FortiGate devices are exploited to infiltrate the network and steal service account credentials

Ravi LakshmananMarch 10, 2026Network security/vulnerabilities Cybersecurity researchers are warning of a new campaign in which attackers are exploiting FortiGate next-generation firewall (NGFW) appliances as entry points to penetrate victim networks. This activity involves exploiting recently disclosed security vulnerabilities or weak credentials to extract configuration files containing service account credentials and network topology information, SentinelOne said […]

KadNap malware infects over 14,000 edge devices, powering stealth proxy botnet

Cybersecurity researchers have discovered a new malware called KadNap that primarily targets Asus routers and forces them to join a botnet that proxies malicious traffic. According to Lumen’s Black Lotus Labs team, the malware was first detected in August 2025 and has spread to more than 14,000 infected devices, with more than 60% of victims […]

New ‘LeakyLooker’ flaw in Google Looker Studio could allow cross-tenant SQL queries

Ravi LakshmananMarch 10, 2026Database security/vulnerabilities Cybersecurity researchers have revealed nine cross-tenant vulnerabilities in Google Looker Studio. This vulnerability could allow an attacker to execute arbitrary SQL queries against a victim’s database, potentially exposing sensitive data within an organization’s Google Cloud environment. Tenable collectively refers to these shortcomings as LeakyLooker. There is no evidence that this […]

Webinar guide to audit modern agent workflows

hacker newsMarch 10, 2026Artificial intelligence/threat detection Artificial intelligence (AI) is no longer just a tool with which we interact. It’s a tool that does something for us. These are called AI agents. You can also send emails, move data, manage software, and more. But there’s a problem. While these agents speed things up, they also […]

A guide to reducing your attack surface

You cannot control when the next critical vulnerability will occur. You can control how much of your environment is exposed when it is published. The problem is that most teams are exposed to the internet more than they realize. Intruder’s head of security takes a deep dive into why this happens and how teams can […]

APT28 uses BEARDSHELL and COVENANT malware to spy on Ukrainian military

Ravi LakshmananMarch 10, 2026Cyber ​​espionage/threat intelligence A Russian state-sponsored hacking group tracked as APT28 has been observed using a pair of implants called BEARDSHELL and COVENANT to facilitate long-term surveillance of Ukrainian military personnel. In a new report shared with The Hacker News, ESET said the two malware families have been in use since April […]

Threat actors mass scan Salesforce Experience Cloud via modified AuraInspector tool

Ravi LakshmananMarch 10, 2026Cloud security/API security Salesforce has warned of increased activity by threat actors aiming to exploit misconfigurations in publicly accessible Experience Cloud sites using a customized version of an open source tool called AuraInspector. According to the company, this activity involves exploiting customers’ overly permissive Experience Cloud guest user settings to access sensitive […]

CISA, SolarWinds, Ivanti, Workspace One vulnerabilities reported as being actively exploited

Ravi LakshmananMarch 10, 2026Vulnerabilities / Enterprise Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added three security flaws to its Known Exploited Vulnerabilities (KEV) catalog based on evidence of active exploitation. The vulnerability list is as follows: CVE-2021-22054 (CVSS Score: 7.5) – A server-side request forgery (SSRF) vulnerability in Omnissa Workspace One […]

Malicious npm package disguised as OpenClaw installer deploys RAT and steals macOS credentials

Cybersecurity researchers have discovered a malicious npm package that masquerades as an OpenClaw installer to deploy a remote access trojan (RAT) and steal sensitive data from compromised hosts. The package named ‘@openclaw-ai/openclawai’ was uploaded to the registry on March 3, 2026 by a user named ‘openclaw-ai’. It has been downloaded 178 times so far. This […]