#1 Middle East & Africa Trusted Cybersecurity News & Magazine |

21 C
Dubai
Thursday, January 22, 2026
HomeTopics 5

Topics 5

spot_imgspot_imgspot_imgspot_img

CVE‑2025‑4389: Crawlomatic’s Critical File‑Upload Flaw Opens 12,000+ WordPress Sites to One‑Click RCE

A critical vulnerability tracked as CVE‑2025‑4389 (CVSS 9.8) allows unauthenticated attackers to upload any file type including web‑shells via the crawlomatic_generate_featured_image() hook in Crawlomatic Multipage Scraper Post...

Meta Faces Legal Backlash Over AI Training Plans: NOYB’s Cease and Desist Sparks Potential EU Class Action

Meta Platforms Inc., the parent company of Facebook and Instagram, is under intense scrutiny in Europe following its announcement to use personal data from...

Senior U.S. Officials Impersonated in Malicious Messaging Campaign: FBI Issues Urgent Warning

In an escalating wave of digital deception, the FBI has issued a stark public service announcement (Alert Number: I-051525-PSA, dated May 15, 2025) warning...

Marbled Dust Exploits Zero-Day in Output Messenger to Spy on Kurdish Targets: Inside a Sophisticated Regional Espionage Campaign

In April 2024, a covert cyber-espionage campaign shook the Middle Eastern cybersecurity landscape. Microsoft Threat Intelligence uncovered a zero-day exploit in the widely used...

OtterCookie Malware: Unveiling the Evolving Threat in the Contagious Interview Campaign

In the ever-evolving landscape of cyber threats, state-sponsored actors continually refine their tactics to exploit vulnerabilities and achieve their objectives. One such actor, the...

Exploiting Trust: How Brazilian Cybercriminals Leverage RMM Tools in Sophisticated Spam Campaign

In early 2025, cybersecurity researchers at Cisco Talos uncovered a sophisticated spam campaign targeting Portuguese-speaking users in Brazil. This campaign exploited legitimate Remote Monitoring...

Threat Analysis: Chinese Threat Actor Exploits Critical SAP Vulnerability (CVE-2025-31324) in the Wild

In an alarming development that underscores the persistent targeting of enterprise-critical systems, CVE-2025-31324, a critical deserialization vulnerability in SAP NetWeaver Visual Composer has been...

Subscribe

- Never miss a story with notifications

- Gain full access to our premium content

- Browse free from up to 5 devices at once

Must read

spot_imgspot_imgspot_imgspot_img