Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

Mallory
mallory.ai > stories > 01a001aa-45ee-763e-b7e6-bde7b385cf3a

Kaiji and XORDDoS Botnets Exploit Exposed Docker and SSH to Build Linux DDoS Networks

9+ hour, 20+ min ago   (258+ words) Outcomes by security role Intelligence your team can act on. Mallory reasons across your attack surface and the global threat landscape. Before adversaries strike. Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike....

Mallory
mallory.ai > stories > 01a001bc-e9fe-7f27-b945-afd31a5018e4

ClickFix Campaign Uses Finger and Python Loaders to Deploy RATs and Stealers

9+ hour, 26+ min ago   (449+ words) Outcomes by security role Intelligence your team can act on. Mallory reasons across your attack surface and the global threat landscape. Before adversaries strike. Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike....

Mallory
mallory.ai > stories > 019ffb06-e64a-7c7e-97f5-74ae1a504907

JupyterLab XSS Flaw Enables Code Execution via Malicious `overrides.json`

1+ day, 1+ hour ago   (281+ words) Outcomes by security role Intelligence your team can act on. Mallory reasons across your attack surface and the global threat landscape. Before adversaries strike. Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike....

Mallory
mallory.ai > vulnerabilities > CVE-2026-45659

Remote Code Execution in Microsoft SharePoint Server Deserialization (CVE-2026-45659)

3+ week, 6+ day ago   (307+ words) Outcomes by security role Intelligence your team can act on. Mallory reasons across your attack surface and the global threat landscape. Before adversaries strike. Mallory correlates every CVE against your assets, your vendors, and active adversary campaigns. Know which vulnerabilities…...

Mallory
mallory.ai > stories > 019ff2e3-c7a7-7656-9ea8-9b1559c42ea0

DB-GPT Path Traversal Bug Enables Unauthenticated Arbitrary File Write

3+ day, 1+ hour ago   (306+ words) Outcomes by security role Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike. 3 events from the most recent confirmed update back to the earliest known activity. The CVE record for the DB-GPT path…...

Mallory
mallory.ai > stories > 019ff209-04ca-7b1d-866a-a75e81b10826

Lazarus used fake job offers and a Windows zero-day to target defense and UAV firms

3+ day, 9+ hour ago   (948+ words) Outcomes by security role Intelligence your team can act on. Mallory reasons across your attack surface and the global threat landscape. Before adversaries strike. Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike....

Mallory
mallory.ai > stories > 019fef39-25af-72fc-9ccd-0f19f80f2b0a

LiteLLM Supply-Chain Breach Exposed 2,500 Organizations and 434,000 CI/CD Pipelines

4+ day, 1+ hour ago   (315+ words) Outcomes by security role Intelligence your team can act on. Mallory reasons across your attack surface and the global threat landscape. Before adversaries strike. CloudSEK reported a major AI supply-chain breach involving LiteLLM that potentially exposed more than 2,500 organizations and…...

Mallory
mallory.ai > stories > 019fedf0-1498-783a-be0b-b4674dd96dc9

Aeternum Malware Uses Polygon Blockchain for Resilient Command-and-Control

4+ day, 1+ hour ago   (400+ words) Outcomes by security role Intelligence your team can act on. Mallory reasons across your attack surface and the global threat landscape. Before adversaries strike. Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike....

Mallory
mallory.ai > vulnerabilities > CVE-2024-4040

Server-Side Template Injection in CrushFTP (CVE-2024-4040)

4+ day, 14+ hour ago   (266+ words) Outcomes by security role Intelligence your team can act on. Mallory reasons across your attack surface and the global threat landscape. Before adversaries strike. Mallory correlates every CVE against your assets, your vendors, and active adversary campaigns. Know which vulnerabilities…...

Mallory
mallory.ai > stories > 019feaef-d962-7b83-b529-016e0d283578

Malicious Solidity Pro VS Code Extensions Stole Wallets, API Keys, and SSH Keys

4+ day, 17+ hour ago   (312+ words) Outcomes by security role Intelligence your team can act on. Mallory reasons across your attack surface and the global threat landscape. Before adversaries strike. Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike....