Citrix and F5 Exploitations, Apple Sends Spyware Alerts, Telnyx Hacked, More iOS Attacks

THN Daily Updates
Newsletter
cover

Lessons from the Frontlines: Insights from a Cybersecurity Career ($35.00 Value) FREE for a Limited Time

Transform your approach to cybersecurity leadership with specific, actionable techniques from a 25+ year veteran of the industry.

Download Now Sponsored
LATEST NEWS Mar 28, 2026

Citrix NetScaler Under Active Recon for CVE-2026-3055 (CVSS 9.3) Memory Overread Bug

A recently disclosed critical security flaw impacting Citrix NetScaler ADC and NetScaler Gateway is witnessing active reconnaissance activity, according to Defused Cyber and watchTowr. The vulnerability, CVE-2026-3055 (...

Read More
Twitter Facebook LinkedIn

CISA Adds CVE-2025-53521 to KEV After Active F5 BIG-IP APM Exploitation

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added a critical security flaw impacting F5 BIG-IP Access Policy Manager (APM) to its Known Exploited Vulnerabilities (KEV) catalog, citing evid...

Read More
Twitter Facebook LinkedIn

Stop IT spending leaks

Secure your hardware and cut shadow IT costs. Download our free IT policy template to standardize device management and global security protocols.

Read More
Twitter Facebook LinkedIn

TA446 Deploys DarkSword iOS Exploit Kit in Targeted Spear-Phishing Campaign

Proofpoint has disclosed details of a targeted email campaign in which threat actors with ties to Russia are leveraging the recently disclosed DarkSword exploit kit to target iOS devices. The activity has been attribute...

Read More
Twitter Facebook LinkedIn

Apple Sends Lock Screen Alerts to Outdated iPhones Over Active Web-Based Exploits

Apple is now sending Lock Screen notifications to iPhones and iPads running older versions of iOS and iPadOS to alert users of web-based attacks and urge them to install the update. The development was first reported by...

Read More
Twitter Facebook LinkedIn

TeamPCP Pushes Malicious Telnyx Versions to PyPI, Hides Stealer in WAV Files

TeamPCP, the threat actor behind the supply chain attack targeting Trivy, KICS, and litellm, has now compromised the telnyx Python package by pushing two malicious versions to steal sensitive data. The two versions, 4.8...

Read More
Twitter Facebook LinkedIn

Open VSX Bug Let Malicious VS Code Extensions Bypass Pre-Publish Security Checks

Cybersecurity researchers have disclosed details of a now-patched bug impacting Open VSX's pre-publish scanning pipeline to cause the tool to allow a malicious Microsoft Visual Studio Code (VS Code) extension to pass th...

Read More
Twitter Facebook LinkedIn

AitM Phishing Targets TikTok Business Accounts Using Cloudflare Turnstile Evasion

Threat actors are using adversary-in-the-middle (AitM) phishing pages to seize control of TikTok for Business accounts in a new campaign, according to a report from Push Security. Business accounts associated with socia...

Read More
Twitter Facebook LinkedIn
cover

Lessons from the Frontlines: Insights from a Cybersecurity Career ($35.00 Value) FREE for a Limited Time

Transform your approach to cybersecurity leadership with specific, actionable techniques from a 25+ year veteran of the industry.

Download Now Sponsored

This email was sent to sikubaycom.s3cr3tz@blogger.com. You are receiving this newsletter because you opted-in to receive relevant communications from THN. To manage your email newsletter preferences, please click here.

Contact THN: info@thehackernews.com
Unsubscribe

THN | K.P BLock, Pitampura, Delhi