Press Enter to search or Esc to close
Explore our content organized by topic. Click on any tag to see related articles.
• Android March 2026 Security Update Patches 129
• CISA Flags Actively Exploited n8n RCE Bug as 24,700
• CISA Orders Federal Agencies to Patch n8n RCE Flaw
• Researchers Disclose Critical n8n Flaws Enabling RCE and Credential Theft
• Veeam Patches Five Critical RCE Vulnerabilities Exposing
• ShinyHunters Dumps 5.1 Million Panera Bread Customer
• Substack Discloses Data Breach After 100-Day Undetected
• Fintech Giant Figure Technology Confirms Breach: Nearly 1
• WEF Global Cybersecurity Outlook 2026 Warns of 'Permanent
• Cline CLI Supply Chain Attack Installs Unauthorized
• Japanese Semiconductor Giant Advantest Hit by Ransomware
• Ransomware in 2026: Data-Only Extortion Replaces Encryption
• HellCat Ransomware Group Breaches Ascom, Exfiltrates 44GB
• WormGPT Hacked: 19,000 Cybercriminal AI Platform Users
• Europol-Coordinated Action Dismantles Tycoon2FA — 330
• Phobos Ransomware Admin Pleads Guilty — 1,000+ Victims
• Ex-L3Harris Executive Pleads Guilty to Selling Eight
• CrowdStrike 2026 Threat Report: eCrime Breakout Time Falls
• U.S. Treasury Sanctions Russian Zero-Day Broker Operation
• PromptSpy: First Android Malware to Weaponize Generative AI
• Google Disrupts Massive Chinese Espionage Campaign
• GlassWorm Escalates: 72 Malicious Open VSX Extensions Use
• NIST to Stop Rating Non-Priority Flaws Due to Volume
• Federal Audit Reveals NIST's NVD Is Plagued by Poor Planning and Duplication
• CVE-2015-20118: Stored XSS in RealtyScript 4.0.2 Admin
• Telus Digital Confirms Massive Breach After ShinyHunters
• AppsFlyer Web SDK Supply Chain Attack Spread
• CISA Adds Wing FTP Server Flaw to KEV as RCE Chain Exploits
• AI-Driven Threats Accelerate: Agentic Attacks, Model
• AI-Armed Amateur Hacker Compromises 600+ FortiGate
• Fortinet Patches Actively Exploited CVE-2026-35616 in FortiClient EMS
• New FortiClient EMS Flaw Exploited in Attacks, Emergency
• New Critical Exim Mailer Flaw Allows Remote Code Execution
• File Read Flaw in Smart Slider Plugin Impacts 500K
• Hackers Exploit Critical Flaw in Ninja Forms WordPress
• Hackers Actively Exploiting Breeze Cache File Upload Bug in WordPress Attacks
• Microsoft Releases Windows 11 OOB Hotpatch to Fix Three
• Windows 11 February Update Breaks C:\ Drive Access on Samsung PCs
• Hackers Are Exploiting a Critical LiteLLM Pre-Auth SQLi Flaw
• Drupal Core SQL Injection Bug Actively Exploited, Added to CISA KEV
• Drupal: Critical SQL Injection Flaw Now Targeted in Attacks
• GlassWorm ForceMemo: Stolen GitHub Tokens Used to Poison
• Weekly Recap: Chrome 0-Days, Router Botnets, AWS Breach
• Cisco Patches Critical and High-Severity Vulnerabilities
• Disgruntled Researcher Leaks BlueHammer Windows Zero-Day
• GPUBreach: New Rowhammer Attack on GPU GDDR6 Memory Enables
• Google's $32 Billion Wiz Acquisition Clears Final Hurdle as
• Cloudflare 2026 Threat Report: 230 Billion Daily Threats as
• Microsoft Shares Fix for Windows C: Drive Access Issues on Samsung PCs
• Microsoft Halts Forced Global Rollout of Microsoft 365
• Avada Builder WordPress Plugin Flaws Allow Site Credential
• Actively Exploited nginx-ui Flaw (CVE-2026-33032) Enables
• Critical cPanel and WHM Bug Exploited as Zero-Day, PoC Now
• Critical Langflow RCE Flaw Exploited Within 20 Hours of Disclosure
• CISA: New Langflow Flaw Actively Exploited to Hijack AI
• Former Cybersecurity Responders Plead Guilty to BlackCat Attacks
• Leaked Documents Reveal China's 'Expedition Cloud' Cyber
• Cloudflare-Themed ClickFix Attack Drops Infiniti Stealer on Macs
• Apple Blocked Over $11 Billion in App Store Fraud in 6 Years
• Apple Rejected 2 Million App Store Submissions in 2025 for Security and Fraud Prevention
• npm Adds 2FA-Gated Publishing and Package Install Controls
• Pro-Russian Hacktivists Launch Sustained Cyber Campaign
• APT28 Operation MacroMaze: Russia-Linked Hackers Hit
• Diesel Vortex: Russian Cybercrime Ring Steals 1,649
• Operation Epic Fury Triggers Unprecedented Cyber Escalation
• Microsoft Details Cookie-Controlled PHP Web Shells
• Laravel Lang Packages Hijacked to Deploy
• Laravel-Lang PHP Packages Compromised to Deliver
• Senator Demands AT&T, Verizon CEOs Testify Over Salt
• Anthropic Exposes Industrial-Scale AI Distillation Attacks
• UNC6426 Weaponizes Old nx npm Compromise to Seize AWS Admin Access
• CanisterWorm: First Blockchain-Powered Self-Spreading Worm
• Attack on Axios Developer Tool Threatens Widespread
• Ransomware Forces University of Mississippi Medical Center
• CISA Loses 62% of Workforce as DHS Shutdown Guts America's
• Arista Patches VeloCloud Orchestrator Zero-Day Exploited in Attacks
• CVE-2021-4473: Tianxin Behavior Management System
• CVE-2025-15379: MLflow Command Injection in Model Serving
• IRS Shares Tax Data of 1.28 Million Individuals with DHS
• Persona Source Code Leak Exposes Hidden Biometric
• CISA Adds Zimbra XSS and SharePoint RCE to KEV; Cisco FMC
• Betterleaks: New Open-Source Secrets Scanner Built to Replace Gitleaks
• Claude Code Source Code Accidentally Leaked in NPM Package
• WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass Scanning
• Hackers Exploit Windmill Flaw to Read Arbitrary Server Files Without Authentication
• CVE-2016-20052: Snews CMS 1.7 Unrestricted File Upload
• Critical Unpatched GNU Telnetd Flaw (CVE-2026-32746)
• Citrix NetScaler CVE-2026-3055 (CVSS 9.3) Under Active
• Fortinet Warns of Critical RCE Flaws in FortiSandbox and FortiAuthenticator
• New 'Pack2TheRoot' Flaw Gives Hackers Root Linux Access
• Scattered Lapsus$ ShinyHunters Alliance Hits 100+
• Axios npm Hack Used Fake Teams Error Fix to Hijack
• North Korea's UNC4899 Breached Crypto Firm via AirDropped
• Hacker Walks Away with $24.5 Million After Breaching Resolv
• CISA Adds CVE-2025-53521 to KEV After Active F5 BIG-IP APM
• The State of Secrets Sprawl 2026: 9 Takeaways for CISOs
• The Good, the Bad and the Ugly in Cybersecurity – Week 14
• Hypersonic Supply Chain Attacks: AI Defense Stops Zero-Days
• Researchers Uncover Pre-Stuxnet 'fast16' Malware Targeting
• Path Traversal Flaw in AI Dev Platform Langflow Exploited in Attacks
• 7 Unpatched Flaws Disclosed in FatFs Filesystem Used in Millions of Embedded Devices
• Progress Confirms ShareFile Zero-Day Flaw Behind Storage Zone Shutdown
• How to Configure Microsoft Sentinel Analytics Rules
• Automating Report Generation with Python and Jinja2
• Automated News Aggregation with Deduplication Algorithms
• Interlock Ransomware Has Been Exploiting Cisco FMC Zero-Day
• Interlock Ransomware Exploited Cisco FMC Zero-Day for 36
• Device Code Phishing Attacks Surge 37x as New Kits Spread
• Why Chargebacks Are Just One Piece of the Fraud Puzzle
• Hackers Used Meta's AI Support Bot to Seize Instagram Accounts
• Trellix Source Code Breach Highlights Growing Supply Chain
• Gentlemen Ransomware Uses Multiple EDR Killers to Disable Defenses
• GodDamn Ransomware Deploys Microsoft-Signed PoisonX Driver to Kill EDR Tools
• WP Maps Pro Bug Exploited to Create Admin Accounts on WordPress Sites
• CVE-2016-20066: WordPress CP Polls Persistent XSS via File Upload
• CVE-2026-12761: miniOrange WordPress Social Login Auth Bypass Enables Full Admin Takeover
• CVE-2015-20115: RealtyScript 4.0.2 Stored XSS via File
• DoJ Disrupts 3 Million-Device IoT Botnets Behind Record
• Weekly Recap: CI/CD Backdoor, FBI Buys Location Data
• Feds Disrupt IoT Botnets Behind Huge DDoS Attacks
• Critical Fortinet FortiClient EMS Flaw Now Exploited in Attacks
• VoidStealer Malware Steals Chrome Master Key via Debugger
• Trivy Hack Spreads Infostealer via Docker, Triggers Worm
• Trivy Supply Chain Attack Targets CI/CD Secrets
• Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router Backdoors
• Cisco IOS XE Web UI Privilege Escalation Actively Exploited
• CVE-2024-51311: Critical Stack Overflow in Tenda TX9 Router Firmware
• LexisNexis Confirms Cloud Breach Exposing 400K User
• European Commission Confirms Data Breach After Europa.eu
• Here's How the FTC Plans to Enforce the Take It Down Act
• Can Laws Stop Deepfakes? South Korea Aims to Find Out
• Adversaries Exploit Vacant Homes to Intercept Mail in Hybrid Cybercrime
• FCC Proposes $4.5 Million Fine for Voice Provider Hosting
• Over 20,000 Crypto Fraud Victims Identified in International Crackdown
• CVE-2025-69941: Critical SQL Injection in Tailor Management System — Measurement Endpoint
• CVE-2025-69947: Critical SQL Injection in Tailor Management System — Customer Edit Endpoint
• CVE-2026-10184: SourceCodester Hospital Records SQL Injection via Delete
• Android 17 Blocks Non-Accessibility Apps from Accessibility
• Axios NPM Package Breached in North Korean Supply Chain
• Google Attributes Axios npm Supply Chain Attack to North
• Cisco Source Code Stolen in Trivy-Linked Dev Environment
• Malicious KICS Docker Images and VS Code Extensions Hit
• Open Source DockSec Uses AI to Cut Through Vulnerability
• CVE-2019-25662: ResourceSpace 8.6 Unauthenticated SQL
• Critical Blind SQL Injection in Akilli E-Commerce Website
• CVE-2025-62319: Critical SQL Injection in HCL Unica (CVSS
• OpenAI Says ChatGPT Ads Are Not Rolling Out Globally For Now
• ChatGPT Rolls Out New $100 Pro Subscription to Challenge
• AI Flaws in Amazon Bedrock, LangSmith, and SGLang Enable
• Manager of Botnet Used in Ransomware Attacks Gets 2 Years
• PTC Warns of Imminent Threat from Critical Windchill
• Critical Flaw in protobuf.js Library Enables JavaScript
• Hackers Exploited KnowledgeDeliver Zero-Day for Web Shell
• Claude Code Source Leaked via npm Packaging Error
• Velociraptor DFIR Setup, Hunts, and Forensic Collection
• Osquery Endpoint Visibility & Threat Hunting
• Linux auditd: Kernel-Level Security Monitoring and Compliance Logging
• Stryker Cyberattack Wiped Tens of Thousands of Devices — No
• Dutch Finance Ministry Takes Treasury Banking Portal
• The Backup Myth That Is Putting Businesses at Risk
• TeamPCP Pushes Malicious Telnyx Versions to PyPI, Hides
• CISA Adds Apple DarkSword iOS Exploits, Craft CMS, and Laravel Livewire Flaws to KEV Catalog
• Weekly Recap: Telecom Sleeper Cells, LLM Jailbreaks, Apple
• Apple Expands iOS 18 Updates to More iPhones to Block
• Google Fixes Fourth Chrome Zero-Day Exploited in Attacks in 2026
• New Chrome Zero-Day CVE-2026-5281 Under Active Exploitation
• Firestarter Malware Survives Cisco Firewall Updates and Security Patches
• FIRESTARTER Backdoor Hit Federal Cisco Firepower Device
• FortiBleed: Russian IAB Harvested 110 Million Credentials from 430,000 FortiGate Firewalls
• ThreatsDay Bulletin: Edge Plaintext Passwords, ICS 0-Days
• Accenture to Acquire Majority Stake in Dragos, runZero, and NetRise in $4.1 Billion OT Cybersecurity Push
• Cal Water Says No OT Systems Breached in Iranian Handala Cyberattack
• Hackers Bypass SonicWall VPN MFA Due to Incomplete Patching
• Europe Dismantles VPN Service Used by Cybercriminals to Hide Ransomware Attacks
• Police Seize 'First VPN' Service Used in Ransomware and Data Theft Attacks
• SentinelOne Application Control Policies
• SentinelOne Control vs Complete Feature Comparison
• SentinelOne Create and Manage Exclusion Policies
• OpenClaw AI Agent Flaws Enable Prompt Injection, 1-Click
• Shadow AI in SaaS: How Hidden AI Agents Are Enabling
• Supply Chain Attack Hits Widely-Used AI Package, Risking
• Backdoored Telnyx PyPI Package Pushes Malware Hidden in WAV
• Over 10,000 Zimbra Servers Vulnerable to Ongoing XSS Attacks
• Microsoft Exchange Zero-Day Under Attack, No Patch Available
• Zimbra Urges Customers to Patch Critical Web Client XSS Flaw Exploited in the Wild
• OpenAI Temporarily Relaxes GPT-5.6 Sol Usage Limits Amid Demand Surge
• FortiGate Firewall Policy Management with PowerShell
• Former DigitalMint Ransomware Negotiator Pleads Guilty to $75.3M Extortion Scheme
• ADT Confirms Data Breach After ShinyHunters Leak Threat
• New BlackFile Extortion Group Linked to Surge of Vishing
• Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites
• Apache Struts Critical RCE via OGNL Injection Returns
