cybersec

#TitleDate
1How SIEM helps MSPs reduce noise and stop threats fasterMay 28, 2:10 pm
2New AI Usage Report: Enterprise AI Risk Is Heavily Concentrated Among a Small Group of AI "Power users"May 28, 1:10 pm
3Webinar: Why network incidents take too long to resolveMay 28, 1:10 pm
4Romanian gets 5 years in prison for hacking Oregon govt networkMay 28, 1:10 pm
5Carnival Cruise confirms data breach affecting nearly 6 million peopleMay 28, 11:10 am
6Sextortionist sentenced to 33 years for targeting 145 childrenMay 28, 10:10 am
7JINX-0164 Targets Cryptocurrency Firms with Fake Recruiter Lures and macOS MalwareMay 28, 9:10 am
8ISC Stormcast For Thursday, May 28th, 2026 https://isc.sans.edu/podcastdetail/9948, (Thu, May 28th)May 28, 2:10 am
9Reconstructing an Akira Ransomware Kill Chain from Perimeter and Endpoint Logs, (Wed, May 27th)May 27, 10:10 pm
10GPU mining malware spreads via SEO poisoning, AI chatbotsMay 27, 10:10 pm
11Malicious npm Package Stole Files From Claude AI User Directory via GitHubMay 27, 5:10 pm
12Grandoreiro Malware and BTMOB RAT Campaigns Target Windows and Android UsersMay 27, 5:10 pm
133 SOC Steps that Shut Down Incident Risks EarlyMay 27, 3:10 pm
14Glassworm botnet disrupted after resilient C2 infrastructure takedownMay 27, 2:10 pm
15Can you enforce strong Active Directory password rules without frustrating users?May 27, 2:10 pm
16GlassWorm Malware Takedown Disrupts Developer Supply Chain Attack InfrastructureMay 27, 1:10 pm
17Gitea Vulnerability Exposes Private Container Images without AuthenticationMay 27, 12:10 pm
18FBI warns of in-person data theft attacks from extortion gangMay 27, 12:10 pm
19CISA gives feds 4 days to patch actively exploited cPanel plugin flawMay 27, 10:10 am
20Windows 11 KB5089573 update released with performance improvementsMay 27, 9:10 am
21Dutch police arrests suspect linked to Ajax football club hackMay 27, 9:10 am
22AI Chatbot Recommendations Redirect Users to Cryptojacking Malware SitesMay 27, 8:10 am
23ISC Stormcast For Wednesday, May 27th, 2026 https://isc.sans.edu/podcastdetail/9946, (Wed, May 27th)May 27, 2:10 am
24Charter confirms data breach after ShinyHunters extortion threatMay 26, 8:10 pm
25KnowledgeDeliver flaw exploited as a zero-day to install web shellsMay 26, 8:10 pm
26MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 CountriesMay 26, 5:10 pm
27CERT-In Recommends 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted AttacksMay 26, 2:10 pm
28[THN Webinar] New AI DDoS Attacks Are Smarter. Learn How to Fight BackMay 26, 2:10 pm
29How Varonis Atlas integrates Claude Compliance API for AI governanceMay 26, 2:10 pm
30Webinar: Too many tools are slowing network incident responseMay 26, 1:10 pm
31Microsoft Defender can now automatically isolate hacked endpointsMay 26, 1:10 pm
32Microsoft Patches SharePoint RCE Flaw CVE-2026-45659 Across Server VersionsMay 26, 12:10 pm
33New AI DDoS Attacks Are Smarter. Learn How to Fight Back in This WebinarMay 26, 12:10 pm
34MFA Prompt Bombing: Why Your Second Factor Isn't Saving YouMay 26, 11:10 am
35CERT-In Mandates 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted AttacksMay 26, 10:10 am
36Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO PoisoningMay 26, 9:10 am
37CISA orders feds to patch actively exploited Drupal vulnerabilityMay 26, 9:10 am
38Microsoft: Domain Controller lookup may fail on Windows Server 2016May 26, 8:10 am
397-Eleven data breach exposes personal information of 185,000 peopleMay 26, 7:10 am
40KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt StrikeMay 26, 6:10 am
41ISC Stormcast For Tuesday, May 26th, 2026 https://isc.sans.edu/podcastdetail/9944, (Tue, May 26th)May 26, 2:10 am
42Possible ACR Stealer From Page Impersonating Claude, (Tue, May 26th)May 26, 12:10 am
43Anthropic’s restricted Claude Mythos model may be coming to Claude CodeMay 25, 5:10 pm
44⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain ChaosMay 25, 4:10 pm
45Microsoft Access VBA, (Mon, May 25th)May 25, 3:10 pm
46Netherlands Seizes 800 Servers, Arrests 2 for Aiding CyberattacksMay 25, 2:10 pm
47TeamPCP Supply Chain Campaign: Activity Through 2026-05-24, (Mon, May 25th)May 25, 2:10 pm
48FBI warns of Kali365 phishing service targeting Microsoft 365 accountsMay 25, 1:10 pm
49The Alert Firehose Finally Meets Its MatchMay 25, 12:10 pm
50Ghost CMS CVE-2026-26980 Exploited to Hijack 700+ Sites for ClickFix AttacksMay 25, 12:10 pm
51Lazarus Deploys RemotePE Memory-Only RAT Against Financial and Crypto FirmsMay 25, 11:10 am
52TrapDoor Supply Chain Attack Spreads Credential-Stealing Malware via npm, PyPI, and CratesIOMay 25, 7:10 am
53Wireshark 4.6.6 Released, (Sun, May 24th)May 24, 5:10 pm
54Ghost CMS SQL injection flaw exploited in large-scale ClickFix campaignMay 24, 3:10 pm
55Laravel Lang packages hijacked to deploy credential-stealing malwareMay 23, 9:10 pm
56Packagist Supply Chain Attack Infects 8 Packages Using GitHub-Hosted Linux MalwareMay 23, 5:10 pm
57npm Adds 2FA-Gated Publishing and Package Install Controls Against Supply Chain AttacksMay 23, 5:10 pm
58Italy disrupts CINEMAGOAL piracy app that stole streaming auth codesMay 23, 3:10 pm
59Claude Mythos AI Finds 10,000 High-Severity Flaws in Widely Used SoftwareMay 23, 1:10 pm
60Laravel-Lang PHP Packages Compromised to Deliver Cross-Platform Credential StealerMay 23, 11:10 am
61Drupal Core SQL Injection Bug Actively Exploited, Added to CISA KEVMay 23, 8:10 am
62LiteSpeed cPanel Plugin CVE-2026-48172 Exploited to Run Scripts as RootMay 23, 8:10 am
63An Example of Stack String in High Level Language, (Sat, May 23rd)May 23, 6:10 am
