ScanForge Security Digest 2637-01

200 items
60 critical48 high10 news

This week's security digest includes 0 actively exploited vulnerabilities (CISA KEV), 60 critical CVEs, and 48 high-severity CVEs. Review the details below and prioritize patching for any affected systems.

Critical

60

High Severity

48

Security News

10
JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies The Hacker News

Cybersecurity researchers have unpacked JSCeal, a sophisticated compiled V8 JavaScript (JSC) malware with credential har

N-able patches max severity N-central flaw amid ongoing attacks Bleeping Computer

N-able has released an emergency hotfix for a maximum-severity remote code execution (RCE) flaw affecting its N-central

ChatGPT Astra is now rolling out to $20 Plus subscription Bleeping Computer

OpenAI is now rolling out ChatGPT Astra, its most powerful model to date, to those with a $20 Plus subscription, but the

Attackers conceal phishing lures using invisible Unicode characters Bleeping Computer

Threat actors have adopted the ASCII smuggling technique in phishing campaigns, using invisible Unicode characters to ev

Attackers Hijack MikroTik Routers Through Internet-Exposed SSH Without Authentication The Hacker News

Attackers are exploiting MikroTik routers with their Secure Shell (SSH) remote-access service, which is reachable from t

Four REVSTEALER-Linked Modules Disable Windows Update and Defender to Run a Crypto Miner The Hacker News

Elastic Security Labs has documented four previously unreported programs associated with REVSTEALER, an emerging Windows

Unpatched Magento and Adobe Commerce Zero-Day Exploited to Backdoor Online Stores The Hacker News

Attackers are exploiting a new unpatched vulnerability in Magento Open Source and Adobe Commerce that lets them run mali

Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials The Hacker News

JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which

Content aggregated from NIST/NVD, CISA, CERT/CC, and public security news sources. External articles are linked to their original source.