• CVE-2018-25362: Twitter-Clone SQL Injection via follow.php
• Coolify CVE-2026-34047: Terminal WebSocket Authorization Bypass (CVSS 9.9)
• CVE-2026-11807: Critical Authorization Bypass in Event-Driven Ansible WebSocket API
• CVE-2026-12153: WP Learn Manager Plugin — Unauthenticated Authorization Bypass Allows Plugin Installation
• FBI Warns of ATM Jackpotting Surge as Losses Top $20
• FBI Warns Russian Intelligence Targeting Signal and WhatsApp in Mass Phishing Campaign
• New Infinity Stealer Malware Grabs macOS Data via ClickFix
• In Other News: ChatGPT Data Leak, Android Rootkit, Water
• CVE-2026-10042: manga-image-translator RCE via Unsafe Python Deserialization
• CVE-2026-11849: IRM-IEI Remote Management Hardcoded Credentials
• CVE-2026-14894: WordPress Super Forms Plugin Critical Arbitrary File Upload
• Termite Ransomware Operator Velvet Tempest Chains ClickFix
• LeakNet Ransomware Weaponizes ClickFix and Deno Runtime for Stealthy Corporate Attacks
• Navia Data Breach Impacts 2.7 Million People
• Microsoft Patch Tuesday, March 2026 Edition
• ConsentFix v3 Automates Azure OAuth Abuse With Mass
• Microsoft Rejects Critical Azure Vulnerability Report, No
• Critical Vulnerability in HP VoIP Phones Enables Enterprise Network Breaches
• CVE-2016-20049: JAD Java Decompiler Stack-Based Buffer
• CVE-2017-20225: TiEmu TI Calculator Emulator Stack Buffer
• Network Traffic Analysis with Zeek: From Deployment to Threat Detection
• Google: 90 Zero-Days Exploited in 2025 — Enterprise Tech
• New Progress ShareFile Flaws Can Be Chained in Pre-Auth RCE
• Fortinet FortiClient EMS Zero-Day CVE-2026-35616 Actively
• Spanish-Ukrainian Police Bust Gambling Ring That Exploited
• Pro-Ukraine Hacker Group Bearlyfy Targets Russian Companies
• Bearlyfy Hits Russian Firms with Custom GenieLocker
• Microsoft Backpedals: Edge to Stop Loading Cleartext
• Trivy Security Scanner GitHub Actions Breached — 75 Tags
• Funnel Builder WordPress Plugin Bug Exploited to Steal
• Funnel Builder Flaw Under Active Exploitation Enables
• CVE-2025-10656: WooCommerce Plugin Missing Authorization Allows Unauthenticated Admin Account Creation
• Building a Secure Homelab in 2026: Complete Guide
• Keycloak SSO: Self-Hosted Identity Provider for Your Homelab
• Build a Collaborative IPS with CrowdSec
• PolyShell Attacks Target 56% of All Vulnerable Magento
• WebRTC Skimmer Bypasses CSP to Steal Payment Data from E-Commerce Sites
• Hackers Use Pixel-Large SVG Trick to Hide Credit Card
• ThreatsDay Bulletin: Hybrid P2P Botnet, 13-Year-Old Apache
• Mirai Variant Nexcorium Exploits CVE-2024-3721 to Hijack
• EnOcean SmartServer Flaws Expose Buildings to Remote Hacking
• Actively Exploited Apache ActiveMQ Flaw Impacts 6,400
• CVE-2025-32432: Craft CMS Code Injection Vulnerability
• CVE-2025-54068: Laravel Livewire Code Injection
• CVE-2026-10520: Ivanti Sentry OS Command Injection — CVSS 10.0
• CVE-2026-15511: Critical OS Command Injection in Comfast CF-WR631AX Router
• CVE-2026-27130 — Dokploy OS Command Injection via appName
• Edu-Tech Firm Instructure Discloses Cyber Incident, Probes
• Trellix Confirms Source Code Breach With Unauthorized
• Edgecution: Malicious Edge Extension Escapes Browser Sandbox via Native Messaging
• n8n Sandbox Escape Lets Workflow Editors Run OS Commands as the n8n Process
• Microsoft, Salesforce Patch AI Agent Data Leak Flaws
• New ChatGPT Lockdown Mode Limits Tools That Could Enable Data Exfiltration
• Oracle Pushes Emergency Fix for Critical Identity Manager
• Oracle Mitigates PeopleSoft Zero-Day Exploited in Data Theft Attacks
• ShinyHunters Exploits Oracle PeopleSoft Zero-Day to Breach Universities
• VoidLink: AI-Generated Cloud-Native Malware Framework
• CVE-2025-69902: Critical Command Injection in kubectl-mcp-server
• Healthcare Software Firm CareCloud Informs SEC of Potential
• DORA and Operational Resilience: Credential Management as a
• New Initiative Tackles Security for End-of-Life Open Source Software
• LMDeploy CVE-2026-33626 Flaw Exploited Within 13 Hours of Disclosure
• CVE-2026-20230: Cisco Unified CM WebDialer SSRF Now Exploited in the Wild
• CVE-2025-12886: Oxygen Theme SSRF Allows Unauthenticated
• Exposed Fuel Tank Gauges Under Attack in the US
• Australian Sugar Producer Works to Restore Operations After Ransomware Attack
• Only 10% of SOCs Say They're Getting Excellent Value From AI — What the Second Wave Must Deliver
• Critical Splunk Enterprise Flaw Lets Attackers Run Code Without Authentication
• CVE-2026-17561: Critical Code Injection in Logsign SIEM
• Ericsson US Discloses Data Breach Affecting Employees and Customers
• Iran Plunged Into Digital Darkness: Internet Drops to 4% in Cyberattack
• Iran-Linked Hackers Breach FBI Director's Personal Email
• Operation PowerOFF Seizes 53 DDoS Domains, Exposes 3
• Stolen Logins Are Fueling Everything From Ransomware to Nation-State Cyberattacks
• Why Simple Breach Monitoring Is No Longer Enough
• Your Next Breach Will Look Like Business as Usual
• New Exim BDAT Vulnerability Exposes GnuTLS Builds to Potential Code Execution
• Microsoft Warns of Exchange Zero-Day Flaw Exploited in Attacks
• Ubiquiti Patches Three Max-Severity UniFi OS Vulnerabilities
• Metabase SQLi Zero-Day Exploited in Customer Data-Theft Attacks
• CVE-2017-20230: Perl Storable Stack Overflow — CVSS 10.0
• Fastjson 1.x RCE Actively Exploited With No Patch Available
• Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patch Available
• Hackers Target US Firms in FastJson RCE Zero-Day Attacks
• New Tool Traces AI-Generated Videos Back to Their Source
• CVE-2009-10007: Catalyst::Plugin::Authentication Session Fixation
• CVE-2011-10043: Perl Module::Load Arbitrary Module Injection Resurfaces
• Cloud Security Startup Native Exits Stealth With $42
• Eclypsium Raises $25 Million to Expand Device Supply Chain
• Exaforce Raises $125 Million for Agentic SOC Platform
• Vercel Employee's AI Tool Access Led to Data Breach
• Trivy Vulnerability Scanner Breached to Push Infostealer
• Critical Citrix NetScaler Memory Flaw Actively Exploited in Attacks
• Over 14,000 F5 BIG-IP APM Instances Still Exposed to RCE
• Anthropic's Claude Mythos Finds Thousands of Zero-Day Flaws
• Can Anthropic Keep Its Exploit-Writing AI Out of the Wrong
• New Mirai Campaign Exploits RCE Flaw in End-of-Life D-Link
• CISA Adds 4 Exploited Flaws to KEV, Sets May 2026 Federal
• AryStinger Botnet Infected Thousands of D-Link Routers Worldwide
• ShinyHunters Dumps Harvard and UPenn Data After Ransom
• ShinyHunters Breach Infinite Campus — K-12 Platform Serving
• Operation Synergia III: Police Sinkhole 45,000 IPs in Global Cybercrime Crackdown
• Marquis Ransomware Breach: 672K People Exposed as Attack
• Hims & Hers Warns of Data Breach After Zendesk Support
• ShinyHunters Claims Mass Data Theft From 400 Firms via Salesforce Aura
• 7-Eleven Data Breach Confirmed After ShinyHunters Ransom
• Flipper Zero Firmware Development Continues With Community Help
• Six U-Boot Flaws Could Enable Stealthy Firmware Attacks on Embedded Devices
• Hackers Now Exploit Critical F5 BIG-IP Flaw in Attacks
• DarkSword GitHub Leak Threatens to Turn Elite iPhone
• TA446 Deploys DarkSword iOS Exploit Kit in Targeted
• Hacker Charged with Stealing $53 Million from Uranium
• Crypto Platform Drift Suspends Services After Hundreds of Millions Stolen
• China-Linked APT GopherWhisper Abuses Legitimate Services
• CryptoBandits Malware Doubles as a Backdoor, Abuses Tor for Stealthy C2
• Adobe Reader Zero-Day Exploited via Malicious PDFs Since
• Hackers Exploiting Acrobat Reader Zero-Day Flaw Since
• Adobe Patches Actively Exploited Zero-Day That Lingered for Months
• Payouts King Ransomware Uses QEMU Virtual Machines to Bypass Endpoint Security
• Microsoft Warns of New Defender Zero-Days Exploited in Attacks
• Trend Micro Warns of Apex One Zero-Day Exploited in the Wild
• Anthropic MCP Design Vulnerability Enables RCE, Threatening
• 2-Click Cursor Exploit Enables Dev Environment Takeover
• Ruflo MCP Flaw Lets Unauthenticated Attackers Run Commands and Poison AI Memory
• Cisco Patches Another SD-WAN Zero-Day, the Sixth Exploited
• Cisco Catalyst SD-WAN Controller Auth Bypass Actively
• Cisco Warns of Unpatched SD-WAN Zero-Day Exploited in Attacks
• ClickFix Attacks Evolve to Abuse DNS nslookup for Payload Delivery
• How to Detect and Block ClickFix Attacks
• Windows Server Hardening: A Complete Security Guide for Enterprises
• CVE-2025-71327: Flowise Authentication Bypass Grants Full API Access
• CVE-2026-14450: MaaS API Auth Bypass via Forged HTTP Headers
• CVE-2026-25197: IDOR Flaw Lets Authenticated Users Access
• New Jersey Men Sentenced to Combined 17 Years for Running
• FortiBleed Leak Exposes Fortinet VPN Credentials for 73,000 Devices
• FortiBleed Campaign Used Custom FortiGate Sniffer to Steal Credentials
• New npm Supply Chain Attack Self-Spreads to Steal Developer
• Unpatched Langflow Flaw CVE-2026-5027 Exploited for Unauthenticated RCE
• Healthcare IT Provider ChipSoft Hit by Ransomware Attack
• Dutch Hospitals Disrupted After Ransomware Hits Healthcare
• Tycoon2FA Hijacks Microsoft 365 Accounts via Device-Code
• Black Hat USA 2026: What to Expect from the Year''s Biggest
• 1 Billion CISA KEV Records Reveal Human-Scale Security Has
• Analysis of 216M Security Findings Shows a 4x Increase in Critical Risk (2026 Report)
• Commerce Setting Up New AI Export Regime to Push Adoption
• Google Detects First AI-Generated Zero-Day Exploit in the Wild
• Google: Hackers Used AI to Develop Zero-Day Exploit for Web
• Cybersecurity Evolution: From Perimeter Defense to AI-Native Security
• Beyond Assume-Breach: How AI-Native Security Will Reshape Enterprise Defense
• ThreatsDay Bulletin: Defender 0-Day, SonicWall Brute-Force
• SonicWall Warns of SMA1000 Flaws Exploited in Zero-Day Attacks, Patch Now
• Kyber Ransomware Gang Uses Post-Quantum Encryption to Target Windows and ESXi
• Ivanti, Fortinet, SAP, VMware, n8n Patch RCE, SQL
• Hackers Earn $1,298,250 for 47 Zero-Days at Pwn2Own Berlin
• cPanel & WHM Emergency Update Fixes Critical Auth Bypass Bug
• Critical cPanel Flaw Mass-Exploited in 'Sorry' Ransomware
• Microsoft Patches 138 Vulnerabilities Including DNS and Netlogon RCE Flaws
• 'Underminr' Vulnerability Lets Attackers Hide Malicious
• Hackers Hijack Hotel Wi-Fi DNS to Steal Microsoft 365 Accounts
• Drupal Patches Highly Critical Vulnerability Exposing
• CISA Warns of Actively Exploited Joomla JCE Flaw Allowing PHP Code Execution
• Australia Warns of Global Campaign Targeting Vulnerable CMS Platforms
• Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS
• NPM 12 Will Change Script Execution Behavior to Prevent Supply Chain Attacks
• Amazon Links Debug, Chalk NPM Supply Chain Attacks to North Korean Hackers
• FIFA Bug Exposes World Cup Streams to Remote Takeover
• Forget Data Leakage: Shadow AI's Real Threat Is Access Control
• CVE-2018-25391: HaPe PKH 1.1 Unauthenticated Record Deletion via Missing Authorization
• CVE-2026-0596: MLflow Command Injection via Unsanitized
• CVE-2026-12486: GeoVision GV-I/O Box 4E OS Command Injection via libNetSetObj.so
• SentinelOne Deep Visibility Threat Hunting
• SentinelOne File Fetch and Forensic File Collection
• Japan Airlines Confirms Data Breach Affecting 28,000
• IDMerit KYC Data Breach Exposes 1 Billion Records Across 26
• Google Slashes Quantum Resource Requirements for Breaking
• Anti-Piracy Coalition Takes Down AnimePlay App with 5
• Apple Open-Sources Quantum-Resistant Encryption Code
• Security Roundup: OpenAI Open Sources Codex Security CLI, AWS Pins NPM Attacks on North Korea, Anthropic Mythos Cracks Crypto
• The State of Trusted Open Source Report: Key Findings for 2025
• 13-Year-Old Bug in ActiveMQ Lets Hackers Remotely Execute
• 18-Year-Old NGINX Rewrite Module Flaw Enables
• 18-Year-Old NGINX Vulnerability Allows DoS and Potential RCE
• Why Changing Passwords Doesn't End an Active Directory
• Microsoft: Domain Controller Lookup May Fail on Windows
• Can You Enforce Strong Active Directory Password Rules Without Frustrating Users?
