cybersec

#TitleDate
1US charges Google security engineer with Polymarket insider tradingMay 29, 11:10 am
2Malicious Sicoob NuGet Steals Banking Credentials as npm Packages Target Cloud SecretsMay 29, 10:10 am
3Charter Communications data breach affects 4.9 million accountsMay 29, 9:10 am
4Kimsuky Deploys HTTPSpy, Expands Arsenal with HelloDoor and VS Code TunnelsMay 29, 7:10 am
5ISC Stormcast For Friday, May 29th, 2026 https://isc.sans.edu/podcastdetail/9950, (Fri, May 29th)May 29, 2:10 am
6Anthropic confirms Claude Mythos-class models will roll out to the publicMay 29, 1:10 am
7GreyVibe hackers use ChatGPT, Gemini to power cyberattacksMay 28, 11:10 pm
8BTMOB Android malware service generates custom phishing payloadsMay 28, 10:10 pm
9Analysis of a Year of Files Uploaded to DShield Sensors, (Wed, May 27th)May 28, 8:10 pm
10FBI warns of fake FIFA websites running World Cup fraud schemesMay 28, 7:10 pm
11Critical Gogs RCE Vulnerability Lets Any Authenticated User Execute Arbitrary CodeMay 28, 6:10 pm
12Hackers exploit FortiClient EMS flaw to push infostealer malwareMay 28, 6:10 pm
13Threat Actors Exploit Critical FortiClient EMS Flaw to Deploy Credential StealerMay 28, 5:10 pm
14New Gogs zero-day flaw lets hackers get remote code executionMay 28, 3:10 pm
15ThreatsDay Bulletin: Claude Security Plugin, Azure Priv-Esc, Kali365 MFA Bypass, FIFA Scams +15 MoreMay 28, 2:10 pm
16Microsoft Slams Public Zero-Day Disclosures Amid GitHub Researcher Account RemovalMay 28, 2:10 pm
17How SIEM helps MSPs reduce noise and stop threats fasterMay 28, 2:10 pm
18New AI Usage Report: Enterprise AI Risk Is Heavily Concentrated Among a Small Group of AI "Power users"May 28, 1:10 pm
19Webinar: Why network incidents take too long to resolveMay 28, 1:10 pm
20Romanian gets 5 years in prison for hacking Oregon govt networkMay 28, 1:10 pm
21Carnival Cruise confirms data breach affecting nearly 6 million peopleMay 28, 11:10 am
22Sextortionist sentenced to 33 years for targeting 145 childrenMay 28, 10:10 am
23JINX-0164 Targets Cryptocurrency Firms with Fake Recruiter Lures and macOS MalwareMay 28, 9:10 am
24ISC Stormcast For Thursday, May 28th, 2026 https://isc.sans.edu/podcastdetail/9948, (Thu, May 28th)May 28, 2:10 am
25Reconstructing an Akira Ransomware Kill Chain from Perimeter and Endpoint Logs, (Wed, May 27th)May 27, 10:10 pm
26GPU mining malware spreads via SEO poisoning, AI chatbotsMay 27, 10:10 pm
27Malicious npm Package Stole Files From Claude AI User Directory via GitHubMay 27, 5:10 pm
28Grandoreiro Malware and BTMOB RAT Campaigns Target Windows and Android UsersMay 27, 5:10 pm
293 SOC Steps that Shut Down Incident Risks EarlyMay 27, 3:10 pm
30Glassworm botnet disrupted after resilient C2 infrastructure takedownMay 27, 2:10 pm
31Can you enforce strong Active Directory password rules without frustrating users?May 27, 2:10 pm
32GlassWorm Malware Takedown Disrupts Developer Supply Chain Attack InfrastructureMay 27, 1:10 pm
33Gitea Vulnerability Exposes Private Container Images without AuthenticationMay 27, 12:10 pm
34FBI warns of in-person data theft attacks from extortion gangMay 27, 12:10 pm
35CISA gives feds 4 days to patch actively exploited cPanel plugin flawMay 27, 10:10 am
36Windows 11 KB5089573 update released with performance improvementsMay 27, 9:10 am
37Dutch police arrests suspect linked to Ajax football club hackMay 27, 9:10 am
38AI Chatbot Recommendations Redirect Users to Cryptojacking Malware SitesMay 27, 8:10 am
39ISC Stormcast For Wednesday, May 27th, 2026 https://isc.sans.edu/podcastdetail/9946, (Wed, May 27th)May 27, 2:10 am
40Charter confirms data breach after ShinyHunters extortion threatMay 26, 8:10 pm
41KnowledgeDeliver flaw exploited as a zero-day to install web shellsMay 26, 8:10 pm
42MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 CountriesMay 26, 5:10 pm
43CERT-In Recommends 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted AttacksMay 26, 2:10 pm
44[THN Webinar] New AI DDoS Attacks Are Smarter. Learn How to Fight BackMay 26, 2:10 pm
45How Varonis Atlas integrates Claude Compliance API for AI governanceMay 26, 2:10 pm
46Webinar: Too many tools are slowing network incident responseMay 26, 1:10 pm
47Microsoft Defender can now automatically isolate hacked endpointsMay 26, 1:10 pm
48Microsoft Patches SharePoint RCE Flaw CVE-2026-45659 Across Server VersionsMay 26, 12:10 pm
49New AI DDoS Attacks Are Smarter. Learn How to Fight Back in This WebinarMay 26, 12:10 pm
50MFA Prompt Bombing: Why Your Second Factor Isn't Saving YouMay 26, 11:10 am
51CERT-In Mandates 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted AttacksMay 26, 10:10 am
52Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO PoisoningMay 26, 9:10 am
53CISA orders feds to patch actively exploited Drupal vulnerabilityMay 26, 9:10 am
54Microsoft: Domain Controller lookup may fail on Windows Server 2016May 26, 8:10 am
557-Eleven data breach exposes personal information of 185,000 peopleMay 26, 7:10 am
56KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt StrikeMay 26, 6:10 am
57ISC Stormcast For Tuesday, May 26th, 2026 https://isc.sans.edu/podcastdetail/9944, (Tue, May 26th)May 26, 2:10 am
58Possible ACR Stealer From Page Impersonating Claude, (Tue, May 26th)May 26, 12:10 am
59Anthropic’s restricted Claude Mythos model may be coming to Claude CodeMay 25, 5:10 pm
60⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain ChaosMay 25, 4:10 pm
61Microsoft Access VBA, (Mon, May 25th)May 25, 3:10 pm
62Netherlands Seizes 800 Servers, Arrests 2 for Aiding CyberattacksMay 25, 2:10 pm
63TeamPCP Supply Chain Campaign: Activity Through 2026-05-24, (Mon, May 25th)May 25, 2:10 pm
