Attacks leveraging the 'PolyShell' vulnerability in version 2 of Magento Open Source and Adobe Commerce installations are underway, targeting more than half of all vulnerable stores. [...]
Flux RSS
— Sources secondairesPolyShell attacks target 56% of all vulnerable Magento stores
Vulnérabilités & PatchesBleepingComputeril y a 4 jours
Bubble AI app builder abused to steal Microsoft account credentials
Threat IntelligenceBleepingComputeril y a 4 jours
Threat actors are evading phishing detection in campaigns targeting Microsoft accounts by abusing the no-code app-building platform Bubble to generate and host malicious web apps. [...]
New Torg Grabber infostealer malware targets 728 crypto wallets
Malware & RansomwareBleepingComputeril y a 5 jours
A new info-stealing malware called Torg Grabber is stealing sensitive data from 850 browser extensions, more than 700 of them for cryptocurrency wallets. [...]
Citrix urges admins to patch NetScaler flaws as soon as possible
Gouvernance & RégulationBleepingComputeril y a 5 jours
Citrix has patched two NetScaler ADC and NetScaler Gateway vulnerabilities, one of which is very similar to the CitrixBleed and CitrixBleed2 flaws exploited in zero-day attacks in recent years. [...]
Paid AI Accounts Are Now a Hot Underground Commodity
GénéralBleepingComputeril y a 5 jours
AI accounts are becoming part of the cybercrime supply chain, sold like email accounts or VPS access. Flare Systems shows how underground markets bundle and resell premium AI access at scale. [...]