• HollowByte: 11-Byte Payload Triggers Memory Bloat DoS on OpenSSL Servers
• Google Begins Post-Quantum Cryptography Rollout Across
• CVE-2026-35560: Amazon Athena ODBC Driver Fails Certificate
• CVE-2026-10187: Totolink N300RH Stack Buffer Overflow in WiFi Config
• CVE-2026-31027: TOTOlink A3600R Buffer Overflow in setAppEasyWizardConfig
• CVE-2026-36841: TOTOLINK N200RE V5 Command Injection
• AT&T Breach Data Resurfaces: 176 Million Records with Fully
• Paid AI Accounts Are Now a Hot Underground Commodity
• Mazda Discloses Security Breach Exposing Employee and Partner Data
• Tables Turn on 'The Gentlemen' RaaS Gang With Data Leak
• Who Runs the Ransomware Group 'The Gentlemen'?
• Cognizant TriZetto Breach Exposes Health Data of 3.4
• 3.1 Million Impacted by QualDerm Partners Data Breach
• 250,000 Affected by Data Breach at Nacogdoches Memorial
• Socket Raises $60 Million at $1 Billion Valuation
• Mini Shai-Hulud Worm Compromises TanStack, Mistral AI
• Worm Redux: Fresh Mini Shai-Hulud Infections Bite npm
• Dutch Court Threatens xAI with Fines Over Grok's
• European Parliament Rejects Extension of CSAM Scanning
• 6-Year Ransomware Campaign Targets Turkish Homes and SMBs
• CVE-2026-4149: Sonos Era 300 Unauthenticated RCE via SMB
• Why Every Business Needs Cyber Insurance in 2026
• Chinese Hackers Hijack Auth Flow, Spy on Isolated Network for a Decade
• CVE-2025-57735: Apache Airflow JWT Token Not Invalidated on Logout
• In Other News: Scattered Spider Member Arrested, SOC
• One Missed Threat Per Week: What 25M Alerts Reveal About
• UK Water Utility Fined £963,900 After Cl0p Lurked
• UK Fines Water Supplier $1.3M for Exposing Data of 664K
• GCHQ Chief: AI Is an 'Unstoppable Force' with Offensive and Defensive Cyber Ramifications
• Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git
• CVE-2025-43510: Apple Multiple Products Improper Locking
• UniFi OS Command Injection via Improper Input Validation
• UniFi OS Improper Access Control — Unauthorized System
• CISA Orders Feds to Patch Max Severity Joomla Plugin Flaw by Friday
• CISA Warns of Actively Exploited RCE Flaws in Joomla Extensions
• CVE-2025-2749: Kentico Xperience Path Traversal
• CVE-2026-10167: School Student Management System Cookie Auth Bypass
• Lynis: Linux Security Auditing and Hardening in Practice
• Nginx + ModSecurity WAF: Protecting Web Apps with OWASP CRS
• Domain Controller Hardening: Securing Active Directory
• Recent Apache ActiveMQ Vulnerability Exploited in the Wild
• Claude Fable 5 Isn't Permanently Leaving Subscriptions, Anthropic Says
• Claude Fable Relaunch Disappoints Users With Nerfed Performance
• Axios Supply Chain Attack Pushes Cross-Platform RAT via Compromised npm Account
• CERT-UA Impersonation Campaign Spread AGEWHEEZE Malware to 1 Million Emails
• Autonomous AI Tool Finds 2-Year-Old RCE Flaw in Redis (CVE-2026-23479)
• Chainguard Unveils Factory 2.0 to Automate Hardening the Software Supply Chain
• SAP-Related npm Packages Compromised in Credential-Stealing
• TeamPCP Hits SAP npm Packages With 'Mini Shai-Hulud' Supply
• 1,800 Hit in Mini Shai-Hulud Attack on SAP, Lightning, and Intercom
• CISA Gives Federal Agencies Four Days to Patch Actively
• Ivanti Customers Confront Yet Another Actively Exploited
• Ivanti Warns of New EPMM Flaw Exploited in Zero-Day Attacks
• OpenAI Asks macOS Users to Update After TanStack npm Supply
• West Pharmaceutical Services Hit by Disruptive Ransomware
• West Pharmaceutical Warns of Ransomware Attack Impacting
• Foxconn Confirms Cyberattack Claimed by Nitrogen Ransomware
• Weekly Recap: Chrome 0-Day, UniFi Exploits, macOS Stealers, VPN Flaw and More
• CVE-2026-34909 — UniFi OS Path Traversal Leading to Account
• IBM and Red Hat Commit $5 Billion to Secure Open Source Supply Chains Under "Project Lightwell"
• Anthropic's AI Finds Bugs. IBM Bets $5B It Can Fix Them.
• CVE-2025-36359: IBM DevOps Session Hijacking Vulnerability (CVSS 8.1)
• CVE-2026-10081: Unlimited Elements for Elementor Stored XSS via Google Reviews
• CVE-2026-2342: ValeApp Stored Cross-Site Scripting (CVSS 9.3)
• CVE-2024-46636: NASA EOSDIS MODAPS v8.1 SQL Injection
• CVE-2026-11334: SQL Injection in College Management System
• CVE-2026-13439: WordPress Easy Form Builder Unauthenticated Privilege Escalation (CVSS 9.8)
• CVE-2026-14545: TrueBooker WordPress Plugin Lets Anyone Take Over Admin Accounts
• More Malicious OpenClaw Skills Threaten AI Supply Chain
• US Sentences Nigerian National to 7 Years in $6 Million
• Money Launderer for Crypto Thieves Given 5-Year Prison
• The Zero-Day Scramble Is Avoidable: Why Attack Surface
• Microsoft Hit by Back-to-Back Outages: M365 Admin Center
• CVE-2026-30836: Step CA SCEP UpdateReq Allows
• In Other News: Big Tech vs Canada Encryption Bill, Cisco's
• Alleged Kimwolf Botmaster ''Dort'' Arrested, Charged in U.S. and Canada
• Trigona Ransomware Deploys Custom CLI Exfiltration Tool in Active Attacks
• Cegedim Santé Breach Exposes 15.8 Million French Healthcare
• Elon Musk Fails to Appear for Questioning by French Police
• French Government Agency France Titres Confirms Data Breach
• Blast Radius of TeamPCP Attacks Expands Amid Hacker
• FBI: Americans Lost a Record $21 Billion to Cybercrime Last
• FBI: Cybercrime Losses Neared $21 Billion in 2025
• Broken VECT 2.0 Ransomware Acts as a Data Wiper for Large
• Italian Regulator Fines Financial Giant $36 Million for Data Protection Failures
• European Commission Accuses Meta of Breaching Child Safety
• UK to Require Government ID or Face Scan Before Creating Social Media Accounts
• Trellix Source Code Breach Claimed by RansomHouse Hackers
• Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts
• Hackers Exploit React2Shell in Automated Credential Theft
• Next.js Creator Vercel Hacked
• Germany Doxes "UNKN," Head of RU Ransomware Gangs REvil
• Authorities Disrupt APT28 Router DNS Hijacks Targeting
• ThreatsDay Bulletin: Linux Rootkits, Router 0-Day, AI
• Acer Working to Patch Max Severity Zero-Days in Wave 7 Routers
• NAKIVO v11.2: Ransomware Defense, Faster Replication
• New Veeam Vulnerability Exposes Backup Servers to RCE Attacks
• Veeam Backup and Replication RCE Flaw Lets Domain Users Run Remote Code
• Microsoft Drops Its Second-Largest Monthly Patch Batch on Record
• Microsoft Issues Patches for SharePoint Zero-Day and 168
• Over 1,300 Microsoft SharePoint Servers Vulnerable to Ongoing Spoofing Attacks
• Vercel Confirms Breach as Hackers Claim to Be Selling
• Vercel Breach Tied to Context AI Hack Exposes Limited
• Former Incident Responders Sentenced to 4 Years for Ransomware Attacks on Clients
• Cyber Incident Responders Sentenced to 4 Years for Carrying
• Critical Unpatched Flaw Leaves Hugging Face LeRobot Open to Unauthenticated RCE
• Fake OpenAI Repository on Hugging Face Pushes Infostealer
• Hugging Face Warns an Autonomous AI Agent Hacked Its Network
• KnowledgeDeliver Flaw Exploited as Zero-Day to Install Web
• PoC Code Published for Critical NGINX Vulnerability
• NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker
• Critical FortiClient EMS Vulnerability Exploited in Fresh Attacks
• Grafana Confirms Breach After Hackers Claim They Stole Data
• Grafana Says Stolen GitHub Token Let Hackers Steal Codebase
• Grafana Breach Caused by Missed Token Rotation After
• CVE-2016-20030: ZKTeco ZKBioSecurity 3.0 Username
• CVE-2025-47813: Wing FTP Server Path Disclosure Enables RCE
• CVE-2026-33669: SiYuan Unauthenticated Document Content
• CVE-2025-36568: Dell PowerProtect Data Domain BoostFS
• CVE-2026-35155: Dell iDRAC10 Race Condition Enables
• Dell ECS and ObjectScale: Hard-Coded Credentials
• CVE-2026-10178: SQL Injection in Online Music Site 1.0 Admin Panel
• CVE-2026-5017: SQL Injection in code-projects Simple Food
• CVE-2026-5018: SQL Injection in code-projects Simple Food
• CVE-2026-15265: Tenable Agent Path Traversal — Arbitrary File Write & RCE (CVSS 9.1)
• CVE-2026-26026: GLPI Template Injection Enables
• CVE-2026-31986: Apache OFBiz Hard-Coded Cryptographic Key
• APT28 Deploys PRISMEX Malware in Campaign Targeting Ukraine
• The World's First Transatlantic Fiber Cable Is Being Pulled
• DeadLock Ransomware Uses Blockchain to Resist Infrastructure Takedown
• CVE-2026-13550: SQL Injection in itsourcecode Baptism Information Management System 1.0
• Bulgaria Allowed Surveillance Tech Firm to Sell Products to Repressive Regimes, Report Says
• Nissan Says Stolen Data Came from Third-Party Vendor After
• GM to Pay Over $12 Million in Largest-Ever CCPA Fine Over
• Italian Regulator Fines National Postal Service Orgs $15
• Critical Everest Forms Pro Flaw Exploited to Take Over WordPress Sites
• Claude Code Leak Used to Push Infostealer Malware on GitHub
• Critical Vulnerability in Claude Code Emerges Days After
• Ransomware Actors Show Up In Person to Steal Law Firm Data
• Japanese Energy Firm Loses Drive with Data of 10.9 Million Clients
• Medtronic Confirms Breach After Hackers Claim 9 Million
• Medtronic Hack Confirmed After ShinyHunters Threatens Data
• Microsoft to Roll Out Entra Passkeys on Windows in Late
• Every AI Agent Is an Identity. Most Organizations Don't Treat Them That Way
• Breach at the Beach: Play the Ultimate Entra ID CTF
• Zara Data Breach Exposed Personal Information of 197,000
• American Utility Firm Itron Discloses Breach of Internal IT
• Coca-Cola Fairlife Ransomware Attack Halts All US Dairy Production
• Critical Apache HTTP/2 Flaw (CVE-2026-23918) Enables DoS
• AI-Assisted HTTP Terminator Finds Novel Desync Techniques and Apache Zero-Day
• CVE-2025-55017: Apache IoTDB Critical Path Traversal Vulnerability
• Cisco Patches Critical Webex Vulnerability Allowing Remote
• Miasma Supply Chain Attack Compromises Red Hat npm Packages with Credential-Stealing Worm
• CVE-2026-10059: Multicluster Engine ClusterCurator Token Escalation (CVSS 9.1)
• Frontier AI Reinforces the Future of Modern Cyber Defense
• Claude Fable 5 Stays Free for Paid Users Until July 19 as Anthropic Buys More Time
• Metabase Zero-Day Exploited in Wild Allows Admin Access Without Authentication
• CVE-2026-1579: MAVLink Protocol Unauthenticated Shell Access
• CVE-2026-27053: Critical PHP Object Injection in Broadcast Live Video Plugin
• CVE-2026-40621: ELECOM Wireless LAN Access Point
• CrowdSec: Deploy a Community-Powered Intrusion Prevention System
