BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
Critical Unpatched Telnetd Flaw (CVE-2026-32746) Enables Unauthenticated Root RCE via Port 23
/in General NewsCybersecurity researchers have disclosed a critical security flaw impacting the GNU InetUtils telnet daemon (telnetd) that could be exploited by an unauthenticated remote attacker to execute arbitrary code with elevated privileges.
The vulnerability, tracked as CVE-2026-32746, carries a CVSS score of 9.8 out of 10.0. It has been described as a case of out-of-bounds write in the LINEMODE Set
The Hacker News – Read More
Crypto e-commerce platform Bitrefill accuses North Korea of stealing 18,500 purchase records
/in General NewsBitrefill said hackers allegedly tied to North Korea’s Lazarus group accessed around 18,500 purchase records that contained email addresses, crypto payment addresses, and metadata including IP addresses.
The Record from Recorded Future News – Read More
More Attackers Are Logging In, Not Breaking In
/in General NewsCredential theft soared in the second half of 2025, thanks in part to the industrialization of infostealer malware and AI-enabled social engineering.
darkreading – Read More
Less Lucrative Ransomware Market Makes Attackers Alter Methods
/in General NewsRansomware actors are ditching Cobalt Strike in favor of native Windows tools, as payment rates hit record lows and data theft surges.
darkreading – Read More
Apple rolls out first ‘background security’ update for iPhones, iPads, and Macs to fix Safari bug
/in General NewsApple’s first-ever “background security improvement” fixes a vulnerability in its Safari browser running its latest software.
Security News | TechCrunch – Read More
Hackers Target Cybersecurity Firm Outpost24 in 7-Stage Phish
/in General NewsThe cyberattackers leveraged trusted brands and domains in an attempt to redirect a C-suite executive at Outpost24 to give up his credentials.
darkreading – Read More
Medusa ransomware gang claims attacks on prominent Mississippi hospital, New Jersey county
/in General NewsThe Medusa ransomware operation has claimed a devastating cyberattack that knocked out systems at the biggest hospital in Mississippi for nine days.
The Record from Recorded Future News – Read More
Best early Amazon Spring Sale 2026 smartwatch and smart ring deals
/in General NewsLooking to improve your sleep, log more steps, or track activity? These smart rings, smartwatches, and other wearables are already on sale ahead of Amazon’s Big Spring Sale.
Latest news – Read More
Best Walmart deals to compete with Amazon’s Big Spring Sale 2026
/in General NewsDon’t miss these big Walmart sales that are even better than some of Amazon’s, including on Apple products, Roku devices, and more.
Latest news – Read More
Georgia man charged for robbing NBA, NFL players through stolen Apple account details
/in General NewsA Georgia man who had already served time for conning professional athletes is accused of impersonating a prominent adult film actress in order to break into the Apple accounts of NBA and NFL players.
The Record from Recorded Future News – Read More