India/E/Secure India Cybersecurity Intelligence
News Policy Threat Map Threat Actors Podcast Submit a Tip About Contact
Banking Power Telecom Health Government Defence Transport Water General
General High 8 May
Tushar Subhra Dutta / Cybersecurity News:

Hackers Using Fake Claude AI Installer Pages to Trick Users Into Running Malware

Hackers are using convincing fake pages for Claude AI to trick users into running malware on their own systems. The campaign, known as “InstallFix” or the Fake Claude Installer threat, marks a sharp shift in how cybercriminals exploit the trust people place in artificial intelligence tools. Instead

General High 8 May
Bill Toulas / BleepingComputer:

Australia warns of ClickFix attacks pushing Vidar Stealer malware

The Australian Cyber Security Center (ACSC) is warning organizations of an ongoing malware campaign using the ClickFix social engineering technique to distribute  the Vidar Stealer info-stealing malware. [...]

General High 8 May
(The Hacker News) / The Hacker News:

Ivanti EPMM CVE-2026-6973 RCE Under Active Exploitation Grants Admin-Level Acces

Ivanti is warning that a new security flaw impacting Endpoint Manager Mobile (EPMM) has been explored in limited attacks in the wild. The high-severity vulnerability, CVE-2026-6973 (CVSS score: 7.2), is a case of improper input validation affecting EPMM before versions 12.6.1.1, 12.7.0.1, and 12.8.0

General High 8 May
(The Hacker News) / The Hacker News:

PCPJack Credential Stealer Exploits 5 CVEs to Spread Worm-Like Across Cloud Syst

Cybersecurity researchers have disclosed details of a new credential theft framework dubbed PCPJack that targets exposed cloud infrastructure and ousts any artifacts linked to TeamPCP from the environments. "The toolset harvests credentials from cloud, container, developer, productivity, and financi

General High 8 May
(The Hacker News) / The Hacker News:

ThreatsDay Bulletin: Edge Plaintext Passwords, ICS 0-Days, Patch-or-Die Alerts a

Bad week. Turns out the easiest way to get hacked in 2026 is still the same old garbage: shady packages, fake apps, forgotten DNS junk, scam ads, and stolen logins getting dumped into Discord channels like it’s normal. Some of these attack chains don’t even feel sophisticated anymore. More like some

General High 7 May
Ashish Khaitan / The Cyber Express:

Salesforce Marketing Cloud Vulnerabilities Expose Cross-Tenant Subscriber Data R

A recently disclosed set of vulnerabilities in Salesforce Marketing Cloud, widely known as SFMC, has drawn attention to the security risks tied to centralized marketing infrastructure.   The flaws, which affected components tied to AMPScript, CloudPages, and email-rendering workflows, could have ena

General High 7 May
Samiksha Jain / The Cyber Express:

Global Instructure Breach Hits Queensland Schools Through QLearn Platform

A major QLearn cybersecurity incident has affected thousands of educational institutions globally, including Queensland state schools and universities, after a cyber breach involving third-party education technology provider Instructure exposed personal information linked to students and staff. Quee

General High 7 May
The Record:

Hackers compromise Daemon Tools in global supply-chain attack, researchers say

Researchers at Kaspersky said attackers tampered with installers for Daemon Tools — a popular program used to mount disk images as virtual drives — and distributed them through the software’s official website.

General High 7 May
(The Hacker News) / The Hacker News:

Mirai-Based xlabs_v1 Botnet Exploits ADB to Hijack IoT Devices for DDoS Attacks

Cybersecurity researchers have exposed a new Mirai-derived botnet that self-identifies as xlabs_v1 and targets internet-exposed devices running Android Debug Bridge (ADB) to enlist them in a network capable of carrying out distributed denial-of-service (DDoS) attacks. Hunt.io, which detailed the mal

General High 7 May
(The Hacker News) / The Hacker News:

Your AI Agents Are Already Inside the Perimeter. Do You Know What They’re Doing?

Analysts recently confirmed what identity security teams have quietly feared: AI agents are being deployed faster than enterprises can govern them. In their inaugural Market Guide for Guardian Agents, Gartner states that “enterprise adoption of AI agents is accelerating, outpacing maturity of govern

General High 7 May
Ionut Arghire / Security Week:

Sophisticated Quasar Linux RAT Targets Software Developers

The persistent, evasive implant provides remote access, surveillance, and credential exfiltration capabilities. The post Sophisticated Quasar Linux RAT Targets Software Developers appeared first on SecurityWeek.