64FBI warns of Kali365 phishing service targeting Microsoft 365 accountsMay 25, 1:10 pm
65The Alert Firehose Finally Meets Its MatchMay 25, 12:10 pm
66Ghost CMS CVE-2026-26980 Exploited to Hijack 700+ Sites for ClickFix AttacksMay 25, 12:10 pm
67Lazarus Deploys RemotePE Memory-Only RAT Against Financial and Crypto FirmsMay 25, 11:10 am
68TrapDoor Supply Chain Attack Spreads Credential-Stealing Malware via npm, PyPI, and CratesIOMay 25, 7:10 am
69Wireshark 4.6.6 Released, (Sun, May 24th)May 24, 5:10 pm
70Ghost CMS SQL injection flaw exploited in large-scale ClickFix campaignMay 24, 3:10 pm
71Laravel Lang packages hijacked to deploy credential-stealing malwareMay 23, 9:10 pm
72Packagist Supply Chain Attack Infects 8 Packages Using GitHub-Hosted Linux MalwareMay 23, 5:10 pm
73npm Adds 2FA-Gated Publishing and Package Install Controls Against Supply Chain AttacksMay 23, 5:10 pm
74Italy disrupts CINEMAGOAL piracy app that stole streaming auth codesMay 23, 3:10 pm
75Claude Mythos AI Finds 10,000 High-Severity Flaws in Widely Used SoftwareMay 23, 1:10 pm
76Laravel-Lang PHP Packages Compromised to Deliver Cross-Platform Credential StealerMay 23, 11:10 am
77Drupal Core SQL Injection Bug Actively Exploited, Added to CISA KEVMay 23, 8:10 am
78LiteSpeed cPanel Plugin CVE-2026-48172 Exploited to Run Scripts as RootMay 23, 8:10 am
79An Example of Stack String in High Level Language, (Sat, May 23rd)May 23, 6:10 am
80First VPN Dismantled in Global Takedown Over Use by 25 Ransomware GroupsMay 22, 7:10 pm
81Netherlands seizes 800 servers of hosting firm enabling cyberattacksMay 22, 6:10 pm
82Ghostwriter Targets Ukraine Government Entities with Prometheus Phishing MalwareMay 22, 5:10 pm
83Lawmakers Demand Answers as CISA Tries to Contain Data LeakMay 22, 5:10 pm
84Former US execs plead guilty to aiding tech support scammersMay 22, 4:10 pm
85Why Chargebacks are Just One Piece of the Fraud PuzzleMay 22, 2:10 pm
86Drupal: Critical SQL injection flaw now targeted in attacksMay 22, 2:10 pm
87Trend Micro warns of Apex One zero-day exploited in the wildMay 22, 2:10 pm
88Making Vulnerable Drivers Exploitable Without Hardware - The BYOVD PerspectiveMay 22, 1:10 pm
89Megalodon GitHub Attack Targets 5,561 Repos with Malicious CI/CD WorkflowsMay 22, 1:10 pm
90Ubiquiti patches three max severity UniFi OS vulnerabilitiesMay 22, 12:10 pm
91Kimwolf DDoS Botnet Operator Arrested in Canada Over DDoS-for-Hire AttacksMay 22, 9:10 am
92US and Canada arrest and charge suspected Kimwolf botnet adminMay 22, 9:10 am
93CISA Adds Exploited Langflow and Trend Micro Apex One Vulnerabilities to KEVMay 22, 7:10 am
94Cross-Platform NPM Stealer, (Fri, May 22nd)May 22, 7:10 am
95Cisco Patches CVSS 10.0 Secure Workload REST API Flaw Enabling Data AccessMay 22, 6:10 am
96ISC Stormcast For Friday, May 22nd, 2026 https://isc.sans.edu/podcastdetail/9942, (Fri, May 22nd)May 22, 2:10 am
97Alleged Kimwolf Botmaster ‘Dort’ Arrested, Charged in U.S. and CanadaMay 21, 10:10 pm
98Google accidentally exposed details of unfixed Chromium flawMay 21, 7:10 pm
99Apple blocked over $11 billion in App Store fraud in 6 yearsMay 21, 4:10 pm
100Showboat Linux Malware Hits Middle East Telecom with SOCKS5 Proxy BackdoorMay 21, 3:10 pm
101ThreatsDay Bulletin: Linux Rootkits, Router 0-Day, AI Intrusions, Scam Kits and 25 New StoriesMay 21, 2:10 pm
102Selective HTTP Proxying in Linux, (Thu, May 21st)May 21, 2:10 pm
103Max severity Cisco Secure Workload flaw gives Site Admin privilegesMay 21, 2:10 pm
104Chinese hackers target telcos with new Linux, Windows malwareMay 21, 2:10 pm
105Inside a Crypto Drainer: How to Spot it Before it Empties Your WalletMay 21, 2:10 pm
106Police seize “First VPN” service used in ransomware, data theft attacksMay 21, 1:10 pm
107Microsoft Warns of Two Actively Exploited Defender VulnerabilitiesMay 21, 12:10 pm
108When Identity is the Attack PathMay 21, 11:10 am
109Flipper One project needs community help to build open Linux platformMay 21, 11:10 am
1109-Year-Old Linux Kernel Flaw Enables Root Command Execution on Major DistrosMay 21, 9:10 am
111Microsoft warns of new Defender zero-days exploited in attacksMay 21, 8:10 am
112GitHub links repo breach to TanStack npm supply-chain attackMay 21, 7:10 am
113Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites to RCE AttacksMay 21, 5:10 am
114GitHub Internal Repositories Breached via Malicious Nx Console VS Code ExtensionMay 21, 5:10 am
115ISC Stormcast For Thursday, May 21st, 2026 https://isc.sans.edu/podcastdetail/9940, (Thu, May 21st)May 21, 2:10 am
116Hackers bypass SonicWall VPN MFA due to incomplete patchingMay 20, 10:10 pm
117Ukraine identifies infostealer operator tied to 28,000 stolen accountsMay 20, 10:10 pm
118Microsoft Open-Sources RAMPART and Clarity to Secure AI Agents During DevelopmentMay 20, 5:10 pm
119Grafana breach caused by missed token rotation after TanStack attackMay 20, 4:10 pm
120Microsoft Takes Down Malware-Signing Service Behind Ransomware AttacksMay 20, 3:10 pm
121Agent AI is Coming. Are You Ready?May 20, 2:10 pm
122Webworm Deploys EchoCreep and GraphWorm Backdoors Using Discord and MS Graph APIMay 20, 2:10 pm
123Identity Alone Isn't Enough: Why Device Security Has to Share the LoadMay 20, 2:10 pm
124Drupal critical update to fix bug with high exploitation riskMay 20, 1:10 pm
125Typosquatting Is No Longer a User Problem. It's a Supply Chain ProblemMay 20, 11:10 am
126Exploit released for new PinTheft Arch Linux root escalation flawMay 20, 11:10 am
127GitHub Breached — Employee Device Hack Led to Exfiltration of 3,800+ Internal ReposMay 20, 10:10 am