64First VPN Dismantled in Global Takedown Over Use by 25 Ransomware GroupsMay 22, 7:10 pm
65Netherlands seizes 800 servers of hosting firm enabling cyberattacksMay 22, 6:10 pm
66Ghostwriter Targets Ukraine Government Entities with Prometheus Phishing MalwareMay 22, 5:10 pm
67Lawmakers Demand Answers as CISA Tries to Contain Data LeakMay 22, 5:10 pm
68Former US execs plead guilty to aiding tech support scammersMay 22, 4:10 pm
69Why Chargebacks are Just One Piece of the Fraud PuzzleMay 22, 2:10 pm
70Drupal: Critical SQL injection flaw now targeted in attacksMay 22, 2:10 pm
71Trend Micro warns of Apex One zero-day exploited in the wildMay 22, 2:10 pm
72Making Vulnerable Drivers Exploitable Without Hardware - The BYOVD PerspectiveMay 22, 1:10 pm
73Megalodon GitHub Attack Targets 5,561 Repos with Malicious CI/CD WorkflowsMay 22, 1:10 pm
74Ubiquiti patches three max severity UniFi OS vulnerabilitiesMay 22, 12:10 pm
75Kimwolf DDoS Botnet Operator Arrested in Canada Over DDoS-for-Hire AttacksMay 22, 9:10 am
76US and Canada arrest and charge suspected Kimwolf botnet adminMay 22, 9:10 am
77CISA Adds Exploited Langflow and Trend Micro Apex One Vulnerabilities to KEVMay 22, 7:10 am
78Cross-Platform NPM Stealer, (Fri, May 22nd)May 22, 7:10 am
79Cisco Patches CVSS 10.0 Secure Workload REST API Flaw Enabling Data AccessMay 22, 6:10 am
80ISC Stormcast For Friday, May 22nd, 2026 https://isc.sans.edu/podcastdetail/9942, (Fri, May 22nd)May 22, 2:10 am
81Alleged Kimwolf Botmaster ‘Dort’ Arrested, Charged in U.S. and CanadaMay 21, 10:10 pm
82Google accidentally exposed details of unfixed Chromium flawMay 21, 7:10 pm
83Apple blocked over $11 billion in App Store fraud in 6 yearsMay 21, 4:10 pm
84Showboat Linux Malware Hits Middle East Telecom with SOCKS5 Proxy BackdoorMay 21, 3:10 pm
85ThreatsDay Bulletin: Linux Rootkits, Router 0-Day, AI Intrusions, Scam Kits and 25 New StoriesMay 21, 2:10 pm
86Selective HTTP Proxying in Linux, (Thu, May 21st)May 21, 2:10 pm
87Max severity Cisco Secure Workload flaw gives Site Admin privilegesMay 21, 2:10 pm
88Chinese hackers target telcos with new Linux, Windows malwareMay 21, 2:10 pm
89Inside a Crypto Drainer: How to Spot it Before it Empties Your WalletMay 21, 2:10 pm
90Police seize “First VPN” service used in ransomware, data theft attacksMay 21, 1:10 pm
91Microsoft Warns of Two Actively Exploited Defender VulnerabilitiesMay 21, 12:10 pm
92When Identity is the Attack PathMay 21, 11:10 am
93Flipper One project needs community help to build open Linux platformMay 21, 11:10 am
949-Year-Old Linux Kernel Flaw Enables Root Command Execution on Major DistrosMay 21, 9:10 am
95Microsoft warns of new Defender zero-days exploited in attacksMay 21, 8:10 am
96GitHub links repo breach to TanStack npm supply-chain attackMay 21, 7:10 am
97Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites to RCE AttacksMay 21, 5:10 am
98GitHub Internal Repositories Breached via Malicious Nx Console VS Code ExtensionMay 21, 5:10 am
99ISC Stormcast For Thursday, May 21st, 2026 https://isc.sans.edu/podcastdetail/9940, (Thu, May 21st)May 21, 2:10 am
100Hackers bypass SonicWall VPN MFA due to incomplete patchingMay 20, 10:10 pm
101Ukraine identifies infostealer operator tied to 28,000 stolen accountsMay 20, 10:10 pm
102Microsoft Open-Sources RAMPART and Clarity to Secure AI Agents During DevelopmentMay 20, 5:10 pm
103Grafana breach caused by missed token rotation after TanStack attackMay 20, 4:10 pm
104Microsoft Takes Down Malware-Signing Service Behind Ransomware AttacksMay 20, 3:10 pm
105Agent AI is Coming. Are You Ready?May 20, 2:10 pm
106Webworm Deploys EchoCreep and GraphWorm Backdoors Using Discord and MS Graph APIMay 20, 2:10 pm
107Identity Alone Isn't Enough: Why Device Security Has to Share the LoadMay 20, 2:10 pm
108Drupal critical update to fix bug with high exploitation riskMay 20, 1:10 pm
109Typosquatting Is No Longer a User Problem. It's a Supply Chain ProblemMay 20, 11:10 am
110Exploit released for new PinTheft Arch Linux root escalation flawMay 20, 11:10 am
111GitHub Breached — Employee Device Hack Led to Exfiltration of 3,800+ Internal ReposMay 20, 10:10 am
112Microsoft Releases Mitigation for YellowKey BitLocker Bypass CVE-2026-45585 ExploitMay 20, 10:10 am
113GitHub confirms breach of 3,800 repos via malicious VSCode extensionMay 20, 9:10 am
114Microsoft shares mitigation for YellowKey Windows zero-dayMay 20, 8:10 am
115Grafana GitHub Breach Exposes Source Code via TanStack npm AttackMay 20, 6:10 am
116GitHub Investigating TeamPCP Claimed Breach of ~4,000 Internal RepositoriesMay 20, 5:10 am
117GitHub investigates internal repositories breach claimed by TeamPCPMay 20, 5:10 am
118ISC Stormcast For Wednesday, May 20th, 2026 https://isc.sans.edu/podcastdetail/9938, (Wed, May 20th)May 20, 2:10 am
119Max-severity flaw in ChromaDB for AI apps allows server hijackingMay 20, 12:10 am
120Cybercrime service disrupted for abusing Microsoft platform to sign malwareMay 19, 10:10 pm
121Discord rolls out end-to-end encryption on voice, video callsMay 19, 9:10 pm
122Microsoft Self-Service Password Reset abused in Azure data theft attacksMay 19, 8:10 pm
123FBI: Americans lost over $388 million to scams using crypto ATMs in 2025May 19, 8:10 pm
124Trapdoor Android Ad Fraud Scheme Hit 659 Million Daily Bid Requests Using 455 AppsMay 19, 6:10 pm
125Microsoft blames macOS update for undismissible Teams location promptsMay 19, 5:10 pm
126Microsoft plans to improve Windows 11 driver quality in 2026May 19, 5:10 pm
1277-Eleven confirms data breach claimed by the ShinyHunters gangMay 19, 3:10 pm
128New Shai-Hulud malware wave compromises 600 npm packagesMay 19, 3:10 pm
