cybersec

#TitleDate
1ChatGPhish Vulnerability Turns ChatGPT Web Summaries Into a Phishing SurfaceMay 29, 7:10 pm
2ChatGPT share links abused to host fake outage pages to deliver malwareMay 29, 7:10 pm
3California AG sues 23andMe over 2023 breach exposing health dataMay 29, 6:10 pm
4Attackers Use LLM Agent for Post-Exploitation After Marimo CVE-2026-39987 ExploitMay 29, 4:10 pm
5Dutch govt disrupts malware botnet with 17 million infected devicesMay 29, 3:10 pm
6From $5 Attacks to Botnet-Powered Platforms: Inside the DDoS-as-a- Service MarketMay 29, 3:10 pm
7Google Chrome adds session cookie theft protection for all usersMay 29, 1:10 pm
8What 2,000 Exposed Vibe-Coded Apps Reveal About the Limits of Most Security StacksMay 29, 12:10 pm
9Man sent to prison for selling data of 7 millions elderly AmericansMay 29, 12:10 pm
10New Russian-Linked GREYVIBE Targets Ukraine with AI-Powered CyberattacksMay 29, 12:10 pm
11US charges Google security engineer with Polymarket insider tradingMay 29, 11:10 am
12Malicious Sicoob NuGet Steals Banking Credentials as npm Packages Target Cloud SecretsMay 29, 10:10 am
13Charter Communications data breach affects 4.9 million accountsMay 29, 9:10 am
14Kimsuky Deploys HTTPSpy, Expands Arsenal with HelloDoor and VS Code TunnelsMay 29, 7:10 am
15ISC Stormcast For Friday, May 29th, 2026 https://isc.sans.edu/podcastdetail/9950, (Fri, May 29th)May 29, 2:10 am
16Anthropic confirms Claude Mythos-class models will roll out to the publicMay 29, 1:10 am
17GreyVibe hackers use ChatGPT, Gemini to power cyberattacksMay 28, 11:10 pm
18BTMOB Android malware service generates custom phishing payloadsMay 28, 10:10 pm
19Analysis of a Year of Files Uploaded to DShield Sensors, (Wed, May 27th)May 28, 8:10 pm
20FBI warns of fake FIFA websites running World Cup fraud schemesMay 28, 7:10 pm
21Critical Gogs RCE Vulnerability Lets Any Authenticated User Execute Arbitrary CodeMay 28, 6:10 pm
22Hackers exploit FortiClient EMS flaw to push infostealer malwareMay 28, 6:10 pm
23Threat Actors Exploit Critical FortiClient EMS Flaw to Deploy Credential StealerMay 28, 5:10 pm
24New Gogs zero-day flaw lets hackers get remote code executionMay 28, 3:10 pm
25ThreatsDay Bulletin: Claude Security Plugin, Azure Priv-Esc, Kali365 MFA Bypass, FIFA Scams +15 MoreMay 28, 2:10 pm
26Microsoft Slams Public Zero-Day Disclosures Amid GitHub Researcher Account RemovalMay 28, 2:10 pm
27How SIEM helps MSPs reduce noise and stop threats fasterMay 28, 2:10 pm
28New AI Usage Report: Enterprise AI Risk Is Heavily Concentrated Among a Small Group of AI "Power users"May 28, 1:10 pm
29Webinar: Why network incidents take too long to resolveMay 28, 1:10 pm
30Romanian gets 5 years in prison for hacking Oregon govt networkMay 28, 1:10 pm
31Carnival Cruise confirms data breach affecting nearly 6 million peopleMay 28, 11:10 am
32Sextortionist sentenced to 33 years for targeting 145 childrenMay 28, 10:10 am
33JINX-0164 Targets Cryptocurrency Firms with Fake Recruiter Lures and macOS MalwareMay 28, 9:10 am
34ISC Stormcast For Thursday, May 28th, 2026 https://isc.sans.edu/podcastdetail/9948, (Thu, May 28th)May 28, 2:10 am
35Reconstructing an Akira Ransomware Kill Chain from Perimeter and Endpoint Logs, (Wed, May 27th)May 27, 10:10 pm
36GPU mining malware spreads via SEO poisoning, AI chatbotsMay 27, 10:10 pm
37Malicious npm Package Stole Files From Claude AI User Directory via GitHubMay 27, 5:10 pm
38Grandoreiro Malware and BTMOB RAT Campaigns Target Windows and Android UsersMay 27, 5:10 pm
393 SOC Steps that Shut Down Incident Risks EarlyMay 27, 3:10 pm
40Glassworm botnet disrupted after resilient C2 infrastructure takedownMay 27, 2:10 pm
41Can you enforce strong Active Directory password rules without frustrating users?May 27, 2:10 pm
42GlassWorm Malware Takedown Disrupts Developer Supply Chain Attack InfrastructureMay 27, 1:10 pm
43Gitea Vulnerability Exposes Private Container Images without AuthenticationMay 27, 12:10 pm
44FBI warns of in-person data theft attacks from extortion gangMay 27, 12:10 pm
45CISA gives feds 4 days to patch actively exploited cPanel plugin flawMay 27, 10:10 am
46Windows 11 KB5089573 update released with performance improvementsMay 27, 9:10 am
47Dutch police arrests suspect linked to Ajax football club hackMay 27, 9:10 am
48AI Chatbot Recommendations Redirect Users to Cryptojacking Malware SitesMay 27, 8:10 am
49ISC Stormcast For Wednesday, May 27th, 2026 https://isc.sans.edu/podcastdetail/9946, (Wed, May 27th)May 27, 2:10 am
50Charter confirms data breach after ShinyHunters extortion threatMay 26, 8:10 pm
51KnowledgeDeliver flaw exploited as a zero-day to install web shellsMay 26, 8:10 pm
52MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 CountriesMay 26, 5:10 pm
53CERT-In Recommends 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted AttacksMay 26, 2:10 pm
54[THN Webinar] New AI DDoS Attacks Are Smarter. Learn How to Fight BackMay 26, 2:10 pm
55How Varonis Atlas integrates Claude Compliance API for AI governanceMay 26, 2:10 pm
56Webinar: Too many tools are slowing network incident responseMay 26, 1:10 pm
57Microsoft Defender can now automatically isolate hacked endpointsMay 26, 1:10 pm
58Microsoft Patches SharePoint RCE Flaw CVE-2026-45659 Across Server VersionsMay 26, 12:10 pm
59New AI DDoS Attacks Are Smarter. Learn How to Fight Back in This WebinarMay 26, 12:10 pm
60MFA Prompt Bombing: Why Your Second Factor Isn't Saving YouMay 26, 11:10 am
61CERT-In Mandates 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted AttacksMay 26, 10:10 am
62Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO PoisoningMay 26, 9:10 am
