Skip to content
No results
  • Cyber Threats
  • Cyber Defence
  • Security Products
  • AI & Security
  • Privacy & Regulation
  • Industry & Business
  • Careers & Learning
  • Insights

Physical Address

Bangalore, Karnataka, India

roottohack.com
  • Cyber Threats
  • Cyber Defence
  • Security Products
  • AI & Security
  • Privacy & Regulation
  • Industry & Business
  • Careers & Learning
  • Insights
roottohack.com
  • Cyber Threats

Greatness Phishing Campaign Steals Microsoft 365 Sessions Through Trusted RingCentral Lures

Realistic office laptop displaying a Microsoft 365 authentication prompt beside a suspicious RingCentral voicemail notification.

A Greatness phishing campaign is using trusted RingCentral-themed lures to steal Microsoft 365 sessions through AiTM and device-code authentication flows, allowing attackers to reach corporate cloud services even after MFA.

  • Keerthi Kumar
  • August 5, 2026
  • Cyber Threats

Attackers Exploit N-able N-central Flaw to Reach Managed Customer Systems

Attackers exploiting the N-able N-central vulnerability to access managed customer servers, workstations and other systems.

Attackers are exploiting an authentication-bypass vulnerability in N-able N-central and using its trusted remote-management functions to reach customer systems.

  • Keerthi Kumar
  • August 4, 2026
  • AI & Security

AI Bug Reports Are Overwhelming Apple’s Security Team

Apple security analyst overwhelmed by AI-generated bug reports as genuine vulnerabilities risk getting lost in the noise

Apple is limiting open security submissions as AI tools generate both genuine discoveries and convincing false reports. The wider problem reaches far beyond Apple.

  • Keerthi Kumar
  • August 3, 2026
  • AI & Security

OpenAI and Anthropic Models Reached Real Systems During Cyber Tests. The Bigger Failure Was the Boundary Around Them

AI agent crossing from an isolated cybersecurity testing environment into real production systems during model evaluations

OpenAI and Anthropic models reached real production systems during controlled cybersecurity evaluations. The incidents reveal why prompts cannot replace network isolation, least privilege and enforceable security boundaries.

  • Keerthi Kumar
  • August 2, 2026
  • AI & Security

DeepSeek-Powered AI Agent Shows How Autonomous Hacking Is Moving Into Real Operations

DeepSeek-powered Hermes Agent researching vulnerabilities, discovering exposed servers and attempting autonomous cyberattacks that were blocked by authentication.

A threat actor connected DeepSeek to Hermes Agent, vulnerability databases and offensive tools to automate target discovery and exploitation attempts. The attacks failed, but the workflow shows how AI is changing real-world cyber operations.

  • Keerthi Kumar
  • August 1, 2026
  • Cyber Threats

CISA Warns of Rising Cyberattacks on Water-System PLCs After Minnesota Disruptions

Water utility operator managing an industrial PLC control system following CISA warnings about cyberattacks on water infrastructure

CISA has warned water utilities about increased attacks on internet-exposed PLCs after coordinated cyber incidents disrupted automated systems across more than 30 Minnesota communities.

  • Keerthi Kumar
  • July 31, 2026
  • Cyber Threats

Russian Laundry Bear Hackers Use OWAReaper to Maintain Access to Exchange Mailboxes

Laundry Bear hackers exploiting Outlook Web Access to compromise Exchange mailboxes

The Russia-linked Laundry Bear hacking group is exploiting an Outlook Web Access vulnerability to deploy OWAReaper, a browser-based implant designed to steal OAuth tokens and maintain persistent access to Exchange mailboxes.

  • Keerthi Kumar
  • July 30, 2026
  • Cyber Threats

Broadcom Patches Critical VMware vCenter RCE and ESXi VM-Escape Vulnerabilities

Broadcom has released security updates for three critical VMware vulnerabilities, including two CVSS 9.8 vCenter flaws and an ESXi VM-escape vulnerability affecting VMXNET3.

  • Keerthi Kumar
  • July 29, 2026
  • Cyber Threats

Bank of Baroda Confirms Data Breach Linked to Compromised Employee Email Account

Indian state-owned lender Bank of Baroda has confirmed a data breach after…

  • Keerthi Kumar
  • July 28, 2026
  • Privacy & Regulation

Apple’s Smart Glasses May Put Privacy First — But Can They Protect Bystanders?

Apple is reportedly preparing to enter the smart-glasses market. But the company’s…

  • Keerthi Kumar
  • July 27, 2026

Live Search

No results

Posts

Bank of Baroda Confirms Data Breach Linked to Compromised Employee Email Account

July 28, 2026

Broadcom Patches Critical VMware vCenter RCE and ESXi VM-Escape Vulnerabilities

July 29, 2026
Laundry Bear hackers exploiting Outlook Web Access to compromise Exchange mailboxes

Russian Laundry Bear Hackers Use OWAReaper to Maintain Access to Exchange Mailboxes

July 30, 2026
Water utility operator managing an industrial PLC control system following CISA warnings about cyberattacks on water infrastructure

CISA Warns of Rising Cyberattacks on Water-System PLCs After Minnesota Disruptions

July 31, 2026
DeepSeek-powered Hermes Agent researching vulnerabilities, discovering exposed servers and attempting autonomous cyberattacks that were blocked by authentication.

DeepSeek-Powered AI Agent Shows How Autonomous Hacking Is Moving Into Real Operations

August 1, 2026

Trending now

Bank of Baroda Confirms Data Breach Linked to Compromised Employee Email Account
Broadcom Patches Critical VMware vCenter RCE and ESXi VM-Escape Vulnerabilities
Laundry Bear hackers exploiting Outlook Web Access to compromise Exchange mailboxes
Russian Laundry Bear Hackers Use OWAReaper to Maintain Access to Exchange Mailboxes
Water utility operator managing an industrial PLC control system following CISA warnings about cyberattacks on water infrastructure
CISA Warns of Rising Cyberattacks on Water-System PLCs After Minnesota Disruptions
  • Cyber Threats
  • Cyber Defence
  • Security Products
  • AI & Security
  • Privacy & Regulation
  • Industry & Business
  • Careers & Learning
  • Insights
YouTube LinkedIn WhatsApp X (Twitter) Instagram

Popular Posts

Realistic office laptop displaying a Microsoft 365 authentication prompt beside a suspicious RingCentral voicemail notification.

Greatness Phishing Campaign Steals Microsoft 365 Sessions Through Trusted RingCentral Lures

August 5, 2026
Attackers exploiting the N-able N-central vulnerability to access managed customer servers, workstations and other systems.

Attackers Exploit N-able N-central Flaw to Reach Managed Customer Systems

August 4, 2026
Apple security analyst overwhelmed by AI-generated bug reports as genuine vulnerabilities risk getting lost in the noise

AI Bug Reports Are Overwhelming Apple’s Security Team

August 3, 2026

Contact Info

  • Address: Bangalore, India
  • Mobile: +91 8073282514
  • Website: https://roottohack.com

Copyright © 2026 - RootToHack

Terms & Services | Privacy Policy