• How to Set Up BGP Monitoring and Route Alerts
• FortiGate Security Hardening: Best Practices for Enterprise
• AWS Security Hub: Centralized Security Findings
• Network Monitoring Basics: Detect Threats Before They Spread
• Build a Production Monitoring Stack with Prometheus and Grafana
• CERT-EU: European Commission Hack Exposes Data of 30 EU
• Cryptocurrency ATM Giant Bitcoin Depot Reports $3.6 Million
• Cybercriminals Target Accountants to Drain Russian Firms'
• Deepfake Voice Attacks Are Outpacing Defenses: What
• Weaponized AI: The New Frontier of Fraud and Identity
• Citizen Lab: Law Enforcement Used Webloc to Track 500
• Microsoft Suspends Dev Accounts for High-Profile Open
• Critical Gemini CLI Flaw Enabled Host Code Execution
• Moldova's Health Insurance Agency Reports Possible Data
• Cyberattack on Russian Tech Firm Astral Disrupts Business and Government Services for a Week
• Malaysia Airlines Listed by Qilin Ransomware Group
• Die Linke German Political Party Confirms Data Stolen by Qilin Ransomware
• CISA Gives Feds 3 Days to Patch Check Point VPN Bug Exploited as Zero-Day
• Mercor Confirms Security Incident Tied to LiteLLM Supply
• AI Slashes Cyberattack Exploit Timelines From Years to Days
• New Linux 'Dirty Frag' Zero-Day Gives Root on All Major
• Unpatchable 'usbliter8' Exploit Breaks Apple A12 and A13 SecureROM Boot Chain
• UK Government Threatens Tech Bosses With Jail Time Over AI
• Coupang Hit with Record $409 Million Data Breach Fine in South Korea
• Drift Crypto Platform Confirms $280 Million Stolen as
• KelpDAO Suffers $290 Million Heist Tied to Lazarus Hackers
• Crypto Infrastructure Company Blames $290 Million Theft on North Korean Hackers
• In Other News: Satellite Cybersecurity Act, $90K Chrome
• Anthropic Disables Fable 5 and Mythos 5 After U.S. Government Export Control Decree
• Anthropic Confirms Fable 5 and Mythos 5 Offline to Comply With US Export Controls
• Microsoft Releases Emergency Updates to Fix Windows Server
• Microsoft June 2026 Updates Break Recycle Bin Confirmation Prompts on All Windows Versions
• PAN-OS RCE Exploit Under Active Use Enabling Root Access
• ThreatsDay Bulletin: PAN-OS RCE, Mythos cURL Bug, AI
• Palo Alto GlobalProtect VPN Auth Bypass Flaw Now Exploited in Attacks
• Gitea Vulnerability Exposes Private Container Images without Authentication
• Hackers Exploit Critical Auth Bypass in Official Gitea Docker Image
• Coolify CVE-2026-34037: CVSS 9.9 IDOR Enables Cross-Team Resource Takeover
• How to Deploy Falco for Kubernetes Runtime Security
• How to Deploy Wazuh SIEM/XDR for Unified Security Monitoring
• OpenAI Previews GPT-5.6 Sol Under Government-Gated Rollout with Stronger Cyber Safeguards
• Anthropic's Claude Breached 3 Orgs, Uploaded PyPI Malware During Tests
• Anthropic Says Claude Mistook the Open Internet for a CTF and Breached Three Organizations
• CVE-2016-20026: ZKTeco ZKBioSecurity 3.0 Hardcoded Tomcat
• CVE-2025-63823: My Safetipin Android App Exposes Hardcoded Credentials (CVSS 9.8)
• Critical RCE in Hitachi Vantara Pentaho via Unrestricted
• CVE-2026-12485: GeoVision GV-I/O Box 4E UDP Stack Overflow (IP Address Field)
• CVE-2026-12846: GeoVision GV-I/O Box 4E UDP Stack Overflow (Net Mask Field)
• CVE-2026-12866: expr-eval npm Package Enables Arbitrary Code Execution via toJSFunction()
• CVE-2026-1540: Spam Protect CF7 WordPress Plugin PHP Log RCE
• CVE-2026-22679: Weaver E-cology 10.0 Unauthenticated Remote
• CVE-2026-20889: LibRaw x3f_thumb_loader Heap Buffer
• CVE-2026-20911: LibRaw HuffTable::initval Heap Buffer
• CVE-2026-21413: LibRaw lossless_jpeg_load_raw Heap Buffer
• CVE-2026-35051: Traefik ForwardAuth Authentication Bypass
• CVE-2026-39858: Traefik Forwarded-Header Sanitization
• Multi-Stack Docker Infrastructure with Traefik and Authentik
• AI-Generated Browser Ransomware Abuses Chromium API on Windows, Linux, macOS, Android
• Chinese Threat Actor Uses DeepSeek and Hermes Agent to Launch Fully Autonomous Cyberattacks
• Europe Evolves Into Ransomware's Favorite Region
• Former Ransomware Negotiator Pleads Guilty to BlackCat
• US Ransomware Negotiators Get 4 Years in Prison Over
• Veeam Backup & Replication Auth RCE — CVE-2026-21666
• Veeam Backup & Replication 2nd Auth RCE — CVE-2026-21667
• GitHub Links Repo Breach to TanStack npm Supply-Chain Attack
• Microsoft Now Force-Upgrades Unmanaged Windows 11 24H2 PCs
• Microsoft Rolls Out Revamped Windows Insider Program
• INTERPOL Warns Phishing, Ransomware, and AI Scams Are Rising Across Asia-Pacific
• Ransomware Thugs Masquerade as Interpol to Entice Small Biz
• Shadow AI Is Everywhere. Here's How to Find and Secure It.
• Learning from the Vercel Breach: Shadow AI and OAuth Sprawl
• 5 Steps to Managing Shadow AI Tools Without Slowing Down
• Citrix Urges Admins to Patch NetScaler Flaws as Soon as
• FCC Bans Import of Foreign-Made Consumer Routers Over
• New U.S. Cyber Force Would Cost Up to $11 Billion to Start, Commission Says
• New RoadK1ll WebSocket Implant Used to Pivot on Breached
• Coolify CVE-2026-34048: Low-Privilege Terminal Escalation via WebSocket (CVSS 9.9)
• OWASP Incubator Project Helps Developers Find and Fix Vulnerable Dependencies in Seconds
• Three China-Linked Clusters Target Southeast Asian
• DoJ Disrupts Southeast Asia Crypto Fraud Networks, Freezes $3.8 Million in Assets
• Over 1.4 Million Accounts Disrupted in Cybercrime Crackdown
• Hackers Steal $3.6 Million from Crypto ATM Giant Bitcoin
• ShinyHunters Data Leaks Fuel $2,000 Sextortion Email Scam
• Polymarket Customers Lose $3 Million in Supply-Chain Attack
• $3 Million Reportedly Stolen in Polymarket Hack
• vBulletin Fixes Critical Pre-Auth RCE Flaw with Public Exploit
• BeyondTrust Remote Support Pre-Authentication RCE Under
• Suspicious Polyfill Login Prompts Pop Up on Toshiba, Muji Websites
• Trump Budget Proposal Would Cut Hundreds of Millions More
• Why the Axios Attack Proves AI Is Mandatory for Supply
• The Hidden Cost of Recurring Credential Incidents
• Microsoft Teams Right-Click Paste Broken by Edge Update Bug
• Google and Microsoft Pull ModHeader After Hidden Tracker Found in 1.6M-Install Extension
• Tropic Trooper Uses Trojanized SumatraPDF and GitHub to Deploy AdaptixC2
• Microsoft Teams Relay Servers Abused in DragonForce Ransomware Attack
• Firefox Vulnerability Allows Tor User Fingerprinting Across
• Chrome and Firefox Updated to Patch Critical, High-Severity Vulnerabilities
• CVE-2026-5731: Firefox and Thunderbird Critical Memory
• Home Security Giant ADT Data Breach Affects 5.5 Million
• DocketWise Data Breach Impacts 143,000 Individuals
• IMA Diligence Services Data Breach Impacts 525,000 People
• WhatsApp Is Finally Getting Usernames to Help Keep Phone Numbers Private
• Making Vulnerable Drivers Exploitable Without Hardware: The
• Eight-Year-Old Samsung KNOX Flaw Exposed Millions of Galaxy Devices to Kernel Attacks
• Ollama Out-of-Bounds Read Flaw Allows Remote Process Memory
• JadePuffer Agentic Attacks Now Target AI Model Data with Ransomware
• PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation
• China's 'FamousSparrow' APT Nests in South Caucasus Energy
• Origin Energy Data Breach Exposes Millions of Australian Customers
• Windows BitLocker Zero-Day Gives Access to Protected
• Researcher Drops YellowKey, GreenPlasma Windows Zero-Days
• Windows Zero-Days Expose BitLocker Bypasses and CTFMON
• CVE-2026-40492: SAIL XWD Codec Heap Buffer Overflow (CVSS
• CVE-2026-40494: SAIL TGA Codec RLE Decoder Asymmetric
• PraisonAI CVE-2026-44338 Auth Bypass Targeted Within Hours
• CVE-2026-39888: PraisonAI Sandbox Escape Enables Remote
• CVE-2026-39890: PraisonAI YAML Injection Achieves Remote
• Microsoft Says Zero-Day Public Releases Are 'Never Justifiable' as Researcher Threatens More Drops
• Microsoft Says It Will Not Pursue Security Researchers After Zero-Day Backlash
• South Korea Discloses Data Breach Impacting Diplomats Worldwide
• Security of 100 AI Agents Tested and Ranked – What You Need to Know
• Leak Confirms OpenAI Is Testing a ChatGPT for Science Subscription
• Dashlane Password Manager Users Locked Out by Brute Force Attacks
• Minnesota Man Known as 'Snoopy' Sentenced in DraftKings Hack
• Chick-fil-A Discloses Data Breach After Credential Stuffing Attacks
• Claude Mythos 5 Tried to Backdoor a Real Open-Source Project in Testing, Then Vouched for Itself
• Check Point VPN Zero-Day Exploited Since Early May by Qilin Ransomware
• Check Point Patches SmartConsole Zero-Day Exploited in Attacks
• Novo Nordisk Breach Exposes Software Development Pipeline Risk
• SailPoint to Acquire Entro in Reported $200 Million Deal
• Lessons Learned from CISA's Recent GitHub Leak
• WhatsApp Phishing Attack Uses Fake Business Docs to Hack PCs
• WhatsApp VBScript Campaign Uses Fake Documents to Install ManageEngine RMM Tool
• Ukraine Says Russian Intelligence Used Fake Support Texts to Steal Messaging Credentials
• Data Exposure Flaws in Dify AI Platform Put 1 Million+ App Tenants at Risk
• Russia Used Social Engineering to Breach Prominent Messaging Accounts, Ukraine Says
• Ukraine and FBI Expose Russian Intelligence Campaign Stealing Signal Credentials via Fake SMS
• FBI: Russian Hackers Now Target Signal Backup Recovery Keys
• RedWing MaaS Packages Android Bank Fraud as a Telegram Rental Service
• Hackers Hijack Russian Journalist Sobchak's Telegram Channels via Email Breach, Claim 350 GB Stolen
• Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation Attempts
• Progress Kemp LoadMaster Flaw Hits CISA KEV After 792 Reported Exploit Attempts
• CVE-2026-47868: VMware Avi Load Balancer Local Privilege Escalation
• 'Phantom Squatting': An Emerging AI-Driven Supply Chain Threat
• Exposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress Sites
• China-Linked Storm-1175 Turns N-able N-central Into MSP Ransomware Launchpad
• Google Chrome Critical Update Patches High-Severity Code
• Google Patches Actively Exploited Chrome Zero-Day
• Cisco FMC Zero-Day Actively Exploited, Static Credentials Could Expose Sensitive Data
• The Network Has Become the Control Plane for AI Security
• FBI, South Korea Warn of Gunra Ransomware Gang Targeting Critical Infrastructure
• Adobe Campaign Classic CVSS 10.0 Flaw Could Run Code Without User Interaction
• CVE-2026-47131: vm2 Sandbox Escape via Buffer Prototype Hijack (CVSS 10.0)
