[webapps] aiohttp 3.9.1 - directory traversal PoC
aiohttp 3.9.
Aggregating 3075 articles from trusted cybersecurity sources
aiohttp 3.9.
FortiWeb Fabric Connector 7.6.
Docker Desktop 4.44.
A security researcher found 386 malicious ‘skills’ published on ClawHub, a skill repository for the popular OpenClaw AI assistant project
40,000 WordPress sites are vulnerable to SQL injection in Quiz and Survey Master plugin
DockerDash vulnerability allows RCE and data exfiltration via unverified metadata in Ask Gordon
UK Data Protection Watchdog has “serious concerns” over data privacy on Elon Musk’s social platform
A new ransomware-as-a-service operation dubbed “Vect” features custom malware
Elon Musk and X’s former CEO were summoned for voluntary interviews in Paris on April 20, 2026
Multi-stage attack begins with fake message relating to business requests and evades detection with link hidden in a PDF
Wiz Security claims Moltbook misconfiguration allowed full read and write access
This vulnerability allows local attackers to escalate privileges on affected installations of CyberArk Endpoint Privilege Management. An attacker must first ...
In a groundbreaking technical report released by Gambit Security researcher Eyal Sela, new details have emerged about a massive cyberattack targeting governm...
ShinyHunters claims access to Rockstar Games Snowflake data via Anodot breach, threatening a data leak on April 14 if ransom demands are not met.
Cybernews reports that Serasa Experian, the Brazilian subsidiary of credit risk and fraud prevention firm Experian, had 1.8 TB of data belonging to 223 milli...
The stolen data, reportedly offered for sale, is said to contain simulations and schematics of aircraft, missiles, and bombs, originating from top organizati...
The breach allowed unauthorized access to Bitcoin Depot's corporate IT systems, leading to the theft of 50.903 Bitcoin, valued at roughly $3.
UNC6783 hackers and extortionists impersonate support staff, using fake Okta login pages and social engineering to access corporate systems and steal sensiti...
Eurail B.V.
Grupo Bancolombia and Banco De Bogota, two of the leading banks in Colombia, were claimed to have been compromised by the same threat actor, who also exposed...
Hackers breached Eurail in Dec 2025, stole names and passport data, and exposed over 300,000 travelers’ personal information. Threat actors breached Eurail i...
The breach, attributed to the extortion gang World Leaks, reportedly exposed approximately 7.7 terabytes of data, including over 337,000 files.
MyLovely.AI, an AI girlfriend platform, suffered a data breach that exposed over 100,000 users.
Bitcoin Depot has disclosed a cyber-attack that led to the theft of more than 50 Bitcoin, worth $3.