63CISA orders feds to patch actively exploited Drupal vulnerabilityMay 26, 9:10 am
64Microsoft: Domain Controller lookup may fail on Windows Server 2016May 26, 8:10 am
657-Eleven data breach exposes personal information of 185,000 peopleMay 26, 7:10 am
66KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt StrikeMay 26, 6:10 am
67ISC Stormcast For Tuesday, May 26th, 2026 https://isc.sans.edu/podcastdetail/9944, (Tue, May 26th)May 26, 2:10 am
68Possible ACR Stealer From Page Impersonating Claude, (Tue, May 26th)May 26, 12:10 am
69Anthropic’s restricted Claude Mythos model may be coming to Claude CodeMay 25, 5:10 pm
70⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain ChaosMay 25, 4:10 pm
71Microsoft Access VBA, (Mon, May 25th)May 25, 3:10 pm
72Netherlands Seizes 800 Servers, Arrests 2 for Aiding CyberattacksMay 25, 2:10 pm
73TeamPCP Supply Chain Campaign: Activity Through 2026-05-24, (Mon, May 25th)May 25, 2:10 pm
74FBI warns of Kali365 phishing service targeting Microsoft 365 accountsMay 25, 1:10 pm
75The Alert Firehose Finally Meets Its MatchMay 25, 12:10 pm
76Ghost CMS CVE-2026-26980 Exploited to Hijack 700+ Sites for ClickFix AttacksMay 25, 12:10 pm
77Lazarus Deploys RemotePE Memory-Only RAT Against Financial and Crypto FirmsMay 25, 11:10 am
78TrapDoor Supply Chain Attack Spreads Credential-Stealing Malware via npm, PyPI, and CratesIOMay 25, 7:10 am
79Wireshark 4.6.6 Released, (Sun, May 24th)May 24, 5:10 pm
80Ghost CMS SQL injection flaw exploited in large-scale ClickFix campaignMay 24, 3:10 pm
81Laravel Lang packages hijacked to deploy credential-stealing malwareMay 23, 9:10 pm
82Packagist Supply Chain Attack Infects 8 Packages Using GitHub-Hosted Linux MalwareMay 23, 5:10 pm
83npm Adds 2FA-Gated Publishing and Package Install Controls Against Supply Chain AttacksMay 23, 5:10 pm
84Italy disrupts CINEMAGOAL piracy app that stole streaming auth codesMay 23, 3:10 pm
85Claude Mythos AI Finds 10,000 High-Severity Flaws in Widely Used SoftwareMay 23, 1:10 pm
86Laravel-Lang PHP Packages Compromised to Deliver Cross-Platform Credential StealerMay 23, 11:10 am
87Drupal Core SQL Injection Bug Actively Exploited, Added to CISA KEVMay 23, 8:10 am
88LiteSpeed cPanel Plugin CVE-2026-48172 Exploited to Run Scripts as RootMay 23, 8:10 am
89An Example of Stack String in High Level Language, (Sat, May 23rd)May 23, 6:10 am
90First VPN Dismantled in Global Takedown Over Use by 25 Ransomware GroupsMay 22, 7:10 pm
91Netherlands seizes 800 servers of hosting firm enabling cyberattacksMay 22, 6:10 pm
92Ghostwriter Targets Ukraine Government Entities with Prometheus Phishing MalwareMay 22, 5:10 pm
93Lawmakers Demand Answers as CISA Tries to Contain Data LeakMay 22, 5:10 pm
94Former US execs plead guilty to aiding tech support scammersMay 22, 4:10 pm
95Why Chargebacks are Just One Piece of the Fraud PuzzleMay 22, 2:10 pm
96Drupal: Critical SQL injection flaw now targeted in attacksMay 22, 2:10 pm
97Trend Micro warns of Apex One zero-day exploited in the wildMay 22, 2:10 pm
98Making Vulnerable Drivers Exploitable Without Hardware - The BYOVD PerspectiveMay 22, 1:10 pm
99Megalodon GitHub Attack Targets 5,561 Repos with Malicious CI/CD WorkflowsMay 22, 1:10 pm
100Ubiquiti patches three max severity UniFi OS vulnerabilitiesMay 22, 12:10 pm
101Kimwolf DDoS Botnet Operator Arrested in Canada Over DDoS-for-Hire AttacksMay 22, 9:10 am
102US and Canada arrest and charge suspected Kimwolf botnet adminMay 22, 9:10 am
103CISA Adds Exploited Langflow and Trend Micro Apex One Vulnerabilities to KEVMay 22, 7:10 am
104Cross-Platform NPM Stealer, (Fri, May 22nd)May 22, 7:10 am
105Cisco Patches CVSS 10.0 Secure Workload REST API Flaw Enabling Data AccessMay 22, 6:10 am
106ISC Stormcast For Friday, May 22nd, 2026 https://isc.sans.edu/podcastdetail/9942, (Fri, May 22nd)May 22, 2:10 am
107Alleged Kimwolf Botmaster ‘Dort’ Arrested, Charged in U.S. and CanadaMay 21, 10:10 pm
108Google accidentally exposed details of unfixed Chromium flawMay 21, 7:10 pm
109Apple blocked over $11 billion in App Store fraud in 6 yearsMay 21, 4:10 pm
110Showboat Linux Malware Hits Middle East Telecom with SOCKS5 Proxy BackdoorMay 21, 3:10 pm
111ThreatsDay Bulletin: Linux Rootkits, Router 0-Day, AI Intrusions, Scam Kits and 25 New StoriesMay 21, 2:10 pm
112Selective HTTP Proxying in Linux, (Thu, May 21st)May 21, 2:10 pm
113Max severity Cisco Secure Workload flaw gives Site Admin privilegesMay 21, 2:10 pm
114Chinese hackers target telcos with new Linux, Windows malwareMay 21, 2:10 pm
115Inside a Crypto Drainer: How to Spot it Before it Empties Your WalletMay 21, 2:10 pm
116Police seize “First VPN” service used in ransomware, data theft attacksMay 21, 1:10 pm
117Microsoft Warns of Two Actively Exploited Defender VulnerabilitiesMay 21, 12:10 pm
118When Identity is the Attack PathMay 21, 11:10 am
119Flipper One project needs community help to build open Linux platformMay 21, 11:10 am
1209-Year-Old Linux Kernel Flaw Enables Root Command Execution on Major DistrosMay 21, 9:10 am
121Microsoft warns of new Defender zero-days exploited in attacksMay 21, 8:10 am
122GitHub links repo breach to TanStack npm supply-chain attackMay 21, 7:10 am
123Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites to RCE AttacksMay 21, 5:10 am
124GitHub Internal Repositories Breached via Malicious Nx Console VS Code ExtensionMay 21, 5:10 am
125ISC Stormcast For Thursday, May 21st, 2026 https://isc.sans.edu/podcastdetail/9940, (Thu, May 21st)May 21, 2:10 am
126Hackers bypass SonicWall VPN MFA due to incomplete patchingMay 20, 10:10 pm
127Ukraine identifies infostealer operator tied to 28,000 stolen accountsMay 20, 10:10 pm
