Npav Lab

  1. CISA Adds Exploited Windows CLFS Privilege Escalation CVE-2021-43226 to KEV: Mandatory Patch by Oct 27, 2025
  2. GitHub Exposes 'Most Powerful FUD Android RAT 2025' with Web C2, Ransomware, and Total AV Evasion
  3. Threat Actor Claims Huawei Source Code Breach and Sells Internal Tools on Dark Web for $1,000
  4. CometJacking: New Attack Hijacks Perplexity’s Comet AI Browser for Covert Data Exfiltration
  5. Apple Patches CVE-2025-43400 Font Parser Flaw in macOS Sequoia 15.7.1 to Prevent Memory Corruption Attacks
  6. SORVEPOTEL: Self-Propagating WhatsApp Malware Targets Brazilian Users with Rapid Phishing Spread
  7. Discord Data Breach: Third-Party Vendor Exposes User Names, Emails, Photo IDs, and Support Data
  8. Notepad++ DLL Hijacking Vulnerability (CVE-2025-56383) Enables Arbitrary Code Execution on User Systems
  9. 2026 FIFA World Cup: Escalating Cyber Threats Demand Cross-Border Security for Largest Tournament Yet
  10. Nimbus Manticore: Iranian APT Targets European Defense and Telecom with MiniJunk Backdoor and DLL Side-Loading Attacks
Back to Top