Cisco Patch 9.8 CVSS IMC and SSM flaws allow remote systems to be compromised

Ravi LakshmananApril 2, 2026Network security/vulnerabilities Cisco has released an update that addresses a critical security flaw in the Integrated Management Controller (IMC). Successful exploitation of this flaw could allow an unauthenticated, remote attacker to bypass authentication and gain access to the system with elevated privileges. This vulnerability is tracked as CVE-2026-20093 and has a CVSS […]

Pre-Auth Chains, Android Rootkits, CloudTrail Evasion & 10 More Stories

Ravie LakshmananApr 02, 2026Cybersecurity / Hacking News The latest ThreatsDay Bulletin is basically a cheat sheet for everything breaking on the internet right now. No corporate fluff or boring lectures here, just a quick and honest look at the messy reality of keeping systems safe this week. Things are moving fast. The list includes researchers chaining small bugs together to […]

Researchers reveal mining operations using ISO lures to spread RATs and crypto miners

Ravi LakshmananApril 2, 2026Cryptomining/Malware A financially motivated operation codenamed REF1695 has been observed leveraging fake installers to deploy remote access trojans (RATs) and cryptocurrency miners since November 2023. “Beyond cryptomining, threat actors are monetizing infections through CPA (cost per action) fraud, directing victims to content locker pages under the guise of software registration,” Elastic Security […]

The State of Trusted Open Source Report

In December 2025, we shared the first-ever The State of Trusted Open Source report, featuring insights from our product data and customer base on open source consumption across our catalog of container image projects, versions, images, language libraries, and builds. These insights shed light on what teams pull, deploy, and maintain day to day, alongside the vulnerabilities and […]

Apple extends iOS 18.7.7 update to more devices to block DarkSword exploit

Ravi LakshmananApril 2, 2026Mobile security/vulnerabilities Apple on Wednesday expanded the availability of iOS 18.7.7 and iPadOS 18.7.7 to a wider range of devices to protect users from the risks posed by a recently released exploit kit known as DarkSword. “With iOS 18.7.7 available on more devices starting April 1, 2026, users who have automatic updates […]

CERT-UA impersonation campaign spreads AGEWHEEZE malware to 1 million emails

Ravi LakshmananApril 1, 2026Email security/artificial intelligence Ukraine’s Computer Emergency Response Team (CERT-UA) has revealed details of a new phishing campaign impersonating the cybersecurity agency itself to distribute a remote administration tool known as AGEWHEEZE. As part of the attack, the attacker, tracked as UAC-0255, sent emails impersonating CERT-UA on March 26 and 27, 2026, distributing […]

Microsoft warns that VBS malware distributed by WhatsApp can hijack Windows via UAC bypass

Ravi LakshmananApril 1, 2026Social engineering/malware Microsoft is warning of a new campaign that uses WhatsApp messages to distribute malicious Visual Basic Script (VBS) files. The campaign, which begins in late February 2026, utilizes these scripts to establish persistence and initiate a multi-step infection chain to enable remote access. At this time, it is unclear what […]

Casbaneiro Phishing targets Latin America and Europe using dynamic PDF lures

Ravi LakshmananApril 1, 2026Malware / Windows Security The multi-pronged phishing campaign targets Spanish-speaking users within organizations in Latin America and Europe, delivering Windows banking Trojans like Casbaneiro (also known as Metamorfo) via another piece of malware called Horabot. This activity is believed to be the work of Brazilian cybercrime threat actors tracked as Augmented Marauder […]

New Chrome zero-day CVE-2026-5281 in active exploitation – patch released

Ravi LakshmananApril 1, 2026Vulnerabilities / Browser security Google on Thursday released security updates for its Chrome web browser that address 21 vulnerabilities, including a zero-day flaw that the company says is being exploited in the wild. High severity vulnerability CVE-2026-5281 (CVSS score: N/A) involves a use-after-free bug in Dawn, an open source and cross-platform implementation […]