SecurityWeek
·
11h ago
Exploitation of ServiceNow Vulnerability Seen Days After Disclosure The ServiceNow AI platform vulnerability tracked as CVE-2026-6875 can be exploited for remote code execution. The post Exploitation of ServiceNow Vulne…
TheHackerNews
·
13h ago
Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution Threat actors are now exploiting a recently disclosed critical security flaw impacting ServiceNow AI Platform, according to Defused Cyber…
TheHackerNews
·
1d ago
New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During Extraction Opening a crafted XZ archive in 7-Zip could let an attacker run code on the machine. The flaw, CVE-2026-14266, is a heap-based buffer over…
Dark Reading
·
6d ago
Records Are Made to Be Broken: Patch Tuesday Raises Triage Stakes Three of the 622 CVEs for which Microsoft issued patches this week are zero-days; there are more than 60 critical vulnerabilities.
SecurityWeek
·
8h ago
New HollowGraph Malware Abuses Microsoft 365 Calendar for C&C Communication Part of a larger toolkit, HollowGraph uses a compromised 365 account’s calendar as a two-way dead-drop. The post New HollowGraph Malware Abuses…
TheHackerNews
·
2d ago
SonicWall SMA Zero-Days Exploited Before Disclosure to Gain Root Access A previously undocumented threat actor has been attributed to the exploitation of recently disclosed SonicWall Secure Mobile Access (SMA) 1000 seri…
Recorded Future
·
13w ago
Your Supply Chain Breach Is Someone Else's Payday A supply chain attack by TeamPCP compromised trusted software tools to harvest credentials at scale, enabling payroll fraud, logistics theft, and ransomware extortion.
Dark Reading
·
22h ago
'WP2Shell' Opens Millions of WordPress Sites to Remote Takeover Barely three days after disclosure, attackers are widely chaining together CVE-2026-60137 and CVE-2026-63030 to lob exploit attempts against one of the lar…
TheHackerNews
·
6h ago
Zimbra Patches Critical SNMP Command Injection and Four XSS Vulnerabilities Zimbra has rolled out fixes to address multiple critical security issues, including a command injection flaw in the Simple Network Management P…
SecurityWeek
·
8h ago
Estée Lauder Discloses Impact From Oracle EBS Zero-Day Hack Hackers exfiltrated personal, financial, and health information from the company’s Oracle EBS instance in August 2025. The post Estée Lauder Discloses Impact F…
TheHackerNews
·
11h ago
WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass Scanning Attackers have begun to exploit two critical vulnerabilities in WordPress that, when combined together, enable unauthenticated remote code exec…
TheHackerNews
·
1d ago
Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution F5 has shipped fixes for a critical nginx flaw that lets a remote, unauthenticated attacker trigger a heap buffer overflow in the worker…
TheHackerNews
·
5d ago
Zoom Patches Critical Windows Flaw That Could Enable Account Takeover Zoom has released security updates for a critical security flaw impacting Zoom Workplace for Windows that could facilitate account takeover. The vuln…
Dark Reading
·
11d ago
Microsoft Reins in RoguePlanet Zero-Day Threat The researcher known as "Nightmare-Eclipse" published a proof-of-concept (PoC) exploit for the Windows Defender vulnerability in early June after dropping several other Mic…
KrebsOnSecurity
·
13d ago
Felons, Fraudsters Flog Offensive Cybersecurity Startup A cybersecurity startup dangling millions of dollars to acquire zero-day security vulnerabilities in popular software is run by a pair of far-right conspiracy theo…
Dark Reading
·
7d ago
Cursor IDE Auto-Executes Malicious Code in Poisoned Repos Researchers reported the vulnerability to Cursor in December, but it still remains in the popular AI coding platform and can be exploited in poisoned repository…
JPCERT
·
5w ago
注意喚起: Check Point Software Technologies社製品における認証バイパスの脆弱性(CVE-2026-50751)に関する注意喚起 (公開)
JPCERT
·
8w ago
注意喚起: Palo Alto Networks製PAN-OSにおける認証回避の脆弱性(CVE-2026-0265)に関する注意喚起 (公開)
SecurityWeek
·
7h ago
SecurityWeek Launches Critical Impact Awards to Recognize Excellence in Industrial Cybersecurity Independently judged and sponsor-neutral, the new awards program honors the people, organizations, and technologies delive…
TheHackerNews
·
4d ago
GoldenEyeDog Subgroup Linked to DigiCert Breach and Code-Signing Certificate Theft Cybersecurity researchers have attributed the April 2026 DigiCert security incident to a threat activity cluster dubbed CylindricalCanin…
Access Now
·
6d ago
Not AI for Good Session description: This civil society-led counter-event to the AI for Good Global Summit takes a critical look at the overhyped role of AI in solving humanity’s long-standing problems, and at The post…
NIST
·
46w ago
NIST Revises Security and Privacy Control Catalog to Improve Software Update and Patch Releases The catalog revision is part of NIST’s response to a recent executive order on strengthening the nation’s cybersecurity.