• New CSS Attacks Can Break Webmail Defenses to Steal Passwords and Tokens
• Critical Session Hijacking via Auth Bypass in Akilli
• Adobe Patches Three CVSS 10.0 Flaws in ColdFusion and Campaign Classic
• CVE-2026-47928: Adobe ColdFusion Critical RCE — CVSS 9.6
• CVE-2026-48276: Adobe ColdFusion Critical File Upload RCE (CVSS 10.0)
• CVE-2018-25272: ELBA5 5.8.0 RCE via Default Database
• CVE-2026-19001: MongoDB BI Connector ODBC Driver Buffer Overflow (CVSS 9.8)
• CVE-2026-24013: Apache IoTDB Authentication Bypass via Forged Session ID
• CVE-2021-47933: WordPress MStore API 2.0.6 Arbitrary File
• CVE-2026-1830: WordPress Quick Playground Plugin RCE via Unauthenticated File Upload
• CVE-2026-20223: Cisco Secure Workload REST API Auth Bypass
• CVE-2026-1114: lollms JWT Weak Secret Key Allows Admin
• CVE-2026-31946: Critical JWT Signature Verification Bypass
• PicketLink SAML Authentication Bypass — Forged Assertions Accepted Without Validation
• CVE-2026-15013: WordPress SAML SSO Plugin — Algorithm Confusion Auth Bypass
• CVE-2026-15981: WordPress SAML SSO Authentication Bypass (CVSS 9.8)
• CVE-2026-12183: Critical Auth Bypass in Gas Station Automation System
• CVE-2026-12492: WooCommerce OTP Login Plugin Auth Bypass — Full Admin Takeover
• CVE-2026-14205: WP Events Manager Plugin Allows Fraudulent Paid Event Bookings via Payment Bypass
• CVE-2026-13498: SQL Injection in Restaurant Management System via Password Reset
• CVE-2026-14364: TrueBooker WordPress Plugin Account Takeover via Password Reset Bypass
• CVE-2026-24467: OpenAEV Password Reset Account Takeover
• CVE-2026-14637: PHP Deserialization RCE in CodeIgniter Ecommerce Bootstrap Shopping Cart
• CVE-2026-15962: PHP Object Injection in Fluent Forms Pro (CVSS 8.8)
• CVE-2026-25769: Wazuh Critical RCE via Insecure
• CVE-2026-25770: Wazuh Privilege Escalation to Root via Cluster Protocol File Write
• CVE-2026-56699: Critical NDJSON Injection in Wazuh Manager (CVSS 10.0)
• CVE-2026-37431: Beauty Parlour Management System SQL
• CVE-2026-38158: Critical SQL Injection in UReport v2.2.9 (CVSS 9.8)
• CVE-2026-41583: ZEBRA Zcash Node Consensus Rule Bypass
• GeoVision LPC Camera Critical RCE via thttpd Buffer Overflow (CVE-2026-57878)
• GeoVision LPC Camera Critical RCE via ssvr RTSP Auth Buffer Overflow (CVE-2026-57879)
• GeoVision LPC Camera Critical RCE via ssvr RTSP Digest Auth Buffer Overflow (CVE-2026-57880)
• Microsoft's Zero-Day Legal Threats Spark Backlash
• Evolution of Ransomware: Multi-Extortion Ransomware Attacks
• Tata Electronics Confirms Cyberattack; World Leaks Exposes Apple Manufacturing IP
• Google Gemini CLI Jailbroken and Used as a Hacking Agent to Run a Malware Botnet
• Russian Spies Aggressively Targeting Western Technology as Sanctions Bite
• The U.S. Sanctions Nobitex Crypto Exchange Used by Ransomware
• CVE-2026-45688: Rocket.Chat CAS Login MongoDB Operator Injection (CVSS 9.1)
• Tycoon 2FA Loses Phishing Kit Crown Amid Surge in Attacks
• Misconfigured Server Exposes Three Evilginx Phishing Ops Targeting M365
• Ukrainian National Pleads Guilty to Role in Conti Ransomware Operation
• Alleged Scattered Spider Hacker Peter Stokes Extradited to the United States
• Hims & Hers Breach Exposes the Most Sensitive Kinds of Patient PHI
• 716,000 Impacted by OpenLoop Health Data Breach
• Wesco Confirms Security Incident After ExfilSquad Claims 2.6M Record Theft
• Over 1,000 Charities Hit by Beacon CRM Data Breach
• Video Service Vimeo Confirms Anodot Breach Exposed User Data
• SGLang CVE-2026-5760 (CVSS 9.8) Enables RCE via Malicious
• CVE-2026-14890: SGLang ZeroMQ Unauthenticated RCE via Pickle Deserialization
• FCC Proposes New Rule to Further Crack Down on Illegal
• Canadian Man Arrested and Charged for Running KimWolf DDoS
• Russian Hacker Who Helped Yanluowang Ransomware Gang Gets
• FortiBleed: 5-Stage Attack Chain Behind 110 Million Credential Heist on FortiGate Firewalls
• F5 BIG-IP Vulnerability Reclassified from DoS to RCE Under
• UK Cyberspying Chief Calls AI 'an Unstoppable Force' and Warns About Russia
• Iran Deploys 'Pseudo-Ransomware,' Revives Pay2Key Operations
• Vect 2.0 Ransomware Acts as Wiper Thanks to Design Error
• MokN Raises $15 Million for Phish-Back Platform
• CISA Flags Apache ActiveMQ Flaw as Actively Exploited in Attacks
• 73 Seconds to Breach, 24 Hours to Patch: The Case for Autonomous Validation
• CVE-2026-25199: Apache CloudStack Proxmox Extension Allows
• Three Microsoft Defender Zero-Days Actively Exploited; Two
• Microsoft Warns of Two Actively Exploited Defender
• Azure Backup: VMs, Files, and SQL with Recovery Services
• Implementing a Robust Backup Strategy: The 3-2-1 Rule
• CISA Mandates Full Zero Trust Architecture for Federal
• Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain
• Dashlane Brute-Force Attack Leads to Limited Encrypted Vault Downloads
• CVE-2026-6748: Critical Uninitialized Memory Flaw in Firefox and Thunderbird Web Codecs
• Hackers Exploit RCE Flaws in Qinglong Task Scheduler for Cryptomining
• CVE-2026-18248: Fastify AWS Lambda Auth Bypass Allows Privilege Escalation
• Top Five Sales Challenges Costing MSPs Cybersecurity Revenue
• CVE-2026-18577: N-able N-central Authentication Bypass and Account Takeover
• NinjaOne Scripting: PowerShell Automation Library
• Suno, Paidwork Data Breaches Affect Tens of Millions of Accounts
• CVE-2025-34291: Langflow Origin Validation Error
• Microsoft May 2026 Patch Tuesday Fixes 120 Flaws, No
• FFmpeg Fixes PixelSmash Flaw in Widely Used Video Decoder
• Microsoft Fixes AutoGen Studio Flaw That Enabled Code Execution
• Cisco Zero-Day Under Ongoing Attack by Persistent Threat
• Suricata IDS/IPS Deployment: From Install to Active Threat
• MiniPlasma Windows 0-Day Enables SYSTEM Privilege
• Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows
• LiteSpeed cPanel Plugin CVE-2026-48172 Exploited to Run
• CISA Gives Feds 4 Days to Patch Actively Exploited cPanel Plugin Flaw
• CISA Urges Immediate Patching of Exploited LiteSpeed cPanel
• KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike
• Vague Task, Total Access: When AI Delegation Becomes a Security Risk
• Russian Hackers Breached Polish Energy Plant via Private APN in World-First DER Cyberattack
• In Other News: Rapid7 Layoffs, Hacking a Boeing 737, Refrigeration System Vulnerabilities
• Origin Energy Data Breach: Fired Employee's Credentials Expose Up to 2 Million Australian Customers
• Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web Data
• CVE-2025-15609: Fortis for WooCommerce Plugin Leaks API
• Crafty Phishing Campaigns Auto-Adapt to Victim's Device, OS
• Teen Suspect in Scattered Spider Hacks Is Extradited to US
• Public PoC Released for Critical libssh2 CVE-2026-55200 Client-Side SSH Flaw
• CVE-2025-15638: Net::Dropbear Bundles Vulnerable
• CVE-2026-58065: Apache Airflow Git Provider Disables SSH Host Key Verification
• Chinese LLMs Broaden the Gap Between Attackers & Defenders
• CISA Orders Feds to Prioritize Patching Langflow Auth Bypass Flaw
• Trojanized MCP Server Deploys StealC Infostealer Targeting
• Identity Attacks Overtake Exploits as Top Ransomware Cause
• The Microsoft 365 Security Baseline Every Small Business Should Have
• Conditional Access Policies: Zero Trust with Entra ID
• OpenAI Confirms ChatGPT Is Down Worldwide — ~50-Minute Global Outage
• Microsoft Blames Massive Microsoft 365 Outage on Automated Maintenance Bug
• Cloudflare BGP Routing Error Cascades Across AWS, X, and More
• Cisco Warns of ASA and FTD VPN Flaw Actively Exploited to Crash Firewalls
• CVE-2018-25169: Denial of Service Vulnerability Catalogued
• CVE-2026-20349: Cisco ASA and FTD Heap Inspection Vulnerability
• CVE-2020-37168: Systempay Weak Crypto Allows Payment
• CVE-2021-47923: OpenCart 3.0.3.8 Session Fixation Enables
• CVE-2025-65336: Critical SQL Injection in Fruits Bazar PHP Ecommerce
• CVE-2025-15036: MLflow Path Traversal in Archive Extraction
• CVE-2026-10263: SQL Injection in SourceCodester Computer Repair Shop Management System
• CVE-2026-14732: SQL Injection in SourceCodester Timetabling System via /edit_exam.php
• CVE-2026-14733: SQL Injection in SourceCodester Timetabling System via /edit_coursea.php
• CVE-2026-24303: Microsoft Partner Center Privilege
• CVE-2026-2611: MLflow 3.9.0 Improper Origin Validation
• CVE-2026-13339: CubeWP Framework WordPress Plugin Directory Traversal (CVSS 7.5)
• CVE-2026-18352: WordPress User Access Manager Directory Traversal
• CVE-2026-14688: SQL Injection in itsourcecode Hotel Management Admin Login
• CVE-2026-3730: SQL Injection in itsourcecode Free Hotel
• CVE-2026-3740: SQL Injection in itsourcecode University
• CVE-2026-25449: Critical Object Injection in Shinetheme
• CVE-2026-48207: Apache Fury PyFury Deserialization RCE
• CVE-2026-29067: ZITADEL Password Reset Poisoned by Host Header Injection
• ZITADEL Critical XSS in SAML Endpoint Enables 1-Click
• CVE-2026-29192: ZITADEL Stored XSS via Default Redirect URI
• CVE-2026-9648: X.509 NameConstraints Bypass in crypton-x509-validation
• HashiCorp Vault: Centralized Secrets Management for Modern
• CVE-2026-47367: UID Enterprise Agent Command Injection via Improper Input Validation
• CVE-2026-47369: UniFi OS Privilege Escalation via Improper Input Validation
• CVE-2026-47865: Critical Authentication Bypass in VMware Avi Load Balancer
• CVE-2026-47866: Authorization Bypass in VMware Avi Load Balancer
• CVE-2026-47867: Remote Code Execution via Code Injection in VMware Avi Load Balancer
• Container Security Scanning with Trivy: Images, IaC, and CI/CD
• Docker Security Hardening: Locking Down Container Environments
• Docker Security Fundamentals: Protecting Your Containers
• Sysmon and Windows Event Forwarding: Enterprise-Grade
• River Bank Says Hackers Deleted Data Stolen in Ransomware Attack
• Klue OAuth Breach Linked to 'Icarus' Salesforce Data Theft Attacks
• Cash App Owner to Pay $45 Million Over Lax Security Allegations
• CrowdStrike Dismantles Glassworm Botnet Targeting Open-Source Supply Chain
• GlassWorm Malware Takedown Disrupts Developer Supply Chain Attack Infrastructure
• CVE-2026-11325: Cloudflare pages-action GitHub Actions RCE
• FBI Dismantles Massive AI-Powered Chinese Phishing-as-a-Service Operation
• Spain Dismantles Major $4.7M Manga Piracy Platform, Arrests