129DirtyDecrypt PoC Released for Linux Kernel CVE-2026-31635 LPE VulnerabilityMay 19, 3:10 pm
130Critical Microsoft Vulnerabilities Doubled: From Exposure to EscalationMay 19, 2:10 pm
131Drupal to Release Urgent Core Security Updates on May 20, Sites Told to PrepareMay 19, 1:10 pm
132The New Phishing Click: How OAuth Consent Bypasses MFAMay 19, 1:10 pm
133Webinar: The hidden bottlenecks in network incident responseMay 19, 1:10 pm
134Microsoft confirms patching issues in restricted Windows networksMay 19, 12:10 pm
135SEPPMail Secure E-Mail Gateway Vulnerabilities Enable RCE and Mail Traffic AccessMay 19, 11:10 am
136Compromised Nx Console 18.95.0 Targeted VS Code Developers with Credential StealerMay 19, 9:10 am
137Popular GitHub Action Tags Redirected to Imposter Commit to Steal CI/CD CredentialsMay 19, 7:10 am
138Mini Shai-Hulud Pushes Malicious AntV npm Packages via Compromised Maintainer AccountMay 19, 6:10 am
139GitHub Actions Supply Chain Attack Redirects Tags to Steal CI/CD CredentialsMay 19, 6:10 am
140ISC Stormcast For Tuesday, May 19th, 2026 https://isc.sans.edu/podcastdetail/9936, (Tue, May 19th)May 19, 2:10 am
141INTERPOL ‘Operation Ramz’ seizes 53 malware, phishing serversMay 18, 11:10 pm
142SHub macOS infostealer variant spoofs Apple security updatesMay 18, 10:10 pm
143TeamPCP Supply Chain Campaign: Activity Through 2026-05-17, (Mon, May 18th)May 18, 9:10 pm
144CISA Admin Leaked AWS GovCloud Keys on GithubMay 18, 9:10 pm
1455 Steps to Managing Shadow AI Tools Without Slowing Down EmployeesMay 18, 7:10 pm
146INTERPOL Operation Ramz Disrupts MENA Cybercrime Networks with 201 ArrestsMay 18, 6:10 pm
147Leaked Shai-Hulud malware fuels new npm infostealer campaignMay 18, 6:10 pm
148⚡ Weekly Recap: Exchange 0-Day, npm Worm, Fake AI Repo, Cisco Exploit and MoreMay 18, 4:10 pm
149How to Reduce Phishing Exposure Before It Turns into Business DisruptionMay 18, 2:10 pm
150Grafana says stolen GitHub token let hackers steal codebaseMay 18, 2:10 pm
151Ivanti, Fortinet, SAP, VMware, n8n Patch RCE, SQL Injection, Privilege Escalation FlawsMay 18, 12:10 pm
152Microsoft testing adjustable taskbar, Start menu in Windows 11May 18, 12:10 pm
153Developer Workstations Are Now Part of the Software Supply ChainMay 18, 12:10 pm
154Four Malicious npm Packages Deliver Infostealers and Phantom Bot DDoS MalwareMay 18, 11:10 am
155MiniPlasma Windows 0-Day Enables SYSTEM Privilege Escalation on Fully Patched SystemsMay 18, 9:10 am
156Pre-Stuxnet Fast16 Malware Tampered with Nuclear Weapons SimulationsMay 18, 9:10 am
157Microsoft confirms Windows 11 security update install issuesMay 18, 9:10 am
158Exploit available for new DirtyDecrypt Linux root escalation flawMay 18, 8:10 am
159Hackers earn $1,298,250 for 47 zero-days at Pwn2Own Berlin 2026May 18, 6:10 am
160New Windows 'MiniPlasma' zero-day exploit gives SYSTEM access, PoC releasedMay 17, 11:10 pm
161NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCEMay 17, 3:10 pm
162Tycoon2FA hijacks Microsoft 365 accounts via device-code phishingMay 17, 3:10 pm
163Grafana GitHub Token Breach Led to Codebase Download and Extortion AttemptMay 17, 8:10 am
164Microsoft rejects critical Azure vulnerability report, no CVE issuedMay 16, 9:10 pm
165Funnel Builder Flaw Under Active Exploitation Enables WooCommerce Checkout SkimmingMay 16, 5:10 pm
166Russian hackers turn Kazuar backdoor into modular P2P botnetMay 16, 3:10 pm
167Funnel Builder WordPress plugin bug exploited to steal credit cardsMay 15, 8:10 pm
168Turla Turns Kazuar Backdoor Into Modular P2P Botnet for Persistent AccessMay 15, 6:10 pm
169Popular node-ipc npm package compromised to steal credentialsMay 15, 6:10 pm
170Microsoft Exchange, Windows 11 hacked on second day of Pwn2OwnMay 15, 6:10 pm
171Four OpenClaw Flaws Enable Data Theft, Privilege Escalation, and PersistenceMay 15, 4:10 pm
172Avada Builder WordPress plugin flaws allow site credential theftMay 15, 4:10 pm
173Microsoft backpedals: Edge to stop loading passwords into memoryMay 15, 3:10 pm
174Inside the REMUS Infostealer: Session Theft, MaaS, and Rapid EvolutionMay 15, 2:10 pm
175Microsoft to automatically roll back faulty Windows driversMay 15, 1:10 pm
176TanStack Supply Chain Attack Hits Two OpenAI Employee Devices, Forces macOS UpdatesMay 15, 12:10 pm
177What 45 Days of Watching Your Own Tools Will Tell You About Your Real Attack SurfaceMay 15, 12:10 pm
178Microsoft warns of Exchange zero-day flaw exploited in attacksMay 15, 10:10 am
179On-Prem Microsoft Exchange Server CVE-2026-42897 Exploited via Crafted EmailMay 15, 7:10 am
180[Guest Diary] New Malware Libraries means New Signatures, (Fri, May 15th)May 15, 7:10 am
181CISA Adds Cisco SD-WAN CVE-2026-20182 to KEV After Admin Access ExploitsMay 15, 6:10 am
182ISC Stormcast For Friday, May 15th, 2026 https://isc.sans.edu/podcastdetail/9934, (Fri, May 15th)May 15, 5:10 am
183TeamPCP hackers advertise Mistral AI code repos for saleMay 14, 11:10 pm
184Hackers exploit auth bypass flaw in Burst Statistics WordPress pluginMay 14, 9:10 pm
185Cisco warns of new critical SD-WAN flaw exploited in zero-day attacksMay 14, 8:10 pm
186Stealer Backdoor Found in 3 Node-IPC Versions Targeting Developer SecretsMay 14, 7:10 pm
187Cisco Catalyst SD-WAN Controller Auth Bypass Actively Exploited to Gain Admin AccessMay 14, 7:10 pm
188Windows 11 and Microsoft Edge hacked at Pwn2Own Berlin 2026May 14, 7:10 pm
189OpenAI confirms security breach in TanStack supply chain attackMay 14, 7:10 pm
190ThreatsDay Bulletin: PAN-OS RCE, Mythos cURL Bug, AI Tokenizer Attacks, and 10+ StoriesMay 14, 6:10 pm
