CloudSEK uncovered BigBear 2.0, an Evilginx2 phishing-as-a-service stealing MFA-backed Microsoft 365 sessions and exposing global enterprises to BEC risk.
Gamers Nexus research alleges LG smart TVs record audio, scan home networks and feed data into LG Ads Solutions, raising questions on consent and surveillance.
A critical CVE-2026-32475 file upload bug in Elementor Pro exposes WordPress sites to unauthenticated remote code execution, with fixes in version 4.2.2.
Microsoft has spotted a finance-themed phishing wave that uses invisible Unicode tag characters to split lure keywords and sneak millions of emails past filters.
Frontier AI systems are automating multi-step cyberattacks, giving enterprises only months to accelerate patching, harden identity and govern AI use before attacks scale[7][8][12].
X is investigating a wave of unsolicited password-reset emails tied to its X Money rollout, with no breach confirmed but rising phishing risks for users.
Googleβs latest Chrome 152 update fixes 12 flaws, including CVE-2026-85046, a V8 type confusion zero-day, and urges users and enterprises to update fast.