Cyber Accord
  • Home
  • Services
    • Security Testing
    • CLOUD SECURITY
    • GAP ASSESSMENTS
    • Compliance Readiness
    • Advisory
    • Questionnaires
  • About us
  • Contact
  • Our Blogs
Select Page
“Trivy Scanner Breached: Hackers Inject Malicious Scripts to Harvest Login Credentials”

“Trivy Scanner Breached: Hackers Inject Malicious Scripts to Harvest Login Credentials”

Cyber Security

“`html Malicious Script Injection in Trivy Compromise A complex supply chain breach targeting the official Trivy GitHub Action (aquasecurity/trivy-action) has breached continuous integration and continuous deployment (CI/CD) pipelines worldwide. Revealed in late...
“FBI and CISA Alert: Russian Hackers Targeting Key Individuals via Signal Messaging”

“FBI and CISA Alert: Russian Hackers Targeting Key Individuals via Signal Messaging”

Cyber Security

“`html FBI, CISA Warn Russian Hackers The Federal Bureau of Investigation (FBI) along with the Cybersecurity and Infrastructure Security Agency (CISA) have recently published a collaborative advisory concerning a widespread phishing operation. This warning...
“Zimbra XSS Vulnerability: Russian APT’s ‘Operation GhostMail’ Targets Ukrainian Government”

“Zimbra XSS Vulnerability: Russian APT’s ‘Operation GhostMail’ Targets Ukrainian Government”

Cyber Security

“`html A Russian state-affiliated threat entity has initiated a focused cyber assault on a Ukrainian governmental organization, utilizing a cross-site scripting (XSS) flaw in Zimbra Collaboration Suite to extract credentials and confidential email information....
Critical Cisco Firewall 0-Day Vulnerability Active in the Field: Launch of Interlock Ransomware Attacks

Critical Cisco Firewall 0-Day Vulnerability Active in the Field: Launch of Interlock Ransomware Attacks

Cyber Security

“`html A current operation by the Interlock ransomware collective is taking advantage of a severe zero-day flaw (CVE-2026-20131) within Cisco Secure Firewall Management Center (FMC) Software. This defect may permit an unauthenticated remote intruder to run...
“New Vishing Scam Exploits Microsoft Teams Support Calls to Compromise Quick Assist”

“New Vishing Scam Exploits Microsoft Teams Support Calls to Compromise Quick Assist”

Cyber Security

“`html The Microsoft Detection and Response Team describes an intricate voice phishing (vishing) campaign that effectively breached a corporate setting in November 2025. Differing from traditional intrusions that depend on software vulnerabilities, this assault...
« Older Entries
Next Entries »

Recent Posts

  • “Uncovering 36 Malicious npm Packages Exploiting Strapi for Redis RCE and Persistent C2 Attacks”
  • Urgent Security Alert: Active Exploitation of Fortinet FortiClient EMS 0-Day Vulnerability
  • “Unveiling LinkedIn’s Hidden Code: How It Scans Your Browser for Extensions”
  • GitHub Exploited by North Korean Campaigns for LNK Phishing Operations
  • “10 Leading VPNs to Enhance Your Online Privacy”

Categories

  • Cyber Security
CyberAccord | All Rights Reserved | 2025