128Microsoft Open-Sources RAMPART and Clarity to Secure AI Agents During DevelopmentMay 20, 5:10 pm
129Grafana breach caused by missed token rotation after TanStack attackMay 20, 4:10 pm
130Microsoft Takes Down Malware-Signing Service Behind Ransomware AttacksMay 20, 3:10 pm
131Agent AI is Coming. Are You Ready?May 20, 2:10 pm
132Webworm Deploys EchoCreep and GraphWorm Backdoors Using Discord and MS Graph APIMay 20, 2:10 pm
133Identity Alone Isn't Enough: Why Device Security Has to Share the LoadMay 20, 2:10 pm
134Drupal critical update to fix bug with high exploitation riskMay 20, 1:10 pm
135Typosquatting Is No Longer a User Problem. It's a Supply Chain ProblemMay 20, 11:10 am
136Exploit released for new PinTheft Arch Linux root escalation flawMay 20, 11:10 am
137GitHub Breached — Employee Device Hack Led to Exfiltration of 3,800+ Internal ReposMay 20, 10:10 am
138Microsoft Releases Mitigation for YellowKey BitLocker Bypass CVE-2026-45585 ExploitMay 20, 10:10 am
139GitHub confirms breach of 3,800 repos via malicious VSCode extensionMay 20, 9:10 am
140Microsoft shares mitigation for YellowKey Windows zero-dayMay 20, 8:10 am
141Grafana GitHub Breach Exposes Source Code via TanStack npm AttackMay 20, 6:10 am
142GitHub Investigating TeamPCP Claimed Breach of ~4,000 Internal RepositoriesMay 20, 5:10 am
143GitHub investigates internal repositories breach claimed by TeamPCPMay 20, 5:10 am
144ISC Stormcast For Wednesday, May 20th, 2026 https://isc.sans.edu/podcastdetail/9938, (Wed, May 20th)May 20, 2:10 am
145Max-severity flaw in ChromaDB for AI apps allows server hijackingMay 20, 12:10 am
146Cybercrime service disrupted for abusing Microsoft platform to sign malwareMay 19, 10:10 pm
147Discord rolls out end-to-end encryption on voice, video callsMay 19, 9:10 pm
148Microsoft Self-Service Password Reset abused in Azure data theft attacksMay 19, 8:10 pm
149FBI: Americans lost over $388 million to scams using crypto ATMs in 2025May 19, 8:10 pm
150Trapdoor Android Ad Fraud Scheme Hit 659 Million Daily Bid Requests Using 455 AppsMay 19, 6:10 pm
151Microsoft blames macOS update for undismissible Teams location promptsMay 19, 5:10 pm
152Microsoft plans to improve Windows 11 driver quality in 2026May 19, 5:10 pm
1537-Eleven confirms data breach claimed by the ShinyHunters gangMay 19, 3:10 pm
154New Shai-Hulud malware wave compromises 600 npm packagesMay 19, 3:10 pm
155DirtyDecrypt PoC Released for Linux Kernel CVE-2026-31635 LPE VulnerabilityMay 19, 3:10 pm
156Critical Microsoft Vulnerabilities Doubled: From Exposure to EscalationMay 19, 2:10 pm
157Drupal to Release Urgent Core Security Updates on May 20, Sites Told to PrepareMay 19, 1:10 pm
158The New Phishing Click: How OAuth Consent Bypasses MFAMay 19, 1:10 pm
159Webinar: The hidden bottlenecks in network incident responseMay 19, 1:10 pm
160Microsoft confirms patching issues in restricted Windows networksMay 19, 12:10 pm
161SEPPMail Secure E-Mail Gateway Vulnerabilities Enable RCE and Mail Traffic AccessMay 19, 11:10 am
162Compromised Nx Console 18.95.0 Targeted VS Code Developers with Credential StealerMay 19, 9:10 am
163Popular GitHub Action Tags Redirected to Imposter Commit to Steal CI/CD CredentialsMay 19, 7:10 am
164Mini Shai-Hulud Pushes Malicious AntV npm Packages via Compromised Maintainer AccountMay 19, 6:10 am
165GitHub Actions Supply Chain Attack Redirects Tags to Steal CI/CD CredentialsMay 19, 6:10 am
166ISC Stormcast For Tuesday, May 19th, 2026 https://isc.sans.edu/podcastdetail/9936, (Tue, May 19th)May 19, 2:10 am
167INTERPOL ‘Operation Ramz’ seizes 53 malware, phishing serversMay 18, 11:10 pm
168SHub macOS infostealer variant spoofs Apple security updatesMay 18, 10:10 pm
169TeamPCP Supply Chain Campaign: Activity Through 2026-05-17, (Mon, May 18th)May 18, 9:10 pm
170CISA Admin Leaked AWS GovCloud Keys on GithubMay 18, 9:10 pm
1715 Steps to Managing Shadow AI Tools Without Slowing Down EmployeesMay 18, 7:10 pm
172INTERPOL Operation Ramz Disrupts MENA Cybercrime Networks with 201 ArrestsMay 18, 6:10 pm
173Leaked Shai-Hulud malware fuels new npm infostealer campaignMay 18, 6:10 pm
174⚡ Weekly Recap: Exchange 0-Day, npm Worm, Fake AI Repo, Cisco Exploit and MoreMay 18, 4:10 pm
175How to Reduce Phishing Exposure Before It Turns into Business DisruptionMay 18, 2:10 pm
176Grafana says stolen GitHub token let hackers steal codebaseMay 18, 2:10 pm
177Ivanti, Fortinet, SAP, VMware, n8n Patch RCE, SQL Injection, Privilege Escalation FlawsMay 18, 12:10 pm
178Microsoft testing adjustable taskbar, Start menu in Windows 11May 18, 12:10 pm
179Developer Workstations Are Now Part of the Software Supply ChainMay 18, 12:10 pm
180Four Malicious npm Packages Deliver Infostealers and Phantom Bot DDoS MalwareMay 18, 11:10 am
181MiniPlasma Windows 0-Day Enables SYSTEM Privilege Escalation on Fully Patched SystemsMay 18, 9:10 am
182Pre-Stuxnet Fast16 Malware Tampered with Nuclear Weapons SimulationsMay 18, 9:10 am
183Microsoft confirms Windows 11 security update install issuesMay 18, 9:10 am
184Exploit available for new DirtyDecrypt Linux root escalation flawMay 18, 8:10 am
185Hackers earn $1,298,250 for 47 zero-days at Pwn2Own Berlin 2026May 18, 6:10 am
186New Windows 'MiniPlasma' zero-day exploit gives SYSTEM access, PoC releasedMay 17, 11:10 pm
187NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCEMay 17, 3:10 pm
188Tycoon2FA hijacks Microsoft 365 accounts via device-code phishingMay 17, 3:10 pm
189Grafana GitHub Token Breach Led to Codebase Download and Extortion AttemptMay 17, 8:10 am
190Microsoft rejects critical Azure vulnerability report, no CVE issuedMay 16, 9:10 pm
191Funnel Builder Flaw Under Active Exploitation Enables WooCommerce Checkout SkimmingMay 16, 5:10 pm
192Russian hackers turn Kazuar backdoor into modular P2P botnetMay 16, 3:10 pm
193Funnel Builder WordPress plugin bug exploited to steal credit cardsMay 15, 8:10 pm
194Turla Turns Kazuar Backdoor Into Modular P2P Botnet for Persistent AccessMay 15, 6:10 pm
195Popular node-ipc npm package compromised to steal credentialsMay 15, 6:10 pm
196Microsoft Exchange, Windows 11 hacked on second day of Pwn2OwnMay 15, 6:10 pm
197Four OpenClaw Flaws Enable Data Theft, Privilege Escalation, and PersistenceMay 15, 4:10 pm
198Avada Builder WordPress plugin flaws allow site credential theftMay 15, 4:10 pm
199Microsoft backpedals: Edge to stop loading passwords into memoryMay 15, 3:10 pm
200Inside the REMUS Infostealer: Session Theft, MaaS, and Rapid EvolutionMay 15, 2:10 pm
201Microsoft to automatically roll back faulty Windows driversMay 15, 1:10 pm
202TanStack Supply Chain Attack Hits Two OpenAI Employee Devices, Forces macOS UpdatesMay 15, 12:10 pm
203What 45 Days of Watching Your Own Tools Will Tell You About Your Real Attack SurfaceMay 15, 12:10 pm
204Microsoft warns of Exchange zero-day flaw exploited in attacksMay 15, 10:10 am
205On-Prem Microsoft Exchange Server CVE-2026-42897 Exploited via Crafted EmailMay 15, 7:10 am
206[Guest Diary] New Malware Libraries means New Signatures, (Fri, May 15th)May 15, 7:10 am
207CISA Adds Cisco SD-WAN CVE-2026-20182 to KEV After Admin Access ExploitsMay 15, 6:10 am
208ISC Stormcast For Friday, May 15th, 2026 https://isc.sans.edu/podcastdetail/9934, (Fri, May 15th)May 15, 5:10 am
209TeamPCP hackers advertise Mistral AI code repos for saleMay 14, 11:10 pm
210Hackers exploit auth bypass flaw in Burst Statistics WordPress pluginMay 14, 9:10 pm
211Cisco warns of new critical SD-WAN flaw exploited in zero-day attacksMay 14, 8:10 pm
212Stealer Backdoor Found in 3 Node-IPC Versions Targeting Developer SecretsMay 14, 7:10 pm
213Cisco Catalyst SD-WAN Controller Auth Bypass Actively Exploited to Gain Admin AccessMay 14, 7:10 pm
214Windows 11 and Microsoft Edge hacked at Pwn2Own Berlin 2026May 14, 7:10 pm
215OpenAI confirms security breach in TanStack supply chain attackMay 14, 7:10 pm
216ThreatsDay Bulletin: PAN-OS RCE, Mythos cURL Bug, AI Tokenizer Attacks, and 10+ StoriesMay 14, 6:10 pm
217Cyber-Enabled Cargo Crime: How Cybercrime Tradecraft is Used to Steal FreightMay 14, 4:10 pm
21818-year-old NGINX vulnerability allows DoS, potential RCEMay 14, 4:10 pm
219Ghostwriter Targets Ukrainian Government With Geofenced PDF Phishing, Cobalt StrikeMay 14, 3:10 pm
220KongTuke hackers now use Microsoft Teams for corporate breachesMay 14, 1:10 pm
221How AI Hallucinations Are Creating Real Security RisksMay 14, 12:10 pm
222PraisonAI CVE-2026-44338 Auth Bypass Targeted Within Hours of DisclosureMay 14, 12:10 pm
223Windows Zero-Days Expose BitLocker Bypasses And CTFMON Privilege EscalationMay 14, 10:10 am
224Dell confirms its SupportAssist software causes Windows BSOD crashesMay 14, 10:10 am
225US charges suspected Dream Market admin arrested in GermanyMay 14, 9:10 am
226New Fragnesia Linux Kernel LPE Grants Root Access via Page Cache CorruptionMay 14, 8:10 am
227New Fragnesia Linux flaw lets attackers gain root privilegesMay 14, 8:10 am
22818-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated RCEMay 14, 7:10 am
229Simple bypass of the link preview function in Outlook Junk folder, (Thu, May 14th)May 14, 7:10 am
230ISC Stormcast For Thursday, May 14th, 2026 https://isc.sans.edu/podcastdetail/9932, (Thu, May 14th)May 14, 5:10 am
231West Pharmaceutical says hackers stole data, encrypted systemsMay 13, 11:10 pm
232Iranian hackers targeted major South Korean electronics makerMay 13, 10:10 pm
233New critical Exim mailer flaw allows remote code executionMay 13, 9:10 pm
234Windows BitLocker zero-day gives access to protected drives, PoC releasedMay 13, 5:10 pm
235Microsoft fixes BitLocker recovery issue only for Windows 11 usersMay 13, 4:10 pm
236Webinar tomorrow: Why security alone won't stop modern attacksMay 13, 4:10 pm
237[Webinar] How Modern Attack Paths Cross Code, Pipelines, and CloudMay 13, 3:10 pm
238Microsoft fixes Windows Autopatch bug installing restricted driversMay 13, 3:10 pm
239Azerbaijani Energy Firm Hit by Repeated Microsoft Exchange ExploitationMay 13, 2:10 pm
240Microsoft's MDASH AI System Finds 16 Windows Flaws Fixed in Patch TuesdayMay 13, 2:10 pm
241Microsoft Patches 138 Vulnerabilities, Including DNS and Netlogon RCE FlawsMay 13, 1:10 pm
242Most Remediation Programs Never Confirm the Fix Actually WorkedMay 13, 1:10 pm
243[Webinar] Why Your AppSec Tools Miss the "Lethal Path" (and How to Fix It)May 13, 1:10 pm
24473 Seconds to Breach, 24 Hours to Patch: The Case for Autonomous ValidationMay 13, 1:10 pm
245Foxconn confirms cyberattack claimed by Nitrogen ransomware gangMay 13, 1:10 pm
246Microsoft says some users can't install Office on Windows 365 devicesMay 13, 12:10 pm
247GemStuffer Abuses 150+ RubyGems to Exfiltrate Scraped U.K. Council Portal DataMay 13, 10:10 am
248Android Adds Intrusion Logging for Sophisticated Spyware ForensicsMay 13, 8:10 am
249[GUEST DIARY] Tearing apart website fraud to see how it works., (Wed, May 13th)May 13, 7:10 am
250ISC Stormcast For Wednesday, May 13th, 2026 https://isc.sans.edu/podcastdetail/9930, (Wed, May 13th)May 13, 3:10 am
251Proxying the Unproxyable? Sending EXE traffic to a Proxy, (Wed, May 13th)May 13, 2:10 am
252US govt seeks Instructure testimony on massive Canvas cyberattackMay 12, 11:10 pm
