| 1 | Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Campaign | Apr 23, 3:10 pm |
|---|
| 2 | Regular Password Resets Aren’t as Safe as You Think | Apr 23, 3:10 pm |
|---|
| 3 | Cosmetics giant Rituals discloses data breach affecting customers | Apr 23, 3:10 pm |
|---|
| 4 | Microsoft: Some Teams users can’t join meetings after Edge update | Apr 23, 2:10 pm |
|---|
| 5 | Project Glasswing Proved AI Can Find the Bugs. Who's Going to Fix Them? | Apr 23, 1:10 pm |
|---|
| 6 | [Webinar] Mythos Reality Check: Beating Automated Exploitation at AI Speed | Apr 23, 1:10 pm |
|---|
| 7 | UK warns of Chinese hackers using proxy networks to evade detection | Apr 23, 1:10 pm |
|---|
| 8 | New GopherWhisper APT group abuses Outlook, Slack, Discord for comms | Apr 23, 12:10 pm |
|---|
| 9 | Apple Fixes iOS Flaw That Let FBI Recover Deleted Signal Messages | Apr 23, 11:10 am |
|---|
| 10 | Apple Patches Exploited Notification Flaw, (Thu, Apr 23rd) | Apr 23, 11:10 am |
|---|
| 11 | CISA orders feds to patch BlueHammer flaw exploited as zero-day | Apr 23, 11:10 am |
|---|
| 12 | Vercel Finds More Compromised Accounts in Context.ai-Linked Breach | Apr 23, 10:10 am |
|---|
| 13 | China-Linked GopherWhisper Infects 12 Mongolian Government Systems with Go Backdoors | Apr 23, 10:10 am |
|---|
| 14 | Apple Patches iOS Flaw That Stored Deleted Signal Notifications in FBI Forensic Case | Apr 23, 9:10 am |
|---|
| 15 | Apple fixes bug that let the FBI recover deleted Signal messages | Apr 23, 6:10 am |
|---|
| 16 | ISC Stormcast For Thursday, April 23rd, 2026 https://isc.sans.edu/podcastdetail/9904, (Thu, Apr 23rd) | Apr 23, 2:10 am |
|---|
| 17 | Apple fixes iOS bug that retained deleted notification data | Apr 22, 9:10 pm |
|---|
| 18 | New Mirai campaign exploits RCE flaw in EoL D-Link routers | Apr 22, 8:10 pm |
|---|
| 19 | Malicious KICS Docker Images and VS Code Extensions Hit Checkmarx Supply Chain | Apr 22, 7:10 pm |
|---|
| 20 | Kyber ransomware gang toys with post-quantum encryption on Windows | Apr 22, 7:10 pm |
|---|
| 21 | Self-Propagating Supply Chain Worm Hijacks npm Packages to Steal Developer Tokens | Apr 22, 6:10 pm |
|---|
| 22 | Harvester Deploys Linux GoGra Backdoor in South Asia Using Microsoft Graph API | Apr 22, 4:10 pm |
|---|
| 23 | Spain dismantles major $4.7M manga piracy platform, arrests four | Apr 22, 3:10 pm |
|---|
| 24 | Inside Caller-as-a-Service Fraud: The Scam Economy Has a Hiring Process | Apr 22, 2:10 pm |
|---|
| 25 | Microsoft Teams to get efficiency mode on PCs with limited resources | Apr 22, 1:10 pm |
|---|
| 26 | New npm supply-chain attack self-spreads to steal auth tokens | Apr 22, 1:10 pm |
|---|
| 27 | Toxic Combinations: When Cross-App Permissions Stack into Risk | Apr 22, 12:10 pm |
|---|
| 28 | Lotus Wiper Malware Targets Venezuelan Energy Systems in Destructive Attack | Apr 22, 12:10 pm |
|---|
| 29 | Microsoft traces Universal Print issues to Graph API code change | Apr 22, 11:10 am |
|---|
| 30 | Microsoft Patches Critical ASP.NET Core CVE-2026-40372 Privilege Escalation Bug | Apr 22, 10:10 am |
|---|
| 31 | New GoGra malware for Linux uses Microsoft Graph API for comms | Apr 22, 10:10 am |
|---|
| 32 | Cohere AI Terrarium Sandbox Flaw Enables Root Code Execution, Container Escape | Apr 22, 9:10 am |
|---|
