Attackers Exploit SimpleHelp CVE-2026-48558 to Deploy TaskWeaver and Djinn Stealer

An unknown threat actor has been observed exploiting a recently disclosed maximum-severity security flaw in SimpleHelp to deliver two previously unreported malware families, TaskWeaver and Djinn Stealer.

The intrusion involves the exploitation of CVE-2026-48558 (CVSS score: 10.0), a critical authentication bypass vulnerability impacting the OpenID Connect (OIDC) flow that an unauthenticated

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Google Sues Chinese Smishing Network Accused of Using Gemini AI in Phishing

Google Sues Chinese Smishing Network Accused of Using Gemini AI in Phishing Read on The Hacker News Source: The Hacker News

Attack Update: Top 5 Attack-IPs auf doode.info – 28.09.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 136.107.24.253 — 1955 requests (recent log) 94.26.106.143 — 1045 requests (recent log) 89.167.35.212 — 885 requests (recent

Attack Update: Top 5 Attack-IPs auf doode.info – 22.08.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 89.167.35.212 — 610 requests (recent log) 195.178.110.247 — 360 requests (recent log) 80.94.95.211 — 169 requests (recent