• Colorado Governor Commutes Prison Sentence for Election
• Crunchyroll Probes Breach After Hacker Claims to Steal 6.8M
• Italy Disrupts CINEMAGOAL Piracy App That Stole Streaming
• EU Cyber Agency Attributes Major Data Breach to TeamPCP
• Hackers Exploit TrueConf Zero-Day to Push Malicious
• PhantomCore Exploits TrueConf Vulnerabilities to Breach
• Head Mare Hacktivists Breach TrueConf to Trojanize Client Installers with PhantomCore Backdoors
• CISA: Hackers Now Exploit SolarWinds Serv-U Flaw to Crash Servers
• CVE-2026-14958: IBM Aspera Faspex 5 Shell Injection Enables RCE
• Build Application Firewalls Aim to Stop the Next Supply
• How Software Development's Speed Obsession Enabled TeamPCP's Chaos Crusade
• $285 Million Drift Hack Traced to Six-Month DPRK Social
• Drift $280M Crypto Theft Linked to 6-Month In-Person DPRK
• 36 Malicious npm Packages Exploited Redis, PostgreSQL to Deploy Persistent Implants
• Kimi K3 AI Agents Discovered Redis Zero-Days and Built RCE Exploits in Under 90 Minutes
• Critical RCE in Veeam Backup & Replication — Backup Viewer
• Nmap Scanning Techniques for Security Professionals
• OSINT Reconnaissance Methodology for Security Professionals
• BKA Identifies REvil Leaders Behind 130 German Ransomware
• German Authorities Identify REvil and GandCrab Ransomware
• Microsoft Links Storm-1175 to Medusa Ransomware Zero-Day
• China-Linked Storm-1175 Chains Zero-Days for High-Velocity
• Storm-1175 Deploys Medusa Ransomware at 'High Velocity'
• NVIDIA Confirms GeForce NOW Data Breach Affecting Armenian
• Microsoft, Tech Companies Throw Weight Behind Spread of Open-Source AI
• Snowflake Customers Hit in Data Theft Attacks After SaaS
• Canadian Pleads Guilty to Snowflake Cloud Data-Theft Attacks
• Snowflake Hacker Pleads Guilty Over Breaches Affecting at Least 100 Million People
• ARToken PhaaS Exposes EvilTokens' Microsoft 365 Phishing Toolkit with AI-Powered BEC
• Runtime Security Monitoring with Falco: Detect Container
• GodDamn Ransomware Uses PoisonX Kernel Driver to Neutralize Endpoint Security
• Threat Actor Uses Microsoft Teams to Deploy New 'Snow'
• KongTuke Hackers Now Use Microsoft Teams for Corporate
• Software Is Now Written at the Speed of Thought. Security Isn't.
• What Changes When AI Writes Your Code: Supply Chain Security in the Age of LLMs
• BridgePay Payment Gateway Knocked Offline by Ransomware
• What Rural Alberta Businesses Get Wrong About Ransomware
• Surge in Bomgar RMM Exploitation Demonstrates Supply Chain
• BeyondTrust Remote Support and PRA Critical RCE Under
• Checkmarx Confirms GitHub Repository Data Posted on Dark
• ClickFix Campaign Targets European Hotels with Fake
• TeamPCP Hackers Advertise Mistral AI Source Code Repos for Sale
• ShinyHunters Claims Brinks Home Breach, Threatens to Leak Stolen Data
• Microsoft Now Lets Admins Uninstall Copilot on Enterprise
• SearchLeak: New Attack Turned Microsoft 365 Copilot into 1-Click Data Theft Tool
• Microsoft Announces Major Security Features for Copilot
• Microsoft Details Windows Clipper Malware Campaign Using USB LNK Worm and Tor-Based C2
• FTC: Americans Lost Over $2.1 Billion to Social Media Scams
• FTC Warns of Record $3.5 Billion in Losses to Imposter Scams in 2025
• Medtronic Notifies Customers Impacted by ShinyHunters Data Breach
• Canvas Breach Disrupts Schools & Colleges Nationwide
• Multiple Universities Forced to Reschedule Final Exams
• US Treasury Sanctions 1VPNS: The VPN Service Favored by Ransomware Groups
• Hackers Abuse Google Ads and Claude.ai Chats to Push Mac
• New OXLOADER Loader Uses Malicious Google Ads to Deliver CastleStealer
• SourTrade: Malicious Sites Use JavaScript to Assemble Malware Directly in Browser Memory
• Hackers Used AI to Develop First Known Zero-Day 2FA Bypass
• Malicious Chrome Extension 'CL Suite' Steals Meta Business
• OpenAI Confirms Security Breach in TanStack Supply Chain
• TanStack Supply Chain Attack Hits Two OpenAI Employee
• More Than $10 Million Stolen from Crypto Platform THORChain
• SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking Users
• TeamPCP Ups the Game, Releases Shai-Hulud Worm's Source Code
• Four Malicious npm Packages Deliver Infostealers and Phantom Bot DDoS Malware
• GitHub Confirms Being Hacked by TeamPCP, Says Customer Data
• The Boring Stuff Is Dangerous Now
• Cyber Force Not Included in Senate Defense Policy Roadmap
• ODNI Taps Officials to Coordinate Response to Foreign
• SecurityScorecard Acquires Driftnet to Boost Third-Party
• Cisco Adds NHI to Security Stack With Astrix, WideField Acquisitions
• Geordie Raises $30 Million for AI Security and Governance Platform
• Google Accidentally Exposed Details of Unfixed Chromium Flaw
• CVE-2026-11645: Google Chromium V8 Out-of-Bounds Read and Write Vulnerability
• ''First VPN'' Cybercrime Service Disrupted, Administrator
• CVE-2026-20896: Gitea Docker Image Authentication Bypass
• California AG Sues 23andMe Over 2023 Breach Exposing Genetic Health Data
• 23andMe $47 Million Settlement Approved for 7 Million Breach Victims
• 23andMe to Pay $18 Million in New Genetics Data Breach Settlement
• Critical Palo Alto VPN Bug Now Exploited by Qilin Ransomware Gang
• Dashlane Discloses Brute-Force Attack: Encrypted Vaults of Fewer Than 20 Users Downloaded
• Pakistan-Linked SideCopy APT Targets Afghanistan Finance Ministry with Xeno RAT
• China and India Ran Separate Spying Campaigns Against the Same Pakistani Police Force
• China and India-Linked Hackers Both Targeted the Same Pakistani Police Force
• Launch of UK's National Cyber Action Plan Delayed Amid Labour Leadership Crisis
• AI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 Bugs
• FFmpeg PixelSmash: CVE-2026-8461 Enables RCE via Crafted Video Files Across Thousands of Apps
• CVE-2026-28302: SolarWinds Serv-U IDOR Leads to Root RCE
• CVE-2026-28318: SolarWinds Serv-U Uncontrolled Resource Consumption (DoS)
• ShinyHunters Uses Oracle Zero-Day to Rampage Higher Education
• Google Confirms ShinyHunters Exploited Oracle PeopleSoft Zero-Day CVE-2026-35273
• CVE-2022-4995: Weaver E-cology 9.0 Unauthenticated File Upload Enables Webshell RCE
• INC Ransomware Thrives by Mastering the Basics
• Inc Ransomware Exploits Chained SonicWall SMA Zero-Days for Root Access
• INC Ransomware Emerges as Dominant Threat Actor Exploiting SonicWall SMA 1000 Flaws
• CVE-2018-25320: ACL Analytics Arbitrary Code Execution via EXECUTE Function
• CVE-2026-32999: Comet Backup Server Code Execution via Signing Module
• Amadey and StealC Malware Networks Disrupted, 27 Million Stolen Credentials Recovered
• Microsoft and Europol Dismantle Three Cybercrime-as-a-Service Operations
• FakeGit Campaign Uses 7,600 GitHub Repos to Push SmartLoader Malware
• In Other News: Chinese Mythos-Like AI, Tata Electronics Breach, Snyk Layoffs
• Nebulock Raises $25 Million for AI-Native Contextual Security
• Guten Tag, Bonjour, Hola: Dark Reading Launches European Cyber Defenders Hub
• SentinelOne Threat Hunting Recipes: Practical Deep
• Velociraptor DFIR: Endpoint Forensics and Incident Response
• Atlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to Attackers
• Venture Firm Team8 Secures Additional $365 Million
• CISA Adds Four Critical Vulnerabilities to KEV Catalog
• CVE-2026-10087: GitLab EE Stored XSS via Developer Role
• Cyera Acquiring Oasis Security in $1 Billion Deal
• Varonis Launches Agent IBAC to Keep AI Agents Within Their Intended Boundaries
• OpenAI Agent Used Exposed Credentials Across Four Services During Hugging Face Breach
• CVE-2026-19264: Critical Path Traversal in Postiz Exposes JWT Secrets and DB Credentials
• Microsoft Teams Vishing Attacks Lead to Chaos Ransomware Deployment
• CVE-2026-3564: ConnectWise ScreenConnect Auth Bypass via Server Cryptographic Material
• FortiGate SSL VPN Setup: Secure Remote Access Configuration
• CISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively Exploited
• CVE-2026-34486: Apache Tomcat Missing Encryption of Sensitive Data Vulnerability
• Critical Flaws Discovered in Belgian eID Software Used by 2 Million People
• CVE-2026-13332: Masteriyo LMS Allows Unauthenticated Force-Logout of Any User
• When Credentials Are No Longer Enough: Device Trust in the AI Era
• OpenSSH Hardening with Certificate-Based Authentication
• Cyberattacks on Critical Infrastructure Double in Q1 2026
• CVE-2026-16462: PROCON-WEB SCADA Unauthenticated SQL Injection (CVSS 9.8)
• CVE-2008-4128: Cisco IOS Cross-Site Request Forgery Vulnerability
• CVE-2026-3589: WooCommerce CSRF Flaw Allows Unauthenticated
• CVE-2025-15618: Perl Payment Module Uses Insecure
• CVE-2026-8507: Crypt::OpenSSL::PKCS12 Heap OOB Write — CVSS
• CVE-2025-61311: Reflected XSS in docuForm Managed Print
• CVE-2021-47932: WordPress TheCartPress 1.5.3.6 Privilege
• CVE-2026-12923: YouTube Showcase WordPress Plugin Arbitrary Function Call
• CVE-2026-13423: Streamit WordPress Theme Allows Unauthenticated Arbitrary PHP Function Execution
• CVE-2026-32922: OpenClaw Privilege Escalation via Token
• CVE-2025-14771: ABB T-MAC Plus Critical File & Directory Exposure (CVSS 9.9)
• CVE-2026-18948: Feast Feature Store RCE via Unsafe Deserialization
• CVE-2026-14289: FacturaONE WooCommerce Plugin Allows Unauthenticated File Write
• CVE-2026-49814: Dell PowerProtect Data Domain OS Command Injection
• CVE-2026-53481: Dell PowerProtect Data Domain Path Traversal — CVSS 9.8
• CVE-2025-67403: Critical SQL Injection in CASAP Enrollment System update_class.php
• CVE-2025-67404: Critical SQL Injection in CASAP Enrollment System save_stud.php
• CVE-2026-11374: ManageEngine SSO Ticket Prediction Enables Unauthenticated Account Takeover
• CVE-2026-11841: AppEngine Fileaccess Unauthenticated Filesystem R/W (CVSS 9.4)
• CVE-2026-28766: Gardyn Smart Garden API Exposes All User
• CVE-2026-34162: FastGPT Unauthenticated HTTP Proxy Enables
• CVE-2026-14453: Critical SSTI to RCE in Centreon Open Tickets (CVSS 9.6)
• GlassFish Gadget Handler Expression Language RCE
• CVE-2026-44377: CubeCart Authenticated SSTI via Smarty
• CVE-2026-2346: Critical Authorization Bypass in Menulux Mobile App
• CVE-2026-33670: SiYuan readDir Path Traversal Notebook
• CVE-2026-40259 — SiYuan Knowledge Management Authorization
• CVE-2026-47137: vm2 Sandbox Escape via Strict Equality require Bypass (CVSS 10.0)