128Microsoft Releases Mitigation for YellowKey BitLocker Bypass CVE-2026-45585 ExploitMay 20, 10:10 am
129GitHub confirms breach of 3,800 repos via malicious VSCode extensionMay 20, 9:10 am
130Microsoft shares mitigation for YellowKey Windows zero-dayMay 20, 8:10 am
131Grafana GitHub Breach Exposes Source Code via TanStack npm AttackMay 20, 6:10 am
132GitHub Investigating TeamPCP Claimed Breach of ~4,000 Internal RepositoriesMay 20, 5:10 am
133GitHub investigates internal repositories breach claimed by TeamPCPMay 20, 5:10 am
134ISC Stormcast For Wednesday, May 20th, 2026 https://isc.sans.edu/podcastdetail/9938, (Wed, May 20th)May 20, 2:10 am
135Max-severity flaw in ChromaDB for AI apps allows server hijackingMay 20, 12:10 am
136Cybercrime service disrupted for abusing Microsoft platform to sign malwareMay 19, 10:10 pm
137Discord rolls out end-to-end encryption on voice, video callsMay 19, 9:10 pm
138Microsoft Self-Service Password Reset abused in Azure data theft attacksMay 19, 8:10 pm
139FBI: Americans lost over $388 million to scams using crypto ATMs in 2025May 19, 8:10 pm
140Trapdoor Android Ad Fraud Scheme Hit 659 Million Daily Bid Requests Using 455 AppsMay 19, 6:10 pm
141Microsoft blames macOS update for undismissible Teams location promptsMay 19, 5:10 pm
142Microsoft plans to improve Windows 11 driver quality in 2026May 19, 5:10 pm
1437-Eleven confirms data breach claimed by the ShinyHunters gangMay 19, 3:10 pm
144New Shai-Hulud malware wave compromises 600 npm packagesMay 19, 3:10 pm
145DirtyDecrypt PoC Released for Linux Kernel CVE-2026-31635 LPE VulnerabilityMay 19, 3:10 pm
146Critical Microsoft Vulnerabilities Doubled: From Exposure to EscalationMay 19, 2:10 pm
147Drupal to Release Urgent Core Security Updates on May 20, Sites Told to PrepareMay 19, 1:10 pm
148The New Phishing Click: How OAuth Consent Bypasses MFAMay 19, 1:10 pm
149Webinar: The hidden bottlenecks in network incident responseMay 19, 1:10 pm
150Microsoft confirms patching issues in restricted Windows networksMay 19, 12:10 pm
151SEPPMail Secure E-Mail Gateway Vulnerabilities Enable RCE and Mail Traffic AccessMay 19, 11:10 am
152Compromised Nx Console 18.95.0 Targeted VS Code Developers with Credential StealerMay 19, 9:10 am
153Popular GitHub Action Tags Redirected to Imposter Commit to Steal CI/CD CredentialsMay 19, 7:10 am
154Mini Shai-Hulud Pushes Malicious AntV npm Packages via Compromised Maintainer AccountMay 19, 6:10 am
155GitHub Actions Supply Chain Attack Redirects Tags to Steal CI/CD CredentialsMay 19, 6:10 am
156ISC Stormcast For Tuesday, May 19th, 2026 https://isc.sans.edu/podcastdetail/9936, (Tue, May 19th)May 19, 2:10 am
157INTERPOL ‘Operation Ramz’ seizes 53 malware, phishing serversMay 18, 11:10 pm
158SHub macOS infostealer variant spoofs Apple security updatesMay 18, 10:10 pm
159TeamPCP Supply Chain Campaign: Activity Through 2026-05-17, (Mon, May 18th)May 18, 9:10 pm
160CISA Admin Leaked AWS GovCloud Keys on GithubMay 18, 9:10 pm
1615 Steps to Managing Shadow AI Tools Without Slowing Down EmployeesMay 18, 7:10 pm
162INTERPOL Operation Ramz Disrupts MENA Cybercrime Networks with 201 ArrestsMay 18, 6:10 pm
163Leaked Shai-Hulud malware fuels new npm infostealer campaignMay 18, 6:10 pm
164⚡ Weekly Recap: Exchange 0-Day, npm Worm, Fake AI Repo, Cisco Exploit and MoreMay 18, 4:10 pm
165How to Reduce Phishing Exposure Before It Turns into Business DisruptionMay 18, 2:10 pm
166Grafana says stolen GitHub token let hackers steal codebaseMay 18, 2:10 pm
167Ivanti, Fortinet, SAP, VMware, n8n Patch RCE, SQL Injection, Privilege Escalation FlawsMay 18, 12:10 pm
168Microsoft testing adjustable taskbar, Start menu in Windows 11May 18, 12:10 pm
169Developer Workstations Are Now Part of the Software Supply ChainMay 18, 12:10 pm
170Four Malicious npm Packages Deliver Infostealers and Phantom Bot DDoS MalwareMay 18, 11:10 am
171MiniPlasma Windows 0-Day Enables SYSTEM Privilege Escalation on Fully Patched SystemsMay 18, 9:10 am
172Pre-Stuxnet Fast16 Malware Tampered with Nuclear Weapons SimulationsMay 18, 9:10 am
173Microsoft confirms Windows 11 security update install issuesMay 18, 9:10 am
174Exploit available for new DirtyDecrypt Linux root escalation flawMay 18, 8:10 am
175Hackers earn $1,298,250 for 47 zero-days at Pwn2Own Berlin 2026May 18, 6:10 am
176New Windows 'MiniPlasma' zero-day exploit gives SYSTEM access, PoC releasedMay 17, 11:10 pm
177NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCEMay 17, 3:10 pm
178Tycoon2FA hijacks Microsoft 365 accounts via device-code phishingMay 17, 3:10 pm
179Grafana GitHub Token Breach Led to Codebase Download and Extortion AttemptMay 17, 8:10 am
180Microsoft rejects critical Azure vulnerability report, no CVE issuedMay 16, 9:10 pm
181Funnel Builder Flaw Under Active Exploitation Enables WooCommerce Checkout SkimmingMay 16, 5:10 pm
182Russian hackers turn Kazuar backdoor into modular P2P botnetMay 16, 3:10 pm
183Funnel Builder WordPress plugin bug exploited to steal credit cardsMay 15, 8:10 pm
184Turla Turns Kazuar Backdoor Into Modular P2P Botnet for Persistent AccessMay 15, 6:10 pm
185Popular node-ipc npm package compromised to steal credentialsMay 15, 6:10 pm
186Microsoft Exchange, Windows 11 hacked on second day of Pwn2OwnMay 15, 6:10 pm
187Four OpenClaw Flaws Enable Data Theft, Privilege Escalation, and PersistenceMay 15, 4:10 pm
188Avada Builder WordPress plugin flaws allow site credential theftMay 15, 4:10 pm
189Microsoft backpedals: Edge to stop loading passwords into memoryMay 15, 3:10 pm
190Inside the REMUS Infostealer: Session Theft, MaaS, and Rapid EvolutionMay 15, 2:10 pm
