Category: Cybersecurity News
-
Malwarebytes Online Threat Checks Now Available in ChatGPT
Malwarebytes has released a new ChatGPT app that allows users to check suspected scams directly within the chatbot interface. The integration makes Malwarebytes the first cybersecurity company to provide scam analysis and threat intelligence through ChatGPT’s app platform. The feature allows users to submit potentially suspicious content for review during an active conversation, without switching
-
One-Click Security Flaw Found in Moltbot AI Tool
A high-severity security vulnerability has been disclosed in clawdbot, an npm package used by the Moltbot AI automation platform, according to a recent GitHub Security Advisory. The issue allows attackers to achieve remote code execution (RCE) with a single click by exploiting how the platform’s control interface handles authentication tokens. Moltbot is a locally run
-
Researchers Detail Directory Technique Used to Hijack WordPress Permalinks
Security researchers at Sucuri have identified a WordPress malware technique that allows attackers to inject spam content into search engine results while leaving the website’s visible pages unchanged. The activity was uncovered during a site cleanup after a customer reported seeing gambling-related content appearing in Google search results. According to Sucuri, attackers targeted trusted pages
-
Microsoft to Disable NTLM by Default in Future Windows Releases
Microsoft in a recent blog post has announced that it will disable the legacy NTLM authentication protocol by default in upcoming Windows Server and Windows client releases, citing long-standing security weaknesses. NTLM (New Technology LAN Manager) is an authentication protocol that was introduced in 1993 with Windows NT and was the default for domain-joined systems
-
Thousands of AI Systems Found Openly Accessible Online
As AI tools become easier to run outside of major cloud platforms, a new and largely unseen layer of AI infrastructure is quietly taking shape online. Joint research by SentinelLabs and Censys has revealed that over 170,000 AI systems are now publicly reachable on the open internet and operating without the safeguards, monitoring, or oversight
-
Match Group Reports Data Breach Affecting Multiple Dating Apps
Match Group, the parent company behind Tinder, Hinge, OkCupid, Match.com, and Meetic, has reported a cybersecurity incident that resulted in unauthorized access to user data across several of its platforms. According to Bleepingcomputer, Match Group confirmed the attack traces back to a social engineering effort where attackers compromised an Okta single sign-on account through a
-
SmarterTools Releases Critical Security Fixes for SmarterMail
SmarterTools has released SmarterMail Build 9526, the latest version of their enterprise email server platform. SmarterMail is widely used by businesses and service providers worldwide for secure, reliable email, calendaring, and collaboration services. This update focuses on improving security, fixing critical bugs, and enhancing overall system reliability. The release addresses several serious security vulnerabilities that
-
Microsoft Patches Actively Exploited Office Security Bypass
Microsoft has released a security update addressing a newly identified vulnerability in Microsoft Office that allows attackers to bypass built-in security protections under specific conditions. Tracked as CVE-2026-21509, Microsoft’s advisory notes that exploitation has been detected, indicating real-world activity, making timely patching especially important for organizations and individual users alike. The security feature bypass vulnerability
Categories:
Have any comments or suggestions? Feel free to let us know!
