Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News


kobaran.com > cryptocurrency-mining-operation-hijacks-3562-unsecured-redis-servers

Cryptocurrency Mining Operation Hijacks 3,562 Unsecured Redis Servers

4+ day, 9+ hour ago   (248+ words) The attackers built their intrusion around Redis’s master-replica replication system, a feature meant to let one server mirror the data of another for backup or scaling purposes. According to Hunters.io, once the operators confirmed a target server had no…...


kobaran.com > shai-hulud-malware-returns-to-npm-unchanged-111-days-after-its-hash-was-fingerprinted

Shai-Hulud Malware Returns to npm Unchanged, 111 Days After Its Hash Was Fingerprinted

6+ day, 8+ hour ago   (507+ words) Four packages is a small blast radius next to the 639 malicious versions pushed during the May campaign. The significance sits elsewhere. npm rolled out publish-time scanning in July, a control that briefly holds new publications for automated analysis before they…...


kobaran.com > mathspace-data-breach-exposes-info-of-over-1-million-students-parents-staff

Mathspace Data Breach Exposes Info of Over 1 Million Students, Parents, Staff

1+ week, 17+ hour ago   (314+ words) Mathspace has taken its platform offline while remediation continues, and it has notified regulators in both countries. The company says it is still working through notifications to affected individuals and schools, and it has committed to publishing updates on changes…...


kobaran.com > ubiquiti-fixes-perfect-score-flaw-cve-2026-77537-in-unifi-protect

Ubiquiti Fixes Perfect-Score Flaw CVE-2026-77537 in UniFi Protect

2+ week, 4+ day ago   (401+ words) Ubiquiti has shipped patches for three maximum-severity security flaws, including CVE-2026-77537, a bug in its UniFi Protect video surveillance platform that carries a perfect 10.0 CVSS score. An unauthenticated attacker with network access can exploit the flaw without any user interaction,…...


kobaran.com > microsoft-fixes-perfect-10-entra-id-flaw-tracked-as-cve-2026-69836

Microsoft Fixes Perfect-10 Entra ID Flaw Tracked as CVE-2026-69836

3+ week, 13+ hour ago   (588+ words) Microsoft says the vulnerability is already fixed and that customers do not need to do anything on their end. Still, the rollout of information around CVE-2026-69836 included an unusual wrinkle: an early report describing active exploitation that Microsoft later walked…...


kobaran.com > synkloader-malware-targets-corporate-networks-via-fake-microsoft-teams-it-support-scam

SynkLoader Malware Targets Corporate Networks via Fake Microsoft Teams IT Support Scam

3+ week, 13+ hour ago   (530+ words) The discovery adds to a growing pattern of threat actors weaponizing everyday collaboration platforms rather than relying solely on traditional email phishing. By hiding behind familiar workplace communication and legitimate cloud infrastructure from Microsoft Azure, the campaign is engineered to…...