191Microsoft to automatically roll back faulty Windows driversMay 15, 1:10 pm
192TanStack Supply Chain Attack Hits Two OpenAI Employee Devices, Forces macOS UpdatesMay 15, 12:10 pm
193What 45 Days of Watching Your Own Tools Will Tell You About Your Real Attack SurfaceMay 15, 12:10 pm
194Microsoft warns of Exchange zero-day flaw exploited in attacksMay 15, 10:10 am
195On-Prem Microsoft Exchange Server CVE-2026-42897 Exploited via Crafted EmailMay 15, 7:10 am
196[Guest Diary] New Malware Libraries means New Signatures, (Fri, May 15th)May 15, 7:10 am
197CISA Adds Cisco SD-WAN CVE-2026-20182 to KEV After Admin Access ExploitsMay 15, 6:10 am
198ISC Stormcast For Friday, May 15th, 2026 https://isc.sans.edu/podcastdetail/9934, (Fri, May 15th)May 15, 5:10 am
199TeamPCP hackers advertise Mistral AI code repos for saleMay 14, 11:10 pm
200Hackers exploit auth bypass flaw in Burst Statistics WordPress pluginMay 14, 9:10 pm
201Cisco warns of new critical SD-WAN flaw exploited in zero-day attacksMay 14, 8:10 pm
202Stealer Backdoor Found in 3 Node-IPC Versions Targeting Developer SecretsMay 14, 7:10 pm
203Cisco Catalyst SD-WAN Controller Auth Bypass Actively Exploited to Gain Admin AccessMay 14, 7:10 pm
204Windows 11 and Microsoft Edge hacked at Pwn2Own Berlin 2026May 14, 7:10 pm
205OpenAI confirms security breach in TanStack supply chain attackMay 14, 7:10 pm
206ThreatsDay Bulletin: PAN-OS RCE, Mythos cURL Bug, AI Tokenizer Attacks, and 10+ StoriesMay 14, 6:10 pm
207Cyber-Enabled Cargo Crime: How Cybercrime Tradecraft is Used to Steal FreightMay 14, 4:10 pm
20818-year-old NGINX vulnerability allows DoS, potential RCEMay 14, 4:10 pm
209Ghostwriter Targets Ukrainian Government With Geofenced PDF Phishing, Cobalt StrikeMay 14, 3:10 pm
210KongTuke hackers now use Microsoft Teams for corporate breachesMay 14, 1:10 pm
211How AI Hallucinations Are Creating Real Security RisksMay 14, 12:10 pm
212PraisonAI CVE-2026-44338 Auth Bypass Targeted Within Hours of DisclosureMay 14, 12:10 pm
213Windows Zero-Days Expose BitLocker Bypasses And CTFMON Privilege EscalationMay 14, 10:10 am
214Dell confirms its SupportAssist software causes Windows BSOD crashesMay 14, 10:10 am
215US charges suspected Dream Market admin arrested in GermanyMay 14, 9:10 am
216New Fragnesia Linux Kernel LPE Grants Root Access via Page Cache CorruptionMay 14, 8:10 am
217New Fragnesia Linux flaw lets attackers gain root privilegesMay 14, 8:10 am
21818-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated RCEMay 14, 7:10 am
219Simple bypass of the link preview function in Outlook Junk folder, (Thu, May 14th)May 14, 7:10 am
220ISC Stormcast For Thursday, May 14th, 2026 https://isc.sans.edu/podcastdetail/9932, (Thu, May 14th)May 14, 5:10 am
221West Pharmaceutical says hackers stole data, encrypted systemsMay 13, 11:10 pm
222Iranian hackers targeted major South Korean electronics makerMay 13, 10:10 pm
223New critical Exim mailer flaw allows remote code executionMay 13, 9:10 pm
224Windows BitLocker zero-day gives access to protected drives, PoC releasedMay 13, 5:10 pm
225Microsoft fixes BitLocker recovery issue only for Windows 11 usersMay 13, 4:10 pm
226Webinar tomorrow: Why security alone won't stop modern attacksMay 13, 4:10 pm
227[Webinar] How Modern Attack Paths Cross Code, Pipelines, and CloudMay 13, 3:10 pm
228Microsoft fixes Windows Autopatch bug installing restricted driversMay 13, 3:10 pm
229Azerbaijani Energy Firm Hit by Repeated Microsoft Exchange ExploitationMay 13, 2:10 pm
230Microsoft's MDASH AI System Finds 16 Windows Flaws Fixed in Patch TuesdayMay 13, 2:10 pm
231Microsoft Patches 138 Vulnerabilities, Including DNS and Netlogon RCE FlawsMay 13, 1:10 pm
232Most Remediation Programs Never Confirm the Fix Actually WorkedMay 13, 1:10 pm
233[Webinar] Why Your AppSec Tools Miss the "Lethal Path" (and How to Fix It)May 13, 1:10 pm
23473 Seconds to Breach, 24 Hours to Patch: The Case for Autonomous ValidationMay 13, 1:10 pm
235Foxconn confirms cyberattack claimed by Nitrogen ransomware gangMay 13, 1:10 pm
236Microsoft says some users can't install Office on Windows 365 devicesMay 13, 12:10 pm
237GemStuffer Abuses 150+ RubyGems to Exfiltrate Scraped U.K. Council Portal DataMay 13, 10:10 am
238Android Adds Intrusion Logging for Sophisticated Spyware ForensicsMay 13, 8:10 am
239[GUEST DIARY] Tearing apart website fraud to see how it works., (Wed, May 13th)May 13, 7:10 am
240ISC Stormcast For Wednesday, May 13th, 2026 https://isc.sans.edu/podcastdetail/9930, (Wed, May 13th)May 13, 3:10 am
241Proxying the Unproxyable? Sending EXE traffic to a Proxy, (Wed, May 13th)May 13, 2:10 am
242US govt seeks Instructure testimony on massive Canvas cyberattackMay 12, 11:10 pm
243Patch Tuesday, May 2026 EditionMay 12, 10:10 pm
244UK fines water supplier $1.3M for exposing data of 664k customersMay 12, 9:10 pm
245Signal adds security warnings for social engineering, phishing attacksMay 12, 8:10 pm
246Webinar: Fixing the gaps in network incident responseMay 12, 8:10 pm
247Fortinet warns of critical RCE flaws in FortiSandbox and FortiAuthenticatorMay 12, 7:10 pm
248Microsoft May 2026 Patch Tuesday, (Tue, May 12th)May 12, 7:10 pm
249Microsoft releases Windows 10 KB5087544 extended security updateMay 12, 7:10 pm
250New Exim BDAT Vulnerability Exposes GnuTLS Builds to Potential Code ExecutionMay 12, 6:10 pm
251Microsoft May 2026 Patch Tuesday fixes 120 flaws, no zero-daysMay 12, 6:10 pm
252Windows 11 KB5089549 & KB5087420 cumulative updates releasedMay 12, 6:10 pm
253RubyGems Suspends New Signups After Hundreds of Malicious Packages Are UploadedMay 12, 5:10 pm