253Patch Tuesday, May 2026 EditionMay 12, 10:10 pm
254UK fines water supplier $1.3M for exposing data of 664k customersMay 12, 9:10 pm
255Signal adds security warnings for social engineering, phishing attacksMay 12, 8:10 pm
256Webinar: Fixing the gaps in network incident responseMay 12, 8:10 pm
257Fortinet warns of critical RCE flaws in FortiSandbox and FortiAuthenticatorMay 12, 7:10 pm
258Microsoft May 2026 Patch Tuesday, (Tue, May 12th)May 12, 7:10 pm
259Microsoft releases Windows 10 KB5087544 extended security updateMay 12, 7:10 pm
260New Exim BDAT Vulnerability Exposes GnuTLS Builds to Potential Code ExecutionMay 12, 6:10 pm
261Microsoft May 2026 Patch Tuesday fixes 120 flaws, no zero-daysMay 12, 6:10 pm
262Windows 11 KB5089549 & KB5087420 cumulative updates releasedMay 12, 6:10 pm
263RubyGems Suspends New Signups After Hundreds of Malicious Packages Are UploadedMay 12, 5:10 pm
264Android 17 to expand banking scam call and privacy protectionsMay 12, 5:10 pm
265Škoda warns of customer data breach after online shop hackMay 12, 5:10 pm
266New TrickMo Variant Uses TON C2 and SOCKS5 to Create Android Network PivotsMay 12, 2:10 pm
267Webinar: What the Riskiest SOC Alerts Go Unanswered - and How Radiant Security Can HelpMay 12, 1:10 pm
268Why Agentic AI Is Security's Next Blind SpotMay 12, 12:10 pm
269Shai Hulud attack ships signed malicious TanStack, Mistral npm packagesMay 12, 12:10 pm
270SAP fixes critical vulnerabilities in Commerce Cloud and S/4HANAMay 12, 11:10 am
271Instructure reaches 'agreement' with ShinyHunters to stop data leakMay 12, 10:10 am
272Mini Shai-Hulud Worm Compromises TanStack, Mistral AI, Guardrails AI & More PackagesMay 12, 9:10 am
273OpenAI Launches Daybreak for AI-Powered Vulnerability Detection and Patch ValidationMay 12, 8:10 am
274Instructure Reaches Ransom Agreement with ShinyHunters to Stop 3.65TB Canvas LeakMay 12, 8:10 am
275iOS 26.5 Brings Default End-to-End Encrypted RCS Messaging Between iPhone and AndroidMay 12, 7:10 am
276ISC Stormcast For Tuesday, May 12th, 2026 https://isc.sans.edu/podcastdetail/9928, (Tue, May 12th)May 12, 4:10 am
277Apple Patches Everything, (Mon, May 11th)May 11, 11:10 pm
278GM agrees to $12.75M California settlement over sale of drivers’ dataMay 11, 11:10 pm
279New GhostLock tool abuses Windows API to block file accessMay 11, 10:10 pm
280Official CheckMarx Jenkins package compromised with infostealerMay 11, 10:10 pm
281TeamPCP Compromises Checkmarx Jenkins AST Plugin Weeks After KICS Supply Chain AttackMay 11, 8:10 pm
282cPanel CVE-2026-41940 Under Active Exploitation to Deploy Filemanager BackdoorMay 11, 6:10 pm
283Hackers Used AI to Develop First Known Zero-Day 2FA Bypass for Mass ExploitationMay 11, 5:10 pm
284Instructure confirms hackers used Canvas flaw to deface portalsMay 11, 4:10 pm
285Why we use CAPTCHAs, (Mon, May 11th)May 11, 3:10 pm
286⚡ Weekly Recap: Linux Rootkit, macOS Crypto Stealer, WebSocket Skimmers and MoreMay 11, 2:10 pm
287Why Changing Passwords Doesn’t End an Active Directory BreachMay 11, 2:10 pm
288Webinar this week: Prevention alone is not enough against modern attacksMay 11, 1:10 pm
289Google: Hackers used AI to develop zero-day exploit for web admin toolMay 11, 1:10 pm
290Your Purple Team Isn't Purple — It's Just Red and Blue in the Same RoomMay 11, 12:10 pm
291Fake OpenAI Privacy Filter Repo Hits #1 on Hugging Face, Draws 244K DownloadsMay 11, 9:10 am
292TrickMo Android banker adopts TON blockchain for covert commsMay 11, 9:10 am
293ISC Stormcast For Monday, May 11th, 2026 https://isc.sans.edu/podcastdetail/9926, (Mon, May 11th)May 11, 3:10 am
294YARA-X 1.16.0 Release, (Sun, May 10th)May 10, 11:10 pm
295Hackers abuse Google ads, Claude.ai chats to push Mac malwareMay 10, 6:10 pm
296Police shut down reboot of Crimenetwork marketplace, arrest adminMay 10, 3:10 pm
297Ollama Out-of-Bounds Read Vulnerability Allows Remote Process Memory LeakMay 10, 1:10 pm
298JDownloader site hacked to replace installers with Python RAT malwareMay 9, 8:10 pm
299Fake OpenAI repository on Hugging Face pushes infostealer malwareMay 9, 3:10 pm
300cPanel, WHM Release Fixes for Three New Vulnerabilities — Patch NowMay 9, 8:10 am
301TCLBANKER Banking Trojan Targets Financial Platforms via WhatsApp and Outlook WormsMay 8, 7:10 pm
302Fake Call History Apps Stole Payments From Users After 7.3 Million Play Store DownloadsMay 8, 5:10 pm
303NVIDIA confirms GeForce NOW data breach affecting Armenian usersMay 8, 5:10 pm
304Trellix source code breach claimed by RansomHouse hackersMay 8, 2:10 pm
305Why More Analysts Won’t Solve Your SOC’s Alert ProblemMay 8, 2:10 pm
306CISA gives feds four days to patch Ivanti flaw exploited as zero-dayMay 8, 1:10 pm
307Quasar Linux RAT Steals Developer Credentials for Software Supply Chain CompromiseMay 8, 12:10 pm
308New Linux PamDOORa Backdoor Uses PAM Modules to Steal SSH CredentialsMay 8, 11:10 am
309One Missed Threat Per Week: What 25M Alerts Reveal About Low-Severity RiskMay 8, 11:10 am
310Zara data breach exposed personal information of 197,000 peopleMay 8, 11:10 am
311Former govt contractor convicted for wiping dozens of federal databasesMay 8, 9:10 am
312Linux Kernel Dirty Frag LPE Exploit Enables Root Access Across Major DistributionsMay 8, 8:10 am
313New Linux 'Dirty Frag' zero-day gives root on all major distrosMay 8, 8:10 am
314Another Universal Linux Local Privilege Escalation (LPE) Vulnerability: Dirty Frag, (Fri, May 8th)May 8, 8:10 am
315Canvas Breach Disrupts Schools & Colleges NationwideMay 8, 3:10 am
316ISC Stormcast For Friday, May 8th, 2026 https://isc.sans.edu/podcastdetail/9924, (Fri, May 8th)May 8, 2:10 am
