WeevilProxy Malware Linked to TradingView Malvertising
WeevilProxy is the name used by WithSecure for the stealer malware that Bitdefender identified in a September 2025 malvertising campaign targeting TradingView.…
WeevilProxy is the name used by WithSecure for the stealer malware that Bitdefender identified in a September 2025 malvertising campaign targeting TradingView.…
Web-based management interface for Check Point Gaia operating system. Affected by CVE-2026-62145 privilege management vulnerability.
Check Point has released security updates to address multiple vulnerabilities in its Security Management and Multi-Domain Management (MDSM) products, including a critical…
Check Point's unified management console for security policy management. Affected by CVE-2026-16232 authentication bypass flaw.
Centralized management solution for Check Point security gateways. Affected by CVE-2026-62144 authentication bypass vulnerability.
Multi-domain security management solution for large-scale deployments. Affected by CVE-2026-62144 authentication bypass vulnerability.
Check Point SmartConsole Improper Authentication Vulnerability Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates…
A malware operator left its delivery server exposed, allowing Rapid7 to recover a full toolkit of 1,048 files including lure templates, filename-spoofing…
A threat actor documented by Check Point, associated with the WebDAV hijack technique (CVE-2025-33053) used in this campaign.
Group-IB has discovered a new espionage implant named HollowGraph that hijacks Microsoft 365 calendars for command-and-control (C2) and data exfiltration. The malware,…