Cyber Accord
  • Home
  • Services
    • Security Testing
    • CLOUD SECURITY
    • GAP ASSESSMENTS
    • Compliance Readiness
    • Advisory
    • Questionnaires
  • About us
  • Contact
  • Blogs
Select Page
DOJ Charges 17 Iranian Hackers in IRGC-Linked Campaign That Stole 31.5TB of Research Data

DOJ Charges 17 Iranian Hackers in IRGC-Linked Campaign That Stole 31.5TB of Research Data

Cyber Security

The U.S. Department of Justice has unsealed a 14-count superseding indictment against 17 alleged members of the Iran-based Mabna Institute, accusing them of conducting a long-running cyber espionage campaign that stole at least 31.5TB of research data and intellectual...
Splunk Patches Critical MCP Server RCE and 16 Other Security Flaws Across AI Toolkit, Kafka Apps

Splunk Patches Critical MCP Server RCE and 16 Other Security Flaws Across AI Toolkit, Kafka Apps

Cyber Security

Splunk has released security updates for 17 vulnerabilities affecting several apps and add-ons, including Splunk MCP Server, Splunk AI Toolkit, and Splunk Connect for Kafka. The most severe issue, tracked as CVE-2026-76404, is a critical remote code execution...
Cl0p Hackers Exploit PTC Windchill Flaw to Steal Passwords and Sensitive Company Data

Cl0p Hackers Exploit PTC Windchill Flaw to Steal Passwords and Sensitive Company Data

Cyber Security

Cl0p, also tracked as Cl0P, has returned with a campaign aimed at PTC Windchill servers, putting engineering files, passwords, and company records at risk. The financially motivated group is exploiting a critical remote-code-execution flaw, CVE-2026-12569, to gain...
VMware Syslog Path Traversal Becomes Root RCE, Persistent SSH Access and ESXi Ransomware

VMware Syslog Path Traversal Becomes Root RCE, Persistent SSH Access and ESXi Ransomware

Cyber Security

A fast-moving campaign is turning a VMware vCenter flaw into a route to full control of virtual infrastructure. Attackers are abusing CVE-2026-59310, a critical path traversal bug in the Syslog Server, to run commands as root without a normal login. The activity moved...
New MessiahGPT AI Model Fueling Automated Ransomware and Phishing Attacks

New MessiahGPT AI Model Fueling Automated Ransomware and Phishing Attacks

Cyber Security

A criminal AI service called MessiahGPT is being marketed on BreachForums as an uncensored platform for creating ransomware, phishing kits, stealers, crypters, rootkits, and social-engineering content. Trellix researchers describe it as part of a growing underground...
« Older Entries
Next Entries »

Recent Posts

  • Mirage2FA Phishing Kit Bypasses MFA to Hijack Microsoft 365 Sessions, Targeting 3,500+ Organizations
  • Fake GTA 6 Demo Is Actually Malware That Steals Your Passwords and Logged-In Sessions
  • Hugging Face Reportedly Explores $13 Billion Sale After Recent AI Security Incident
  • Top 10 Best Wireless / Wi-Fi Security Solutions 2026
  • What specifically allowed the agent to reach a real company’s systems during testing? 

Categories

  • Cyber Security
CyberAccord | All Rights Reserved | 2025