LIVE · cybersecurity feed
Live wire
Malware Hijacks Android Car Head UnitsCritical Flaw in NASA/JPL Open-Source Spacecraft Command Software Allowed Unauthenticated Command ExecutionCVE-2026-73570 · U.S. CISA adds Zimbra Collaboration Suite (ZCS) flaw to its Known Exploited Vulnerabilities catalogCVE-2024-3094 · Connecting the Dots: Securing the Overlooked Corners of the Software Development Lifecycle (SDLC) Supply Chain14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2Hundreds of leaked AWS keys give full control over corporate accountsAndroid Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy BotnetMalware injected into popular Rust packages to steal developer credentialsSix Maximum-Severity Flaws Found in Cisco ProductsCritical Isolated-vm Vulnerability Leads to RCE on Host

defacement

defacement

US Army websites defaced with pro-Kurdish sentiments, insults to Trump

Several U.S. Army websites experienced defacement through a 404 hijacking campaign, displaying messages critical of President Trump and Ambassador Tom Barrack, and advocating for Kurdish independence. The compromised subdomains, oil.army.mil and ai2c.army.mil, which are related to innovation and AI integration respectively, showed these messages on error pages. This technique exploits a website's error handling to display unauthorized content without breaching core pages.