317Canvas login portals hacked in mass ShinyHunters extortion campaignMay 7, 11:10 pm
318New TCLBanker malware self-spreads over WhatsApp and OutlookMay 7, 10:10 pm
319PCPJack Credential Stealer Exploits 5 CVEs to Spread Worm-Like Across Cloud SystemsMay 7, 7:10 pm
320Ivanti EPMM CVE-2026-6973 RCE Under Active Exploitation Grants Admin-Level AccessMay 7, 7:10 pm
321New PCPJack worm steals credentials, cleans TeamPCP infectionsMay 7, 7:10 pm
322Australia warns of ClickFix attacks pushing Vidar Stealer malwareMay 7, 6:10 pm
323Ivanti warns of new EPMM flaw exploited in zero-day attacksMay 7, 4:10 pm
324One Click, Total Shutdown: The "Patient Zero" Webinar on Killing Stealth BreachesMay 7, 3:10 pm
325PAN-OS RCE Exploit Under Active Use Enabling Root Access and EspionageMay 7, 2:10 pm
326Americans sentenced for running 'laptop farms' for North KoreaMay 7, 2:10 pm
327The Browser Is Breaking Your DLP: How Data Slips Past Modern ControlsMay 7, 2:10 pm
328Crypto gang member gets 6.5 years for role in $230 million heistMay 7, 1:10 pm
329Day Zero Readiness: The Operational Gaps That Break Incident ResponseMay 7, 12:10 pm
330ThreatsDay Bulletin: Edge Plaintext Passwords, ICS 0-Days, Patch-or-Die Alerts and 25+ New StoriesMay 7, 12:10 pm
331Webinar: Why modern attacks require both security and recoveryMay 7, 12:10 pm
332Palo Alto Networks firewall zero-day exploited for nearly a monthMay 7, 11:10 am
333PyPI Packages Deliver ZiChatBot Malware via Zulip APIs on Windows and LinuxMay 7, 10:10 am
334Fake Claude AI website delivers new 'Beagle' Windows malwareMay 7, 10:10 am
335vm2 Node.js Library Vulnerabilities Enable Sandbox Escape and Arbitrary Code ExecutionMay 7, 5:10 am
336An Adaptive Cyber Analytics UI for Web Honeypot Logs [Guest Diary], (Wed, May 6th)May 7, 2:10 am
337ISC Stormcast For Thursday, May 7th, 2026 https://isc.sans.edu/podcastdetail/9922, (Thu, May 7th)May 7, 2:10 am
338Hackers abuse Google ads for GoDaddy ManageWP login phishingMay 6, 10:10 pm
339Mirai-Based xlabs_v1 Botnet Exploits ADB to Hijack IoT Devices for DDoS AttacksMay 6, 9:10 pm
340Critical vm2 sandbox bug lets attackers execute code on hostsMay 6, 7:10 pm
341New Cisco DoS flaw requires manual reboot to revive devicesMay 6, 6:10 pm
342DAEMON Tools devs confirm breach, release malware-free versionMay 6, 5:10 pm
343MuddyWater Uses Microsoft Teams to Steal Credentials in False Flag Ransomware AttackMay 6, 3:10 pm
344Why ransomware attacks succeed even when backups existMay 6, 2:10 pm
345Your AI Agents Are Already Inside the Perimeter. Do You Know What They're Doing?May 6, 1:10 pm
346The Hacker News Launches 'Cybersecurity Stars Awards 2026' — Submissions Now OpenMay 6, 1:10 pm
347Webinar: Why network incidents escalate and how to fix response gapsMay 6, 1:10 pm
348MuddyWater hackers use Chaos ransomware as a decoy in attacksMay 6, 1:10 pm
349Windows Phone Link Exploited by CloudZ RAT to Steal Credentials and OTPsMay 6, 10:10 am
350Google's Android Apps Get Public Verification to Stop Supply Chain AttacksMay 6, 10:10 am
351Palo Alto Networks warns of firewall RCE zero-day exploited in attacksMay 6, 10:10 am
352Palo Alto PAN-OS Flaw Under Active Exploitation Enables Remote Code ExecutionMay 6, 8:10 am
353ISC Stormcast For Wednesday, May 6th, 2026 https://isc.sans.edu/podcastdetail/9920, (Wed, May 6th)May 6, 2:10 am
354Instructure hacker claims data theft from 8,800 schools, universitiesMay 5, 10:10 pm
355New stealthy Quasar Linux malware targets software developersMay 5, 10:10 pm
356DAEMON Tools trojanized in supply-chain attack to deploy backdoorMay 5, 8:10 pm
357The EOL Blind Spot in Your CVE Feed: What SCA Tools MissMay 5, 7:10 pm
358Student hacked Taiwan high-speed rail to trigger emergency brakesMay 5, 6:10 pm
359DAEMON Tools Supply Chain Attack Compromises Official Installers with MalwareMay 5, 5:10 pm
360Critical Apache HTTP/2 Flaw (CVE-2026-23918) Enables DoS and Potential RCEMay 5, 5:10 pm
361China-Linked UAT-8302 Targets Governments Using Shared APT Malware Across RegionsMay 5, 4:10 pm
362FTC to ban data broker Kochava from selling Americans’ location dataMay 5, 3:10 pm
363The EOL Blind Spot in Your CVE Feed: What SCA Tools Don't Check.May 5, 2:10 pm
364MetInfo CMS CVE-2026-29014 Exploited for Remote Code Execution AttacksMay 5, 1:10 pm
365The Back Door Attackers Know About — and Most Security Teams Still Haven’t ClosedMay 5, 1:10 pm
366Vimeo data breach exposes personal information of 119,000 peopleMay 5, 1:10 pm
367Google now offers up to $1.5 million for some Android exploitsMay 5, 12:10 pm
368Cleartext Passwords in MS Edge? In 2026?, (Mon, May 4th)May 5, 12:10 pm
369SSL.com rotates their root certificate today, (Tue, May 5th)May 5, 12:10 pm
370Karakurt extortion gang ‘cold case’ negotiator gets 8.5 years in prisonMay 5, 11:10 am
371We Scanned 1 Million Exposed AI Services. Here's How Bad the Security Actually IsMay 5, 11:10 am
372ScarCruft Hacks Gaming Platform to Deploy BirdCall Malware on Android and WindowsMay 5, 10:10 am
373CloudZ malware abuses Microsoft Phone Link to steal SMS and OTPsMay 5, 10:10 am
374ScarCruft hackers push BirdCall Android malware via game platformMay 5, 9:10 am
375Microsoft Details Phishing Campaign Targeting 35,000 Users Across 26 CountriesMay 5, 8:10 am
376Weaver E-cology RCE Flaw CVE-2026-22679 Actively Exploited via Debug APIMay 5, 8:10 am
377ISC Stormcast For Tuesday, May 5th, 2026 https://isc.sans.edu/podcastdetail/9918, (Tue, May 5th)May 5, 2:10 am
378Weaver E-cology critical bug exploited in attacks since MarchMay 4, 11:10 pm
379Amazon SES increasingly abused in phishing to evade detectionMay 4, 8:10 pm
