cybersec

#TitleDate
1New CIFSwitch Linux flaw gives root on multiple distributionsMay 30, 3:10 pm
2PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active ExploitationMay 30, 8:10 am
3New Russia-Linked GREYVIBE Targets Ukraine with AI-Powered CyberattacksMay 30, 7:10 am
4ChatGPhish Vulnerability Turns ChatGPT Web Summaries Into a Phishing SurfaceMay 29, 7:10 pm
5ChatGPT share links abused to host fake outage pages to deliver malwareMay 29, 7:10 pm
6California AG sues 23andMe over 2023 breach exposing health dataMay 29, 6:10 pm
7Attackers Use LLM Agent for Post-Exploitation After Marimo CVE-2026-39987 ExploitMay 29, 4:10 pm
8Dutch govt disrupts malware botnet with 17 million infected devicesMay 29, 3:10 pm
9From $5 Attacks to Botnet-Powered Platforms: Inside the DDoS-as-a- Service MarketMay 29, 3:10 pm
10Google Chrome adds session cookie theft protection for all usersMay 29, 1:10 pm
11What 2,000 Exposed Vibe-Coded Apps Reveal About the Limits of Most Security StacksMay 29, 12:10 pm
12Man sent to prison for selling data of 7 millions elderly AmericansMay 29, 12:10 pm
13New Russian-Linked GREYVIBE Targets Ukraine with AI-Powered CyberattacksMay 29, 12:10 pm
14US charges Google security engineer with Polymarket insider tradingMay 29, 11:10 am
15Malicious Sicoob NuGet Steals Banking Credentials as npm Packages Target Cloud SecretsMay 29, 10:10 am
16Charter Communications data breach affects 4.9 million accountsMay 29, 9:10 am
17Kimsuky Deploys HTTPSpy, Expands Arsenal with HelloDoor and VS Code TunnelsMay 29, 7:10 am
18ISC Stormcast For Friday, May 29th, 2026 https://isc.sans.edu/podcastdetail/9950, (Fri, May 29th)May 29, 2:10 am
19Anthropic confirms Claude Mythos-class models will roll out to the publicMay 29, 1:10 am
20GreyVibe hackers use ChatGPT, Gemini to power cyberattacksMay 28, 11:10 pm
21BTMOB Android malware service generates custom phishing payloadsMay 28, 10:10 pm
22Analysis of a Year of Files Uploaded to DShield Sensors, (Wed, May 27th)May 28, 8:10 pm
23FBI warns of fake FIFA websites running World Cup fraud schemesMay 28, 7:10 pm
24Critical Gogs RCE Vulnerability Lets Any Authenticated User Execute Arbitrary CodeMay 28, 6:10 pm
25Hackers exploit FortiClient EMS flaw to push infostealer malwareMay 28, 6:10 pm
26Threat Actors Exploit Critical FortiClient EMS Flaw to Deploy Credential StealerMay 28, 5:10 pm
27New Gogs zero-day flaw lets hackers get remote code executionMay 28, 3:10 pm
28ThreatsDay Bulletin: Claude Security Plugin, Azure Priv-Esc, Kali365 MFA Bypass, FIFA Scams +15 MoreMay 28, 2:10 pm
29Microsoft Slams Public Zero-Day Disclosures Amid GitHub Researcher Account RemovalMay 28, 2:10 pm
30How SIEM helps MSPs reduce noise and stop threats fasterMay 28, 2:10 pm
31New AI Usage Report: Enterprise AI Risk Is Heavily Concentrated Among a Small Group of AI "Power users"May 28, 1:10 pm
32Webinar: Why network incidents take too long to resolveMay 28, 1:10 pm
33Romanian gets 5 years in prison for hacking Oregon govt networkMay 28, 1:10 pm
34Carnival Cruise confirms data breach affecting nearly 6 million peopleMay 28, 11:10 am
35Sextortionist sentenced to 33 years for targeting 145 childrenMay 28, 10:10 am
36JINX-0164 Targets Cryptocurrency Firms with Fake Recruiter Lures and macOS MalwareMay 28, 9:10 am
37ISC Stormcast For Thursday, May 28th, 2026 https://isc.sans.edu/podcastdetail/9948, (Thu, May 28th)May 28, 2:10 am
38Reconstructing an Akira Ransomware Kill Chain from Perimeter and Endpoint Logs, (Wed, May 27th)May 27, 10:10 pm
39GPU mining malware spreads via SEO poisoning, AI chatbotsMay 27, 10:10 pm
40Malicious npm Package Stole Files From Claude AI User Directory via GitHubMay 27, 5:10 pm
41Grandoreiro Malware and BTMOB RAT Campaigns Target Windows and Android UsersMay 27, 5:10 pm
423 SOC Steps that Shut Down Incident Risks EarlyMay 27, 3:10 pm
43Glassworm botnet disrupted after resilient C2 infrastructure takedownMay 27, 2:10 pm
44Can you enforce strong Active Directory password rules without frustrating users?May 27, 2:10 pm
45GlassWorm Malware Takedown Disrupts Developer Supply Chain Attack InfrastructureMay 27, 1:10 pm
46Gitea Vulnerability Exposes Private Container Images without AuthenticationMay 27, 12:10 pm
47FBI warns of in-person data theft attacks from extortion gangMay 27, 12:10 pm
48CISA gives feds 4 days to patch actively exploited cPanel plugin flawMay 27, 10:10 am
49Windows 11 KB5089573 update released with performance improvementsMay 27, 9:10 am
50Dutch police arrests suspect linked to Ajax football club hackMay 27, 9:10 am
51AI Chatbot Recommendations Redirect Users to Cryptojacking Malware SitesMay 27, 8:10 am
52ISC Stormcast For Wednesday, May 27th, 2026 https://isc.sans.edu/podcastdetail/9946, (Wed, May 27th)May 27, 2:10 am
53Charter confirms data breach after ShinyHunters extortion threatMay 26, 8:10 pm
54KnowledgeDeliver flaw exploited as a zero-day to install web shellsMay 26, 8:10 pm
55MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 CountriesMay 26, 5:10 pm
56CERT-In Recommends 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted AttacksMay 26, 2:10 pm
57[THN Webinar] New AI DDoS Attacks Are Smarter. Learn How to Fight BackMay 26, 2:10 pm
58How Varonis Atlas integrates Claude Compliance API for AI governanceMay 26, 2:10 pm
59Webinar: Too many tools are slowing network incident responseMay 26, 1:10 pm
60Microsoft Defender can now automatically isolate hacked endpointsMay 26, 1:10 pm
61Microsoft Patches SharePoint RCE Flaw CVE-2026-45659 Across Server VersionsMay 26, 12:10 pm
62New AI DDoS Attacks Are Smarter. Learn How to Fight Back in This WebinarMay 26, 12:10 pm
