News
Hackers Use Browser-in-the-Browser Technique to Steal Facebook Login Credentials
2+ hour, 24+ min ago (256+ words) Facebook's massive user base of over 3 billion active users makes it a prime target for sophisticated phishing attacks. Security researchers recently identified a significant surge in Facebook phishing scams during the second half of 2025, with attackers employing an advanced method…...
Instagram Confirms No System Breach, Resolves External Party Password Reset Issue
19+ hour, 59+ min ago (325+ words) Instagram has clarified that its systems were not breached following reports of unsolicited password reset emails sent to users. The company stated that the incidents were caused by an external party exploiting a now-patched vulnerability that allowed unauthorized password reset…...
Google Integrates Gemini into Gmail with New AI-Powered Features
21+ hour, 1+ min ago (368+ words) Google is ushering Gmail into the artificial intelligence era with a suite of new Gemini-powered features designed to transform how users manage their inboxes. The search giant announced today that it's integrating advanced AI capabilities into its email platform, offering…...
New Study Uncovers Infrastructure Behind Carding Markets: 28 IPs, 85 Domains
1+ day, 8+ min ago (314+ words) Cybersecurity researchers have identified 28 unique IP addresses and 85 domains hosting carding markets and forums, shedding light on the technical infrastructure enabling credit card fraud'operations worldwide. The research, conducted between July and December 2025, utilized advanced technical fingerprinting methods to track these…...
SmarterTools SmarterMail Vulnerability Enables Remote Code Execution; PoC Released
4+ day, 1+ hour ago (279+ words) A critical pre-authentication remote code execution vulnerability has been disclosed in SmarterTools SmarterMail, scoring a perfect 10.0 on the CVSS severity scale. The vulnerability poses a significant security risk to organizations that rely on SmarterMail for email and collaboration. What makes…...
New ChatGPT Flaws Allow Attackers to Exfiltrate Data from Gmail, Outlook, and GitHub
4+ day, 2+ hour ago (337+ words) Security researchers documented a sophisticated attack chain that transforms a single compromised chat session into a vector for data theft from email, cloud storage, code repositories, and connected user accounts. The vulnerabilities exploit ChatGPT's ability to interact with external services…...
China Reportedly Hacked Email Systems Used by U.S. Congressional Staff
4+ day, 23+ hour ago (326+ words) The intrusions, attributed to the notorious Salt Typhoon group, targeted email accounts of aides serving on committees responsible for overseeing China policy, foreign affairs, intelligence, and armed services operations. While the exact number of compromised accounts remains unclear, sources familiar…...
Microsoft Cancels Plans to Impose Daily Bulk Email Limits on Exchange Online
5+ day, 22+ hour ago (247+ words) Microsoft has announced the indefinite cancellation of its Mailbox External Recipient Rate Limit feature for Exchange Online, reversing course on a policy intended to combat spam and unauthorized bulk email activity. The tech giant acknowledged that the rate limit, designed…...
Malicious Chrome Extension Exposed for Stealing ChatGPT and DeepSeek Chats from 900,000 Users
6+ day, 2+ hour ago (274+ words) The discovery, reported by OX Security on December 29, 2025, reveals a coordinated threat operation exploiting user trust in AI productivity tools. The extensions "Chat GPT for Chrome with GPT-5, Claude Sonnet & DeepSeek AI" (600,000+ installations) and "AI Sidebar with Deepseek, ChatGPT, Claude…...
Threat Actors Use Commodity Loader in Targeted Email Campaigns to Attack
6+ day, 18+ hour ago (226+ words) Cyble Research and Intelligence Labs (CRIL) has uncovered a sophisticated malware campaign that leverages a commodity loader shared by multiple threat actors. The ongoing operation targets manufacturing and government organizations in Italy, Finland, and Saudi Arabia, with a primary goal…...