• CVE-2026-47140: vm2 Sandbox Escape via Incomplete Builtin Denylist (CVSS 10.0)
• CVE-2026-48277: Adobe ColdFusion Critical Input Validation RCE (CVSS 10.0)
• CVE-2026-48281: Adobe ColdFusion Input Validation RCE Zero-Day (CVSS 10.0)
• OpENer CIP Integer Overflow — CVE-2026-51536
• OpENer Out-of-Bounds Read in CIP ForwardOpen — CVE-2026-51537
• OpENer EtherNet/IP Session Access Control Bypass — CVE-2026-51538
• CVE-2026-56260: Crawl4AI Arbitrary File Write in Docker API
• CVE-2026-56445: DICOM qrscp Path Traversal Enables Arbitrary File Write
• CVE-2026-57898: Eclipse BaSyx Unauthenticated File Write in IIoT SDK (CVSS 9.0)
• CVE-2026-6785: Memory Safety Bugs in Firefox and Thunderbird Enable Arbitrary Code Execution
• CVE-2026-71948: D-Link DWR-M961 Command Injection via formDebugDiagnosticRun
• CVE-2026-71949: D-Link DWR-M961 Command Injection via formUSSDSetup
• CVE-2026-71950: D-Link DWR-M961 Command Injection via formSmsManage
• MSI Radix AXE6600 Critical Command Injection in WPS Interface (CVE-2026-71983)
• MSI Radix AXE6600 Critical Command Injection in URL Filter Function (CVE-2026-71984)
• MSI Radix AXE6600 Critical Command Injection in Access Control Function (CVE-2026-71985)
• Deploy OpenCanary to Catch Attackers Inside Your Network
• Incident Response Playbook: Ransomware
• Microsoft 365 Security and Compliance Configuration Guide
• Microsoft Defender for Endpoint: Configuration and Hardening
• Building a Wazuh XDR + SIEM Homelab
• Intune Device Enrollment: Windows Autopilot Setup
• Microsoft 365 Security Baseline Implementation
• SentinelOne Device Control Configuration
• SentinelOne MSP Client Onboarding
• Verizon DBIR 2026: Healthcare Fends Off Rising Social
• What the 2026 DBIR Confirms: Attacks Are Living in the Browser
• Google Loses Final Appeal to Overturn €4.1 Billion EU Antitrust Fine
• EU Fines Google $1 Billion for Search and App Store DMA Violations
• DHS Confirms Hackers Breached HSIN Federal Info-Sharing Platform
• Cybersecurity Predictions 2026: The Hype We Can Ignore and the Real Risks
• Ransomware Attacks Surge 49% Year-Over-Year: BlackFog 2026
• Iranian APT Targets Aviation, Software Companies With
• The Future of Age Verification: Your Face Never Leaves Your Device
• Analog Devices Discloses Data Breach, Says Operations Unaffected
• Semiconductor Chip Titan Analog Devices Reports Data Breach
• Amazon Fined $2.25M by FTC for Blocking Identity Theft Victims' Evidence
• Amazon Alexa+ Goes GA After Tens of Millions Join Beta
• FBI Links Cybercriminals to Sharp Surge in Cargo Theft
• OnTrac Notifies Customers of Data Breach After Network Hack
• Researchers Detect ZionSiphon Malware Targeting Israeli
• Ransomware Negotiator Gets 70 Months in Prison for Aiding BlackCat Attacks
• The Race to Field Military Autonomy Is On — Can Trusted Information Infrastructure Keep Pace?
• Police Shut Down Reboot of Crimenetwork Marketplace, Arrest
• FBI and Google Dismantle 'Outsider Enterprise' Phishing-as-a-Service Platform
• CVE-2026-49185: FieldX MDM ADB Topic Command Injection via Runtime.exec()
• Google Patches First Chrome Zero-Day of 2026: CVE-2026-2441
• Google Chrome Use-After-Free Zero-Day Under Active
• American Lending Center Data Breach Affects 123,000
• Akira Hackers Disable EDR with Safe Mode, Steal Data but Fail to Encrypt
• Ransomware Attacks Surge in Early 2026 with 26 Claims in One Day
• New TrojPix Attack Leaks Data From Air-Gapped Systems via Video Cable Emissions
• Adani Pledges $100 Billion for Renewable-Powered AI Data
• CVE-2026-24207: NVIDIA Triton Inference Server Auth Bypass
• European Commission Confirms Data Breach Linked to Trivy
• Fake Microsoft Security Alerts Used to Deploy North Korean NarwhalRAT Malware
• NY Man Charged After Harassing College Student with AI-Generated Nude Images
• Foster City Declares State of Emergency After Ransomware
• GM Agrees to $12.75M California Settlement Over Sale of Drivers' Data
• North Korean Hackers Use Fake Zoom Meeting to Target Crypto
• Truebit Protocol Hit by $26.5 Million DeFi Hack via Smart
• Drift Loses $280 Million as Hackers Seize Security Council
• 'It Reads Like a Spy Novel': $280M Drift Theft Linked to North Korean Fake Companies
• Attackers Vote Themselves $20 Million in BONK Cryptocurrency via Governance Attack
• Growing Up The Hard Way: Open Source Security's Painful Maturation
• Texas Govt Data Breach Exposes Over 3 Million Driver's Licenses
• Texas Parks & Wildlife Data Breach Affects 3 Million Individuals
• 300,000+ Passport Numbers Leaked in December Eurail Data
• Russia's Forest Blizzard Harvests Logins via SOHO Router
• CubePilot Drone Software Dev Hit by DNS Hijacking to Intercept Traffic
• New StormEncryptor Ransomware Used by Former Medusa Affiliate
• FBI: Americans Lost Over $388 Million to Crypto ATM Scams
• US Charges Two New Yorkers for Laundering $43 Million in Pig Butchering Investment Fraud
• CVE-2026-65048: Ninja Forms Unauthenticated Stored XSS via Repeatable Fieldset
• CVE-2026-65049: Ninja Forms Multisite Flaw Enables Network-Wide Data Deletion
• Gartner Identifies the Top 6 Cybersecurity Trends Reshaping
• Microsoft Entra PIM: Configuring Just-in-Time Admin Access
• The 10 Controls Every Canadian Cyber-Insurance Carrier Asks About in 2026
• CVE-2026-34621: Adobe Acrobat Reader Prototype Pollution
• UK Brings AI Chatbots Under the Online Safety Act
• New Evooo1Bot Linux Botnet Turns Routers Into Traffic Relay Nodes
• Iran, Russia, and China Target Water Systems for Sabotage
• Senate Democrats Introduce Water Cyber Shield Act to Fund $300M Annual Water System Cybersecurity
• Microsoft Teams to Get Efficiency Mode for Low-Resource PCs
• FortiGate Performance Optimization: A Tuning Guide for Throughput
• Police Dismantles 9 Crime Groups in Illegal Streaming Crackdown
• CVE-2026-3844 — Breeze Cache WordPress Plugin
• ADT Says Customer Data Stolen in Cyber Intrusion
• ETH Zurich Finds 25 Password Recovery Attacks Against
• Self-Hosted Password Manager with Vaultwarden
• JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach
• Microsoft Patches Exploited Exchange Server Vulnerability CVE-2026-42897
• Microsoft Exchange Server SSRF to RCE Chain Actively
• Chick-fil-A Data Breach Affects More Than 13,000 Customers
• Incomplete Windows Patch Opens Door to Zero-Click Attacks
• Apple Sends New Threat Notification Alerts Over Mercenary Spyware Attacks
• Mail2Shell: Zero-Click RCE in FreeScout Helpdesk
• Medical Device Maker Notifies Nearly 4 Million Patients of Data Breach
• Money Launderer Linked to $230M Crypto Heist Gets 70 Months
• European Police Dismantles €50 Million Crypto Investment
• US & China Partner on Scam Center Takedown in Dubai
• As Global Powers Explore Humanoid Robots, Cyber-Risk Looms
• CVE-2026-8153: Universal Robots PolyScope OS Command
• CISA Adds Actively Exploited ConnectWise and Windows Flaws
• CVE-2024-1708: ConnectWise ScreenConnect Path Traversal
• AI Finds 38 Security Flaws in Electronic Health Record
• CVE-2026-32238: Critical Command Injection in OpenEMR
• CVE-2026-39932: Critical RCE in OpenEMR via PHP Payload Injection
• Canadian Man Gets 33 Years for Using Social Media to Coerce US Children
• Poisoned Ruby Gems and Go Modules Exploit CI Pipelines for Credential Theft
• CVE-2026-15704: Critical Auth Bypass in Eclipse BaSyx Go Components
• CVE-2026-35392: Critical Path Traversal in goshs Go HTTP
• Instructure Reaches Ransom Agreement with ShinyHunters to Stop 3.65 TB Canvas Leak
• RansomHouse Freezes Japan's Food Supply: Nichirei Logistics Cyberattack Disrupts KFC and Thousands of Clients
• cPanel & WHM Release Fixes for Three New Vulnerabilities
• CVE-2026-41940: WebPros cPanel & WHM and WP2 Missing
• CVE-2026-47365: WordPress Toolkit Argument Injection in cPanel & WHM
• GM to Pay Over $12 Million in California Privacy Settlement
• Configuring Windows LAPS: Automated Local Admin Password
• Group Policy Security Hardening for Windows Environments
• Endpoint Security Firm Glow Launches With $180M in Funding at $1.2B Valuation
• AegisAI Raises $36 Million for AI-Powered Email Security
• Attackers Hit Pair of Critical Fortinet Vulnerabilities the Vendor Disclosed in April
• CISA Orders Immediate Patching of Actively Exploited Fortinet FortiSandbox Flaws
• Pharma Giant Novo Nordisk Discloses Breach of Clinical Trials Data
• Foxconn Confirms North American Factories Hit by Cyberattack
• Foxconn Attack Highlights Manufacturing's Cyber Crisis
• Kodak Admits Data Breach After ShinyHunters Hack Claims
• Accenture Confirms Data Breach After Hacker Claims Source Code Theft
• Microsoft Warns of Exchange Server Zero-Day Exploited in the Wild
• 7-Eleven Confirms Data Breach Claimed by the ShinyHunters
• 185,000 Likely Impacted by 7-Eleven Data Breach
• Bug Bounty Research Triggers ServiceNow Security Alert
• In Other News: AI Slop Limits Apple Bounties, North Carolina Port Attacks, Hackers Target Wall Street
• Looking Back, Looking Forward: Two Decades of Cybersecurity
• Ransomware Costs Projected to Hit $74 Billion in 2026, 30%
• Apple Sued Over Fake App Store Crypto Wallet That Stole $1.8M in Bitcoin
• CVE-2026-39397: PayloadCMS Puck Plugin Access Control Bypass
• Critical Authentication Bypass in WordPress Temporary Login
• Netherlands Seizes 800 Servers of Hosting Firm Enabling
• Dutch Raid Fails to Dent Russian Bulletproof Host THE.Hosting
• US Charges Three Russians for Operating Bulletproof Hosting Behind $62M Ransomware Campaign
• 'GodDamn' Ransomware Uses BYOVD Technique to Kill Security Software at US Companies
• Reynolds Ransomware Embeds BYOVD Driver to Disable EDR
• New Mexico Judge Orders Meta to Pay $567 Million in Kids Online Safety Case
• Carnival Cruise Confirms Data Breach Affecting Nearly 6 Million People
• Charter Communications Data Breach Affects 4.9 Million Accounts
• Man Sent to Prison for Selling Data of 7 Million Elderly Americans
• CISA Warns Fortinet Users to Secure Devices After FortiBleed Credential Leak
• OpenAI's Next AI Model Astra Shows Cyber Performance Strong Enough to Trigger Pause
• Critical Windows Netlogon RCE Flaw Now Exploited in Attacks
• Active Directory Health Check: Comprehensive Diagnostic
• Dutch Police Dismantle Massive 17-Million-Device Botnet
• Google Disrupts NetNut Residential Proxy Network Spanning 2 Million Home Devices