63MFA Prompt Bombing: Why Your Second Factor Isn't Saving YouMay 26, 11:10 am
64CERT-In Mandates 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted AttacksMay 26, 10:10 am
65Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO PoisoningMay 26, 9:10 am
66CISA orders feds to patch actively exploited Drupal vulnerabilityMay 26, 9:10 am
67Microsoft: Domain Controller lookup may fail on Windows Server 2016May 26, 8:10 am
687-Eleven data breach exposes personal information of 185,000 peopleMay 26, 7:10 am
69KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt StrikeMay 26, 6:10 am
70ISC Stormcast For Tuesday, May 26th, 2026 https://isc.sans.edu/podcastdetail/9944, (Tue, May 26th)May 26, 2:10 am
71Possible ACR Stealer From Page Impersonating Claude, (Tue, May 26th)May 26, 12:10 am
72Anthropic’s restricted Claude Mythos model may be coming to Claude CodeMay 25, 5:10 pm
73⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain ChaosMay 25, 4:10 pm
74Microsoft Access VBA, (Mon, May 25th)May 25, 3:10 pm
75Netherlands Seizes 800 Servers, Arrests 2 for Aiding CyberattacksMay 25, 2:10 pm
76TeamPCP Supply Chain Campaign: Activity Through 2026-05-24, (Mon, May 25th)May 25, 2:10 pm
77FBI warns of Kali365 phishing service targeting Microsoft 365 accountsMay 25, 1:10 pm
78The Alert Firehose Finally Meets Its MatchMay 25, 12:10 pm
79Ghost CMS CVE-2026-26980 Exploited to Hijack 700+ Sites for ClickFix AttacksMay 25, 12:10 pm
80Lazarus Deploys RemotePE Memory-Only RAT Against Financial and Crypto FirmsMay 25, 11:10 am
81TrapDoor Supply Chain Attack Spreads Credential-Stealing Malware via npm, PyPI, and CratesIOMay 25, 7:10 am
82Wireshark 4.6.6 Released, (Sun, May 24th)May 24, 5:10 pm
83Ghost CMS SQL injection flaw exploited in large-scale ClickFix campaignMay 24, 3:10 pm
84Laravel Lang packages hijacked to deploy credential-stealing malwareMay 23, 9:10 pm
85Packagist Supply Chain Attack Infects 8 Packages Using GitHub-Hosted Linux MalwareMay 23, 5:10 pm
86npm Adds 2FA-Gated Publishing and Package Install Controls Against Supply Chain AttacksMay 23, 5:10 pm
87Italy disrupts CINEMAGOAL piracy app that stole streaming auth codesMay 23, 3:10 pm
88Claude Mythos AI Finds 10,000 High-Severity Flaws in Widely Used SoftwareMay 23, 1:10 pm
89Laravel-Lang PHP Packages Compromised to Deliver Cross-Platform Credential StealerMay 23, 11:10 am
90Drupal Core SQL Injection Bug Actively Exploited, Added to CISA KEVMay 23, 8:10 am
91LiteSpeed cPanel Plugin CVE-2026-48172 Exploited to Run Scripts as RootMay 23, 8:10 am
92An Example of Stack String in High Level Language, (Sat, May 23rd)May 23, 6:10 am
93First VPN Dismantled in Global Takedown Over Use by 25 Ransomware GroupsMay 22, 7:10 pm
94Netherlands seizes 800 servers of hosting firm enabling cyberattacksMay 22, 6:10 pm
95Ghostwriter Targets Ukraine Government Entities with Prometheus Phishing MalwareMay 22, 5:10 pm
96Lawmakers Demand Answers as CISA Tries to Contain Data LeakMay 22, 5:10 pm
97Former US execs plead guilty to aiding tech support scammersMay 22, 4:10 pm
98Why Chargebacks are Just One Piece of the Fraud PuzzleMay 22, 2:10 pm
99Drupal: Critical SQL injection flaw now targeted in attacksMay 22, 2:10 pm
100Trend Micro warns of Apex One zero-day exploited in the wildMay 22, 2:10 pm
101Making Vulnerable Drivers Exploitable Without Hardware - The BYOVD PerspectiveMay 22, 1:10 pm
102Megalodon GitHub Attack Targets 5,561 Repos with Malicious CI/CD WorkflowsMay 22, 1:10 pm
103Ubiquiti patches three max severity UniFi OS vulnerabilitiesMay 22, 12:10 pm
104Kimwolf DDoS Botnet Operator Arrested in Canada Over DDoS-for-Hire AttacksMay 22, 9:10 am
105US and Canada arrest and charge suspected Kimwolf botnet adminMay 22, 9:10 am
106CISA Adds Exploited Langflow and Trend Micro Apex One Vulnerabilities to KEVMay 22, 7:10 am
107Cross-Platform NPM Stealer, (Fri, May 22nd)May 22, 7:10 am
108Cisco Patches CVSS 10.0 Secure Workload REST API Flaw Enabling Data AccessMay 22, 6:10 am
109ISC Stormcast For Friday, May 22nd, 2026 https://isc.sans.edu/podcastdetail/9942, (Fri, May 22nd)May 22, 2:10 am
110Alleged Kimwolf Botmaster ‘Dort’ Arrested, Charged in U.S. and CanadaMay 21, 10:10 pm
111Google accidentally exposed details of unfixed Chromium flawMay 21, 7:10 pm
112Apple blocked over $11 billion in App Store fraud in 6 yearsMay 21, 4:10 pm
113Showboat Linux Malware Hits Middle East Telecom with SOCKS5 Proxy BackdoorMay 21, 3:10 pm
114ThreatsDay Bulletin: Linux Rootkits, Router 0-Day, AI Intrusions, Scam Kits and 25 New StoriesMay 21, 2:10 pm
115Selective HTTP Proxying in Linux, (Thu, May 21st)May 21, 2:10 pm
116Max severity Cisco Secure Workload flaw gives Site Admin privilegesMay 21, 2:10 pm
117Chinese hackers target telcos with new Linux, Windows malwareMay 21, 2:10 pm
118Inside a Crypto Drainer: How to Spot it Before it Empties Your WalletMay 21, 2:10 pm
119Police seize “First VPN” service used in ransomware, data theft attacksMay 21, 1:10 pm
120Microsoft Warns of Two Actively Exploited Defender VulnerabilitiesMay 21, 12:10 pm
121When Identity is the Attack PathMay 21, 11:10 am
122Flipper One project needs community help to build open Linux platformMay 21, 11:10 am
1239-Year-Old Linux Kernel Flaw Enables Root Command Execution on Major DistrosMay 21, 9:10 am
124Microsoft warns of new Defender zero-days exploited in attacksMay 21, 8:10 am
125GitHub links repo breach to TanStack npm supply-chain attackMay 21, 7:10 am
126Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites to RCE AttacksMay 21, 5:10 am
127GitHub Internal Repositories Breached via Malicious Nx Console VS Code ExtensionMay 21, 5:10 am
