CISTCK GROUP
  • Home
  • About Us
  • Our Clients
  • Services
    • MSSP
  • Products
    • Smart City Solutions
  • Contact Us
  • BLOG
Select Page
SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines

SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines

by admin | Jul 20, 2026 | Uncategorized

Cybersecurity researchers have flagged a new software supply chain attack codenamed SleeperGem targeting the Ruby ecosystem after three malicious gems were published to RubyGems with the end goal of serving additional payloads. The rogue gems are listed below –...
Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution

Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution

by admin | Jul 19, 2026 | Uncategorized

F5 has shipped fixes for a critical nginx flaw that lets a remote, unauthenticated attacker trigger a heap buffer overflow in the worker process with crafted HTTP requests. CVE-2026-42533 was patched on July 15 in nginx 1.30.4 (stable) and 1.31.3 (mainline), and in...
UAC-0145 Uses ClickFix CAPTCHAs to Infect Ukrainian Devices wih Malware

UAC-0145 Uses ClickFix CAPTCHAs to Infect Ukrainian Devices wih Malware

by admin | Jul 19, 2026 | Uncategorized

Russian state-sponsored threat actors have been observed leveraging the infamous ClickFix strategy to trick Ukrainian targets into infecting their own machines with data-stealing malware. According to the Computer Emergency Response Team of Ukraine (CERT-UA), the...
SonicWall SMA Zero-Days Exploited Before Disclosure to Gain Root Access

SonicWall SMA Zero-Days Exploited Before Disclosure to Gain Root Access

by admin | Jul 19, 2026 | Uncategorized

A previously undocumented threat actor has been attributed to the exploitation of recently disclosed SonicWall Secure Mobile Access (SMA) 1000 series VPN appliances as zero-days prior their public disclosure since June 22, 2026. Cybersecurity company Volexity is...
New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code

New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code

by admin | Jul 17, 2026 | Uncategorized

An anonymous HTTP request can run code on a WordPress site. The bug is in core, so a bare install with zero plugins is exploitable. Every 6.9 and 7.0 site was in range until Friday, when WordPress shipped 6.9.5 and 7.0.2 and enabled what it calls forced updates...
« Older Entries
Next Entries »

Recent Posts

  • Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps
  • Attackers Exploit MLflow SSRF Flaw to Steal Cloud Credentials and Secrets
  • Ransom Busters Claims It Hacked Ransomware Servers, Asks Victims for Up to $60,000
  • AI “Mind Viruses” Can Spread Between Agents Through Persistent Prompt Files
  • TWINLOOT Abuses SharePoint and Teams to Steal Credentials and Move Across Networks

Recent Comments

No comments to show.

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • November 2021
  • October 2021
  • April 2021
  • March 2021

Categories

  • Analysis
  • App
  • Cryptocurrency
  • Healthcare
  • Mobile
  • Technology
  • Uncategorized

Categories

  • Analysis
  • App
  • Cryptocurrency
  • Healthcare
  • Mobile
  • Technology
  • Uncategorized

Tags

Analytics Automation CSS Customer Data Edge Computing Healthcare Industry Marketing ransomware ransomware attack ransomware protection Sports Technology Warehouse
CISTCK Group

About Us

CISTCK Group is the most trusted partner for some of the world’s leading enterprises, innovators, SMEs and technopreneurs. We help businesses levitate their excellence through custom software development, UI/UX design, MVPs, Software Testing, and consultancy services.

  • Testing & QA
  • Custom Software Development
  • Website Development
  • IT Support Services
  • Software Support & Maintenance
  • E-Learning – LMS

Smart everything, connect and control remotely from your mobile device.

  • About us
  • FAQ
  • Our History
  • Facebook
  • X
  • Instagram
  • RSS

Designed by Elegant Themes | Powered by WordPress