191Cyber-Enabled Cargo Crime: How Cybercrime Tradecraft is Used to Steal FreightMay 14, 4:10 pm
19218-year-old NGINX vulnerability allows DoS, potential RCEMay 14, 4:10 pm
193Ghostwriter Targets Ukrainian Government With Geofenced PDF Phishing, Cobalt StrikeMay 14, 3:10 pm
194KongTuke hackers now use Microsoft Teams for corporate breachesMay 14, 1:10 pm
195How AI Hallucinations Are Creating Real Security RisksMay 14, 12:10 pm
196PraisonAI CVE-2026-44338 Auth Bypass Targeted Within Hours of DisclosureMay 14, 12:10 pm
197Windows Zero-Days Expose BitLocker Bypasses And CTFMON Privilege EscalationMay 14, 10:10 am
198Dell confirms its SupportAssist software causes Windows BSOD crashesMay 14, 10:10 am
199US charges suspected Dream Market admin arrested in GermanyMay 14, 9:10 am
200New Fragnesia Linux Kernel LPE Grants Root Access via Page Cache CorruptionMay 14, 8:10 am
201New Fragnesia Linux flaw lets attackers gain root privilegesMay 14, 8:10 am
20218-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated RCEMay 14, 7:10 am
203Simple bypass of the link preview function in Outlook Junk folder, (Thu, May 14th)May 14, 7:10 am
204ISC Stormcast For Thursday, May 14th, 2026 https://isc.sans.edu/podcastdetail/9932, (Thu, May 14th)May 14, 5:10 am
205West Pharmaceutical says hackers stole data, encrypted systemsMay 13, 11:10 pm
206Iranian hackers targeted major South Korean electronics makerMay 13, 10:10 pm
207New critical Exim mailer flaw allows remote code executionMay 13, 9:10 pm
208Windows BitLocker zero-day gives access to protected drives, PoC releasedMay 13, 5:10 pm
209Microsoft fixes BitLocker recovery issue only for Windows 11 usersMay 13, 4:10 pm
210Webinar tomorrow: Why security alone won't stop modern attacksMay 13, 4:10 pm
211[Webinar] How Modern Attack Paths Cross Code, Pipelines, and CloudMay 13, 3:10 pm
212Microsoft fixes Windows Autopatch bug installing restricted driversMay 13, 3:10 pm
213Azerbaijani Energy Firm Hit by Repeated Microsoft Exchange ExploitationMay 13, 2:10 pm
214Microsoft's MDASH AI System Finds 16 Windows Flaws Fixed in Patch TuesdayMay 13, 2:10 pm
215Microsoft Patches 138 Vulnerabilities, Including DNS and Netlogon RCE FlawsMay 13, 1:10 pm
216Most Remediation Programs Never Confirm the Fix Actually WorkedMay 13, 1:10 pm
217[Webinar] Why Your AppSec Tools Miss the "Lethal Path" (and How to Fix It)May 13, 1:10 pm
21873 Seconds to Breach, 24 Hours to Patch: The Case for Autonomous ValidationMay 13, 1:10 pm
219Foxconn confirms cyberattack claimed by Nitrogen ransomware gangMay 13, 1:10 pm
220Microsoft says some users can't install Office on Windows 365 devicesMay 13, 12:10 pm
221GemStuffer Abuses 150+ RubyGems to Exfiltrate Scraped U.K. Council Portal DataMay 13, 10:10 am
222Android Adds Intrusion Logging for Sophisticated Spyware ForensicsMay 13, 8:10 am
223[GUEST DIARY] Tearing apart website fraud to see how it works., (Wed, May 13th)May 13, 7:10 am
224ISC Stormcast For Wednesday, May 13th, 2026 https://isc.sans.edu/podcastdetail/9930, (Wed, May 13th)May 13, 3:10 am
225Proxying the Unproxyable? Sending EXE traffic to a Proxy, (Wed, May 13th)May 13, 2:10 am
226US govt seeks Instructure testimony on massive Canvas cyberattackMay 12, 11:10 pm
227Patch Tuesday, May 2026 EditionMay 12, 10:10 pm
228UK fines water supplier $1.3M for exposing data of 664k customersMay 12, 9:10 pm
229Signal adds security warnings for social engineering, phishing attacksMay 12, 8:10 pm
230Webinar: Fixing the gaps in network incident responseMay 12, 8:10 pm
231Fortinet warns of critical RCE flaws in FortiSandbox and FortiAuthenticatorMay 12, 7:10 pm
232Microsoft May 2026 Patch Tuesday, (Tue, May 12th)May 12, 7:10 pm
233Microsoft releases Windows 10 KB5087544 extended security updateMay 12, 7:10 pm
234New Exim BDAT Vulnerability Exposes GnuTLS Builds to Potential Code ExecutionMay 12, 6:10 pm
235Microsoft May 2026 Patch Tuesday fixes 120 flaws, no zero-daysMay 12, 6:10 pm
236Windows 11 KB5089549 & KB5087420 cumulative updates releasedMay 12, 6:10 pm
237RubyGems Suspends New Signups After Hundreds of Malicious Packages Are UploadedMay 12, 5:10 pm
238Android 17 to expand banking scam call and privacy protectionsMay 12, 5:10 pm
239Škoda warns of customer data breach after online shop hackMay 12, 5:10 pm
240New TrickMo Variant Uses TON C2 and SOCKS5 to Create Android Network PivotsMay 12, 2:10 pm
241Webinar: What the Riskiest SOC Alerts Go Unanswered - and How Radiant Security Can HelpMay 12, 1:10 pm
242Why Agentic AI Is Security's Next Blind SpotMay 12, 12:10 pm
243Shai Hulud attack ships signed malicious TanStack, Mistral npm packagesMay 12, 12:10 pm
244SAP fixes critical vulnerabilities in Commerce Cloud and S/4HANAMay 12, 11:10 am
245Instructure reaches 'agreement' with ShinyHunters to stop data leakMay 12, 10:10 am
246Mini Shai-Hulud Worm Compromises TanStack, Mistral AI, Guardrails AI & More PackagesMay 12, 9:10 am
247OpenAI Launches Daybreak for AI-Powered Vulnerability Detection and Patch ValidationMay 12, 8:10 am
248Instructure Reaches Ransom Agreement with ShinyHunters to Stop 3.65TB Canvas LeakMay 12, 8:10 am
249iOS 26.5 Brings Default End-to-End Encrypted RCS Messaging Between iPhone and AndroidMay 12, 7:10 am
250ISC Stormcast For Tuesday, May 12th, 2026 https://isc.sans.edu/podcastdetail/9928, (Tue, May 12th)May 12, 4:10 am
251Apple Patches Everything, (Mon, May 11th)May 11, 11:10 pm
252GM agrees to $12.75M California settlement over sale of drivers’ dataMay 11, 11:10 pm
253New GhostLock tool abuses Windows API to block file accessMay 11, 10:10 pm
254Official CheckMarx Jenkins package compromised with infostealerMay 11, 10:10 pm