128ISC Stormcast For Thursday, May 21st, 2026 https://isc.sans.edu/podcastdetail/9940, (Thu, May 21st)May 21, 2:10 am
129Hackers bypass SonicWall VPN MFA due to incomplete patchingMay 20, 10:10 pm
130Ukraine identifies infostealer operator tied to 28,000 stolen accountsMay 20, 10:10 pm
131Microsoft Open-Sources RAMPART and Clarity to Secure AI Agents During DevelopmentMay 20, 5:10 pm
132Grafana breach caused by missed token rotation after TanStack attackMay 20, 4:10 pm
133Microsoft Takes Down Malware-Signing Service Behind Ransomware AttacksMay 20, 3:10 pm
134Agent AI is Coming. Are You Ready?May 20, 2:10 pm
135Webworm Deploys EchoCreep and GraphWorm Backdoors Using Discord and MS Graph APIMay 20, 2:10 pm
136Identity Alone Isn't Enough: Why Device Security Has to Share the LoadMay 20, 2:10 pm
137Drupal critical update to fix bug with high exploitation riskMay 20, 1:10 pm
138Typosquatting Is No Longer a User Problem. It's a Supply Chain ProblemMay 20, 11:10 am
139Exploit released for new PinTheft Arch Linux root escalation flawMay 20, 11:10 am
140GitHub Breached — Employee Device Hack Led to Exfiltration of 3,800+ Internal ReposMay 20, 10:10 am
141Microsoft Releases Mitigation for YellowKey BitLocker Bypass CVE-2026-45585 ExploitMay 20, 10:10 am
142GitHub confirms breach of 3,800 repos via malicious VSCode extensionMay 20, 9:10 am
143Microsoft shares mitigation for YellowKey Windows zero-dayMay 20, 8:10 am
144Grafana GitHub Breach Exposes Source Code via TanStack npm AttackMay 20, 6:10 am
145GitHub Investigating TeamPCP Claimed Breach of ~4,000 Internal RepositoriesMay 20, 5:10 am
146GitHub investigates internal repositories breach claimed by TeamPCPMay 20, 5:10 am
147ISC Stormcast For Wednesday, May 20th, 2026 https://isc.sans.edu/podcastdetail/9938, (Wed, May 20th)May 20, 2:10 am
148Max-severity flaw in ChromaDB for AI apps allows server hijackingMay 20, 12:10 am
149Cybercrime service disrupted for abusing Microsoft platform to sign malwareMay 19, 10:10 pm
150Discord rolls out end-to-end encryption on voice, video callsMay 19, 9:10 pm
151Microsoft Self-Service Password Reset abused in Azure data theft attacksMay 19, 8:10 pm
152FBI: Americans lost over $388 million to scams using crypto ATMs in 2025May 19, 8:10 pm
153Trapdoor Android Ad Fraud Scheme Hit 659 Million Daily Bid Requests Using 455 AppsMay 19, 6:10 pm
154Microsoft blames macOS update for undismissible Teams location promptsMay 19, 5:10 pm
155Microsoft plans to improve Windows 11 driver quality in 2026May 19, 5:10 pm
1567-Eleven confirms data breach claimed by the ShinyHunters gangMay 19, 3:10 pm
157New Shai-Hulud malware wave compromises 600 npm packagesMay 19, 3:10 pm
158DirtyDecrypt PoC Released for Linux Kernel CVE-2026-31635 LPE VulnerabilityMay 19, 3:10 pm
159Critical Microsoft Vulnerabilities Doubled: From Exposure to EscalationMay 19, 2:10 pm
160Drupal to Release Urgent Core Security Updates on May 20, Sites Told to PrepareMay 19, 1:10 pm
161The New Phishing Click: How OAuth Consent Bypasses MFAMay 19, 1:10 pm
162Webinar: The hidden bottlenecks in network incident responseMay 19, 1:10 pm
163Microsoft confirms patching issues in restricted Windows networksMay 19, 12:10 pm
164SEPPMail Secure E-Mail Gateway Vulnerabilities Enable RCE and Mail Traffic AccessMay 19, 11:10 am
165Compromised Nx Console 18.95.0 Targeted VS Code Developers with Credential StealerMay 19, 9:10 am
166Popular GitHub Action Tags Redirected to Imposter Commit to Steal CI/CD CredentialsMay 19, 7:10 am
167Mini Shai-Hulud Pushes Malicious AntV npm Packages via Compromised Maintainer AccountMay 19, 6:10 am
168GitHub Actions Supply Chain Attack Redirects Tags to Steal CI/CD CredentialsMay 19, 6:10 am
169ISC Stormcast For Tuesday, May 19th, 2026 https://isc.sans.edu/podcastdetail/9936, (Tue, May 19th)May 19, 2:10 am
170INTERPOL ‘Operation Ramz’ seizes 53 malware, phishing serversMay 18, 11:10 pm
171SHub macOS infostealer variant spoofs Apple security updatesMay 18, 10:10 pm
172TeamPCP Supply Chain Campaign: Activity Through 2026-05-17, (Mon, May 18th)May 18, 9:10 pm
173CISA Admin Leaked AWS GovCloud Keys on GithubMay 18, 9:10 pm
1745 Steps to Managing Shadow AI Tools Without Slowing Down EmployeesMay 18, 7:10 pm
175INTERPOL Operation Ramz Disrupts MENA Cybercrime Networks with 201 ArrestsMay 18, 6:10 pm
176Leaked Shai-Hulud malware fuels new npm infostealer campaignMay 18, 6:10 pm
177⚡ Weekly Recap: Exchange 0-Day, npm Worm, Fake AI Repo, Cisco Exploit and MoreMay 18, 4:10 pm
178How to Reduce Phishing Exposure Before It Turns into Business DisruptionMay 18, 2:10 pm
179Grafana says stolen GitHub token let hackers steal codebaseMay 18, 2:10 pm
180Ivanti, Fortinet, SAP, VMware, n8n Patch RCE, SQL Injection, Privilege Escalation FlawsMay 18, 12:10 pm
181Microsoft testing adjustable taskbar, Start menu in Windows 11May 18, 12:10 pm
182Developer Workstations Are Now Part of the Software Supply ChainMay 18, 12:10 pm
183Four Malicious npm Packages Deliver Infostealers and Phantom Bot DDoS MalwareMay 18, 11:10 am
184MiniPlasma Windows 0-Day Enables SYSTEM Privilege Escalation on Fully Patched SystemsMay 18, 9:10 am
185Pre-Stuxnet Fast16 Malware Tampered with Nuclear Weapons SimulationsMay 18, 9:10 am
186Microsoft confirms Windows 11 security update install issuesMay 18, 9:10 am
187Exploit available for new DirtyDecrypt Linux root escalation flawMay 18, 8:10 am
188Hackers earn $1,298,250 for 47 zero-days at Pwn2Own Berlin 2026May 18, 6:10 am
189New Windows 'MiniPlasma' zero-day exploit gives SYSTEM access, PoC releasedMay 17, 11:10 pm
190NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCEMay 17, 3:10 pm
