Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes https://firewall.firm.in/wp-content/uploads/2026/07/zimbra-email.jpg A Russian state-supported espionage group spent months reading Western mailboxes through a then-unknown flaw in Zimbra’s webmail client. The payload goes after the last 90 days of email, the organization’s entire email directory, the password saved in the browser and the codes kept for two-factor recovery. Opening ...
Read More »Vulnerabilities & Exploits
World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent
World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent https://firewall.firm.in/wp-content/uploads/2026/07/huggingface.jpg Ravie LakshmananJul 20, 2026AI Security / Vulnerability In an ironic twist, open-source artificial intelligence (AI) platform Hugging Face revealed that it was the victim of a hack perpetrated by an autonomous AI agent system. The company said it detected and responded to the incident targeting its production ...
Read More »Fake Coding Tests Deliver OtterCookie-Aligned Malware Hidden in SVG Flag Images
Fake Coding Tests Deliver OtterCookie-Aligned Malware Hidden in SVG Flag Images https://firewall.firm.in/wp-content/uploads/2026/07/northkorean-hacker.jpg Ravie LakshmananJul 17, 2026Social Engineering / Malware North Korean threat actors linked to the Contagious Interview campaign have been observed employing steganography in SVG image files to conceal malicious payloads as part of a campaign using fake job postings and coding challenges. “Any user who ran the project ...
Read More »AI Coding Agents Found Triggering Endpoint Security Rules Built to Catch Attackers
AI Coding Agents Found Triggering Endpoint Security Rules Built to Catch Attackers https://firewall.firm.in/wp-content/uploads/2026/07/alarm.jpg Sophos looked at a week of its own endpoint data and found that AI coding agents such as Claude Code, Cursor, and OpenAI Codex are setting off detection rules written to catch human intruders. The agents are not malicious. They just do a lot of things that, ...
Read More »U.S. Government Entity Paid Kairos $1 Million in Data-Theft Extortion Case
U.S. Government Entity Paid Kairos $1 Million in Data-Theft Extortion Case https://firewall.firm.in/wp-content/uploads/2026/07/county-hacked.jpg A U.S. government entity paid about $1 million to keep stolen files from being leaked, according to a new case study by Rakesh Krishnan for Ransom-ISAC, built on a leaked negotiation chat and the blockchain trail the payment left. The odd part: the group that took the money calls ...
Read More »Google Disrupts NetNut Residential Proxy Network Spanning 2 Million Home Devices
Google Disrupts NetNut Residential Proxy Network Spanning 2 Million Home Devices https://firewall.firm.in/wp-content/uploads/2026/07/proxy.jpg Swati KhandelwalJul 02, 2026Cybercrime / Botnet Google has significantly degraded NetNut, one of the biggest networks that turns home devices into rented relays for other people’s traffic. Working with the FBI, Lumen, and others, Google’s Threat Intelligence Group (GTIG) said this week it had reduced the network’s pool of usable ...
Read More »Malicious Perplexity Chrome Extension Intercepted Searches and Address Bar Input
Malicious Perplexity Chrome Extension Intercepted Searches and Address Bar Input https://firewall.firm.in/wp-content/uploads/2026/06/pp-ai.jpg Swati KhandelwalJun 29, 2026Browser Security / Web Security Microsoft has found a malicious Chrome extension that posed as the AI search engine Perplexity and quietly logged what people searched for. It routed every query and every character typed into the address bar through an attacker-controlled server before redirecting users ...
Read More »CISA Warns Fortinet Customers as FortiBleed Hits 86,644 FortiGate Devices
CISA Warns Fortinet Customers as FortiBleed Hits 86,644 FortiGate Devices The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday urged Fortinet customers with FortiGate appliances to take steps to secure against ongoing malicious activity aimed at thousands of internet-accessible devices. The sweeping campaign, believed to be the work of Russian-speaking threat actors, has been codenamed FortiBleed. The number of ...
Read More »Microsoft Warns of Photo ZIP Phishing Campaign Targeting Hotels with Node.js Implant
Microsoft Warns of Photo ZIP Phishing Campaign Targeting Hotels with Node.js Implant https://firewall.firm.in/wp-content/uploads/2026/06/hotel-photo-zip.jpg Swati KhandelwalJun 26, 2026Phishing / Malware An active phishing campaign has been targeting hotel and other hospitality organizations across Europe and Asia since April 2026, using photo-themed ZIP files to drop a Node.js implant and dig into front-desk machines, Microsoft says. The company has not attributed the activity to ...
Read More »Miasma Malware Targets npm Packages and GitHub Actions in Supply Chain Attack
Miasma Malware Targets npm Packages and GitHub Actions in Supply Chain Attack https://firewall.firm.in/wp-content/uploads/2026/06/Miasma.jpg Cybersecurity researchers have flagged yet another evolution of the supply chain attack linked to the Mini Shai-Hulud, Miasma, and Hades malware family that has compromised a new set of npm packages, even as it has propagated to the Go ecosystem. “The latest activity includes malicious npm releases ...
Read More »
Firewall Security Company India Complete Firewall Security Solutions Provider Company in India











