Researchers detect active exploitation of a critical React Native CLI flaw.
CVE-2025-11953 allows unauthenticated OS command execution on exposed Metro dev servers, with attacks deploying PowerShell and a Rust payload.
CVE-2025-11953 allows unauthenticated OS command execution on exposed Metro dev servers, with attacks deploying PowerShell and a Rust payload.
Experts at CTM360 report brand impersonation has become a scaled fraud operation.
Its findings show 30,000+ fake fashion stores across 80+ countries, using ads and real payment flows before disappearing.
Its findings show 30,000+ fake fashion stores across 80+ countries, using ads and real payment flows before disappearing.
China-linked Lotus Blossom compromised Notepad++ hosting infrastructure to hijack update traffic and deliver the Chrysalis backdoor, Rapid7 reports.
The average cost to mine a single Bitcoin is now over $90,000. The price of Bitcoin has collapsed to $67,000. Everyone mining Bitcoin at the moment is losing a fortune.
👍3
خطأ بشري في بورصة كورية: موظف Bithumb حول المستخدمين إلى مليونيرات في لحظة
تسبب موظف مبتدئ في بورصة العملات الرقمية الكورية Bithumb عن طريق الخطأ في حالة من الفوضى غير المألوفة، بعد أن نقل 2000 بيتكوين لمئات المستخدمين بدلاً من مكافأة ضئيلة بقيمة 2000 وون كوري (حوالي 1.5 دولار). وفقًا لتقرير في The Korea Times، حدث الخطأ بسبب إدخال وحدة الدفع كـ BTC بدلاً من KRW. ونتيجة لذلك، أصبح العديد من المستخدمين مليونيرات في لحظة وسارعوا إلى بيع البيتكوين الذي حصلوا عليه، مما تسبب في موجة مبيعات مفاجئة وذعر داخل البورصة.
تسبب موظف مبتدئ في بورصة العملات الرقمية الكورية Bithumb عن طريق الخطأ في حالة من الفوضى غير المألوفة، بعد أن نقل 2000 بيتكوين لمئات المستخدمين بدلاً من مكافأة ضئيلة بقيمة 2000 وون كوري (حوالي 1.5 دولار). وفقًا لتقرير في The Korea Times، حدث الخطأ بسبب إدخال وحدة الدفع كـ BTC بدلاً من KRW. ونتيجة لذلك، أصبح العديد من المستخدمين مليونيرات في لحظة وسارعوا إلى بيع البيتكوين الذي حصلوا عليه، مما تسبب في موجة مبيعات مفاجئة وذعر داخل البورصة.
Spain's Deputy Prime Minister Yolanda Díaz:
"I have left X. That network is a place of hate.
We are not vassals of Elon Musk or Trump."
"I have left X. That network is a place of hate.
We are not vassals of Elon Musk or Trump."
Researchers find 341 malicious ClawHub skills targeting OpenClaw users via fake install steps.
The skills deploy Atomic Stealer on macOS and keylogging malware on Windows, abusing OpenClaw’s open marketplace model.
The skills deploy Atomic Stealer on macOS and keylogging malware on Windows, abusing OpenClaw’s open marketplace model.
A supply chain attack spread malware via trusted VS Code extensions on Open VSX.
Attackers hijacked a real developer account and pushed GlassWorm through four existing tools.
22,000+ installs happened before removal.
Attackers hijacked a real developer account and pushed GlassWorm through four existing tools.
22,000+ installs happened before removal.
Russia-linked APT28 exploited a newly disclosed Microsoft Office flaw within days of disclosure.
CVE-2026-21509 was used via malicious RTF files, with geo-fenced delivery targeting Ukraine, Slovakia, and Romania.
CVE-2026-21509 was used via malicious RTF files, with geo-fenced delivery targeting Ukraine, Slovakia, and Romania.
Mozilla will add 1-click Firefox setting to fully disable generative AI features.
With Firefox 148, users can block all current and future AI features or manage them individually, keeping AI strictly opt-in as browsers add more automation.
With Firefox 148, users can block all current and future AI features or manage them individually, keeping AI strictly opt-in as browsers add more automation.
SATOSHI NAKAMOTO WALLET JUST BECAME ACTIVE AGAIN!
SOMEONE TRANSFERRED IN 2,565 $BTC AFTER 15 YEARS OF DORMANCY.
SO SATOSHI IS ALIVE AND BUYING BITCOIN?
SOMEONE TRANSFERRED IN 2,565 $BTC AFTER 15 YEARS OF DORMANCY.
SO SATOSHI IS ALIVE AND BUYING BITCOIN?
Russian group APT28 (aka Fancy Bear or UAC-0001) has launched a sophisticated espionage campaign targeting European military and government entities.
Forwarded from ᴛʜᴇ ɢʜᴏꜱᴛ ɪɴ ᴛʜᴇ ᴍᴀᴄʜɪɴᴇ
WHO confirms the United States officially withdrew from the World Health Organization, effective Jan 22, 2026.
Best thing to happen to the rest of the world!
@TheGhostsITM
Best thing to happen to the rest of the world!
@TheGhostsITM
Nearly 5 Million Web Servers Found Exposing Git Metadata – Study Reveals Widespread Risk of Code and Credential Leaks.
Hacker targets 155 countries in 'Shadow Campaigns' espionage op
According to Palo Alto Networks’ Unit 42 division, the group has been active since at least January 2024, and there is high confidence that it operates from Asia. Until definitive attribution is possible, the researchers track the actor as TGR-STA-1030/UNC6619.
According to Palo Alto Networks’ Unit 42 division, the group has been active since at least January 2024, and there is high confidence that it operates from Asia. Until definitive attribution is possible, the researchers track the actor as TGR-STA-1030/UNC6619.
Ivanti EPMM Zero-Day Exploits Breach Dutch Regulators, Linked to Wider 🇪🇺 EU Government Intrusions.
Attackers exploited CVSS 9.8 unauthenticated RCE flaws to access employee work contact data.
Attackers exploited CVSS 9.8 unauthenticated RCE flaws to access employee work contact data.
Cyber Dispatch™️
Ivanti EPMM Zero-Day Exploits Breach Dutch Regulators, Linked to Wider 🇪🇺 EU Government Intrusions. Attackers exploited CVSS 9.8 unauthenticated RCE flaws to access employee work contact data.
Related activity also impacted the European Commission and Finland’s Valtori systems.
Ivanti released fixes for CVE-2026-1281 and CVE-2026-1340 (CVSS scores: 9.8), which could be exploited by an attacker to achieve unauthenticated remote code execution.
Ivanti released fixes for CVE-2026-1281 and CVE-2026-1340 (CVSS scores: 9.8), which could be exploited by an attacker to achieve unauthenticated remote code execution.