191Tycoon2FA hijacks Microsoft 365 accounts via device-code phishingMay 17, 3:10 pm
192Grafana GitHub Token Breach Led to Codebase Download and Extortion AttemptMay 17, 8:10 am
193Microsoft rejects critical Azure vulnerability report, no CVE issuedMay 16, 9:10 pm
194Funnel Builder Flaw Under Active Exploitation Enables WooCommerce Checkout SkimmingMay 16, 5:10 pm
195Russian hackers turn Kazuar backdoor into modular P2P botnetMay 16, 3:10 pm
196Funnel Builder WordPress plugin bug exploited to steal credit cardsMay 15, 8:10 pm
197Turla Turns Kazuar Backdoor Into Modular P2P Botnet for Persistent AccessMay 15, 6:10 pm
198Popular node-ipc npm package compromised to steal credentialsMay 15, 6:10 pm
199Microsoft Exchange, Windows 11 hacked on second day of Pwn2OwnMay 15, 6:10 pm
200Four OpenClaw Flaws Enable Data Theft, Privilege Escalation, and PersistenceMay 15, 4:10 pm
201Avada Builder WordPress plugin flaws allow site credential theftMay 15, 4:10 pm
202Microsoft backpedals: Edge to stop loading passwords into memoryMay 15, 3:10 pm
203Inside the REMUS Infostealer: Session Theft, MaaS, and Rapid EvolutionMay 15, 2:10 pm
204Microsoft to automatically roll back faulty Windows driversMay 15, 1:10 pm
205TanStack Supply Chain Attack Hits Two OpenAI Employee Devices, Forces macOS UpdatesMay 15, 12:10 pm
206What 45 Days of Watching Your Own Tools Will Tell You About Your Real Attack SurfaceMay 15, 12:10 pm
207Microsoft warns of Exchange zero-day flaw exploited in attacksMay 15, 10:10 am
208On-Prem Microsoft Exchange Server CVE-2026-42897 Exploited via Crafted EmailMay 15, 7:10 am
209[Guest Diary] New Malware Libraries means New Signatures, (Fri, May 15th)May 15, 7:10 am
210CISA Adds Cisco SD-WAN CVE-2026-20182 to KEV After Admin Access ExploitsMay 15, 6:10 am
211ISC Stormcast For Friday, May 15th, 2026 https://isc.sans.edu/podcastdetail/9934, (Fri, May 15th)May 15, 5:10 am
212TeamPCP hackers advertise Mistral AI code repos for saleMay 14, 11:10 pm
213Hackers exploit auth bypass flaw in Burst Statistics WordPress pluginMay 14, 9:10 pm
214Cisco warns of new critical SD-WAN flaw exploited in zero-day attacksMay 14, 8:10 pm
215Stealer Backdoor Found in 3 Node-IPC Versions Targeting Developer SecretsMay 14, 7:10 pm
216Cisco Catalyst SD-WAN Controller Auth Bypass Actively Exploited to Gain Admin AccessMay 14, 7:10 pm
217Windows 11 and Microsoft Edge hacked at Pwn2Own Berlin 2026May 14, 7:10 pm
218OpenAI confirms security breach in TanStack supply chain attackMay 14, 7:10 pm
219ThreatsDay Bulletin: PAN-OS RCE, Mythos cURL Bug, AI Tokenizer Attacks, and 10+ StoriesMay 14, 6:10 pm
220Cyber-Enabled Cargo Crime: How Cybercrime Tradecraft is Used to Steal FreightMay 14, 4:10 pm
22118-year-old NGINX vulnerability allows DoS, potential RCEMay 14, 4:10 pm
222Ghostwriter Targets Ukrainian Government With Geofenced PDF Phishing, Cobalt StrikeMay 14, 3:10 pm
223KongTuke hackers now use Microsoft Teams for corporate breachesMay 14, 1:10 pm
224How AI Hallucinations Are Creating Real Security RisksMay 14, 12:10 pm
225PraisonAI CVE-2026-44338 Auth Bypass Targeted Within Hours of DisclosureMay 14, 12:10 pm
226Windows Zero-Days Expose BitLocker Bypasses And CTFMON Privilege EscalationMay 14, 10:10 am
227Dell confirms its SupportAssist software causes Windows BSOD crashesMay 14, 10:10 am
228US charges suspected Dream Market admin arrested in GermanyMay 14, 9:10 am
229New Fragnesia Linux Kernel LPE Grants Root Access via Page Cache CorruptionMay 14, 8:10 am
230New Fragnesia Linux flaw lets attackers gain root privilegesMay 14, 8:10 am
23118-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated RCEMay 14, 7:10 am
232Simple bypass of the link preview function in Outlook Junk folder, (Thu, May 14th)May 14, 7:10 am
233ISC Stormcast For Thursday, May 14th, 2026 https://isc.sans.edu/podcastdetail/9932, (Thu, May 14th)May 14, 5:10 am
234West Pharmaceutical says hackers stole data, encrypted systemsMay 13, 11:10 pm
235Iranian hackers targeted major South Korean electronics makerMay 13, 10:10 pm
236New critical Exim mailer flaw allows remote code executionMay 13, 9:10 pm
237Windows BitLocker zero-day gives access to protected drives, PoC releasedMay 13, 5:10 pm
238Microsoft fixes BitLocker recovery issue only for Windows 11 usersMay 13, 4:10 pm
239Webinar tomorrow: Why security alone won't stop modern attacksMay 13, 4:10 pm
240[Webinar] How Modern Attack Paths Cross Code, Pipelines, and CloudMay 13, 3:10 pm
241Microsoft fixes Windows Autopatch bug installing restricted driversMay 13, 3:10 pm
242Azerbaijani Energy Firm Hit by Repeated Microsoft Exchange ExploitationMay 13, 2:10 pm
243Microsoft's MDASH AI System Finds 16 Windows Flaws Fixed in Patch TuesdayMay 13, 2:10 pm
244Microsoft Patches 138 Vulnerabilities, Including DNS and Netlogon RCE FlawsMay 13, 1:10 pm
245Most Remediation Programs Never Confirm the Fix Actually WorkedMay 13, 1:10 pm
246[Webinar] Why Your AppSec Tools Miss the "Lethal Path" (and How to Fix It)May 13, 1:10 pm
24773 Seconds to Breach, 24 Hours to Patch: The Case for Autonomous ValidationMay 13, 1:10 pm
248Foxconn confirms cyberattack claimed by Nitrogen ransomware gangMay 13, 1:10 pm
249Microsoft says some users can't install Office on Windows 365 devicesMay 13, 12:10 pm
250GemStuffer Abuses 150+ RubyGems to Exfiltrate Scraped U.K. Council Portal DataMay 13, 10:10 am
251Android Adds Intrusion Logging for Sophisticated Spyware ForensicsMay 13, 8:10 am
252[GUEST DIARY] Tearing apart website fraud to see how it works., (Wed, May 13th)May 13, 7:10 am
