Category: Cybersecurity News
-
Hidden Vulnerabilities in Browser-Based Generative AI Usage
Users and organizations are increasingly rely on generative AI (artificial intelligence) tools to streamline workflows, enhance productivity, and handle sensitive data. But new security threats are emerging, some of which could have serious consequences. Recent research highlights a growing vulnerability with AI usage and browser extensions, which can be exploited to manipulate prompts and exfiltrate
-
New Choicejacking Attack Exploits Charging Stations to Steal Data from Phones
Public charging stations have always been considered a convenient way to power up devices on the go. However, recent cybersecurity research reveals a disturbing new threat—called Choicejacking—that turns these stations into data-stealing traps, often without the user even realizing it. For years, “juice jacking” has been a known security concern. Hackers infected charging stations or
-
New Security Features from Google Workspace Help Protect Accounts from Common Threats
Cyber threats like phishing and session hijacking continue to grow, making it more important than ever for organizations to strengthen account security. Google Workspace has introduced several new tools designed to make accounts harder to compromise and easier to secure. Passkeys Are Now Available Passkeys replace traditional passwords with cryptographic keys stored on your device.
-
Lenovo Issues Security Advisory for BIOS Vulnerabilities in IdeaCentre and Yoga All-In-One Devices
Lenovo has released a security advisory regarding significant vulnerabilities found in the Insyde BIOS firmware used in certain IdeaCentre and Yoga All-In-One products. These vulnerabilities, tracked as CVE-2025-4421 through CVE-2025-4426, could potentially allow a privileged local attacker to read sensitive contents in System Management RAM (SMRAM) or execute arbitrary code within System Management Mode (SMM).
-
Orange Group Impacted by Cybersecurity Incident
Orange Group, a major telecommunications provider, has reported recently detected suspicious activity targeting one of its information systems. As soon as the threat was detected, the company’s dedicated teams, working closely with Orange Cyberdefense, moved swiftly to contain the situation and protect its services. The attack led to some temporary disruptions, mainly affecting certain management
-
Apple Releases Security Updates Including For iOS, iPadOS, macOS, Apple TV
Apple rolled out a series of security updates across its range of devices and software. These updates fix several vulnerabilities that could be exploited by malicious actors to cause system crashes, access private information, or take control of your devices. The latest updates apply to a wide range of Apple devices, including mac, iPhones, iPadOS
-
Major Security Flaw in WordPress Post SMTP Plugin Puts Thousands of Sites at Risk
In a recent security alert, researchers at Patchstack have uncovered a critical vulnerability in the widely used Post SMTP plugin for WordPress, exposing websites utilizing it to the risk of hijacking and complete site takeover. Post SMTP is a popular plugin designed to enhance email delivery on WordPress sites, replacing the default email function with
-
Critical Security Flaw Discovered in Mitel MX-ONE Communication System
A recent security advisory was released by Mitel with information on a critical vulnerability affecting certain versions of their MiVoice MX-ONE communication system. This flaw could allow malicious actors to bypass authentication controls, potentially gaining unauthorized access to both user and administrator accounts. Because of the severity, it’s essential for organizations using these systems to
Categories:
Have any comments or suggestions? Feel free to let us know!
