Skip to content
Hawkeye Cybersecurity
Menu
  • Home
  • Services
  • About Us
  • Cybersecurity News
  • Contact

Category: Apps

Home » Apps » Page 33
Apps

Bing Images Vulnerability Lets Attackers Execute Remote Code on Microsoft Servers

Three critical remote code execution (RCE) vulnerabilities in Microsoft’s infrastructure, with two flaws in Bing Images allowing attackers to hijack backend image-processing servers using nothing more than a crafted SVG …

Apps

Cl0p Hackers Exploit Windchill Servers to Steal Companies’ Secret Product Designs

Cl0p ransomware affiliates are exploiting exposed PTC Windchill and FlexPLM servers to steal engineering and product-design data. The campaign combines software flaws to gain access without credentials, install hidden server-side …

Apps

Apache Syncope Release Patches for Multiple RCE and SQL Injection Vulnerabilities

Apache has issued critical security updates for its Syncope identity and access management (IAM) platform to address multiple vulnerabilities, including remote code execution (RCE), SQL injection, privilege escalation, server-side request …

Apps

Hackers Allegedly Claim Breach of Decathlon Customer Database With 160 Million Records

A threat actor is allegedly claiming to possess and sell a Decathlon customer database containing approximately 160 million records. The database was advertised on a cybercrime forum, where the seller …

Apps

Hackers Abuse Notepad++ Plugins to Compromise Your System Silently

A stealthy new campaign in which the UAC-0099 threat cluster hijacks a legitimate Notepad++ plugin to quietly plant malware on victim machines, marking a significant evolution in the group’s tactics …

Apps

Chaos Ransomware Turns Your Chrome and Edge Web Browser Into an Invisible Malware Command Channel

Chaos ransomware has introduced a new way to hide attacker activity inside everyday web browsing. The group’s msaRAT remote-access tool turns Chrome or Microsoft Edge into a covert channel for …

Apps

Hackers’ OPSEC Mistake Exposed a Global Espionage Campaign and Its New TriBack Malware

A simple mistake by cyber spies has pulled back the curtain on a wide ranging espionage effort. It reached hospitals, government offices, and schools across several continents in early 2026. …

Apps

Next.js Patches Nine Security Flaws Enabling SSRF, Authentication Bypass, and DoS Attacks

Vercel has disclosed and patched nine security vulnerabilities in Next.js, the widely used React framework, addressing flaws that could enable server-side request forgery (SSRF), middleware authentication bypass, denial-of-service (DoS) attacks, …

Apps

Exim Directory Traversal Vulnerability Enables Privilege Escalation Attacks

A newly disclosed high-severity vulnerability in the Exim mail transfer agent allows local attackers to exploit a directory traversal flaw to escalate privileges on affected systems. Tracked as EXIM-Security-2026-06-22.1 and …

Apps

Anthropic Launches Claude Security Plugin to Scan Code for Vulnerabilities

Anthropic has released the Claude Security plugin in beta, bringing AI-powered vulnerability scanning directly into Claude Code for developers who want to catch high-severity flaws before they ship. The tool …

Posts navigation

Older posts
Newer posts

Recent Posts

  • Windows 11 KB5124008 Update Breaks Active Directory Domain Trust and Blocks User Logins
  • Check Point Vulnerability Lets Remote Hackers Gain Root Access Without Authentication
  • CenterPoint Energy Data Breach – Hackers Stolen Customer’s Personal Data
  • CISA Warns of Critical ScreenConnect Vulnerability Actively Exploited in Attacks
  • German Manufacturer Shrinks Security Alert Response While Protecting 10,000 Endpoints

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026

Categories

  • Apps
Let's Connect!
Copyright © 2026 Hawkeye Cybersecurity. Veteran Owned and Operated.