253ISC Stormcast For Wednesday, May 13th, 2026 https://isc.sans.edu/podcastdetail/9930, (Wed, May 13th)May 13, 3:10 am
254Proxying the Unproxyable? Sending EXE traffic to a Proxy, (Wed, May 13th)May 13, 2:10 am
255US govt seeks Instructure testimony on massive Canvas cyberattackMay 12, 11:10 pm
256Patch Tuesday, May 2026 EditionMay 12, 10:10 pm
257UK fines water supplier $1.3M for exposing data of 664k customersMay 12, 9:10 pm
258Signal adds security warnings for social engineering, phishing attacksMay 12, 8:10 pm
259Webinar: Fixing the gaps in network incident responseMay 12, 8:10 pm
260Fortinet warns of critical RCE flaws in FortiSandbox and FortiAuthenticatorMay 12, 7:10 pm
261Microsoft May 2026 Patch Tuesday, (Tue, May 12th)May 12, 7:10 pm
262Microsoft releases Windows 10 KB5087544 extended security updateMay 12, 7:10 pm
263New Exim BDAT Vulnerability Exposes GnuTLS Builds to Potential Code ExecutionMay 12, 6:10 pm
264Microsoft May 2026 Patch Tuesday fixes 120 flaws, no zero-daysMay 12, 6:10 pm
265Windows 11 KB5089549 & KB5087420 cumulative updates releasedMay 12, 6:10 pm
266RubyGems Suspends New Signups After Hundreds of Malicious Packages Are UploadedMay 12, 5:10 pm
267Android 17 to expand banking scam call and privacy protectionsMay 12, 5:10 pm
268Škoda warns of customer data breach after online shop hackMay 12, 5:10 pm
269New TrickMo Variant Uses TON C2 and SOCKS5 to Create Android Network PivotsMay 12, 2:10 pm
270Webinar: What the Riskiest SOC Alerts Go Unanswered - and How Radiant Security Can HelpMay 12, 1:10 pm
271Why Agentic AI Is Security's Next Blind SpotMay 12, 12:10 pm
272Shai Hulud attack ships signed malicious TanStack, Mistral npm packagesMay 12, 12:10 pm
273SAP fixes critical vulnerabilities in Commerce Cloud and S/4HANAMay 12, 11:10 am
274Instructure reaches 'agreement' with ShinyHunters to stop data leakMay 12, 10:10 am
275Mini Shai-Hulud Worm Compromises TanStack, Mistral AI, Guardrails AI & More PackagesMay 12, 9:10 am
276OpenAI Launches Daybreak for AI-Powered Vulnerability Detection and Patch ValidationMay 12, 8:10 am
277Instructure Reaches Ransom Agreement with ShinyHunters to Stop 3.65TB Canvas LeakMay 12, 8:10 am
278iOS 26.5 Brings Default End-to-End Encrypted RCS Messaging Between iPhone and AndroidMay 12, 7:10 am
279ISC Stormcast For Tuesday, May 12th, 2026 https://isc.sans.edu/podcastdetail/9928, (Tue, May 12th)May 12, 4:10 am
280Apple Patches Everything, (Mon, May 11th)May 11, 11:10 pm
281GM agrees to $12.75M California settlement over sale of drivers’ dataMay 11, 11:10 pm
282New GhostLock tool abuses Windows API to block file accessMay 11, 10:10 pm
283Official CheckMarx Jenkins package compromised with infostealerMay 11, 10:10 pm
284TeamPCP Compromises Checkmarx Jenkins AST Plugin Weeks After KICS Supply Chain AttackMay 11, 8:10 pm
285cPanel CVE-2026-41940 Under Active Exploitation to Deploy Filemanager BackdoorMay 11, 6:10 pm
286Hackers Used AI to Develop First Known Zero-Day 2FA Bypass for Mass ExploitationMay 11, 5:10 pm
287Instructure confirms hackers used Canvas flaw to deface portalsMay 11, 4:10 pm
288Why we use CAPTCHAs, (Mon, May 11th)May 11, 3:10 pm
289⚡ Weekly Recap: Linux Rootkit, macOS Crypto Stealer, WebSocket Skimmers and MoreMay 11, 2:10 pm
290Why Changing Passwords Doesn’t End an Active Directory BreachMay 11, 2:10 pm
291Webinar this week: Prevention alone is not enough against modern attacksMay 11, 1:10 pm
292Google: Hackers used AI to develop zero-day exploit for web admin toolMay 11, 1:10 pm
293Your Purple Team Isn't Purple — It's Just Red and Blue in the Same RoomMay 11, 12:10 pm
294Fake OpenAI Privacy Filter Repo Hits #1 on Hugging Face, Draws 244K DownloadsMay 11, 9:10 am
295TrickMo Android banker adopts TON blockchain for covert commsMay 11, 9:10 am
296ISC Stormcast For Monday, May 11th, 2026 https://isc.sans.edu/podcastdetail/9926, (Mon, May 11th)May 11, 3:10 am
297YARA-X 1.16.0 Release, (Sun, May 10th)May 10, 11:10 pm
298Hackers abuse Google ads, Claude.ai chats to push Mac malwareMay 10, 6:10 pm
299Police shut down reboot of Crimenetwork marketplace, arrest adminMay 10, 3:10 pm
300Ollama Out-of-Bounds Read Vulnerability Allows Remote Process Memory LeakMay 10, 1:10 pm
301JDownloader site hacked to replace installers with Python RAT malwareMay 9, 8:10 pm
302Fake OpenAI repository on Hugging Face pushes infostealer malwareMay 9, 3:10 pm
303cPanel, WHM Release Fixes for Three New Vulnerabilities — Patch NowMay 9, 8:10 am
304TCLBANKER Banking Trojan Targets Financial Platforms via WhatsApp and Outlook WormsMay 8, 7:10 pm
305Fake Call History Apps Stole Payments From Users After 7.3 Million Play Store DownloadsMay 8, 5:10 pm
306NVIDIA confirms GeForce NOW data breach affecting Armenian usersMay 8, 5:10 pm
307Trellix source code breach claimed by RansomHouse hackersMay 8, 2:10 pm
308Why More Analysts Won’t Solve Your SOC’s Alert ProblemMay 8, 2:10 pm
309CISA gives feds four days to patch Ivanti flaw exploited as zero-dayMay 8, 1:10 pm
310Quasar Linux RAT Steals Developer Credentials for Software Supply Chain CompromiseMay 8, 12:10 pm
311New Linux PamDOORa Backdoor Uses PAM Modules to Steal SSH CredentialsMay 8, 11:10 am
312One Missed Threat Per Week: What 25M Alerts Reveal About Low-Severity RiskMay 8, 11:10 am
313Zara data breach exposed personal information of 197,000 peopleMay 8, 11:10 am
314Former govt contractor convicted for wiping dozens of federal databasesMay 8, 9:10 am
315Linux Kernel Dirty Frag LPE Exploit Enables Root Access Across Major DistributionsMay 8, 8:10 am
316New Linux 'Dirty Frag' zero-day gives root on all major distrosMay 8, 8:10 am
317Another Universal Linux Local Privilege Escalation (LPE) Vulnerability: Dirty Frag, (Fri, May 8th)May 8, 8:10 am