255TeamPCP Compromises Checkmarx Jenkins AST Plugin Weeks After KICS Supply Chain AttackMay 11, 8:10 pm
256cPanel CVE-2026-41940 Under Active Exploitation to Deploy Filemanager BackdoorMay 11, 6:10 pm
257Hackers Used AI to Develop First Known Zero-Day 2FA Bypass for Mass ExploitationMay 11, 5:10 pm
258Instructure confirms hackers used Canvas flaw to deface portalsMay 11, 4:10 pm
259Why we use CAPTCHAs, (Mon, May 11th)May 11, 3:10 pm
260⚡ Weekly Recap: Linux Rootkit, macOS Crypto Stealer, WebSocket Skimmers and MoreMay 11, 2:10 pm
261Why Changing Passwords Doesn’t End an Active Directory BreachMay 11, 2:10 pm
262Webinar this week: Prevention alone is not enough against modern attacksMay 11, 1:10 pm
263Google: Hackers used AI to develop zero-day exploit for web admin toolMay 11, 1:10 pm
264Your Purple Team Isn't Purple — It's Just Red and Blue in the Same RoomMay 11, 12:10 pm
265Fake OpenAI Privacy Filter Repo Hits #1 on Hugging Face, Draws 244K DownloadsMay 11, 9:10 am
266TrickMo Android banker adopts TON blockchain for covert commsMay 11, 9:10 am
267ISC Stormcast For Monday, May 11th, 2026 https://isc.sans.edu/podcastdetail/9926, (Mon, May 11th)May 11, 3:10 am
268YARA-X 1.16.0 Release, (Sun, May 10th)May 10, 11:10 pm
269Hackers abuse Google ads, Claude.ai chats to push Mac malwareMay 10, 6:10 pm
270Police shut down reboot of Crimenetwork marketplace, arrest adminMay 10, 3:10 pm
271Ollama Out-of-Bounds Read Vulnerability Allows Remote Process Memory LeakMay 10, 1:10 pm
272JDownloader site hacked to replace installers with Python RAT malwareMay 9, 8:10 pm
273Fake OpenAI repository on Hugging Face pushes infostealer malwareMay 9, 3:10 pm
274cPanel, WHM Release Fixes for Three New Vulnerabilities — Patch NowMay 9, 8:10 am
275TCLBANKER Banking Trojan Targets Financial Platforms via WhatsApp and Outlook WormsMay 8, 7:10 pm
276Fake Call History Apps Stole Payments From Users After 7.3 Million Play Store DownloadsMay 8, 5:10 pm
277NVIDIA confirms GeForce NOW data breach affecting Armenian usersMay 8, 5:10 pm
278Trellix source code breach claimed by RansomHouse hackersMay 8, 2:10 pm
279Why More Analysts Won’t Solve Your SOC’s Alert ProblemMay 8, 2:10 pm
280CISA gives feds four days to patch Ivanti flaw exploited as zero-dayMay 8, 1:10 pm
281Quasar Linux RAT Steals Developer Credentials for Software Supply Chain CompromiseMay 8, 12:10 pm
282New Linux PamDOORa Backdoor Uses PAM Modules to Steal SSH CredentialsMay 8, 11:10 am
283One Missed Threat Per Week: What 25M Alerts Reveal About Low-Severity RiskMay 8, 11:10 am
284Zara data breach exposed personal information of 197,000 peopleMay 8, 11:10 am
285Former govt contractor convicted for wiping dozens of federal databasesMay 8, 9:10 am
286Linux Kernel Dirty Frag LPE Exploit Enables Root Access Across Major DistributionsMay 8, 8:10 am
287New Linux 'Dirty Frag' zero-day gives root on all major distrosMay 8, 8:10 am
288Another Universal Linux Local Privilege Escalation (LPE) Vulnerability: Dirty Frag, (Fri, May 8th)May 8, 8:10 am
289Canvas Breach Disrupts Schools & Colleges NationwideMay 8, 3:10 am
290ISC Stormcast For Friday, May 8th, 2026 https://isc.sans.edu/podcastdetail/9924, (Fri, May 8th)May 8, 2:10 am
291Canvas login portals hacked in mass ShinyHunters extortion campaignMay 7, 11:10 pm
292New TCLBanker malware self-spreads over WhatsApp and OutlookMay 7, 10:10 pm
293PCPJack Credential Stealer Exploits 5 CVEs to Spread Worm-Like Across Cloud SystemsMay 7, 7:10 pm
294Ivanti EPMM CVE-2026-6973 RCE Under Active Exploitation Grants Admin-Level AccessMay 7, 7:10 pm
295New PCPJack worm steals credentials, cleans TeamPCP infectionsMay 7, 7:10 pm
296Australia warns of ClickFix attacks pushing Vidar Stealer malwareMay 7, 6:10 pm
297Ivanti warns of new EPMM flaw exploited in zero-day attacksMay 7, 4:10 pm
298One Click, Total Shutdown: The "Patient Zero" Webinar on Killing Stealth BreachesMay 7, 3:10 pm
299PAN-OS RCE Exploit Under Active Use Enabling Root Access and EspionageMay 7, 2:10 pm
300Americans sentenced for running 'laptop farms' for North KoreaMay 7, 2:10 pm
301The Browser Is Breaking Your DLP: How Data Slips Past Modern ControlsMay 7, 2:10 pm
302Crypto gang member gets 6.5 years for role in $230 million heistMay 7, 1:10 pm
303Day Zero Readiness: The Operational Gaps That Break Incident ResponseMay 7, 12:10 pm
304ThreatsDay Bulletin: Edge Plaintext Passwords, ICS 0-Days, Patch-or-Die Alerts and 25+ New StoriesMay 7, 12:10 pm
305Webinar: Why modern attacks require both security and recoveryMay 7, 12:10 pm
306Palo Alto Networks firewall zero-day exploited for nearly a monthMay 7, 11:10 am
307PyPI Packages Deliver ZiChatBot Malware via Zulip APIs on Windows and LinuxMay 7, 10:10 am
308Fake Claude AI website delivers new 'Beagle' Windows malwareMay 7, 10:10 am
309vm2 Node.js Library Vulnerabilities Enable Sandbox Escape and Arbitrary Code ExecutionMay 7, 5:10 am
310An Adaptive Cyber Analytics UI for Web Honeypot Logs [Guest Diary], (Wed, May 6th)May 7, 2:10 am
311ISC Stormcast For Thursday, May 7th, 2026 https://isc.sans.edu/podcastdetail/9922, (Thu, May 7th)May 7, 2:10 am
312Hackers abuse Google ads for GoDaddy ManageWP login phishingMay 6, 10:10 pm
313Mirai-Based xlabs_v1 Botnet Exploits ADB to Hijack IoT Devices for DDoS AttacksMay 6, 9:10 pm
314Critical vm2 sandbox bug lets attackers execute code on hostsMay 6, 7:10 pm
315New Cisco DoS flaw requires manual reboot to revive devicesMay 6, 6:10 pm
316DAEMON Tools devs confirm breach, release malware-free versionMay 6, 5:10 pm
317MuddyWater Uses Microsoft Teams to Steal Credentials in False Flag Ransomware AttackMay 6, 3:10 pm