TheHackerNews
·
5h ago
Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial Access Threat actors have been observed exploiting a now-patched high-severity Palo Alto Networks PAN-OS vulnerability as an entry point to dep…
TheHackerNews
·
1d ago
Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign A malware operator left its delivery server wide open, and Rapid7 pulled down the whole toolkit: 1,048 files spanning lure templates, fi…
TheHackerNews
·
4d ago
Fake Coding Tests Deliver OtterCookie-Aligned Malware Hidden in SVG Flag Images North Korean threat actors linked to the Contagious Interview campaign have been observed employing steganography in SVG image files to con…
TheHackerNews
·
4d ago
New GoSerpent Malware Targets Southeast Asian Governments and Diplomats for Espionage Cybersecurity researchers have discovered a previously undocumented malware called GoSerpent that has been put to use in cyber attack…
TheHackerNews
·
5d ago
New TELEPUZ Malware Spreads via ClickFix to Steal Data and Run Commands Cybersecurity researchers have called attention to a new modular malware called TELEPUZ that's been spreading via websites infected with ClickFix l…
TheHackerNews
·
5d ago
Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM Backdoor An advanced malware previously attributed to a China-linked threat actor has resurfaced after more than four years within a Taiwan manufacturing firm…
TheHackerNews
·
2d ago
UAC-0145 Uses ClickFix CAPTCHAs to Infect Ukrainian Devices wih Malware Russian state-sponsored threat actors have been observed leveraging the infamous ClickFix strategy to trick Ukrainian targets into infecting their…
TheHackerNews
·
5d ago
ThreatsDay: Game Cheat Spyware, 24-Hour Ransomware, Chrome Sync Stalking + 12 More Stories A lot of this week’s trouble starts with something that looks close enough. A familiar repo.
SecurityWeek
·
10h ago
Clover Health Investments Discloses Data Breach Using social engineering, hackers compromised employee accounts with access to personal and health information. The post Clover Health Investments Discloses Data Breach ap…
Kaspersky Securelist
·
2w ago
Missed incidents, persistent threats, and response gaps: Insights from compromise assessment projects Kaspersky Compromise Assessment specialists analyze trends from the service's 2025 projects and provide tips on how t…
Schneier on Security
·
10d ago
Friday Squid Blogging: “Squidbleed” Vulnerability In a rare combined cybersecurity/squid post, a twenty-nine-year-old squid proxy bug can leak HTTP requests. As usual, you can also use this squid post to talk about the…
TechCrunch
·
just now
OpenAI says Hugging Face was breached by its pre-release models OpenAI has come forward to claim responsibility for the Hugging Face breach, saying it was the result of internal testing gone awry.
Dark Reading
·
5d ago
Identity Attacks Overtake Exploits as Top Ransomware Cause Email attacks overtook exploits as the top ransomware root cause last year. Multifactor authentication (MFA) was deployed in 97% of credential-based attacks but…
Kaspersky Securelist
·
2w ago
Armored Likho digging a snake pit: inside the covert BusySnake Stealer campaign An inside look at the active Armored Likho APT campaign. The attackers are using spear-phishing, AI-generated loaders, and a new Python-bas…
KrebsOnSecurity
·
5w ago
Who Runs the Ransomware Group ‘The Gentlemen?’ A cybercrime group known as The Gentlemen has emerged as the second most active ransomware gang by victim count, rapidly attracting a talented pool of hackers through an ag…
Dark Reading
·
8d ago
GigaWiper Lets Threat Actors Choose Their Own Destructive Attack A modular implant borrows from various malware families to combine both backdoor and wiper activities to maximize impact and minimize operational output.
Dark Reading
·
just now
Ransomware Is Accelerating, But It's Not Because of AI Researchers pointed to fragmentation of the ransomware ecosystem, the emergence of new attackers, and expansion of attacks on less defended organizations.
