CISA Adds Actively Exploited SolarWinds Web Help Desk RCE to KEV Catalog

Ravi LakshmananFebruary 4, 2026Software security/vulnerabilities The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a critical security flaw affecting SolarWinds Web Help Desk (WHD) to its Known Exploited Vulnerabilities (KEV) catalog, flagging it as being actively exploited in attacks. This vulnerability, tracked as CVE-2025-40551 (CVSS score: 9.8), is an untrusted data deserialization vulnerability […]
Docker fixes critical Ask Gordon AI flaw that allows code execution via image metadata

Ravi LakshmananFebruary 3, 2026Artificial intelligence/vulnerabilities Cybersecurity researchers have detailed a patched security flaw affecting Ask Gordon, the artificial intelligence (AI) assistant built into Docker Desktop and the Docker command-line interface (CLI). This flaw could be exploited to execute code or leak sensitive data. This critical vulnerability has been codenamed DockerDash by cybersecurity firm Noma Labs. […]
Learn what to build, buy, and automate

hacker newsFebruary 3, 2026Threat Detection / Enterprise Security Most security teams today are buried in tools. Too many dashboards. Too much noise. Not enough real progress. Every vendor promises “full coverage” and “AI-powered automation,” but inside most SOCs, teams are still overwhelmed, stretched, and unsure of which tools are truly powerful. result? Growing stacks, missing […]
Hackers exploit Metro4Shell RCE flaw in React Native CLI npm package

Ravi LakshmananFebruary 3, 2026Open source/vulnerabilities Threat actors have been observed exploiting a critical security flaw affecting Metro Development Server in the popular “@react-native-community/cli” npm package. Cybersecurity company VulnCheck announced on December 21, 2025 that it observed the first exploit of CVE-2025-11953 (also known as Metro4Shell). With a CVSS score of 9.8, this vulnerability allows an […]
When a cloud outage spreads to the Internet

It’s hard to overlook recent large-scale cloud service outages. Massive incidents affecting providers like AWS, Azure, and Cloudflare disrupted large swaths of the internet and brought down websites and services that many other systems depend on. The resulting ripple effect brought down the applications and workflows that many organizations rely on on a daily basis. […]
APT28 uses Microsoft Office CVE-2026-21509 in espionage-focused malware attack

Ravi LakshmananFebruary 3, 2026Vulnerabilities/Malware A Russian-linked state-sponsored threat actor known as APT28 (also known as UAC-0001) is believed to have exploited a newly disclosed security flaw in Microsoft Office as part of a campaign codenamed Operation Neusploit. Zscaler ThreatLabz said it observed a group of hackers exploiting the flaw in attacks targeting users in Ukraine, […]
Mozilla adds one-click option to disable generated AI features in Firefox

Ravi LakshmananFebruary 3, 2026Artificial intelligence / privacy Mozilla on Monday announced a new control section in the Firefox desktop browser settings that allows users to completely turn off the Generative Artificial Intelligence (GenAI) feature. “This provides a single place to block current and future generative AI features in Firefox,” said Firefox head Ajit Varma. “If […]
Notepad++ hosting breach by China-linked Lotus Blossom hacking group

Ravi LakshmananFebruary 3, 2026Malware / Open Source A recently discovered compromise of the infrastructure hosting Notepad++ is believed with medium confidence to be the work of a China-affiliated actor known as Lotus Blossom. The attack allowed a state-sponsored hacker group to distribute a previously undocumented backdoor codenamed “Chrysalis” to users of the open-source editor, according […]
Researchers discover 341 malicious ClawHub skills that steal data from OpenClaw users

A security audit of ClawHub’s 2,857 skills uncovered 341 malicious skills across multiple campaigns, exposing users to new supply chain risks, according to new findings from Koui Security. ClawHub is a marketplace designed to help OpenClaw users easily find and install third-party skills. It is an extension of the OpenClaw project, a self-hosted artificial intelligence […]
OpenClaw bug allows one-click remote code execution via malicious link

Ravi LakshmananFebruary 2, 2026Vulnerability / Artificial Intelligence A high-severity security flaw has been disclosed in OpenClaw (previously known as Clawdbot and Moltbot) that could allow remote code execution (RCE) via a crafted malicious link. This issue is tracked as CVE-2026-25253 (CVSS score: 8.8) and is resolved in version 2026.1.29, released on January 30, 2026. The […]