China-linked UAT-7290 targets telecom companies with Linux malware and ORB nodes

January 8, 2026Rabi LakshmananMalware/Threat Intelligence A China-affiliated threat actor known as UAT-7290 is believed to be conducting espionage-based infiltrations against organizations in South Asia and Southeast Europe. According to a Cisco Talos report published today, this activity cluster has been active since at least 2022 and primarily focuses on extensive technical reconnaissance of target organizations […]
RustFS Flaw, Iranian Ops, WebUI RCE, Cloud Leaks, and 12 More Stories

Jan 08, 2026Ravie LakshmananCybersecurity / Hacking News The internet never stays quiet. Every week, new hacks, scams, and security problems show up somewhere. This week’s stories show how fast attackers change their tricks, how small mistakes turn into big risks, and how the same old tools keep finding new ways to break in. Read on […]
The current state of trusted open source

Chainguard, the go-to source for open source, has a unique perspective on how modern organizations are actually using open source software and where they face risks and operational burdens. With a growing customer base and an extensive catalog of over 1,800 container image projects, 148,000 versions, 290,000 images, 100,000 language libraries, and nearly 500 million […]
Cisco patches ISE security vulnerability after releasing public PoC exploit

January 8, 2026Ravi LakshmananNetwork security/vulnerabilities Cisco has released updates that address medium-severity security flaws in Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC) using public proof-of-concept (PoC) exploits. This vulnerability, tracked as CVE-2026-20029 (CVSS score: 4.9), exists in the licensing feature and could allow an authenticated, remote attacker with administrator privileges to access […]
Researchers discover NodeCordRAT hidden in npm Bitcoin-themed packages

January 8, 2026Rabi LakshmananMalware/Cloud Security Cybersecurity researchers discovered three malicious npm packages designed to deliver previously undocumented malware called NodeCordRAT. Below are the names of all removed packages as of November 2025. These were uploaded by a user named ‘wenmoonx’. “The bitcoin-main-lib and bitcoin-lib-js packages run a postinstall.cjs script during installation, which installs bip40, a […]
Coolify discloses 11 critical flaws that allow full server compromise on self-hosted instances

January 8, 2026Rabi LakshmananVulnerabilities / Container Security Cybersecurity researchers have detailed multiple-severity security flaws affecting Coolify, an open-source self-hosting platform. This could lead to authentication bypass or remote code execution. Here is the list of vulnerabilities: CVE-2025-66209 (CVSS Score: 10.0) – Command injection vulnerability in the database backup feature allows an authenticated user with database […]
OpenAI launches ChatGPT Health with isolated and encrypted health data controls

January 8, 2026Ravi LakshmananPrivacy / Artificial Intelligence Artificial intelligence (AI) company OpenAI on Wednesday announced the launch of ChatGPT Health, a dedicated space where users can have conversations with chatbots about their health. That’s why the Sandbox experience gives users the option to securely connect their medical records and wellness apps like Apple Health, Function, […]
CISA reports bugs in Microsoft Office and HPE OneView as being actively exploited

January 8, 2026Rabi LakshmananVulnerabilities / KEV Catalog The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added two security flaws affecting Microsoft Office and Hewlett Packard Enterprise’s (HPE) OneView to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerabilities are listed below – CVE-2009-0556 (CVSS Score: 8.8) – Code injection […]
Black Cat behind SEO-tainting malware campaign targeting popular software search

January 7, 2026Ravi LakshmananCybercrime/Software Security A cybercriminal organization known as Black Cat is believed to be involved in search engine optimization (SEO) poisoning campaigns that use fraudulent sites promoting popular software to trick users into downloading backdoors that can steal sensitive data. According to a report published by the China National Computer Network Emergency Response […]
Critical vulnerability in n8n (CVSS 10.0) allows unauthenticated attacker to gain complete control

January 7, 2026Rabi LakshmananVulnerability/Automation Cybersecurity researchers have detailed yet another maximum-severity security flaw in n8n, a popular workflow automation platform. This flaw allows an unauthenticated, remote attacker to gain complete control of a susceptible instance. This vulnerability is tracked as CVE-2026-21858 (CVSS score: 10.0) and codenamed “Ni8mare” by Cyera Research Labs. Security researcher Dor Attias […]