Dark Reading
·
13d ago
Vidar Infostealer Hammers SMBs via Malvertising Campaign A financially motivated operation uses lures of cracked or pirated software to deliver a two-for-one malware combo for data theft and cryptomining.
Recorded Future
·
12w ago
Lazarus Doesn't Need AGI Explore the 2026 Claude Mythos breach, supply chain risks, and the $2B+ crypto theft pipeline.
Dark Reading
·
3d ago
Inc Ransomware Exploits SonicWall SMA Zero-Days When chained together, the two vulnerabilities allow threat actors to gain root-level capabilities on SonicWall's mobile access appliances.
Dark Reading
·
12d ago
'GodDamn' Ransomware Uses BYOVD to Smite US Companies Microsoft signed a malicious kernel driver, and now it's being used to kill security software in ransomware attacks.
Recorded Future
·
10w ago
Threat Activity Enablers: The Backbone of Today’s Threat Landscape Behind every ransomware demand, botnet, or threat activity group is a server sitting in a data center.
Kaspersky Securelist
·
5d ago
HelloNet campaign — new malicious modules launched through the ViPNet update system We identified targeted infection attempts against large Russian organizations using the ViPNet update system (a software suite for crea…
KrebsOnSecurity
·
5w ago
A Record-Breaking Patch Tuesday for June 2026 Microsoft today released software updates to plug nearly 200 security holes across its Windows operating systems and supported software, a record number of fixes for the com…
Apple Developer
·
16w ago
Update on regulated medical device apps in the European Economic Area, United Kingdom, and United States To provide additional transparency to customers, the App Store will now display whether an app is a regulated medi…
Apple Developer
·
91w ago
Apple Push Notification service server certificate update The Certification Authority (CA) for Apple Push Notification service (APNs) is changing. APNs will update the server certificates in sandbox on January 20, 2025,…
arXiv Security
·
16h ago
DSA Nonce Vulnerabilities: An Interactive Analysis arXiv:2607.17107v1 Announce Type: new Abstract: Digital signatures are fundamental to identity authentication and data integrity in cybersecurity, and the NIST-standard…
Recorded Future
·
9w ago
NIST NVD Enrichment Policy Change: Prioritizing Vulnerabilities with Attacker Behavior Signals NVD enrichment now covers only 15–20% of CVEs. Learn how Recorded Future Vulnerability Intelligence prioritizes risk using r…
DeepMind
·
4d ago
Introducing Gemini 3.5 Flash Cyber Google introduces Gemini 3.5 Flash Cyber, a lightweight cybersecurity model to find and patch vulnerabilities.
NIST
·
31w ago
Draft NIST Guidelines Rethink Cybersecurity for the AI Era New guidelines can help an organization determine ways to incorporate AI into its operations while mitigating cybersecurity risks.
NIST
·
43w ago
NIST Awards More Than $3 Million to Support Cybersecurity Workforce Development Across 13 States There are currently more than 514,000 cybersecurity job openings in the U.S.
NIST
·
30w ago
Securing Smart Speakers for Home Health Care: NIST Offers New Guidelines Cybersecurity and privacy risks can threaten patient confidentiality.
TheHackerNews
·
8h ago
New Bit2Watt Attack Could Let Cloud Tenants Disrupt Power Grids Without an Exploit A cloud tenant using nothing but ordinary GPU access can push a data center's power draw up and down fast enough to threaten the grid it…
TheHackerNews
·
1d ago
Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and Ukraine At least one Russian intelligence service is systematically hijacking internet-connected security cameras across Europe a…
TheHackerNews
·
1d ago
SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines Cybersecurity researchers have flagged a new software supply chain attack codenamed SleeperGem targeting the Ruby ecosystem after three mali…
TheHackerNews
·
3d ago
New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code Updated July 18, 2026: the two flaws now carry CVE IDs, the full mechanism has been published, a persistent-object-cache condition has surfaced, a…
TheHackerNews
·
3d ago
OpenSSL HollowByte Flaw Could Freeze Server Memory with 11-Byte TLS Requests Eleven bytes will make an unpatched OpenSSL server set aside up to 131 KB of memory for a message that never arrives. On the glibc systems Okt…
TheHackerNews
·
5d ago
Two Scattered Spider Hackers Get 5.5 Years Each for £29 Million TfL Hack Owen Flowers, 18, and Thalha Jubair, 20, were each sentenced to five and a half years at Woolwich Crown Court on Thursday, 16 July 2026, for the 2…