XSS Vulnerability in Google Subdomain Let Hackers Hijacks the User Sessions
Security researcher Henry N. Caga has identified a significant cross-site scripting (XSS) vulnerability within a Google sub-domain that allows hackers to perform various attacks, including session hijacking, phishing attacks, malware distribution, and data Theft.
This...
Hackers Exploiting Arc Browser Popularity with Malicious Google Search Ads
Google Chrome has been the dominant web browser for years now, which is why it may come as a surprise to hear of a startup, not even based in Silicon Valley, called The Browser...
Hackers Abused Google & PayPal’s Infrastructure to Steal Users Personal Data
Security researchers have uncovered a coordinated attack campaign exploiting vulnerabilities in Google’s advertising ecosystem and PayPal’s merchant tools to steal sensitive user data.
The operation leverages Google Search ads impersonating PayPal’s official support channels and...
Google Has Blocked 2.28 Million Malicious Apps Entering Into Play Store
Google announced today it blocked a record 2.28 million policy-violating apps from entering the Play Store in 2023, leveraging advanced machine learning, stricter developer vetting, and cross-industry collaborations to combat evolving cyberthreats.
The milestone underscores...
Google Patched Android 0-Day Vulnerability Exploited in the Wild
Google has released its April 2025 Android Security Bulletin, addressing numerous critical vulnerabilities including two zero-day flaws actively exploited in targeted attacks.
This marks the third consecutive month that Google has issued emergency patches for...
New Google Chrome Zero-Day Bug Actively Exploited in Wide – Emergency Update!
Google released new security updates for actively exploited Chrome zero-day vulnerability that allows attackers to execute an arbitrary code to take complete control of the system remotely using the exploit in the Wild.
Google fixed...
Hackers Exploit Google Ads to Spread IP Scanner with Concealed Backdoor
Malicious actors are distributing a new backdoor, MadMxShell, through a Google Ads campaign that impersonates an IP scanner. This Windows backdoor leverages DNS MX queries for communication with its command-and-control server.
The technique involves encoding...
Google Unveils Air-gapped Backup Vaults to Protect Data from Ransomware Attacks
Google Cloud has introduced air-gapped backup vaults as part of its enhanced Backup and Disaster Recovery (DR) service.
This new feature, currently available in preview, aims to provide robust protection against the rising threat of...