Login
HN Monitor

A critical security vulnerability in the Everest Forms Pro WordPress plugin, affecting approximately 4,000 active installations, is being actively exploited by threat actors to execute arbitrary code, leading to full website compromise. This remote code execution (RCE) flaw, identified as CVE-2026-3300, carries a severe CVSS score of 9.8 and impacts…

The cybersecurity landscape is constantly evolving, and a recent development concerning the last layer standing in network defense has caught the attention of IT professionals worldwide. A report released this week by the Global Cybersecurity Institute (GCI) highlights emerging threats and the increasing importance of multi-factor authentication (MFA) as a…

Flaw in Claude Code GitHub Action Uncovered, Posing Repository Takeover Risk A security vulnerability has been discovered in Anthropic’s Claude Code GitHub Action, allowing attackers to potentially hijack vulnerable public repositories. The flaw, reported by security researcher RyotaK of GMO Flatt Security, could enable a malicious actor to execute arbitrary…

The cybersecurity landscape continues to present complex challenges, with a persistent blend of evolving threats and persistent vulnerabilities. This ongoing dynamic highlights the critical importance of robust security practices and continuous vigilance for organizations across all sectors. As the digital realm expands, the intricate web of threats, from sophisticated nation-state…

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability affecting the Mirasvit Cache Warmer Magento extension to its Known Exploited Vulnerabilities (KEV) catalog. The move comes after reports of attackers actively exploiting the flaw, tracked as CVE-2026-45247, in the wild, posing a significant risk to e-commerce…

Cybercriminals behind Tycoon2FA, a sophisticated phishing-as-a-service (PhaaS) platform, have rapidly resumed their attacks on cloud accounts, demonstrating remarkable resilience following a significant law enforcement takedown on March 4, 2026. Europol, in coordination with authorities from six countries, successfully seized 330 domains integral to the platform’s infrastructure. However, evidence suggests the…

Cybercriminals have devised a new method to distribute malware, ingeniously weaponizing a widely trusted online tool: Google Forms. A recently identified campaign is leveraging business-themed lures such as fictitious job interviews, project briefings, and financial documents to infect victim machines with a Remote Access Trojan (RAT) known as PureHVNC. This…

The accelerating adoption of generative AI technologies has amplified concerns regarding software supply chain security. In response, Microsoft has detailed a comprehensive set of security safeguards for generative AI models hosted on its Azure AI Foundry platform, addressing the emerging threat landscape at the nexus of AI and enterprise security.…

Two more GitHub Actions workflows, maintained by supply chain security firm Checkmarx, have been compromised by credential-stealing malware attributed to a threat actor known as TeamPCP. This operation is also linked to the recent Trivy supply chain attack, underscoring a persistent threat to software development pipelines. The compromised workflows represent…

The cybercriminal underground has seen a significant development with the emergence of a new Tor-based leak site, “ALP-001,” appearing on March 22, 2026. This platform openly advertises itself as a “Data Leaks / Access Market,” signaling a concerning trend of initial access brokers (IABs) evolving into full-scale extortion operators. Security…

A 26-year-old Russian national has been sentenced to 6.75 years in prison in the United States for his role in facilitating significant cybercrime operations. Aleksei Olegovich Volkov was instrumental in assisting major criminal groups, including the Yanluowang ransomware crew, in executing numerous attacks against U.S. companies and other organizations. This…

Citrix has issued critical security updates to address two vulnerabilities impacting its NetScaler ADC and NetScaler Gateway products. The most severe, rated critical, could allow unauthenticated attackers to gain access to and leak sensitive data from the application. These vulnerabilities underscore the ongoing threat landscape for enterprise security solutions. The…

A sophisticated SEO poisoning campaign has been actively targeting Windows users since at least October 2025, successfully tricking them into downloading malicious software disguised as legitimate applications. This operation, which remained largely undetected for approximately five months, was brought to light in March 2026 by researchers who uncovered its multi-stage…