318Why ransomware attacks succeed even when backups existMay 6, 2:10 pm
319Your AI Agents Are Already Inside the Perimeter. Do You Know What They're Doing?May 6, 1:10 pm
320The Hacker News Launches 'Cybersecurity Stars Awards 2026' — Submissions Now OpenMay 6, 1:10 pm
321Webinar: Why network incidents escalate and how to fix response gapsMay 6, 1:10 pm
322MuddyWater hackers use Chaos ransomware as a decoy in attacksMay 6, 1:10 pm
323Windows Phone Link Exploited by CloudZ RAT to Steal Credentials and OTPsMay 6, 10:10 am
324Google's Android Apps Get Public Verification to Stop Supply Chain AttacksMay 6, 10:10 am
325Palo Alto Networks warns of firewall RCE zero-day exploited in attacksMay 6, 10:10 am
326Palo Alto PAN-OS Flaw Under Active Exploitation Enables Remote Code ExecutionMay 6, 8:10 am
327ISC Stormcast For Wednesday, May 6th, 2026 https://isc.sans.edu/podcastdetail/9920, (Wed, May 6th)May 6, 2:10 am
328Instructure hacker claims data theft from 8,800 schools, universitiesMay 5, 10:10 pm
329New stealthy Quasar Linux malware targets software developersMay 5, 10:10 pm
330DAEMON Tools trojanized in supply-chain attack to deploy backdoorMay 5, 8:10 pm
331The EOL Blind Spot in Your CVE Feed: What SCA Tools MissMay 5, 7:10 pm
332Student hacked Taiwan high-speed rail to trigger emergency brakesMay 5, 6:10 pm
333DAEMON Tools Supply Chain Attack Compromises Official Installers with MalwareMay 5, 5:10 pm
334Critical Apache HTTP/2 Flaw (CVE-2026-23918) Enables DoS and Potential RCEMay 5, 5:10 pm
335China-Linked UAT-8302 Targets Governments Using Shared APT Malware Across RegionsMay 5, 4:10 pm
336FTC to ban data broker Kochava from selling Americans’ location dataMay 5, 3:10 pm
337The EOL Blind Spot in Your CVE Feed: What SCA Tools Don't Check.May 5, 2:10 pm
338MetInfo CMS CVE-2026-29014 Exploited for Remote Code Execution AttacksMay 5, 1:10 pm
339The Back Door Attackers Know About — and Most Security Teams Still Haven’t ClosedMay 5, 1:10 pm
340Vimeo data breach exposes personal information of 119,000 peopleMay 5, 1:10 pm
341Google now offers up to $1.5 million for some Android exploitsMay 5, 12:10 pm
342Cleartext Passwords in MS Edge? In 2026?, (Mon, May 4th)May 5, 12:10 pm
343SSL.com rotates their root certificate today, (Tue, May 5th)May 5, 12:10 pm
344Karakurt extortion gang ‘cold case’ negotiator gets 8.5 years in prisonMay 5, 11:10 am
345We Scanned 1 Million Exposed AI Services. Here's How Bad the Security Actually IsMay 5, 11:10 am
346ScarCruft Hacks Gaming Platform to Deploy BirdCall Malware on Android and WindowsMay 5, 10:10 am
347CloudZ malware abuses Microsoft Phone Link to steal SMS and OTPsMay 5, 10:10 am
348ScarCruft hackers push BirdCall Android malware via game platformMay 5, 9:10 am
349Microsoft Details Phishing Campaign Targeting 35,000 Users Across 26 CountriesMay 5, 8:10 am
350Weaver E-cology RCE Flaw CVE-2026-22679 Actively Exploited via Debug APIMay 5, 8:10 am
351ISC Stormcast For Tuesday, May 5th, 2026 https://isc.sans.edu/podcastdetail/9918, (Tue, May 5th)May 5, 2:10 am
352Weaver E-cology critical bug exploited in attacks since MarchMay 4, 11:10 pm
353Amazon SES increasingly abused in phishing to evade detectionMay 4, 8:10 pm
354Phishing Campaign Hits 80+ Orgs Using SimpleHelp and ScreenConnect RMM ToolsMay 4, 7:10 pm
355Progress Patches Critical MOVEit Automation Bug Enabling Authentication BypassMay 4, 6:10 pm
356TeamPCP Weekly Analysis: 2026-W18 (2026-04-27 through 2026-05-03), (Mon, May 4th)May 4, 6:10 pm
357Backdoored PyTorch Lightning package drops credential stealerMay 4, 6:10 pm
358Trellix discloses data breach after source code repository hackMay 4, 5:10 pm
359⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & MoreMay 4, 4:10 pm
360DShield Honeypot Update, (Mon, May 4th)May 4, 3:10 pm
361They don’t hack, they borrow: How fraudsters target credit unionsMay 4, 2:10 pm
362Webinar: Why MSPs must rethink security and backup strategiesMay 4, 1:10 pm
363Progress warns of critical MOVEit Automation auth bypass flawMay 4, 1:10 pm
364CISA says ‘Copy Fail’ flaw now exploited to root Linux systemsMay 4, 12:10 pm
365Silver Fox Deploys ABCDoor Malware via Tax-Themed Phishing in India and RussiaMay 4, 12:10 pm
3662026: The Year of AI-Assisted AttacksMay 4, 12:10 pm
367Critical cPanel Vulnerability Weaponized to Target Government and MSP NetworksMay 4, 11:10 am
368Microsoft confirms April Windows updates cause backup failuresMay 4, 11:10 am
369Global Crackdown Arrests 276, Shuts 9 Crypto Scam Centers, Seizes $701MMay 4, 7:10 am
370ISC Stormcast For Monday, May 4th, 2026 https://isc.sans.edu/podcastdetail/9916, (Mon, May 4th)May 4, 2:10 am
371Instructure confirms data breach, ShinyHunters claims attackMay 3, 11:10 pm
372Microsoft Defender wrongly flags DigiCert certs as Trojan:Win32/Cerdigent.A!dhaMay 3, 7:10 pm
373Wireshark 4.6.5 Released, (Sun, May 3rd)May 3, 5:10 pm
374Telegram Mini Apps abused for crypto scams, Android malware deliveryMay 3, 3:10 pm
375CISA Adds Actively Exploited Linux Root Access Bug CVE-2026-31431 to KEVMay 3, 7:10 am
376Critrical cPanel flaw mass-exploited in "Sorry" ransomware attacksMay 2, 10:10 pm
377ConsentFix v3 attacks target Azure with automated OAuth abuseMay 2, 3:10 pm
378Trellix Confirms Source Code Breach With Unauthorized Repository AccessMay 2, 7:10 am
379Microsoft tests modern Windows Run, says it's faster than legacy dialogMay 2, 1:10 am
380Edu tech firm Instructure discloses cyber incident, probes impactMay 2, 12:10 am
38130,000 Facebook Accounts Hacked via Google AppSheet Phishing CampaignMay 1, 8:10 pm