• NetNut Proxy Network Disrupted, 2 Million Infected Devices Cut Off
• AI-Built Ransomware Toolkit Automates EDR Evasion and AD Discovery
• The Gentlemen RaaS Uses GentleKiller EDR Framework Targeting 400 Security Processes
• CVE-2026-45538: OpenSIPS Stack Buffer Overflow via Oversized SIP Header
• Critical Grandstream VoIP Vulnerability Allows
• Vulnerability Management Checklist
• Free Apps Are Quietly Turning Smart TVs Into Web-Scraping Proxies for AI
• LG to Ban Residential Proxies from Smart TV Apps
• Malicious JetBrains Plugins Steal AI API Keys as Chrome Extensions Capture Chatbot Chats
• CVE-2026-59792: JetBrains IntelliJ IDEA Remote Code Execution via Path Traversal
• CVE-2026-63077: JetBrains TeamCity Deserialization RCE Added to CISA KEV
• 15,000 WordPress Websites Cleaned Up in SocGholish Botnet Takedown
• Operation Endgame Disrupts SocGholish Servers, Cleans 14,971 WordPress Sites
• Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCE
• French President Urges US to Share Cutting-Edge AI and Democracies to Cooperate on Regulation
• India Hosts Global AI Impact Summit — 20 World Leaders and Tech CEOs
• USB Worm Spreads Crypto-Stealing Malware via Windows Shortcut Files
• Attackers Exploit 'Ill Bloom' Vulnerability to Drain Over $5 Million From Cryptocurrency Wallets
• CryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet Apps
• FortiBleed Attackers Turn Firewalls Into Credential Stealers as Heists Persist
• Russian Initial Access Broker Behind FortiBleed Campaign
• FortiBleed Credential-Theft Campaign Linked to Lynx Ransomware Group
• Chinese DCloud Uni-App Framework Powers 200,000+ Global Investment Scam Sites
• SE Asian Cybercriminal Syndicates Become a Global Power
• Malicious Perplexity Chrome Extension Intercepted Searches and Address Bar Input
• NAIC Says Only Public Data Stolen in ShinyHunters PeopleSoft Breach
• Insurance Giant Aflac Discloses Data Breach After Subsidiary Hack
• CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijacking
• Critical Cursor AI Code Editor Flaws Could Lead to OS-Level Remote Code Execution
• CVE-2026-63093: Cursor for Windows Binary Planting Allows RCE via Malicious Git Repository
• Ghost Accounts Abuse GitHub API in Mass Recon Campaign
• SonicWall Warns of Two Zero-Day Exploits Targeting SMA1000 — Patch Immediately
• Prolific Ransomware Group Behind SonicWall Zero-Day Attacks
• HollowByte: 11-Byte Payload Triggers OpenSSL Server Memory Exhaustion
• CVE-2024-27890: Arista EOS OpenConfig gNMI Authorization Bypass (CVSS 9.6)
• CVE-2024-27892: Arista EOS OpenConfig gNMI Set Bypass (CVSS 9.6)
• Hacker Uses DeepSeek AI to Autonomously Attack Vulnerable Servers
• Chinese Hacker Uses DeepSeek via Telegram to Launch Fully Autonomous Cyberattacks
• Interpol Leverages Global System to Curtail Fraud Payments
• CVE-2026-11964: WordPress User Registration Plugin PayPal Webhook Bypass
• China-Linked Storm-1175 Deploys StormEncryptor Ransomware via Critical N-central Flaw
• Hackers Breach Govt Webmail While Running Parallel Crypto Fraud
• CISA Adds Two Actively Exploited Roundcube Webmail Flaws to KEV
• Metabase SQL Zero-Day Attacks Could Have Wide Blast Radius
• Valve Notifies Steam Hardware Customers of CEVA Logistics Data Breach
• FBI: Hackers Using Social Engineering to Breach Accounts and Steal Explicit Content
• Signal Adds Automatic Key Verification to Thwart Man-in-the-Middle Attacks
• CVE-2026-48144: Apache Thrift c_glib TLS Certificate Host Mismatch (CVSS 9.1)
• Apache HttpComponents TLS Hostname Verification Bypass
• Who Vets AI's Code? The Scale Challenge Facing Open Source Ingestion
• Building a SOAR Platform with Shuffle in Your Homelab
• OWASP DefectDojo: Self-Hosted Vulnerability Management Platform
• 2026 Vulnerability Forecast: Up to 117,000 CVEs Expected
• Notepad++ Supply Chain Attack Attributed to China-Linked
• CVE-2026-52884: Notepad++ Trusted Directory Bypass via Path Traversal (CVSS 7.8)
• Lotus Blossom APT Compromises Notepad++ Updates to Deploy
• Russian-Linked CANFAIL Malware Targets Ukrainian Defense
• Apple Patches Actively Exploited iOS Zero-Day Used in Targeted Attacks
• Apple Patches Actively Exploited Zero-Day in dyld
• BeyondTrust Zero-Day Allows Unauthenticated Command
• CVE-2016-20024: ZKTeco ZKTime.Net Insecure File Permissions
• CVE-2021-47936: OpenCATS 0.9.4 Unauthenticated RCE via PHP
• Tenda A15 UploadCfg Stack Buffer Overflow (CVE-2026-4567)
• CVE-2026-51380: Tenda AC10 v3 Buffer Overflow Enables DoS and Remote Code Execution
• CVE-2026-7154: Totolink A8000RU OS Command Injection via CGI Handler
• Critical CORS + Path Traversal in TinaCMS CLI Dev Server
• CVE-2026-61736: LightRAG Critical CORS Credential Bypass (CVSS 9.3)
• CVE-2026-53483: Dell PowerProtect Data Domain Authentication Bypass — CVSS 9.8
• CVE-2026-33264: Apache Airflow Scheduler RCE via DAG Deserialization
• CVE-2026-10185: SourceCodester Hospital Records SQL Injection via Save
• CVE-2026-10236: Improper Authorization in SourceCodester Water Billing Management System
• CVE-2026-11707: IBM WebSphere Application Server Admin Console XSS (CVSS 9.3)
• CVE-2026-14446: IBM WebSphere Admin Console Privilege Escalation
• CVE-2026-14512: IBM WebSphere Pre-Auth Deserialization Allows RCE
• CVE-2026-12415: WordPress Invoice Generator Privilege Escalation (CVSS 9.8)
• ARVE WordPress Plugin Backdoor Grants Instant Admin Access to ~20,000 Sites
• CVE-2026-8095: WordPress Frontend File Manager Plugin Allows Arbitrary File Deletion
• CVE-2026-53471: migration-planner JWT Source ID Claim Not Validated in Agent API
• KodExplorer fileGet Auth Bypass — Unauthenticated Remote
• CVE-2026-14487: WordPress Simple Coherent Form Plugin — Critical Unauthenticated File Deletion
• CVE-2026-3141: WordPress FormGent Plugin Unauthorized File Deletion (CVSS 9.1)
• CVE-2026-14622: Missing Authentication in Restaurant Website PHP/MySQL AJAX Endpoint
• CVE-2026-4312: DrangSoft GCB/FCB Audit Software Missing
• CVE-2026-6577: DjangoBlog Missing Authentication in OwnTracks logtracks Endpoint
• CVE-2026-14635: Unrestricted File Upload RCE in CodeIgniter Ecommerce Bootstrap
• CVE-2026-48062: CodeIgniter File Upload Validation Bypass (CVSS 9.8)
• CVE-2026-14641: Remote SQL Injection in SourceCodester Class and Exam Timetabling System
• CVE-2026-14642: Remote SQL Injection in SourceCodester Timetabling System edit_class2.php
• CVE-2026-48188: OTRS Database Layer SQL Injection — Authentication Bypass
• CVE-2026-14653: SQL Injection in Shopping Cart Men's Product Delete Endpoint
• CVE-2026-14654: SQL Injection in Shopping Cart Girls Product Delete Endpoint
• CVE-2026-9525: SQL Injection in itsourcecode Electronic
• CVE-2026-15282: WordPress Instant Appointment Plugin Critical File Upload
• CVE-2026-6885: Borg SPM 2007 Arbitrary File Upload Enables
• CVE-2026-19516: SSRF in mcp-grafana Allows Arbitrary Outbound Requests
• scalar/astro Proxy Endpoint Unauthenticated SSRF
• Typecho 1.3.0 Pingback SSRF via X-Pingback Manipulation
• Critical RCE in Veeam Backup & Replication — Third Domain
• CVE-2026-21994: Critical Unauthenticated RCE in Oracle Edge
• CVE-2026-25534: Spinnaker SSRF via URL Validation Bypass
• CVE-2026-32604: Spinnaker Clouddriver Remote Code Execution
• CVE-2026-32613: Spinnaker Echo Spring Expression Language
• CVE-2026-7302: SGLang Unauthenticated Path Traversal
• CVE-2026-41258: OpenMRS Velocity Template Injection Enables
• CVE-2026-9558: Critical SSTI in Mautic Enables Authenticated RCE
• CVE-2026-28815: swift-crypto X-Wing HPKE Out-of-Bounds Read
• CVE-2026-32956: Critical Heap Buffer Overflow in silex
• CVE-2026-7136: Totolink A8000RU OS Command Injection via setDmzCfg
• CVE-2026-33278 — NLnet Labs Unbound DNSSEC Validator RCE
• CVE-2026-42960 — NLnet Labs Unbound DNS Cache Poisoning
• Pi-hole v6 + Unbound: Network-Wide DNS Sinkhole with Recursive Resolution
• CVE-2026-34177: Canonical LXD Incomplete VM Restriction
• CVE-2026-34178: Canonical LXD Backup Import Path
• CVE-2026-5412: Juju Controller Facade Allows Low-Privilege
• CVE-2026-50208: TLS Bypass and Hard-Coded DES Keys Enable MITM Attacks
• CVE-2026-40047: Apache Camel Docling Argument Injection Enables OS Command Execution
• CVE-2026-40453: Apache Camel Header Filter Case-Variant
• CVE-2026-40860: Apache Camel JMS Unsafe ObjectMessage
• CVE-2026-40493: SAIL PSD Codec Buffer Overflow via channels
• CVE-2026-49191: M3WebServer Hard-Coded API Keys Exposed via Error Pages
• CVE-2026-41228 — Froxlor Path Traversal via def_language
• CVE-2026-41229 — Froxlor PHP Code Injection via MySQL
• SSH Hardening Best Practices
• CVE-2026-41635: Apache MINA Class Allowlist Bypass Enables
• Apache MINA Incomplete Deserialization Patch Leaves 2.1.X
• CVE-2026-42779: Critical Apache MINA Deserialization Class
• CVE-2026-42849: authentik Critical XSS in AutosubmitStage (CVSS 9.3)
• CVE-2026-49448: authentik Source Stage Authentication Bypass (CVSS 9.8)
• CVE-2026-61514: Puwell IP Camera Authentication Bypass
• CVE-2026-43824: Argo CD ServerSideDiff Exposes Cleartext
• Kubernetes Secrets Management with External Secrets Operator
• Kubernetes Homelab Cluster with K3s
• CVE-2026-45689: Rocket.Chat OAuth Token Hijack via MongoDB Operator Injection (CVSS 9.1)
• CVE-2026-53469: migration-planner Missing Authorization on Bulk Delete
• CVE-2026-53470: migration-planner IDOR Exposes Cross-Tenant S3 Pre-Signed URLs
• CVE-2026-59500: Priority Portal Generator Authentication Bypass — CVSS 10.0
• CVE-2026-59504: Priority Portal Generator Client-Side Security Bypass (CVSS 9.1)
• Business Central Docker Containers: Development Environment
• CVE-2026-6886: Borg SPM 2007 Authentication Bypass Allows
• CVE-2026-6887: Borg SPM 2007 SQL Injection Exposes Full
• Fortinet FortiOS SSL VPN Heap Overflow Enables Pre-Auth RCE
• OpenVAS / Greenbone: Open-Source Vulnerability Scanning
• Nuclei Vulnerability Scanning Pipeline
• Network Traffic Analysis with Zeek and Suricata
• AIDE File Integrity Monitoring: Detect Unauthorized Changes on Linux
• Fail2ban: Automated Brute Force Protection for Linux Servers
• FortiAnalyzer Log Forwarding and Compliance Reports
• Build a Centralized Log Management System with Loki and Grafana
• Security Baseline Hardening: CIS Controls Implementation
• WireGuard VPN: Secure Remote Access for IT Professionals
• Azure Sentinel SIEM Implementation