380Phishing Campaign Hits 80+ Orgs Using SimpleHelp and ScreenConnect RMM ToolsMay 4, 7:10 pm
381Progress Patches Critical MOVEit Automation Bug Enabling Authentication BypassMay 4, 6:10 pm
382TeamPCP Weekly Analysis: 2026-W18 (2026-04-27 through 2026-05-03), (Mon, May 4th)May 4, 6:10 pm
383Backdoored PyTorch Lightning package drops credential stealerMay 4, 6:10 pm
384Trellix discloses data breach after source code repository hackMay 4, 5:10 pm
385⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & MoreMay 4, 4:10 pm
386DShield Honeypot Update, (Mon, May 4th)May 4, 3:10 pm
387They don’t hack, they borrow: How fraudsters target credit unionsMay 4, 2:10 pm
388Webinar: Why MSPs must rethink security and backup strategiesMay 4, 1:10 pm
389Progress warns of critical MOVEit Automation auth bypass flawMay 4, 1:10 pm
390CISA says ‘Copy Fail’ flaw now exploited to root Linux systemsMay 4, 12:10 pm
391Silver Fox Deploys ABCDoor Malware via Tax-Themed Phishing in India and RussiaMay 4, 12:10 pm
3922026: The Year of AI-Assisted AttacksMay 4, 12:10 pm
393Critical cPanel Vulnerability Weaponized to Target Government and MSP NetworksMay 4, 11:10 am
394Microsoft confirms April Windows updates cause backup failuresMay 4, 11:10 am
395Global Crackdown Arrests 276, Shuts 9 Crypto Scam Centers, Seizes $701MMay 4, 7:10 am
396ISC Stormcast For Monday, May 4th, 2026 https://isc.sans.edu/podcastdetail/9916, (Mon, May 4th)May 4, 2:10 am
397Instructure confirms data breach, ShinyHunters claims attackMay 3, 11:10 pm
398Microsoft Defender wrongly flags DigiCert certs as Trojan:Win32/Cerdigent.A!dhaMay 3, 7:10 pm
399Wireshark 4.6.5 Released, (Sun, May 3rd)May 3, 5:10 pm
400Telegram Mini Apps abused for crypto scams, Android malware deliveryMay 3, 3:10 pm
401CISA Adds Actively Exploited Linux Root Access Bug CVE-2026-31431 to KEVMay 3, 7:10 am
402Critrical cPanel flaw mass-exploited in "Sorry" ransomware attacksMay 2, 10:10 pm
403ConsentFix v3 attacks target Azure with automated OAuth abuseMay 2, 3:10 pm
404Trellix Confirms Source Code Breach With Unauthorized Repository AccessMay 2, 7:10 am
405Microsoft tests modern Windows Run, says it's faster than legacy dialogMay 2, 1:10 am
406Edu tech firm Instructure discloses cyber incident, probes impactMay 2, 12:10 am
40730,000 Facebook Accounts Hacked via Google AppSheet Phishing CampaignMay 1, 8:10 pm
408Malicious Ad for Homebrew Leads to MacSync Stealer, (Fri, May 1st)May 1, 7:10 pm
40915-year-old detained over French govt agency data breachMay 1, 6:10 pm
410Story retractedMay 1, 5:10 pm
411China-Linked Hackers Target Asian Governments, NATO State, Journalists, and ActivistsMay 1, 3:10 pm
412Criminal IP and Securonix ThreatQ Collaborate to Enhance Threat Intelligence OperationsMay 1, 3:10 pm
413Cybercrime Groups Using Vishing and SSO Abuse in Rapid SaaS Extortion AttacksMay 1, 3:10 pm
414Microsoft fixes Remote Desktop warnings displaying incorrectlyMay 1, 1:10 pm
415Two Cybersecurity Professionals Get 4-Year Sentences in BlackCat Ransomware AttacksMay 1, 12:10 pm
416Top Five Sales Challenges Costing MSPs Cybersecurity RevenueMay 1, 12:10 pm
417Microsoft now lets admins choose pre-installed Store apps to uninstallMay 1, 12:10 pm
418Poisoned Ruby Gems and Go Modules Exploit CI Pipelines for Credential TheftMay 1, 10:10 am
419Windows 11 KB5083631 update released with 34 changes and fixesMay 1, 10:10 am
420US ransomware negotiators get 4 years in prison over BlackCat attacksMay 1, 8:10 am
421ISC Stormcast For Friday, May 1st, 2026 https://isc.sans.edu/podcastdetail/9914, (Fri, May 1st)May 1, 2:10 am
422PyTorch Lightning and Intercom-client Hit in Supply Chain Attacks to Steal CredentialsApr 30, 7:10 pm
423New Bluekit phishing service includes an AI assistant, 40 templatesApr 30, 7:10 pm
424Romanian leader of online swatting ring gets 4 years in prisonApr 30, 6:10 pm
425PyTorch Lightning Compromised in PyPI Supply Chain Attack to Steal CredentialsApr 30, 5:10 pm
426FBI links cybercriminals to sharp surge in cargo theft attacksApr 30, 5:10 pm
427April KB5083769 Windows 11 update causes backup software failuresApr 30, 4:10 pm
428New Linux ‘Copy Fail’ flaw gives hackers root on major distrosApr 30, 2:10 pm
429ThreatsDay Bulletin: SMS Blaster Busts, OpenEMR Flaws, 600K Roblox Hacks and 25 More StoriesApr 30, 2:10 pm
430What Happens in the First 24 Hours After a New Asset Goes LiveApr 30, 2:10 pm
431Anti-DDoS Firm Heaped Attacks on Brazilian ISPsApr 30, 2:10 pm
432EtherRAT Distribution Spoofing Administrative Tools via GitHub FacadesApr 30, 1:10 pm
433New Python Backdoor Uses Tunneling Service to Steal Browser and Cloud CredentialsApr 30, 1:10 pm
434Police dismantles 9 crypto scam centers, arrests 276 suspectsApr 30, 12:10 pm
435Critical cPanel and WHM bug exploited as a zero-day, PoC now availableApr 30, 12:10 pm
436New Linux 'Copy Fail' Vulnerability Enables Root Access on Major DistributionsApr 30, 10:10 am
437Google Fixes CVSS 10 Gemini CLI CI RCE and Cursor Flaws Enable Code ExecutionApr 30, 7:10 am
438ISC Stormcast For Thursday, April 30th, 2026 https://isc.sans.edu/podcastdetail/9912, (Thu, Apr 30th)Apr 30, 2:10 am
439Danger of Libredtail [Guest Diary], (Wed, Apr 29th)Apr 30, 12:10 am
440Popular WordPress redirect plugin hid dormant backdoor for yearsApr 29, 11:10 pm
441Official SAP npm packages compromised to steal credentialsApr 29, 11:10 pm
442Hackers exploit RCE flaws in Qinglong task scheduler for cryptominingApr 29, 9:10 pm
443Hackers arrested for hijacking and selling 610,000 Roblox accountsApr 29, 7:10 pm
444SAP-Related npm Packages Compromised in Credential-Stealing Supply Chain AttackApr 29, 6:10 pm
