TrendAI Intelligence Supports Global Tycoon 2FA Cybercrime Investigation
TrendAI intelligence supports an international investigation into Tycoon 2FA, with NCCIA, INTERPOL and Singapore Police Force leading coordinated action.
TrendAI intelligence supports an international investigation into Tycoon 2FA, with NCCIA, INTERPOL and Singapore Police Force leading coordinated action.
A critical Gitea vulnerability tracked as CVE 2026 59774 allows unauthenticated attackers to read server files on affected self hosted instances. The issue is fixed in Gitea 1.27.1.
Researchers warn that the Kali365 phishing kit abuses Microsoft device authentication to steal access tokens, putting Microsoft 365 accounts, business data, and cloud resources at risk.
This week’s cybersecurity roundup highlights AI powered attacks, hundreds of Chrome security fixes, SonicWall credential stuffing, DNS hijacking, ransomware campaigns, and emerging malware threats.
F6 has uncovered a fraud campaign active since 2017 that uses cloned websites of major Russian companies to steal advance payments from international businesses through fake contracts and banking details.
National CERT Pakistan has issued a security advisory warning organizations about actively exploited FortiSandbox vulnerabilities that could allow unauthenticated attackers to fully compromise affected systems.
CERT UA has warned of a phishing campaign by UAC 0099 that uses a fake Notepad++ plugin to deploy MATCHBOIL.V2 malware and establish persistent access on Windows systems.
Rewterz latest threat intelligence briefing highlights critical vulnerabilities affecting WordPress, Windows RDP, Zoom, LegacyHive, and FortiSandbox, with active exploitation confirmed for Fortinet deployments.
Resecurity and Sapphire Consulting Services have announced a strategic partnership to strengthen secure code engineering, cyber threat intelligence, and cybersecurity capabilities for enterprise and government organizations.
Threat actors are actively exploiting the critical ServiceNow AI Platform vulnerability CVE 2026 6875, prompting organizations to apply available security updates to prevent unauthorized code execution.