General High 7 May
Abinaya / Cybersecurity News:

New MajorDoMo RCE Vulnerability Exposes Servers to Code Execution Attacks

A newly disclosed flaw exposes internet-facing MajorDoMo servers to unauthenticated remote code execution via a broken authentication flow and unsafe dynamic PHP evaluation. The vulnerability (CVE-2026-27174) stems from the /admin.php request flow, where improper handling of unauthorized access allo

General High 7 May
Abinaya / Cybersecurity News:

Argo CD’s ServerSideDiff Vulnerability Enables Kubernetes Secret Extraction

A critical cybersecurity vulnerability has been uncovered in Argo CD, a widely used declarative GitOps continuous delivery tool for Kubernetes environments. Tracked as CVE-2026-43824, this high-severity flaw allows low-privileged users to extract plaintext Kubernetes Secrets directly from a cluster.

General Critical 7 May
Tushar Subhra Dutta / Cybersecurity News:

QLNX Targets Developers With Credential Theft Designed for Supply Chain Compromi

A new and previously undocumented Linux threat has emerged, targeting software developers in a way that could put entire supply chains at risk. Named Quasar Linux, or QLNX, this malware operates as a full-featured remote access trojan built specifically for Linux systems. It combines stealth techniq

General Critical 7 May
The Record:

New CISA initiative aims for critical infrastructure to operate offline during c

The initiative, named CI Fortify, focuses on isolation and recovery efforts that would see critical infrastructure organizations proactively disconnect from third-party dependencies and find ways to operate without reliable telecommunications and internet.

General High 7 May
Sergiu Gatlan / BleepingComputer:

New Cisco DoS flaw requires manual reboot to revive devices

Cisco patched a Crosswork Network Controller and Network Services Orchestrator denial-of-service vulnerability that requires manually rebooting targeted systems for recovery. [...]

General Critical 7 May
Bill Toulas / BleepingComputer:

Critical vm2 sandbox bug lets attackers execute code on hosts

A critical vulnerability in the popular Node.js sandboxing library vm2 allows escaping the sandbox and executing arbitrary code on the host system. [...]

General High 7 May
(The Hacker News) / The Hacker News:

Google’s Android Apps Get Public Verification to Stop Supply Chain Attacks

Google has announced expanded Binary Transparency for Android as a way to safeguard the ecosystem from supply chain attacks. "This new public ledger ensures the Google apps on your device are exactly what we intended to build and distribute," Google's product and security teams said. The initiative

General High 6 May
Tushar Subhra Dutta / Cybersecurity News:

New Fanwei E-cology10 Server Vulnerability Could Let Attackers Hijack Sessions a

A critical security flaw has been discovered in Fanwei E-cology10, a widely used enterprise collaboration platform built for medium and large organizations. The vulnerability, tracked as QVD-2026-14149, allows attackers to remotely execute arbitrary code on the target server without needing any logi

General High 6 May
(The Hacker News) / The Hacker News:

MuddyWater Uses Microsoft Teams to Steal Credentials in False Flag Ransomware At

The Iranian state-sponsored hacking group known as MuddyWater (aka Mango Sandstorm, Seedworm, and Static Kitten) has been attributed to a ransomware attack in what has been described as a "false flag" operation. The attack, observed by Rapid7 in early 2026, has been found to leverage social engineer

« 1 … 22 23 24 25 26 … 32 »
Sector Heat Index (7d)
Government
51
General
20
Power
7
Telecom
7
Recent Stories
‘AI, cyber security should be board-level priorities amid emerging risks’: Adam
Medium  24 Jul
India Tightens Social Media Rules to Protect Children Online
Medium  24 Jul
A Missing Piece in India’s Data Protection Framework: Where Do NGOs Stand Under
Medium  24 Jul
OpenAI executive calls Open AI models ‘AI communism’, sparks Backlash – MediaNam
Medium  24 Jul
‘Hacker Hai Bhai Hacker’: Video Claims CJP Protesters Escaped Police Van In Mumb
Medium  24 Jul
Govt Removes Unauthorised E-Rickshaw Battery Apps Over Remote Control Risks
Medium  24 Jul
Indian Banks Partner With 25 OEMs to Fight AI Cyber Risks – Whalesbook
Medium  24 Jul

© 2026 IndiaESecure — India Cybersecurity Intelligence  •  About  •  admin@indiaesecure.com