A major security flaw in Cisco’s BroadWorks communication platform can be exploited for a platform takeover and data theft. The vulnerability, which scored 10/10 on the CVSS vulnerability-severity scale, enables an attacker with a valid user ID to authenticate as an existing user. This could lead to communication hijacking, information phishing, DoS, and more. Cisco has identified a patch for the bug.

Pakistani Threat Actors Targeting Indian Govt. With Email Mimic as ‘NIC eEmail Services’
A sophisticated phishing campaign orchestrated by Pakistan-linked threat actors has been discovered targeting Indian government entities by impersonating the National Informatics Centre’s email services. The