382Malicious Ad for Homebrew Leads to MacSync Stealer, (Fri, May 1st)May 1, 7:10 pm
38315-year-old detained over French govt agency data breachMay 1, 6:10 pm
384Story retractedMay 1, 5:10 pm
385China-Linked Hackers Target Asian Governments, NATO State, Journalists, and ActivistsMay 1, 3:10 pm
386Criminal IP and Securonix ThreatQ Collaborate to Enhance Threat Intelligence OperationsMay 1, 3:10 pm
387Cybercrime Groups Using Vishing and SSO Abuse in Rapid SaaS Extortion AttacksMay 1, 3:10 pm
388Microsoft fixes Remote Desktop warnings displaying incorrectlyMay 1, 1:10 pm
389Two Cybersecurity Professionals Get 4-Year Sentences in BlackCat Ransomware AttacksMay 1, 12:10 pm
390Top Five Sales Challenges Costing MSPs Cybersecurity RevenueMay 1, 12:10 pm
391Microsoft now lets admins choose pre-installed Store apps to uninstallMay 1, 12:10 pm
392Poisoned Ruby Gems and Go Modules Exploit CI Pipelines for Credential TheftMay 1, 10:10 am
393Windows 11 KB5083631 update released with 34 changes and fixesMay 1, 10:10 am
394US ransomware negotiators get 4 years in prison over BlackCat attacksMay 1, 8:10 am
395ISC Stormcast For Friday, May 1st, 2026 https://isc.sans.edu/podcastdetail/9914, (Fri, May 1st)May 1, 2:10 am
396PyTorch Lightning and Intercom-client Hit in Supply Chain Attacks to Steal CredentialsApr 30, 7:10 pm
397New Bluekit phishing service includes an AI assistant, 40 templatesApr 30, 7:10 pm
398Romanian leader of online swatting ring gets 4 years in prisonApr 30, 6:10 pm
399PyTorch Lightning Compromised in PyPI Supply Chain Attack to Steal CredentialsApr 30, 5:10 pm
400FBI links cybercriminals to sharp surge in cargo theft attacksApr 30, 5:10 pm
401April KB5083769 Windows 11 update causes backup software failuresApr 30, 4:10 pm
402New Linux ‘Copy Fail’ flaw gives hackers root on major distrosApr 30, 2:10 pm
403ThreatsDay Bulletin: SMS Blaster Busts, OpenEMR Flaws, 600K Roblox Hacks and 25 More StoriesApr 30, 2:10 pm
404What Happens in the First 24 Hours After a New Asset Goes LiveApr 30, 2:10 pm
405Anti-DDoS Firm Heaped Attacks on Brazilian ISPsApr 30, 2:10 pm
406EtherRAT Distribution Spoofing Administrative Tools via GitHub FacadesApr 30, 1:10 pm
407New Python Backdoor Uses Tunneling Service to Steal Browser and Cloud CredentialsApr 30, 1:10 pm
408Police dismantles 9 crypto scam centers, arrests 276 suspectsApr 30, 12:10 pm
409Critical cPanel and WHM bug exploited as a zero-day, PoC now availableApr 30, 12:10 pm
410New Linux 'Copy Fail' Vulnerability Enables Root Access on Major DistributionsApr 30, 10:10 am
411Google Fixes CVSS 10 Gemini CLI CI RCE and Cursor Flaws Enable Code ExecutionApr 30, 7:10 am
412ISC Stormcast For Thursday, April 30th, 2026 https://isc.sans.edu/podcastdetail/9912, (Thu, Apr 30th)Apr 30, 2:10 am
413Danger of Libredtail [Guest Diary], (Wed, Apr 29th)Apr 30, 12:10 am
414Popular WordPress redirect plugin hid dormant backdoor for yearsApr 29, 11:10 pm
415Official SAP npm packages compromised to steal credentialsApr 29, 11:10 pm
416Hackers exploit RCE flaws in Qinglong task scheduler for cryptominingApr 29, 9:10 pm
417Hackers arrested for hijacking and selling 610,000 Roblox accountsApr 29, 7:10 pm
418SAP-Related npm Packages Compromised in Credential-Stealing Supply Chain AttackApr 29, 6:10 pm
419SAP npm Packages Compromised by “Mini Shai-Hulud” Credential-Stealing MalwareApr 29, 5:10 pm
420New Wave of DPRK Attacks Uses AI-Inserted npm Malware, Fake Firms, and RATsApr 29, 4:10 pm
421cPanel, WHM emergency update fixes critical auth bypass bugApr 29, 4:10 pm
422European police dismantles €50 million crypto investment fraud ringApr 29, 3:10 pm
423Webinar: How to Automate Exposure Validation to Match the Speed of AI AttacksApr 29, 2:10 pm
424Learning from the Vercel breach: Shadow AI & OAuth sprawlApr 29, 2:10 pm
425Today's Odd Web Requests, (Wed, Apr 29th)Apr 29, 2:10 pm
426GitHub fixes RCE flaw that gave access to millions of private reposApr 29, 1:10 pm
427What to Look for in an Exposure Management Platform (And What Most of Them Get Wrong)Apr 29, 12:10 pm
428Critical cPanel Authentication Vulnerability Identified — Update Your Server ImmediatelyApr 29, 11:10 am
429CISA orders feds to patch Windows flaw exploited as zero-dayApr 29, 11:10 am
430Microsoft says backend change broke Teams Free chat and callsApr 29, 9:10 am
431CISA Adds Actively Exploited ConnectWise and Windows Flaws to KEVApr 29, 9:10 am
432LiteLLM CVE-2026-42208 SQL Injection Exploited within 36 Hours of DisclosureApr 29, 6:10 am
433ISC Stormcast For Wednesday, April 29th, 2026 https://isc.sans.edu/podcastdetail/9910, (Wed, Apr 29th)Apr 29, 2:10 am
434Broken VECT 2.0 ransomware acts as a data wiper for large filesApr 28, 10:10 pm
435Hackers are exploiting a critical LiteLLM pre-auth SQLi flawApr 28, 9:10 pm
436Researchers Discover Critical GitHub CVE-2026-3854 RCE Flaw Exploitable via Single Git PushApr 28, 7:10 pm
437Video service Vimeo confirms Anodot breach exposed user dataApr 28, 7:10 pm
438Brazilian LofyGang Resurfaces After Three Years With Minecraft LofyStealer CampaignApr 28, 6:10 pm
439US reportedly charges Scattered Spider hacker arrested in FinlandApr 28, 4:10 pm
440VECT 2.0 Ransomware Irreversibly Destroys Files Over 131KB on Windows, Linux, ESXiApr 28, 3:10 pm
441Checkmarx confirms LAPSUS$ hackers leaked its stolen GitHub dataApr 28, 3:10 pm
442Microsoft to deprecate legacy TLS in Exchange Online starting JulyApr 28, 2:10 pm
443HTTP Requests with X-Vercel-Set-Bypass-Cookie Header, (Tue, Apr 28th)Apr 28, 2:10 pm
444Why Secure Data Movement Is the Zero Trust Bottleneck Nobody Talks AboutApr 28, 1:10 pm