254Android 17 to expand banking scam call and privacy protectionsMay 12, 5:10 pm
255Škoda warns of customer data breach after online shop hackMay 12, 5:10 pm
256New TrickMo Variant Uses TON C2 and SOCKS5 to Create Android Network PivotsMay 12, 2:10 pm
257Webinar: What the Riskiest SOC Alerts Go Unanswered - and How Radiant Security Can HelpMay 12, 1:10 pm
258Why Agentic AI Is Security's Next Blind SpotMay 12, 12:10 pm
259Shai Hulud attack ships signed malicious TanStack, Mistral npm packagesMay 12, 12:10 pm
260SAP fixes critical vulnerabilities in Commerce Cloud and S/4HANAMay 12, 11:10 am
261Instructure reaches 'agreement' with ShinyHunters to stop data leakMay 12, 10:10 am
262Mini Shai-Hulud Worm Compromises TanStack, Mistral AI, Guardrails AI & More PackagesMay 12, 9:10 am
263OpenAI Launches Daybreak for AI-Powered Vulnerability Detection and Patch ValidationMay 12, 8:10 am
264Instructure Reaches Ransom Agreement with ShinyHunters to Stop 3.65TB Canvas LeakMay 12, 8:10 am
265iOS 26.5 Brings Default End-to-End Encrypted RCS Messaging Between iPhone and AndroidMay 12, 7:10 am
266ISC Stormcast For Tuesday, May 12th, 2026 https://isc.sans.edu/podcastdetail/9928, (Tue, May 12th)May 12, 4:10 am
267Apple Patches Everything, (Mon, May 11th)May 11, 11:10 pm
268GM agrees to $12.75M California settlement over sale of drivers’ dataMay 11, 11:10 pm
269New GhostLock tool abuses Windows API to block file accessMay 11, 10:10 pm
270Official CheckMarx Jenkins package compromised with infostealerMay 11, 10:10 pm
271TeamPCP Compromises Checkmarx Jenkins AST Plugin Weeks After KICS Supply Chain AttackMay 11, 8:10 pm
272cPanel CVE-2026-41940 Under Active Exploitation to Deploy Filemanager BackdoorMay 11, 6:10 pm
273Hackers Used AI to Develop First Known Zero-Day 2FA Bypass for Mass ExploitationMay 11, 5:10 pm
274Instructure confirms hackers used Canvas flaw to deface portalsMay 11, 4:10 pm
275Why we use CAPTCHAs, (Mon, May 11th)May 11, 3:10 pm
276⚡ Weekly Recap: Linux Rootkit, macOS Crypto Stealer, WebSocket Skimmers and MoreMay 11, 2:10 pm
277Why Changing Passwords Doesn’t End an Active Directory BreachMay 11, 2:10 pm
278Webinar this week: Prevention alone is not enough against modern attacksMay 11, 1:10 pm
279Google: Hackers used AI to develop zero-day exploit for web admin toolMay 11, 1:10 pm
280Your Purple Team Isn't Purple — It's Just Red and Blue in the Same RoomMay 11, 12:10 pm
281Fake OpenAI Privacy Filter Repo Hits #1 on Hugging Face, Draws 244K DownloadsMay 11, 9:10 am
282TrickMo Android banker adopts TON blockchain for covert commsMay 11, 9:10 am
283ISC Stormcast For Monday, May 11th, 2026 https://isc.sans.edu/podcastdetail/9926, (Mon, May 11th)May 11, 3:10 am
284YARA-X 1.16.0 Release, (Sun, May 10th)May 10, 11:10 pm
285Hackers abuse Google ads, Claude.ai chats to push Mac malwareMay 10, 6:10 pm
286Police shut down reboot of Crimenetwork marketplace, arrest adminMay 10, 3:10 pm
287Ollama Out-of-Bounds Read Vulnerability Allows Remote Process Memory LeakMay 10, 1:10 pm
288JDownloader site hacked to replace installers with Python RAT malwareMay 9, 8:10 pm
289Fake OpenAI repository on Hugging Face pushes infostealer malwareMay 9, 3:10 pm
290cPanel, WHM Release Fixes for Three New Vulnerabilities — Patch NowMay 9, 8:10 am
291TCLBANKER Banking Trojan Targets Financial Platforms via WhatsApp and Outlook WormsMay 8, 7:10 pm
292Fake Call History Apps Stole Payments From Users After 7.3 Million Play Store DownloadsMay 8, 5:10 pm
293NVIDIA confirms GeForce NOW data breach affecting Armenian usersMay 8, 5:10 pm
294Trellix source code breach claimed by RansomHouse hackersMay 8, 2:10 pm
295Why More Analysts Won’t Solve Your SOC’s Alert ProblemMay 8, 2:10 pm
296CISA gives feds four days to patch Ivanti flaw exploited as zero-dayMay 8, 1:10 pm
297Quasar Linux RAT Steals Developer Credentials for Software Supply Chain CompromiseMay 8, 12:10 pm
298New Linux PamDOORa Backdoor Uses PAM Modules to Steal SSH CredentialsMay 8, 11:10 am
299One Missed Threat Per Week: What 25M Alerts Reveal About Low-Severity RiskMay 8, 11:10 am
300Zara data breach exposed personal information of 197,000 peopleMay 8, 11:10 am
301Former govt contractor convicted for wiping dozens of federal databasesMay 8, 9:10 am
302Linux Kernel Dirty Frag LPE Exploit Enables Root Access Across Major DistributionsMay 8, 8:10 am
303New Linux 'Dirty Frag' zero-day gives root on all major distrosMay 8, 8:10 am
304Another Universal Linux Local Privilege Escalation (LPE) Vulnerability: Dirty Frag, (Fri, May 8th)May 8, 8:10 am
305Canvas Breach Disrupts Schools & Colleges NationwideMay 8, 3:10 am
306ISC Stormcast For Friday, May 8th, 2026 https://isc.sans.edu/podcastdetail/9924, (Fri, May 8th)May 8, 2:10 am
307Canvas login portals hacked in mass ShinyHunters extortion campaignMay 7, 11:10 pm
308New TCLBanker malware self-spreads over WhatsApp and OutlookMay 7, 10:10 pm
309PCPJack Credential Stealer Exploits 5 CVEs to Spread Worm-Like Across Cloud SystemsMay 7, 7:10 pm
310Ivanti EPMM CVE-2026-6973 RCE Under Active Exploitation Grants Admin-Level AccessMay 7, 7:10 pm
311New PCPJack worm steals credentials, cleans TeamPCP infectionsMay 7, 7:10 pm
312Australia warns of ClickFix attacks pushing Vidar Stealer malwareMay 7, 6:10 pm
313Ivanti warns of new EPMM flaw exploited in zero-day attacksMay 7, 4:10 pm
314One Click, Total Shutdown: The "Patient Zero" Webinar on Killing Stealth BreachesMay 7, 3:10 pm
315PAN-OS RCE Exploit Under Active Use Enabling Root Access and EspionageMay 7, 2:10 pm
316Americans sentenced for running 'laptop farms' for North KoreaMay 7, 2:10 pm
