GLossary

More

News

More
ServiceNow API Breach What Customers Need to Know Now

ServiceNow Customers Hit by Unauthorized API Access – And the Company Knew for Months

The CyberSec Guru

A misconfigured ServiceNow REST endpoint exposed customer tenants in. Here’s what happened, what attackers accessed, and what you need know

Miasma Worm Goes Open Source

Miasma Just Went Open Source. Here’s What’s Actually Inside It

The CyberSec Guru

The Miasma supply chain worm just went open source. We analyzed the full source code – 5-layer obfuscation, GitHub-as-C2, AI tool hijacking etc

CVE-2026-23111: One Bad Character Gives Attackers Linux Root

CVE-2026-23111: One Inverted Character in Linux’s nftables Hands Attackers Root

The CyberSec Guru

CVE-2026-23111 is a use-after-free in Linux’s nftables that lets an unprivileged user escalate to root. Working exploits are public. Here’s exactly how it works

Yoti Reported GrapheneOS User to Authorities

Yoti Flagged A Playstation User to Authorities for Running GrapheneOS on their Phone

The CyberSec Guru

Sony’s age-verification partner Yoti reportedly flagged a GrapheneOS user to authorities. Here’s what actually happened and why it matters for everyone

Chinese APT VerdantBamboo Evades M365 Security for 18 Months

Silent Persistence: How Chinese APT ‘VerdantBamboo’ Spent 18 Months Inside Microsoft 365 Using Custom Malware

The CyberSec Guru

Discover how Chinese espionage group UNC5221 (VerdantBamboo) used Brickstorm & Plenet to hide inside Microsoft 365 and MSP networks for over 18 months

Advisory

More
AnyDesk Hacked

Remote Desktop Software AnyDesk Hacked, Users Urged to Change Passwords

AnyDesk hacked: Cyberattack compromises production systems, raising concerns over source code security and user data. Immediate actions taken, passwords revoked, and new security measures implemented

Jenkins Security Alert Critical Vulnerability Exposes Servers to Remote Code Execution (RCE) Attacks

Jenkins Security Alert: Critical Vulnerability Exposes Servers to Remote Code Execution (RCE) Attacks

Jenkins Security Alert: Critical vulnerability poses remote code execution risk. Servers exposed. Immediate action required to patch and safeguard systems against potential exploitation. Stay vigilant