445Inside an OPSEC Playbook: How Threat Actors Evade DetectionApr 28, 1:10 pm
446Critical Unpatched Flaw Leaves Hugging Face LeRobot Open to Unauthenticated RCEApr 28, 12:10 pm
447After Mythos: New Playbooks For a Zero-Window EraApr 28, 11:10 am
448Microsoft: New Remote Desktop warnings may display incorrectlyApr 28, 10:10 am
449Chinese Silk Typhoon Hacker Extradited to U.S. Over COVID Research CyberattacksApr 28, 9:10 am
450Microsoft asks iPhone users to reauthenticate after Outlook outageApr 28, 9:10 am
451Microsoft Confirms Active Exploitation of Windows Shell CVE-2026-32202Apr 28, 7:10 am
452Microsoft Patches Entra ID Role Flaw That Enabled Service Principal TakeoverApr 28, 7:10 am
453ISC Stormcast For Tuesday, April 28th, 2026 https://isc.sans.edu/podcastdetail/9908, (Tue, Apr 28th)Apr 28, 2:10 am
454Robinhood account creation flaw abused to send phishing emailsApr 28, 12:10 am
455GlassWorm malware attacks return via 73 OpenVSX "sleeper" extensionsApr 27, 10:10 pm
456Alleged Silk Typhoon hacker extradited to US for cyberespionageApr 27, 8:10 pm
457Canada arrests three for operating “SMS blaster” device in TorontoApr 27, 8:10 pm
458FTC: Americans lost over $2.1 billion to social media scams in 2025Apr 27, 5:10 pm
459⚡ Weekly Recap: Fast16 Malware, XChat Launch, Federal Backdoor, AI Employee Tracking & MoreApr 27, 4:10 pm
460Checkmarx Confirms GitHub Repository Data Posted on Dark Web After March 23 AttackApr 27, 4:10 pm
461PyPI package with 1.1M monthly downloads hacked to push infostealerApr 27, 4:10 pm
462Webinar: Spotting cyberattacks before they beginApr 27, 3:10 pm
463Home security giant ADT data breach affects 5.5 million peopleApr 27, 3:10 pm
464Medtronic confirms breach after hackers claim 9 million records theftApr 27, 2:10 pm
465TeamPCP Supply Chain Campaign: Update 008 - 26-Day Pause Ends with Three Concurrent Compromises (Checkmarx KICS, Bitwarden CLI Cascade, xinference PyPI), CanisterSprawl npm Worm Identified, and Tier 1 Coverage Returns, (Mon, Apr 27th)Apr 27, 2:10 pm
466Deepfake Voice Attacks are Outpacing Defenses: What Security Leaders Should KnowApr 27, 1:10 pm
467Money launderer linked to $230M crypto heist gets 70 months in prisonApr 27, 1:10 pm
468Researchers Uncover 73 Fake VS Code Extensions Delivering GlassWorm v2 MalwareApr 27, 12:10 pm
469PhantomCore Exploits TrueConf Vulnerabilities to Breach Russian NetworksApr 27, 12:10 pm
470Mythos Changed the Math on Vulnerability Discovery. Most Teams Aren't Ready for the Remediation SideApr 27, 12:10 pm
471Microsoft says Outlook.com outage is causing sign‑in failuresApr 27, 12:10 pm
472Fake CAPTCHA IRSF Scam and 120 Keitaro Campaigns Drive Global SMS, Crypto FraudApr 27, 9:10 am
473American utility firm Itron discloses breach of internal IT networkApr 26, 3:10 pm
474Microsoft rolls out revamped Windows Insider ProgramApr 25, 5:10 pm
475Threat actor uses Microsoft Teams to deploy new “Snow” malwareApr 25, 4:10 pm
476Researchers Uncover Pre-Stuxnet ‘fast16’ Malware Targeting Engineering SoftwareApr 25, 10:10 am
477CISA Adds 4 Exploited Flaws to KEV, Sets May 2026 Federal DeadlineApr 25, 6:10 am
478ADT confirms data breach after ShinyHunters leak threatApr 24, 11:10 pm
479Firestarter malware survives Cisco firewall updates, security patchesApr 24, 9:10 pm
480Windows Update gets new controls to reduce forced restartsApr 24, 8:10 pm
481Microsoft to roll out Entra passkeys on Windows in late AprilApr 24, 7:10 pm
482New BlackFile extortion group linked to surge of vishing attacksApr 24, 7:10 pm
483FIRESTARTER Backdoor Hit Federal Cisco Firepower Device, Survives Security PatchesApr 24, 6:10 pm
484New ‘Pack2TheRoot’ flaw gives hackers root Linux accessApr 24, 6:10 pm
485NASA Employees Duped in Chinese Phishing Scheme Targeting U.S. Defense SoftwareApr 24, 4:10 pm
486DORA and operational resilience: Credential management as a financial risk controlApr 24, 3:10 pm
487Over 10,000 Zimbra servers vulnerable to ongoing XSS attacksApr 24, 2:10 pm
488Microsoft now lets admins uninstall Copilot on enterprise devicesApr 24, 12:10 pm
48926 FakeWallet Apps Found on Apple App Store Targeting Crypto Seed PhrasesApr 24, 12:10 pm
490Bridging the AI Agent Authority Gap: Continuous Observability as the Decision EngineApr 24, 12:10 pm
491UNC6692 Impersonates IT Help Desk via Microsoft Teams to Deploy SNOW MalwareApr 24, 10:10 am
492Tropic Trooper Uses Trojanized SumatraPDF and GitHub to Deploy AdaptixC2Apr 24, 10:10 am
493LMDeploy CVE-2026-33626 Flaw Exploited Within 13 Hours of DisclosureApr 24, 9:10 am
494ISC Stormcast For Friday, April 24th, 2026 https://isc.sans.edu/podcastdetail/9906, (Fri, Apr 24th)Apr 24, 2:10 am
495Hackers exploit file upload bug in Breeze Cache WordPress pluginApr 23, 10:10 pm
496Bitwarden CLI npm package compromised to steal developer credentialsApr 23, 8:10 pm
497UNC6692 Impersonates IT Helpdesk via Microsoft Teams to Deploy SNOW MalwareApr 23, 7:10 pm
498Trigona ransomware attacks use custom exfiltration tool to steal dataApr 23, 7:10 pm
499New Checkmarx supply-chain breach affects KICS analysis toolApr 23, 4:10 pm
500ThreatsDay Bulletin: $290M DeFi Hack, macOS LotL Abuse, ProxySmart SIM Farms +25 New StoriesApr 23, 3:10 pm
AI Testing

Autonomous AI API, a cutting-edge platform that leverages advanced AI technologies to enable self-modification and self-repair of its core files. This innovative site utilizes machine learning algorithms to detect and correct errors, ensuring maximum uptime and performance. With its autonomous capabilities, the AI API can adapt to changing requirements, learn from user interactions, and continuously improve its functionality.