318Canvas Breach Disrupts Schools & Colleges NationwideMay 8, 3:10 am
319ISC Stormcast For Friday, May 8th, 2026 https://isc.sans.edu/podcastdetail/9924, (Fri, May 8th)May 8, 2:10 am
320Canvas login portals hacked in mass ShinyHunters extortion campaignMay 7, 11:10 pm
321New TCLBanker malware self-spreads over WhatsApp and OutlookMay 7, 10:10 pm
322PCPJack Credential Stealer Exploits 5 CVEs to Spread Worm-Like Across Cloud SystemsMay 7, 7:10 pm
323Ivanti EPMM CVE-2026-6973 RCE Under Active Exploitation Grants Admin-Level AccessMay 7, 7:10 pm
324New PCPJack worm steals credentials, cleans TeamPCP infectionsMay 7, 7:10 pm
325Australia warns of ClickFix attacks pushing Vidar Stealer malwareMay 7, 6:10 pm
326Ivanti warns of new EPMM flaw exploited in zero-day attacksMay 7, 4:10 pm
327One Click, Total Shutdown: The "Patient Zero" Webinar on Killing Stealth BreachesMay 7, 3:10 pm
328PAN-OS RCE Exploit Under Active Use Enabling Root Access and EspionageMay 7, 2:10 pm
329Americans sentenced for running 'laptop farms' for North KoreaMay 7, 2:10 pm
330The Browser Is Breaking Your DLP: How Data Slips Past Modern ControlsMay 7, 2:10 pm
331Crypto gang member gets 6.5 years for role in $230 million heistMay 7, 1:10 pm
332Day Zero Readiness: The Operational Gaps That Break Incident ResponseMay 7, 12:10 pm
333ThreatsDay Bulletin: Edge Plaintext Passwords, ICS 0-Days, Patch-or-Die Alerts and 25+ New StoriesMay 7, 12:10 pm
334Webinar: Why modern attacks require both security and recoveryMay 7, 12:10 pm
335Palo Alto Networks firewall zero-day exploited for nearly a monthMay 7, 11:10 am
336PyPI Packages Deliver ZiChatBot Malware via Zulip APIs on Windows and LinuxMay 7, 10:10 am
337Fake Claude AI website delivers new 'Beagle' Windows malwareMay 7, 10:10 am
338vm2 Node.js Library Vulnerabilities Enable Sandbox Escape and Arbitrary Code ExecutionMay 7, 5:10 am
339An Adaptive Cyber Analytics UI for Web Honeypot Logs [Guest Diary], (Wed, May 6th)May 7, 2:10 am
340ISC Stormcast For Thursday, May 7th, 2026 https://isc.sans.edu/podcastdetail/9922, (Thu, May 7th)May 7, 2:10 am
341Hackers abuse Google ads for GoDaddy ManageWP login phishingMay 6, 10:10 pm
342Mirai-Based xlabs_v1 Botnet Exploits ADB to Hijack IoT Devices for DDoS AttacksMay 6, 9:10 pm
343Critical vm2 sandbox bug lets attackers execute code on hostsMay 6, 7:10 pm
344New Cisco DoS flaw requires manual reboot to revive devicesMay 6, 6:10 pm
345DAEMON Tools devs confirm breach, release malware-free versionMay 6, 5:10 pm
346MuddyWater Uses Microsoft Teams to Steal Credentials in False Flag Ransomware AttackMay 6, 3:10 pm
347Why ransomware attacks succeed even when backups existMay 6, 2:10 pm
348Your AI Agents Are Already Inside the Perimeter. Do You Know What They're Doing?May 6, 1:10 pm
349The Hacker News Launches 'Cybersecurity Stars Awards 2026' — Submissions Now OpenMay 6, 1:10 pm
350Webinar: Why network incidents escalate and how to fix response gapsMay 6, 1:10 pm
351MuddyWater hackers use Chaos ransomware as a decoy in attacksMay 6, 1:10 pm
352Windows Phone Link Exploited by CloudZ RAT to Steal Credentials and OTPsMay 6, 10:10 am
353Google's Android Apps Get Public Verification to Stop Supply Chain AttacksMay 6, 10:10 am
354Palo Alto Networks warns of firewall RCE zero-day exploited in attacksMay 6, 10:10 am
355Palo Alto PAN-OS Flaw Under Active Exploitation Enables Remote Code ExecutionMay 6, 8:10 am
356ISC Stormcast For Wednesday, May 6th, 2026 https://isc.sans.edu/podcastdetail/9920, (Wed, May 6th)May 6, 2:10 am
357Instructure hacker claims data theft from 8,800 schools, universitiesMay 5, 10:10 pm
358New stealthy Quasar Linux malware targets software developersMay 5, 10:10 pm
359DAEMON Tools trojanized in supply-chain attack to deploy backdoorMay 5, 8:10 pm
360The EOL Blind Spot in Your CVE Feed: What SCA Tools MissMay 5, 7:10 pm
361Student hacked Taiwan high-speed rail to trigger emergency brakesMay 5, 6:10 pm
362DAEMON Tools Supply Chain Attack Compromises Official Installers with MalwareMay 5, 5:10 pm
363Critical Apache HTTP/2 Flaw (CVE-2026-23918) Enables DoS and Potential RCEMay 5, 5:10 pm
364China-Linked UAT-8302 Targets Governments Using Shared APT Malware Across RegionsMay 5, 4:10 pm
365FTC to ban data broker Kochava from selling Americans’ location dataMay 5, 3:10 pm
366The EOL Blind Spot in Your CVE Feed: What SCA Tools Don't Check.May 5, 2:10 pm
367MetInfo CMS CVE-2026-29014 Exploited for Remote Code Execution AttacksMay 5, 1:10 pm
368The Back Door Attackers Know About — and Most Security Teams Still Haven’t ClosedMay 5, 1:10 pm
369Vimeo data breach exposes personal information of 119,000 peopleMay 5, 1:10 pm
370Google now offers up to $1.5 million for some Android exploitsMay 5, 12:10 pm
371Cleartext Passwords in MS Edge? In 2026?, (Mon, May 4th)May 5, 12:10 pm
372SSL.com rotates their root certificate today, (Tue, May 5th)May 5, 12:10 pm
373Karakurt extortion gang ‘cold case’ negotiator gets 8.5 years in prisonMay 5, 11:10 am
374We Scanned 1 Million Exposed AI Services. Here's How Bad the Security Actually IsMay 5, 11:10 am
375ScarCruft Hacks Gaming Platform to Deploy BirdCall Malware on Android and WindowsMay 5, 10:10 am
376CloudZ malware abuses Microsoft Phone Link to steal SMS and OTPsMay 5, 10:10 am
377ScarCruft hackers push BirdCall Android malware via game platformMay 5, 9:10 am
378Microsoft Details Phishing Campaign Targeting 35,000 Users Across 26 CountriesMay 5, 8:10 am
379Weaver E-cology RCE Flaw CVE-2026-22679 Actively Exploited via Debug APIMay 5, 8:10 am