317The Browser Is Breaking Your DLP: How Data Slips Past Modern ControlsMay 7, 2:10 pm
318Crypto gang member gets 6.5 years for role in $230 million heistMay 7, 1:10 pm
319Day Zero Readiness: The Operational Gaps That Break Incident ResponseMay 7, 12:10 pm
320ThreatsDay Bulletin: Edge Plaintext Passwords, ICS 0-Days, Patch-or-Die Alerts and 25+ New StoriesMay 7, 12:10 pm
321Webinar: Why modern attacks require both security and recoveryMay 7, 12:10 pm
322Palo Alto Networks firewall zero-day exploited for nearly a monthMay 7, 11:10 am
323PyPI Packages Deliver ZiChatBot Malware via Zulip APIs on Windows and LinuxMay 7, 10:10 am
324Fake Claude AI website delivers new 'Beagle' Windows malwareMay 7, 10:10 am
325vm2 Node.js Library Vulnerabilities Enable Sandbox Escape and Arbitrary Code ExecutionMay 7, 5:10 am
326An Adaptive Cyber Analytics UI for Web Honeypot Logs [Guest Diary], (Wed, May 6th)May 7, 2:10 am
327ISC Stormcast For Thursday, May 7th, 2026 https://isc.sans.edu/podcastdetail/9922, (Thu, May 7th)May 7, 2:10 am
328Hackers abuse Google ads for GoDaddy ManageWP login phishingMay 6, 10:10 pm
329Mirai-Based xlabs_v1 Botnet Exploits ADB to Hijack IoT Devices for DDoS AttacksMay 6, 9:10 pm
330Critical vm2 sandbox bug lets attackers execute code on hostsMay 6, 7:10 pm
331New Cisco DoS flaw requires manual reboot to revive devicesMay 6, 6:10 pm
332DAEMON Tools devs confirm breach, release malware-free versionMay 6, 5:10 pm
333MuddyWater Uses Microsoft Teams to Steal Credentials in False Flag Ransomware AttackMay 6, 3:10 pm
334Why ransomware attacks succeed even when backups existMay 6, 2:10 pm
335Your AI Agents Are Already Inside the Perimeter. Do You Know What They're Doing?May 6, 1:10 pm
336The Hacker News Launches 'Cybersecurity Stars Awards 2026' — Submissions Now OpenMay 6, 1:10 pm
337Webinar: Why network incidents escalate and how to fix response gapsMay 6, 1:10 pm
338MuddyWater hackers use Chaos ransomware as a decoy in attacksMay 6, 1:10 pm
339Windows Phone Link Exploited by CloudZ RAT to Steal Credentials and OTPsMay 6, 10:10 am
340Google's Android Apps Get Public Verification to Stop Supply Chain AttacksMay 6, 10:10 am
341Palo Alto Networks warns of firewall RCE zero-day exploited in attacksMay 6, 10:10 am
342Palo Alto PAN-OS Flaw Under Active Exploitation Enables Remote Code ExecutionMay 6, 8:10 am
343ISC Stormcast For Wednesday, May 6th, 2026 https://isc.sans.edu/podcastdetail/9920, (Wed, May 6th)May 6, 2:10 am
344Instructure hacker claims data theft from 8,800 schools, universitiesMay 5, 10:10 pm
345New stealthy Quasar Linux malware targets software developersMay 5, 10:10 pm
346DAEMON Tools trojanized in supply-chain attack to deploy backdoorMay 5, 8:10 pm
347The EOL Blind Spot in Your CVE Feed: What SCA Tools MissMay 5, 7:10 pm
348Student hacked Taiwan high-speed rail to trigger emergency brakesMay 5, 6:10 pm
349DAEMON Tools Supply Chain Attack Compromises Official Installers with MalwareMay 5, 5:10 pm
350Critical Apache HTTP/2 Flaw (CVE-2026-23918) Enables DoS and Potential RCEMay 5, 5:10 pm
351China-Linked UAT-8302 Targets Governments Using Shared APT Malware Across RegionsMay 5, 4:10 pm
352FTC to ban data broker Kochava from selling Americans’ location dataMay 5, 3:10 pm
353The EOL Blind Spot in Your CVE Feed: What SCA Tools Don't Check.May 5, 2:10 pm
354MetInfo CMS CVE-2026-29014 Exploited for Remote Code Execution AttacksMay 5, 1:10 pm
355The Back Door Attackers Know About — and Most Security Teams Still Haven’t ClosedMay 5, 1:10 pm
356Vimeo data breach exposes personal information of 119,000 peopleMay 5, 1:10 pm
357Google now offers up to $1.5 million for some Android exploitsMay 5, 12:10 pm
358Cleartext Passwords in MS Edge? In 2026?, (Mon, May 4th)May 5, 12:10 pm
359SSL.com rotates their root certificate today, (Tue, May 5th)May 5, 12:10 pm
360Karakurt extortion gang ‘cold case’ negotiator gets 8.5 years in prisonMay 5, 11:10 am
361We Scanned 1 Million Exposed AI Services. Here's How Bad the Security Actually IsMay 5, 11:10 am
362ScarCruft Hacks Gaming Platform to Deploy BirdCall Malware on Android and WindowsMay 5, 10:10 am
363CloudZ malware abuses Microsoft Phone Link to steal SMS and OTPsMay 5, 10:10 am
364ScarCruft hackers push BirdCall Android malware via game platformMay 5, 9:10 am
365Microsoft Details Phishing Campaign Targeting 35,000 Users Across 26 CountriesMay 5, 8:10 am
366Weaver E-cology RCE Flaw CVE-2026-22679 Actively Exploited via Debug APIMay 5, 8:10 am
367ISC Stormcast For Tuesday, May 5th, 2026 https://isc.sans.edu/podcastdetail/9918, (Tue, May 5th)May 5, 2:10 am
368Weaver E-cology critical bug exploited in attacks since MarchMay 4, 11:10 pm
369Amazon SES increasingly abused in phishing to evade detectionMay 4, 8:10 pm
370Phishing Campaign Hits 80+ Orgs Using SimpleHelp and ScreenConnect RMM ToolsMay 4, 7:10 pm
371Progress Patches Critical MOVEit Automation Bug Enabling Authentication BypassMay 4, 6:10 pm
372TeamPCP Weekly Analysis: 2026-W18 (2026-04-27 through 2026-05-03), (Mon, May 4th)May 4, 6:10 pm
373Backdoored PyTorch Lightning package drops credential stealerMay 4, 6:10 pm
374Trellix discloses data breach after source code repository hackMay 4, 5:10 pm
375⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & MoreMay 4, 4:10 pm
376DShield Honeypot Update, (Mon, May 4th)May 4, 3:10 pm
377They don’t hack, they borrow: How fraudsters target credit unionsMay 4, 2:10 pm
378Webinar: Why MSPs must rethink security and backup strategiesMay 4, 1:10 pm
379Progress warns of critical MOVEit Automation auth bypass flawMay 4, 1:10 pm
380CISA says ‘Copy Fail’ flaw now exploited to root Linux systemsMay 4, 12:10 pm
