BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
Researchers Uncover NodeCordRAT Hidden in npm Bitcoin-Themed Packages
/in General NewsCybersecurity researchers have discovered three malicious npm packages that are designed to deliver a previously undocumented malware called NodeCordRAT.
The names of the packages, all of which were taken down as of November 2025, are listed below. They were uploaded by a user named “wenmoonx.”
bitcoin-main-lib (2,300 Downloads)
bitcoin-lib-js (193 Downloads)
bip40 (970 Downloads)
“The
The Hacker News – Read More
The State of Trusted Open Source
/in General NewsChainguard, the trusted source for open source, has a unique view into how modern organizations actually consume open source software and where they run into risk and operational burdens. Across a growing customer base and an extensive catalog of over 1800 container image projects, 148,000 versions, 290,000 images, and 100,000 language libraries, and almost half a billion builds, they can see
The Hacker News – Read More
Cisco Patches ISE Security Vulnerability After Public PoC Exploit Release
/in General NewsCisco has released updates to address a medium-severity security flaw in Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC) with a public proof-of-concept (PoC) exploit.
The vulnerability, tracked as CVE-2026-20029 (CVSS score: 4.9), resides in the licensing feature and could allow an authenticated, remote attacker with administrative privileges to gain access to
The Hacker News – Read More
OpenAI Launches ChatGPT Health with Isolated, Encrypted Health Data Controls
/in General NewsArtificial intelligence (AI) company OpenAI on Wednesday announced the launch of ChatGPT Health, a dedicated space that allows users to have conversations with the chatbot about their health.
To that end, the sandboxed experience offers users the optional ability to securely connect medical records and wellness apps, including Apple Health, Function, MyFitnessPal, Weight Watchers, AllTrails,
The Hacker News – Read More
CISA Flags Microsoft Office and HPE OneView Bugs as Actively Exploited
/in General NewsThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added two security flaws impacting Microsoft Office and Hewlett Packard Enterprise (HPE) OneView to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.
The vulnerabilities are listed below –
CVE-2009-0556 (CVSS score: 8.8) – A code injection vulnerability in Microsoft Office
The Hacker News – Read More
This 3-in-1 USB-C cable replaced every other cable in my travel bag – here’s why
/in General NewsWith one cable, I can charge my iPhone, Apple Watch, AirPods, and another device – without worry.
Latest news – Read More
Make a bucket of ice in just 5 minutes with this speedy gadget at CES 2026
/in General NewsEuhomy’s Ice Leopard X1 is the world’s fastest portable ice maker – and it’s priced right.
Latest news – Read More
The 3 most advanced smart glasses we tried so far at CES – that truly impressed us
/in General NewsWhat’s more futuristic and innovative than technology you wear on your face? These are our top picks at this year’s show so far.
Latest news – Read More
Asus delivers Wi-Fi 8 sneak peek at CES: Is this the shape of routers to come?
/in General NewsAsus previews the ROG NeoCore, a proof-of-concept router that aims to tackle today’s biggest network challenges.
Latest news – Read More
This portable jump starter resurrected my car in the middle of a snowstorm – now it’s a must for me
/in General NewsI tried the Topdon JS3000 out of the box, but the real test came six months later when I had to dig it out again.
Latest news – Read More