380ISC Stormcast For Tuesday, May 5th, 2026 https://isc.sans.edu/podcastdetail/9918, (Tue, May 5th)May 5, 2:10 am
381Weaver E-cology critical bug exploited in attacks since MarchMay 4, 11:10 pm
382Amazon SES increasingly abused in phishing to evade detectionMay 4, 8:10 pm
383Phishing Campaign Hits 80+ Orgs Using SimpleHelp and ScreenConnect RMM ToolsMay 4, 7:10 pm
384Progress Patches Critical MOVEit Automation Bug Enabling Authentication BypassMay 4, 6:10 pm
385TeamPCP Weekly Analysis: 2026-W18 (2026-04-27 through 2026-05-03), (Mon, May 4th)May 4, 6:10 pm
386Backdoored PyTorch Lightning package drops credential stealerMay 4, 6:10 pm
387Trellix discloses data breach after source code repository hackMay 4, 5:10 pm
388⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & MoreMay 4, 4:10 pm
389DShield Honeypot Update, (Mon, May 4th)May 4, 3:10 pm
390They don’t hack, they borrow: How fraudsters target credit unionsMay 4, 2:10 pm
391Webinar: Why MSPs must rethink security and backup strategiesMay 4, 1:10 pm
392Progress warns of critical MOVEit Automation auth bypass flawMay 4, 1:10 pm
393CISA says ‘Copy Fail’ flaw now exploited to root Linux systemsMay 4, 12:10 pm
394Silver Fox Deploys ABCDoor Malware via Tax-Themed Phishing in India and RussiaMay 4, 12:10 pm
3952026: The Year of AI-Assisted AttacksMay 4, 12:10 pm
396Critical cPanel Vulnerability Weaponized to Target Government and MSP NetworksMay 4, 11:10 am
397Microsoft confirms April Windows updates cause backup failuresMay 4, 11:10 am
398Global Crackdown Arrests 276, Shuts 9 Crypto Scam Centers, Seizes $701MMay 4, 7:10 am
399ISC Stormcast For Monday, May 4th, 2026 https://isc.sans.edu/podcastdetail/9916, (Mon, May 4th)May 4, 2:10 am
400Instructure confirms data breach, ShinyHunters claims attackMay 3, 11:10 pm
401Microsoft Defender wrongly flags DigiCert certs as Trojan:Win32/Cerdigent.A!dhaMay 3, 7:10 pm
402Wireshark 4.6.5 Released, (Sun, May 3rd)May 3, 5:10 pm
403Telegram Mini Apps abused for crypto scams, Android malware deliveryMay 3, 3:10 pm
404CISA Adds Actively Exploited Linux Root Access Bug CVE-2026-31431 to KEVMay 3, 7:10 am
405Critrical cPanel flaw mass-exploited in "Sorry" ransomware attacksMay 2, 10:10 pm
406ConsentFix v3 attacks target Azure with automated OAuth abuseMay 2, 3:10 pm
407Trellix Confirms Source Code Breach With Unauthorized Repository AccessMay 2, 7:10 am
408Microsoft tests modern Windows Run, says it's faster than legacy dialogMay 2, 1:10 am
409Edu tech firm Instructure discloses cyber incident, probes impactMay 2, 12:10 am
41030,000 Facebook Accounts Hacked via Google AppSheet Phishing CampaignMay 1, 8:10 pm
411Malicious Ad for Homebrew Leads to MacSync Stealer, (Fri, May 1st)May 1, 7:10 pm
41215-year-old detained over French govt agency data breachMay 1, 6:10 pm
413Story retractedMay 1, 5:10 pm
414China-Linked Hackers Target Asian Governments, NATO State, Journalists, and ActivistsMay 1, 3:10 pm
415Criminal IP and Securonix ThreatQ Collaborate to Enhance Threat Intelligence OperationsMay 1, 3:10 pm
416Cybercrime Groups Using Vishing and SSO Abuse in Rapid SaaS Extortion AttacksMay 1, 3:10 pm
417Microsoft fixes Remote Desktop warnings displaying incorrectlyMay 1, 1:10 pm
418Two Cybersecurity Professionals Get 4-Year Sentences in BlackCat Ransomware AttacksMay 1, 12:10 pm
419Top Five Sales Challenges Costing MSPs Cybersecurity RevenueMay 1, 12:10 pm
420Microsoft now lets admins choose pre-installed Store apps to uninstallMay 1, 12:10 pm
421Poisoned Ruby Gems and Go Modules Exploit CI Pipelines for Credential TheftMay 1, 10:10 am
422Windows 11 KB5083631 update released with 34 changes and fixesMay 1, 10:10 am
423US ransomware negotiators get 4 years in prison over BlackCat attacksMay 1, 8:10 am
424ISC Stormcast For Friday, May 1st, 2026 https://isc.sans.edu/podcastdetail/9914, (Fri, May 1st)May 1, 2:10 am
425PyTorch Lightning and Intercom-client Hit in Supply Chain Attacks to Steal CredentialsApr 30, 7:10 pm
426New Bluekit phishing service includes an AI assistant, 40 templatesApr 30, 7:10 pm
427Romanian leader of online swatting ring gets 4 years in prisonApr 30, 6:10 pm
428PyTorch Lightning Compromised in PyPI Supply Chain Attack to Steal CredentialsApr 30, 5:10 pm
429FBI links cybercriminals to sharp surge in cargo theft attacksApr 30, 5:10 pm
430April KB5083769 Windows 11 update causes backup software failuresApr 30, 4:10 pm
431New Linux ‘Copy Fail’ flaw gives hackers root on major distrosApr 30, 2:10 pm
432ThreatsDay Bulletin: SMS Blaster Busts, OpenEMR Flaws, 600K Roblox Hacks and 25 More StoriesApr 30, 2:10 pm
433What Happens in the First 24 Hours After a New Asset Goes LiveApr 30, 2:10 pm
434Anti-DDoS Firm Heaped Attacks on Brazilian ISPsApr 30, 2:10 pm
435EtherRAT Distribution Spoofing Administrative Tools via GitHub FacadesApr 30, 1:10 pm
436New Python Backdoor Uses Tunneling Service to Steal Browser and Cloud CredentialsApr 30, 1:10 pm
437Police dismantles 9 crypto scam centers, arrests 276 suspectsApr 30, 12:10 pm
438Critical cPanel and WHM bug exploited as a zero-day, PoC now availableApr 30, 12:10 pm
439New Linux 'Copy Fail' Vulnerability Enables Root Access on Major DistributionsApr 30, 10:10 am
440Google Fixes CVSS 10 Gemini CLI CI RCE and Cursor Flaws Enable Code ExecutionApr 30, 7:10 am
441ISC Stormcast For Thursday, April 30th, 2026 https://isc.sans.edu/podcastdetail/9912, (Thu, Apr 30th)Apr 30, 2:10 am
442Danger of Libredtail [Guest Diary], (Wed, Apr 29th)Apr 30, 12:10 am
443Popular WordPress redirect plugin hid dormant backdoor for yearsApr 29, 11:10 pm
444Official SAP npm packages compromised to steal credentialsApr 29, 11:10 pm
