BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
175 Malicious npm Packages with 26,000 Downloads Used in Credential Phishing Campaign
/in General NewsCybersecurity researchers have flagged a new set of 175 malicious packages on the npm registry that have been used to facilitate credential harvesting attacks as part of an unusual campaign.
The packages have been collectively downloaded 26,000 times, acting as an infrastructure for a widespread phishing campaign codenamed Beamglea targeting more than 135 industrial, technology, and energy
The Hacker News – Read More
RondoDox Botnet Takes ‘Exploit Shotgun’ Approach
/in General NewsThe botnet packs over 50 exploits targeting unpatched routers, DVRs, NVRs, CCTV systems, servers, and other network devices.
The post RondoDox Botnet Takes ‘Exploit Shotgun’ Approach appeared first on SecurityWeek.
SecurityWeek – Read More
The AI SOC Stack of 2026: What Sets Top-Tier Platforms Apart?
/in General NewsThe SOC of 2026 will no longer be a human-only battlefield. As organizations scale and threats evolve in sophistication and velocity, a new generation of AI-powered agents is reshaping how Security Operations Centers (SOCs) detect, respond, and adapt.
But not all AI SOC platforms are created equal.
From prompt-dependent copilots to autonomous, multi-agent systems, the current market offers
The Hacker News – Read More
Juniper Networks Patches Critical Junos Space Vulnerabilities
/in General NewsPatches were rolled out for more than 200 vulnerabilities in Junos Space and Junos Space Security Director, including nine critical-severity flaws.
The post Juniper Networks Patches Critical Junos Space Vulnerabilities appeared first on SecurityWeek.
SecurityWeek – Read More
ZDI Drops 13 Unpatched Ivanti Endpoint Manager Vulnerabilities
/in General NewsThe unpatched vulnerabilities allow attackers to execute arbitrary code remotely and escalate their privileges.
The post ZDI Drops 13 Unpatched Ivanti Endpoint Manager Vulnerabilities appeared first on SecurityWeek.
SecurityWeek – Read More
From LFI to RCE: Active Exploitation Detected in Gladinet and TrioFox Vulnerability
/in General NewsCybersecurity company Huntress said it has observed active in-the-wild exploitation of an unpatched security flaw impacting Gladinet CentreStack and TrioFox products.
The zero-day vulnerability, tracked as CVE-2025-11371 (CVSS score: 6.1), is an unauthenticated local file inclusion bug that allows unintended disclosure of system files. It impacts all versions of the software prior to and
The Hacker News – Read More
Sophisticated Malware Deployed in Oracle EBS Zero-Day Attacks
/in General NewsGoogle researchers believe exploitation may have started as early as July 10 and the campaign hit dozens of organizations.
The post Sophisticated Malware Deployed in Oracle EBS Zero-Day Attacks appeared first on SecurityWeek.
SecurityWeek – Read More
North Korean Scammers Are Doing Architectural Design Now
/in General NewsNew research shows that North Koreans appear to be trying to trick US companies into hiring them to develop architectural designs using fake profiles, résumés, and Social Security numbers.
Security Latest – Read More
CL0P-Linked Hackers Breach Dozens of Organizations Through Oracle Software Flaw
/in General NewsDozens of organizations may have been impacted following the zero-day exploitation of a security flaw in Oracle’s E-Business Suite (EBS) software since August 9, 2025, Google Threat Intelligence Group (GTIG) and Mandiant said in a new report released Thursday.
“We’re still assessing the scope of this incident, but we believe it affected dozens of organizations,” John Hultquist, chief analyst of
The Hacker News – Read More
What is Alexa+? Everything you need to know about Amazon’s new AI assistant
/in General NewsAmazon’s Alexa+ service is smarter, more natural-sounding, and more capable than the virtual assistant you’ve come to know over the years.
Latest news – Read More