a new wave of targeted attacks aimed at Indian government bodies, academic institutions, and other strategically sensitive organizations.…
Managed Security in 2026: Why the Old Model Is Breaking

Managed security services were built around people. Analysts investigated phishing clicks, suspicious logins, and endpoint misuse after alerts were triggered. That model is starting to crack. By 2026, much of what happens inside customer environments will no longer be driven…
How to Secure Your Website and WordPress Site

Website security is no longer optional. Whether you run a personal blog, an online store, or a business website, attackers are constantly looking for weak points to exploit. A single breach can lead to data loss, downtime, damaged reputation, or…
U.S. Lifts Sanctions on Individuals Linked to Predator Spyware Network

The U.S. Department of the Treasury has removed three individuals connected to the Intellexa Consortium from its sanctions list, raising new questions about the future oversight of commercial spyware operations. The individuals removed from the Office of Foreign Assets Control…
Fake Grubhub Crypto Emails Target Users With Bitcoin Scam

A new wave of phishing emails impersonating Grubhub has surfaced, tricking recipients with promises of massive cryptocurrency rewards. The fraudulent messages claim to offer a “Holiday Crypto Promotion,” encouraging users to send Bitcoin with the promise of receiving ten times…
Silver Fox Cyber Attacks Using Fake Tax Lures&Advanced Malware

A sophisticated cyber threat group known as Silver Fox has intensified its operations, shifting focus toward India by using tax-related phishing emails to spread a dangerous remote access trojan known as ValleyRAT. According to recent findings from cybersecurity researchers at…
