New Android malware targeting Russian military personnel has been discovered in a fake version of Alpine Quest, a mapping app often used by Russian soldiers. The malicious code, dubbed Android.Spy.1292.origin, is distributed through a fake Telegram channel and through Russian Android catalogs. Once installed, it steals and transmits personal and geolocation data and can be further instructed to download extra modules and perform malicious activities.

CISA Warns of Critical VMware vCenter RCE Vulnerability Now Exploited in Attacks
The Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability affecting Broadcom’s VMware vCenter Server to its Known Exploited Vulnerabilities (KEV) catalog. This


