Npav Lab

  1. OpenSSH CVE-2025-61984 Command Injection RCE via ProxyCommand Newline Bypass in Git Submodules Patch to 10.1 Now
  2. CISA Adds Exploited Windows CLFS Privilege Escalation CVE-2021-43226 to KEV: Mandatory Patch by Oct 27, 2025
  3. GitHub Exposes 'Most Powerful FUD Android RAT 2025' with Web C2, Ransomware, and Total AV Evasion
  4. Threat Actor Claims Huawei Source Code Breach and Sells Internal Tools on Dark Web for $1,000
  5. CometJacking: New Attack Hijacks Perplexity’s Comet AI Browser for Covert Data Exfiltration
  6. Apple Patches CVE-2025-43400 Font Parser Flaw in macOS Sequoia 15.7.1 to Prevent Memory Corruption Attacks
  7. SORVEPOTEL: Self-Propagating WhatsApp Malware Targets Brazilian Users with Rapid Phishing Spread
  8. Discord Data Breach: Third-Party Vendor Exposes User Names, Emails, Photo IDs, and Support Data
  9. Notepad++ DLL Hijacking Vulnerability (CVE-2025-56383) Enables Arbitrary Code Execution on User Systems
  10. 2026 FIFA World Cup: Escalating Cyber Threats Demand Cross-Border Security for Largest Tournament Yet
Back to Top