What this section covers
This category gathers reports on disclosed vulnerabilities, real-world exploitation, and the patches vendors ship in response. Coverage spans browser bugs, mobile platform flaws, phishing infrastructure, and credential abuse that crosses into exploitation territory.
Key topic areas
Browser & Mobile Flaws
Browser engine bugs, mobile browser abuse, and platform-level patches that affect end users.
Phishing & Spoofing
Email spoofing exposure, credential harvesting kits, and identity theft vectors observed in active campaigns.
Exploit Techniques
SQL injection, XSS, privilege escalation, and code execution chains reported across vendors.
Patch Coverage
Monthly security rollups, vendor advisories, and coordinated disclosure timelines.
Recent coverage
- Malvertising campaign abuses Chrome for iOS bug to target iPhone users A large-scale malvertising operation exploited a vulnerability in the Chrome for iOS browser to redirect iPhone and iPad users to malicious pages.
- 90 percent of tech companies are vulnerable to email spoofing A reported share of technology firms were found susceptible to email spoofing attacks, highlighting gaps in basic authentication enforcement.
- How Phishing Works and How to Avoid It An explainer on phishing mechanics, common lures, and defensive practices for end users and IT teams.
- Microsoft sues to take control of domains involved in Iran hacking campaign Legal action targeting infrastructure used by an Iran-linked threat actor to support phishing and credential harvesting operations.
- SonicWall report paints sobering picture of cyberthreat trends Annual threat report covering malware volume, encrypted attack growth, and exploit trends across enterprise environments.
SecNews24.com