Cybersecurity News
-
TP-Link Patches Critical Security Vulnerabilities in Omada Gateway Products
TP-Link has issued a security advisory addressing two significant vulnerabilities affecting multiple Omada gateway models. Organizations using these devices should prioritize patching to mitigate potential security risks. While the vulnerabilities require adjacent…
-
Meta’s New Anti-Scam Tools to Protect User
October marks Cybersecurity Awareness Month, an important reminder to stay vigilant about online threats. As cybercriminals become increasingly sophisticated, one group that remains disproportionately targeted is older adults. In 2024, reports show…
-

New Research Shows WiFi Signals Can Identify People Without Devices
We’ve all gotten used to the idea that our smartphones track us. But what if you could be identified and tracked through WiFi signals even when you’re not carrying any device at…
-
New Android Attack, Pixnapping, Can Steal 2FA Codes Without Permissions
A newly disclosed Android vulnerability, dubbed Pixnapping, allows malicious apps to steal sensitive on‑screen information — including 2FA codes, chat messages, and location history — without needing any system permissions. The attack,…
-
AI Companion Apps Expose Private Data of 400K+ Users
Two AI companion applications have left hundreds of thousands of users’ intimate conversations and personal media completely exposed online, according to security researchers at Cybernews who discovered the vulnerability in late August.…
-
Critical Security Flaw Found in Figma MCP Server Package
A security vulnerability has been discovered in figma-developer-mcp, a popular Model Context Protocol (MCP) server for Figma integrations. The flaw allows attackers to execute arbitrary system commands on affected servers, earning it…
-
Google’s DeepMind Unveils CodeMender, An AI Agent Enhancing Software Security
DeepMind, Google’s AI research organization, has introduced CodeMender, an AI-driven system designed to automatically identify and repair security vulnerabilities in software code. This development aims to assist developers in maintaining more secure…
-
Oracle Issues Security Notice for Critical Vulnerability in E-Business Suite
Oracle has announced a security alert regarding a serious vulnerability (CVE-2025-61882) affecting certain versions of its E-Business Suite. The flaw allows attackers to remotely execute malicious code on targeted systems without needing…
-
Critical Redis Scripting Vulnerability Could Allow Remote Code Execution
A critical security vulnerability has been discovered in Redis that could allow remote code execution through a crafted Lua script. Identified as CVE-2025-49844, the flaw has received a CVSS score of 10.0,…
