The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical command injection vulnerability affecting Progress Kemp LoadMaster to its Known…
active exploitationBOD 26-04CISA KEVcommand injection
Two npm packages in the @joyfill namespace, @joyfill/layouts@0.1.2-2773.beta.0 and @joyfill/components@4.0.0-rc24-2773-beta.4, have been compromised to deliver a remote access trojan (RAT) associated with…
ACR Stealer, an infostealer active since 2024, is targeting enterprise networks by stealing saved browser passwords, live session tokens, PDFs, Microsoft 365…
A sophisticated device code phishing campaign targeting Microsoft 365 accounts has been observed between late June and early July 2026, leveraging collaboration-themed…
North Korean threat actors linked to the Contagious Interview campaign have published 108 unique malicious packages and browser extensions across npm, Packagist,…
The recently discovered financially-motivated FortiBleed campaign has been attributed to INC and Lynx ransomware operations, indicating that the verified, stolen credentials were…
A critical pre-authentication remote code execution vulnerability in Progress Kemp LoadMaster, tracked as CVE-2026-8037 (CVSS 9.6), is now facing active exploitation attempts.…
active exploitationAPI SecurityCVE-2024-1212CVE-2026-20245
eSentire is a Canadian security vendor that reported active exploitation attempts targeting CVE-2026-8037, providing IP addresses associated with the attacks.