Microsoft warns that attackers are actively exploiting CVE-2026-73570 to run commands, steal Zimbra authentication data, and ...
Microsoft observed ClickFix attacks using browser cache smuggling to execute cached VBScript and launch a credential-targeting malware chain.
Attackers exploit Citrix NetScaler CVE-2026-88771 to deploy web shells and attempt theft of configuration data.
The open web is slowly but surely filling up with “traps” designed for LLM-powered AI agents. The technique, known as indirect prompt injection (IPI), involves hiding (more or less) covert ...