381Silver Fox Deploys ABCDoor Malware via Tax-Themed Phishing in India and RussiaMay 4, 12:10 pm
3822026: The Year of AI-Assisted AttacksMay 4, 12:10 pm
383Critical cPanel Vulnerability Weaponized to Target Government and MSP NetworksMay 4, 11:10 am
384Microsoft confirms April Windows updates cause backup failuresMay 4, 11:10 am
385Global Crackdown Arrests 276, Shuts 9 Crypto Scam Centers, Seizes $701MMay 4, 7:10 am
386ISC Stormcast For Monday, May 4th, 2026 https://isc.sans.edu/podcastdetail/9916, (Mon, May 4th)May 4, 2:10 am
387Instructure confirms data breach, ShinyHunters claims attackMay 3, 11:10 pm
388Microsoft Defender wrongly flags DigiCert certs as Trojan:Win32/Cerdigent.A!dhaMay 3, 7:10 pm
389Wireshark 4.6.5 Released, (Sun, May 3rd)May 3, 5:10 pm
390Telegram Mini Apps abused for crypto scams, Android malware deliveryMay 3, 3:10 pm
391CISA Adds Actively Exploited Linux Root Access Bug CVE-2026-31431 to KEVMay 3, 7:10 am
392Critrical cPanel flaw mass-exploited in "Sorry" ransomware attacksMay 2, 10:10 pm
393ConsentFix v3 attacks target Azure with automated OAuth abuseMay 2, 3:10 pm
394Trellix Confirms Source Code Breach With Unauthorized Repository AccessMay 2, 7:10 am
395Microsoft tests modern Windows Run, says it's faster than legacy dialogMay 2, 1:10 am
396Edu tech firm Instructure discloses cyber incident, probes impactMay 2, 12:10 am
39730,000 Facebook Accounts Hacked via Google AppSheet Phishing CampaignMay 1, 8:10 pm
398Malicious Ad for Homebrew Leads to MacSync Stealer, (Fri, May 1st)May 1, 7:10 pm
39915-year-old detained over French govt agency data breachMay 1, 6:10 pm
400Story retractedMay 1, 5:10 pm
401China-Linked Hackers Target Asian Governments, NATO State, Journalists, and ActivistsMay 1, 3:10 pm
402Criminal IP and Securonix ThreatQ Collaborate to Enhance Threat Intelligence OperationsMay 1, 3:10 pm
403Cybercrime Groups Using Vishing and SSO Abuse in Rapid SaaS Extortion AttacksMay 1, 3:10 pm
404Microsoft fixes Remote Desktop warnings displaying incorrectlyMay 1, 1:10 pm
405Two Cybersecurity Professionals Get 4-Year Sentences in BlackCat Ransomware AttacksMay 1, 12:10 pm
406Top Five Sales Challenges Costing MSPs Cybersecurity RevenueMay 1, 12:10 pm
407Microsoft now lets admins choose pre-installed Store apps to uninstallMay 1, 12:10 pm
408Poisoned Ruby Gems and Go Modules Exploit CI Pipelines for Credential TheftMay 1, 10:10 am
409Windows 11 KB5083631 update released with 34 changes and fixesMay 1, 10:10 am
410US ransomware negotiators get 4 years in prison over BlackCat attacksMay 1, 8:10 am
411ISC Stormcast For Friday, May 1st, 2026 https://isc.sans.edu/podcastdetail/9914, (Fri, May 1st)May 1, 2:10 am
412PyTorch Lightning and Intercom-client Hit in Supply Chain Attacks to Steal CredentialsApr 30, 7:10 pm
413New Bluekit phishing service includes an AI assistant, 40 templatesApr 30, 7:10 pm
414Romanian leader of online swatting ring gets 4 years in prisonApr 30, 6:10 pm
415PyTorch Lightning Compromised in PyPI Supply Chain Attack to Steal CredentialsApr 30, 5:10 pm
416FBI links cybercriminals to sharp surge in cargo theft attacksApr 30, 5:10 pm
417April KB5083769 Windows 11 update causes backup software failuresApr 30, 4:10 pm
418New Linux ‘Copy Fail’ flaw gives hackers root on major distrosApr 30, 2:10 pm
419ThreatsDay Bulletin: SMS Blaster Busts, OpenEMR Flaws, 600K Roblox Hacks and 25 More StoriesApr 30, 2:10 pm
420What Happens in the First 24 Hours After a New Asset Goes LiveApr 30, 2:10 pm
421Anti-DDoS Firm Heaped Attacks on Brazilian ISPsApr 30, 2:10 pm
422EtherRAT Distribution Spoofing Administrative Tools via GitHub FacadesApr 30, 1:10 pm
423New Python Backdoor Uses Tunneling Service to Steal Browser and Cloud CredentialsApr 30, 1:10 pm
424Police dismantles 9 crypto scam centers, arrests 276 suspectsApr 30, 12:10 pm
425Critical cPanel and WHM bug exploited as a zero-day, PoC now availableApr 30, 12:10 pm
426New Linux 'Copy Fail' Vulnerability Enables Root Access on Major DistributionsApr 30, 10:10 am
427Google Fixes CVSS 10 Gemini CLI CI RCE and Cursor Flaws Enable Code ExecutionApr 30, 7:10 am
428ISC Stormcast For Thursday, April 30th, 2026 https://isc.sans.edu/podcastdetail/9912, (Thu, Apr 30th)Apr 30, 2:10 am
429Danger of Libredtail [Guest Diary], (Wed, Apr 29th)Apr 30, 12:10 am
430Popular WordPress redirect plugin hid dormant backdoor for yearsApr 29, 11:10 pm
431Official SAP npm packages compromised to steal credentialsApr 29, 11:10 pm
432Hackers exploit RCE flaws in Qinglong task scheduler for cryptominingApr 29, 9:10 pm
433Hackers arrested for hijacking and selling 610,000 Roblox accountsApr 29, 7:10 pm
434SAP-Related npm Packages Compromised in Credential-Stealing Supply Chain AttackApr 29, 6:10 pm
435SAP npm Packages Compromised by “Mini Shai-Hulud” Credential-Stealing MalwareApr 29, 5:10 pm
436New Wave of DPRK Attacks Uses AI-Inserted npm Malware, Fake Firms, and RATsApr 29, 4:10 pm
437cPanel, WHM emergency update fixes critical auth bypass bugApr 29, 4:10 pm
438European police dismantles €50 million crypto investment fraud ringApr 29, 3:10 pm
439Webinar: How to Automate Exposure Validation to Match the Speed of AI AttacksApr 29, 2:10 pm
440Learning from the Vercel breach: Shadow AI & OAuth sprawlApr 29, 2:10 pm
441Today's Odd Web Requests, (Wed, Apr 29th)Apr 29, 2:10 pm
442GitHub fixes RCE flaw that gave access to millions of private reposApr 29, 1:10 pm
443What to Look for in an Exposure Management Platform (And What Most of Them Get Wrong)Apr 29, 12:10 pm
444Critical cPanel Authentication Vulnerability Identified — Update Your Server ImmediatelyApr 29, 11:10 am
