CISTCK GROUP
  • Home
  • About Us
  • Our Clients
  • Services
    • MSSP
  • Products
    • Smart City Solutions
  • Contact Us
  • BLOG
Select Page
MFA Prompt Bombing: Why Your Second Factor Isn’t Saving You

MFA Prompt Bombing: Why Your Second Factor Isn’t Saving You

by admin | May 26, 2026 | Uncategorized

Multi-factor authentication (MFA) was supposed to close a critical gap in identity security. It meant that, even if an attacker possessed the account credentials, they couldn’t log in without the second factor. While that logic was sound, attackers have now...
CERT-In Mandates 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted Attacks

CERT-In Mandates 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted Attacks

by admin | May 26, 2026 | Uncategorized

The Indian Computer Emergency Response Team (CERT-In) has issued new guidelines requiring organizations to patch critical security vulnerabilities in internet-exposed systems within 12 hours of being flagged where “feasible” to safeguard against potential...
Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO Poisoning

Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO Poisoning

by admin | May 26, 2026 | Uncategorized

The Iranian state-sponsored threat actor known as Nimbus Manticore (aka Screening Serpens and UNC1549) has been attributed to a fresh campaign using lures impersonating organizations in the aviation and software sectors across the U.S., Europe, and the Middle East...
KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike

KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike

by admin | May 26, 2026 | Uncategorized

A now-patched high-severity security flaw affecting Digital Knowledge KnowledgeDeliver, a Learning Management System (LMS) popular in Japan, was exploited as a zero-day to deliver the Godzilla web shell and ultimately facilitate the deployment of Cobalt Strike Beacon....
⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain Chaos

⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain Chaos

by admin | May 25, 2026 | Uncategorized

Monday recap. Same mess, new week. A sketchy dev tool got people pwned, old bugs came back from the dead, and security products somehow needed protecting from themselves. A bunch of companies spent the week checking old boxes and forgotten servers they should’ve...
Ghost CMS CVE-2026-26980 Exploited to Hijack 700+ Sites for ClickFix Attacks

Ghost CMS CVE-2026-26980 Exploited to Hijack 700+ Sites for ClickFix Attacks

by admin | May 25, 2026 | Uncategorized

Threat actors are exploiting a recently disclosed critical security flaw in Ghost CMS to inject malicious JavaScript code with an aim to fuel ClickFix attacks. According to QiAnXin XLab, the activity involves the exploitation of CVE-2026-26980 (CVSS score: 9.4), an...
« Older Entries
Next Entries »

Recent Posts

  • WhatsApp, Slack Notifications Could Hijack Google Gemini on Android
  • Google DoubleClick Abused in New Malspam Campaign to Deliver DesckVB RAT
  • Microsoft 365 Android Apps Let Any App Steal Account Tokens via Leftover Debug Flag
  • Autonomous AI Tool Finds 2-Year-Old RCE Flaw in Redis (CVE-2026-23479)
  • One-Click GitHub Dev Attack Lets Attackers Steal Full GitHub OAuth Tokens

Recent Comments

No comments to show.

Archives

  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • November 2021
  • October 2021
  • April 2021
  • March 2021

Categories

  • Analysis
  • App
  • Cryptocurrency
  • Healthcare
  • Mobile
  • Technology
  • Uncategorized

Categories

  • Analysis
  • App
  • Cryptocurrency
  • Healthcare
  • Mobile
  • Technology
  • Uncategorized

Tags

Analytics Automation CSS Customer Data Edge Computing Healthcare Industry Marketing ransomware ransomware attack ransomware protection Sports Technology Warehouse
CISTCK Group

About Us

CISTCK Group is the most trusted partner for some of the world’s leading enterprises, innovators, SMEs and technopreneurs. We help businesses levitate their excellence through custom software development, UI/UX design, MVPs, Software Testing, and consultancy services.

  • Testing & QA
  • Custom Software Development
  • Website Development
  • IT Support Services
  • Software Support & Maintenance
  • E-Learning – LMS

Smart everything, connect and control remotely from your mobile device.

  • About us
  • FAQ
  • Our History
  • Facebook
  • X
  • Instagram
  • RSS

Designed by Elegant Themes | Powered by WordPress