news.mlab.sh
5 results
threat-intel

Attackers Exploit SimpleHelp CVE-2026-48558 to Deploy TaskWeaver and Djinn Stealer

An attacker exploited a critical vulnerability (CVE-2026-48558) in SimpleHelp’s OpenID Connect (OIDC) flow to deploy the TaskWeaver and Djinn Stealer malware. This allowed for unauthorized access to authenticated ‘Technician’ sessions, enabling the theft of sensitive data from various systems, including cloud platforms…

The Hacker News · Jun 30, 2026 Critical
vulnerability

OHIF Viewers DICOM

This advisory details a vulnerability in the OHIF Viewers DICOM framework, specifically versions up to v3.12.0, that allows attackers to steal authenticated user tokens via crafted links. The vulnerability stems from unc…

CISA Advisories · Jun 25, 2026 High