445CISA orders feds to patch Windows flaw exploited as zero-dayApr 29, 11:10 am
446Microsoft says backend change broke Teams Free chat and callsApr 29, 9:10 am
447CISA Adds Actively Exploited ConnectWise and Windows Flaws to KEVApr 29, 9:10 am
448LiteLLM CVE-2026-42208 SQL Injection Exploited within 36 Hours of DisclosureApr 29, 6:10 am
449ISC Stormcast For Wednesday, April 29th, 2026 https://isc.sans.edu/podcastdetail/9910, (Wed, Apr 29th)Apr 29, 2:10 am
450Broken VECT 2.0 ransomware acts as a data wiper for large filesApr 28, 10:10 pm
451Hackers are exploiting a critical LiteLLM pre-auth SQLi flawApr 28, 9:10 pm
452Researchers Discover Critical GitHub CVE-2026-3854 RCE Flaw Exploitable via Single Git PushApr 28, 7:10 pm
453Video service Vimeo confirms Anodot breach exposed user dataApr 28, 7:10 pm
454Brazilian LofyGang Resurfaces After Three Years With Minecraft LofyStealer CampaignApr 28, 6:10 pm
455US reportedly charges Scattered Spider hacker arrested in FinlandApr 28, 4:10 pm
456VECT 2.0 Ransomware Irreversibly Destroys Files Over 131KB on Windows, Linux, ESXiApr 28, 3:10 pm
457Checkmarx confirms LAPSUS$ hackers leaked its stolen GitHub dataApr 28, 3:10 pm
458Microsoft to deprecate legacy TLS in Exchange Online starting JulyApr 28, 2:10 pm
459HTTP Requests with X-Vercel-Set-Bypass-Cookie Header, (Tue, Apr 28th)Apr 28, 2:10 pm
460Why Secure Data Movement Is the Zero Trust Bottleneck Nobody Talks AboutApr 28, 1:10 pm
461Inside an OPSEC Playbook: How Threat Actors Evade DetectionApr 28, 1:10 pm
462Critical Unpatched Flaw Leaves Hugging Face LeRobot Open to Unauthenticated RCEApr 28, 12:10 pm
463After Mythos: New Playbooks For a Zero-Window EraApr 28, 11:10 am
464Microsoft: New Remote Desktop warnings may display incorrectlyApr 28, 10:10 am
465Chinese Silk Typhoon Hacker Extradited to U.S. Over COVID Research CyberattacksApr 28, 9:10 am
466Microsoft asks iPhone users to reauthenticate after Outlook outageApr 28, 9:10 am
467Microsoft Confirms Active Exploitation of Windows Shell CVE-2026-32202Apr 28, 7:10 am
468Microsoft Patches Entra ID Role Flaw That Enabled Service Principal TakeoverApr 28, 7:10 am
469ISC Stormcast For Tuesday, April 28th, 2026 https://isc.sans.edu/podcastdetail/9908, (Tue, Apr 28th)Apr 28, 2:10 am
470Robinhood account creation flaw abused to send phishing emailsApr 28, 12:10 am
471GlassWorm malware attacks return via 73 OpenVSX "sleeper" extensionsApr 27, 10:10 pm
472Alleged Silk Typhoon hacker extradited to US for cyberespionageApr 27, 8:10 pm
473Canada arrests three for operating “SMS blaster” device in TorontoApr 27, 8:10 pm
474FTC: Americans lost over $2.1 billion to social media scams in 2025Apr 27, 5:10 pm
475⚡ Weekly Recap: Fast16 Malware, XChat Launch, Federal Backdoor, AI Employee Tracking & MoreApr 27, 4:10 pm
476Checkmarx Confirms GitHub Repository Data Posted on Dark Web After March 23 AttackApr 27, 4:10 pm
477PyPI package with 1.1M monthly downloads hacked to push infostealerApr 27, 4:10 pm
478Webinar: Spotting cyberattacks before they beginApr 27, 3:10 pm
479Home security giant ADT data breach affects 5.5 million peopleApr 27, 3:10 pm
480Medtronic confirms breach after hackers claim 9 million records theftApr 27, 2:10 pm
481TeamPCP Supply Chain Campaign: Update 008 - 26-Day Pause Ends with Three Concurrent Compromises (Checkmarx KICS, Bitwarden CLI Cascade, xinference PyPI), CanisterSprawl npm Worm Identified, and Tier 1 Coverage Returns, (Mon, Apr 27th)Apr 27, 2:10 pm
482Deepfake Voice Attacks are Outpacing Defenses: What Security Leaders Should KnowApr 27, 1:10 pm
483Money launderer linked to $230M crypto heist gets 70 months in prisonApr 27, 1:10 pm
484Researchers Uncover 73 Fake VS Code Extensions Delivering GlassWorm v2 MalwareApr 27, 12:10 pm
485PhantomCore Exploits TrueConf Vulnerabilities to Breach Russian NetworksApr 27, 12:10 pm
486Mythos Changed the Math on Vulnerability Discovery. Most Teams Aren't Ready for the Remediation SideApr 27, 12:10 pm
487Microsoft says Outlook.com outage is causing sign‑in failuresApr 27, 12:10 pm
488Fake CAPTCHA IRSF Scam and 120 Keitaro Campaigns Drive Global SMS, Crypto FraudApr 27, 9:10 am
489American utility firm Itron discloses breach of internal IT networkApr 26, 3:10 pm
490Microsoft rolls out revamped Windows Insider ProgramApr 25, 5:10 pm
491Threat actor uses Microsoft Teams to deploy new “Snow” malwareApr 25, 4:10 pm
492Researchers Uncover Pre-Stuxnet ‘fast16’ Malware Targeting Engineering SoftwareApr 25, 10:10 am
493CISA Adds 4 Exploited Flaws to KEV, Sets May 2026 Federal DeadlineApr 25, 6:10 am
494ADT confirms data breach after ShinyHunters leak threatApr 24, 11:10 pm
495Firestarter malware survives Cisco firewall updates, security patchesApr 24, 9:10 pm
496Windows Update gets new controls to reduce forced restartsApr 24, 8:10 pm
497Microsoft to roll out Entra passkeys on Windows in late AprilApr 24, 7:10 pm
498New BlackFile extortion group linked to surge of vishing attacksApr 24, 7:10 pm
499FIRESTARTER Backdoor Hit Federal Cisco Firepower Device, Survives Security PatchesApr 24, 6:10 pm
500New ‘Pack2TheRoot’ flaw gives hackers root Linux accessApr 24, 6:10 pm
AI Testing

Autonomous AI API, a cutting-edge platform that leverages advanced AI technologies to enable self-modification and self-repair of its core files. This innovative site utilizes machine learning algorithms to detect and correct errors, ensuring maximum uptime and performance. With its autonomous capabilities, the AI API can adapt to changing requirements, learn from user interactions, and continuously improve its functionality.