445Hackers exploit RCE flaws in Qinglong task scheduler for cryptominingApr 29, 9:10 pm
446Hackers arrested for hijacking and selling 610,000 Roblox accountsApr 29, 7:10 pm
447SAP-Related npm Packages Compromised in Credential-Stealing Supply Chain AttackApr 29, 6:10 pm
448SAP npm Packages Compromised by “Mini Shai-Hulud” Credential-Stealing MalwareApr 29, 5:10 pm
449New Wave of DPRK Attacks Uses AI-Inserted npm Malware, Fake Firms, and RATsApr 29, 4:10 pm
450cPanel, WHM emergency update fixes critical auth bypass bugApr 29, 4:10 pm
451European police dismantles €50 million crypto investment fraud ringApr 29, 3:10 pm
452Webinar: How to Automate Exposure Validation to Match the Speed of AI AttacksApr 29, 2:10 pm
453Learning from the Vercel breach: Shadow AI & OAuth sprawlApr 29, 2:10 pm
454Today's Odd Web Requests, (Wed, Apr 29th)Apr 29, 2:10 pm
455GitHub fixes RCE flaw that gave access to millions of private reposApr 29, 1:10 pm
456What to Look for in an Exposure Management Platform (And What Most of Them Get Wrong)Apr 29, 12:10 pm
457Critical cPanel Authentication Vulnerability Identified — Update Your Server ImmediatelyApr 29, 11:10 am
458CISA orders feds to patch Windows flaw exploited as zero-dayApr 29, 11:10 am
459Microsoft says backend change broke Teams Free chat and callsApr 29, 9:10 am
460CISA Adds Actively Exploited ConnectWise and Windows Flaws to KEVApr 29, 9:10 am
461LiteLLM CVE-2026-42208 SQL Injection Exploited within 36 Hours of DisclosureApr 29, 6:10 am
462ISC Stormcast For Wednesday, April 29th, 2026 https://isc.sans.edu/podcastdetail/9910, (Wed, Apr 29th)Apr 29, 2:10 am
463Broken VECT 2.0 ransomware acts as a data wiper for large filesApr 28, 10:10 pm
464Hackers are exploiting a critical LiteLLM pre-auth SQLi flawApr 28, 9:10 pm
465Researchers Discover Critical GitHub CVE-2026-3854 RCE Flaw Exploitable via Single Git PushApr 28, 7:10 pm
466Video service Vimeo confirms Anodot breach exposed user dataApr 28, 7:10 pm
467Brazilian LofyGang Resurfaces After Three Years With Minecraft LofyStealer CampaignApr 28, 6:10 pm
468US reportedly charges Scattered Spider hacker arrested in FinlandApr 28, 4:10 pm
469VECT 2.0 Ransomware Irreversibly Destroys Files Over 131KB on Windows, Linux, ESXiApr 28, 3:10 pm
470Checkmarx confirms LAPSUS$ hackers leaked its stolen GitHub dataApr 28, 3:10 pm
471Microsoft to deprecate legacy TLS in Exchange Online starting JulyApr 28, 2:10 pm
472HTTP Requests with X-Vercel-Set-Bypass-Cookie Header, (Tue, Apr 28th)Apr 28, 2:10 pm
473Why Secure Data Movement Is the Zero Trust Bottleneck Nobody Talks AboutApr 28, 1:10 pm
474Inside an OPSEC Playbook: How Threat Actors Evade DetectionApr 28, 1:10 pm
475Critical Unpatched Flaw Leaves Hugging Face LeRobot Open to Unauthenticated RCEApr 28, 12:10 pm
476After Mythos: New Playbooks For a Zero-Window EraApr 28, 11:10 am
477Microsoft: New Remote Desktop warnings may display incorrectlyApr 28, 10:10 am
478Chinese Silk Typhoon Hacker Extradited to U.S. Over COVID Research CyberattacksApr 28, 9:10 am
479Microsoft asks iPhone users to reauthenticate after Outlook outageApr 28, 9:10 am
480Microsoft Confirms Active Exploitation of Windows Shell CVE-2026-32202Apr 28, 7:10 am
481Microsoft Patches Entra ID Role Flaw That Enabled Service Principal TakeoverApr 28, 7:10 am
482ISC Stormcast For Tuesday, April 28th, 2026 https://isc.sans.edu/podcastdetail/9908, (Tue, Apr 28th)Apr 28, 2:10 am
483Robinhood account creation flaw abused to send phishing emailsApr 28, 12:10 am
484GlassWorm malware attacks return via 73 OpenVSX "sleeper" extensionsApr 27, 10:10 pm
485Alleged Silk Typhoon hacker extradited to US for cyberespionageApr 27, 8:10 pm
486Canada arrests three for operating “SMS blaster” device in TorontoApr 27, 8:10 pm
487FTC: Americans lost over $2.1 billion to social media scams in 2025Apr 27, 5:10 pm
488⚡ Weekly Recap: Fast16 Malware, XChat Launch, Federal Backdoor, AI Employee Tracking & MoreApr 27, 4:10 pm
489Checkmarx Confirms GitHub Repository Data Posted on Dark Web After March 23 AttackApr 27, 4:10 pm
490PyPI package with 1.1M monthly downloads hacked to push infostealerApr 27, 4:10 pm
491Webinar: Spotting cyberattacks before they beginApr 27, 3:10 pm
492Home security giant ADT data breach affects 5.5 million peopleApr 27, 3:10 pm
493Medtronic confirms breach after hackers claim 9 million records theftApr 27, 2:10 pm
494TeamPCP Supply Chain Campaign: Update 008 - 26-Day Pause Ends with Three Concurrent Compromises (Checkmarx KICS, Bitwarden CLI Cascade, xinference PyPI), CanisterSprawl npm Worm Identified, and Tier 1 Coverage Returns, (Mon, Apr 27th)Apr 27, 2:10 pm
495Deepfake Voice Attacks are Outpacing Defenses: What Security Leaders Should KnowApr 27, 1:10 pm
496Money launderer linked to $230M crypto heist gets 70 months in prisonApr 27, 1:10 pm
497Researchers Uncover 73 Fake VS Code Extensions Delivering GlassWorm v2 MalwareApr 27, 12:10 pm
498PhantomCore Exploits TrueConf Vulnerabilities to Breach Russian NetworksApr 27, 12:10 pm
499Mythos Changed the Math on Vulnerability Discovery. Most Teams Aren't Ready for the Remediation SideApr 27, 12:10 pm
500Microsoft says Outlook.com outage is causing sign‑in failuresApr 27, 12:10 pm
AI Testing

Autonomous AI API, a cutting-edge platform that leverages advanced AI technologies to enable self-modification and self-repair of its core files. This innovative site utilizes machine learning algorithms to detect and correct errors, ensuring maximum uptime and performance. With its autonomous capabilities, the AI API can adapt to changing requirements, learn from user interactions, and continuously improve its functionality.