445SAP npm Packages Compromised by “Mini Shai-Hulud” Credential-Stealing MalwareApr 29, 5:10 pm
446New Wave of DPRK Attacks Uses AI-Inserted npm Malware, Fake Firms, and RATsApr 29, 4:10 pm
447cPanel, WHM emergency update fixes critical auth bypass bugApr 29, 4:10 pm
448European police dismantles €50 million crypto investment fraud ringApr 29, 3:10 pm
449Webinar: How to Automate Exposure Validation to Match the Speed of AI AttacksApr 29, 2:10 pm
450Learning from the Vercel breach: Shadow AI & OAuth sprawlApr 29, 2:10 pm
451Today's Odd Web Requests, (Wed, Apr 29th)Apr 29, 2:10 pm
452GitHub fixes RCE flaw that gave access to millions of private reposApr 29, 1:10 pm
453What to Look for in an Exposure Management Platform (And What Most of Them Get Wrong)Apr 29, 12:10 pm
454Critical cPanel Authentication Vulnerability Identified — Update Your Server ImmediatelyApr 29, 11:10 am
455CISA orders feds to patch Windows flaw exploited as zero-dayApr 29, 11:10 am
456Microsoft says backend change broke Teams Free chat and callsApr 29, 9:10 am
457CISA Adds Actively Exploited ConnectWise and Windows Flaws to KEVApr 29, 9:10 am
458LiteLLM CVE-2026-42208 SQL Injection Exploited within 36 Hours of DisclosureApr 29, 6:10 am
459ISC Stormcast For Wednesday, April 29th, 2026 https://isc.sans.edu/podcastdetail/9910, (Wed, Apr 29th)Apr 29, 2:10 am
460Broken VECT 2.0 ransomware acts as a data wiper for large filesApr 28, 10:10 pm
461Hackers are exploiting a critical LiteLLM pre-auth SQLi flawApr 28, 9:10 pm
462Researchers Discover Critical GitHub CVE-2026-3854 RCE Flaw Exploitable via Single Git PushApr 28, 7:10 pm
463Video service Vimeo confirms Anodot breach exposed user dataApr 28, 7:10 pm
464Brazilian LofyGang Resurfaces After Three Years With Minecraft LofyStealer CampaignApr 28, 6:10 pm
465US reportedly charges Scattered Spider hacker arrested in FinlandApr 28, 4:10 pm
466VECT 2.0 Ransomware Irreversibly Destroys Files Over 131KB on Windows, Linux, ESXiApr 28, 3:10 pm
467Checkmarx confirms LAPSUS$ hackers leaked its stolen GitHub dataApr 28, 3:10 pm
468Microsoft to deprecate legacy TLS in Exchange Online starting JulyApr 28, 2:10 pm
469HTTP Requests with X-Vercel-Set-Bypass-Cookie Header, (Tue, Apr 28th)Apr 28, 2:10 pm
470Why Secure Data Movement Is the Zero Trust Bottleneck Nobody Talks AboutApr 28, 1:10 pm
471Inside an OPSEC Playbook: How Threat Actors Evade DetectionApr 28, 1:10 pm
472Critical Unpatched Flaw Leaves Hugging Face LeRobot Open to Unauthenticated RCEApr 28, 12:10 pm
473After Mythos: New Playbooks For a Zero-Window EraApr 28, 11:10 am
474Microsoft: New Remote Desktop warnings may display incorrectlyApr 28, 10:10 am
475Chinese Silk Typhoon Hacker Extradited to U.S. Over COVID Research CyberattacksApr 28, 9:10 am
476Microsoft asks iPhone users to reauthenticate after Outlook outageApr 28, 9:10 am
477Microsoft Confirms Active Exploitation of Windows Shell CVE-2026-32202Apr 28, 7:10 am
478Microsoft Patches Entra ID Role Flaw That Enabled Service Principal TakeoverApr 28, 7:10 am
479ISC Stormcast For Tuesday, April 28th, 2026 https://isc.sans.edu/podcastdetail/9908, (Tue, Apr 28th)Apr 28, 2:10 am
480Robinhood account creation flaw abused to send phishing emailsApr 28, 12:10 am
481GlassWorm malware attacks return via 73 OpenVSX "sleeper" extensionsApr 27, 10:10 pm
482Alleged Silk Typhoon hacker extradited to US for cyberespionageApr 27, 8:10 pm
483Canada arrests three for operating “SMS blaster” device in TorontoApr 27, 8:10 pm
484FTC: Americans lost over $2.1 billion to social media scams in 2025Apr 27, 5:10 pm
485⚡ Weekly Recap: Fast16 Malware, XChat Launch, Federal Backdoor, AI Employee Tracking & MoreApr 27, 4:10 pm
486Checkmarx Confirms GitHub Repository Data Posted on Dark Web After March 23 AttackApr 27, 4:10 pm
487PyPI package with 1.1M monthly downloads hacked to push infostealerApr 27, 4:10 pm
488Webinar: Spotting cyberattacks before they beginApr 27, 3:10 pm
489Home security giant ADT data breach affects 5.5 million peopleApr 27, 3:10 pm
490Medtronic confirms breach after hackers claim 9 million records theftApr 27, 2:10 pm
491TeamPCP Supply Chain Campaign: Update 008 - 26-Day Pause Ends with Three Concurrent Compromises (Checkmarx KICS, Bitwarden CLI Cascade, xinference PyPI), CanisterSprawl npm Worm Identified, and Tier 1 Coverage Returns, (Mon, Apr 27th)Apr 27, 2:10 pm
492Deepfake Voice Attacks are Outpacing Defenses: What Security Leaders Should KnowApr 27, 1:10 pm
493Money launderer linked to $230M crypto heist gets 70 months in prisonApr 27, 1:10 pm
494Researchers Uncover 73 Fake VS Code Extensions Delivering GlassWorm v2 MalwareApr 27, 12:10 pm
495PhantomCore Exploits TrueConf Vulnerabilities to Breach Russian NetworksApr 27, 12:10 pm
496Mythos Changed the Math on Vulnerability Discovery. Most Teams Aren't Ready for the Remediation SideApr 27, 12:10 pm
497Microsoft says Outlook.com outage is causing sign‑in failuresApr 27, 12:10 pm
498Fake CAPTCHA IRSF Scam and 120 Keitaro Campaigns Drive Global SMS, Crypto FraudApr 27, 9:10 am
499American utility firm Itron discloses breach of internal IT networkApr 26, 3:10 pm
500Microsoft rolls out revamped Windows Insider ProgramApr 25, 5:10 pm
AI Testing

Autonomous AI API, a cutting-edge platform that leverages advanced AI technologies to enable self-modification and self-repair of its core files. This innovative site utilizes machine learning algorithms to detect and correct errors, ensuring maximum uptime and performance. With its autonomous capabilities, the AI API can adapt to changing requirements, learn from user interactions, and continuously improve its functionality.