| 33 | Mustang Panda’s New LOTUSLITE Variant Targets India Banks, South Korea Policy Circles | Apr 22, 9:10 am |
|---|
| 34 | Microsoft releases emergency patches for critical ASP.NET flaw | Apr 22, 9:10 am |
|---|
| 35 | Over 1,300 Microsoft SharePoint servers vulnerable to spoofing attacks | Apr 22, 7:10 am |
|---|
| 36 | ISC Stormcast For Wednesday, April 22nd, 2026 https://isc.sans.edu/podcastdetail/9902, (Wed, Apr 22nd) | Apr 22, 2:10 am |
|---|
| 37 | [Guest Diary] Beyond Cryptojacking: Telegram tdata as a Credential Harvesting Vector, Lessons from a Honeypot Incident, (Wed, Apr 22nd) | Apr 22, 12:10 am |
|---|
| 38 | French govt agency confirms breach as hacker offers to sell data | Apr 21, 10:10 pm |
|---|
| 39 | SystemBC C2 Server Reveals 1,570+ Victims in The Gentlemen Ransomware Operation | Apr 21, 8:10 pm |
|---|
| 40 | New Lotus data wiper used against Venezuelan energy, utility firms | Apr 21, 7:10 pm |
|---|
| 41 | 22 BRIDGE:BREAK Flaws Expose Thousands of Lantronix and Silex Serial-to-IP Converters | Apr 21, 5:10 pm |
|---|
| 42 | 22 BRIDGE:BREAK Flaws Expose 20,000 Lantronix and Silex Serial-to-IP Converters | Apr 21, 4:10 pm |
|---|
| 43 | Ransomware Negotiator Pleads Guilty to Aiding BlackCat Attacks in 2023 | Apr 21, 3:10 pm |
|---|
| 44 | ‘Scattered Spider’ Member ‘Tylerb’ Pleads Guilty | Apr 21, 3:10 pm |
|---|
| 45 | 5 Places where Mature SOCs Keep MTTR Fast and Others Waste Time | Apr 21, 2:10 pm |
|---|
| 46 | UK probes Telegram, teen chat sites over CSAM sharing concerns | Apr 21, 2:10 pm |
|---|
| 47 | Stopping Fraud at Each Stage of the Customer Journey Without Adding Friction | Apr 21, 2:10 pm |
|---|
| 48 | CISA flags new SD-WAN flaw as actively exploited in attacks | Apr 21, 1:10 pm |
|---|
| 49 | Google Patches Antigravity IDE Flaw Enabling Prompt Injection Code Execution | Apr 21, 12:10 pm |
|---|
| 50 | NGate Campaign Targets Brazil, Trojanizes HandyPay to Steal NFC Data and PINs | Apr 21, 12:10 pm |
|---|
| 51 | Actively exploited Apache ActiveMQ flaw impacts 6,400 servers | Apr 21, 12:10 pm |
|---|
| 52 | No Exploit Needed: How Attackers Walk Through the Front Door via Identity-Based Attacks | Apr 21, 12:10 pm |
|---|
| 53 | Former ransomware negotiator pleads guilty to BlackCat attacks | Apr 21, 11:10 am |
|---|
| 54 | NGate Android malware uses HandyPay NFC app to steal card data | Apr 21, 9:10 am |
|---|
| 55 | A .WAV With A Payload, (Tue, Apr 21st) | Apr 21, 8:10 am |
|---|
| 56 | CISA Adds 8 Exploited Flaws to KEV, Sets April-May 2026 Federal Deadlines | Apr 21, 7:10 am |
|---|
| 57 | ISC Stormcast For Tuesday, April 21st, 2026 https://isc.sans.edu/podcastdetail/9900, (Tue, Apr 21st) | Apr 21, 2:10 am |
|---|
| 58 | KelpDAO suffers $290 million heist tied to Lazarus hackers | Apr 20, 11:10 pm |
|---|
| 59 | China's Apple App Store infiltrated by crypto-stealing wallet apps | Apr 20, 10:10 pm |
|---|
| 60 | The Gentlemen ransomware now uses SystemBC for bot-powered attacks | Apr 20, 8:10 pm |
|---|
| 61 | SGLang CVE-2026-5760 (CVSS 9.8) Enables RCE via Malicious GGUF Model Files | Apr 20, 7:10 pm |
|---|
| 62 | Seiko USA website defaced as hacker claims customer data theft | Apr 20, 7:10 pm |
|---|
| 63 | Microsoft: Teams increasingly abused in helpdesk impersonation attacks | Apr 20, 4:10 pm |
|---|
| 64 | ⚡ Weekly Recap: Vercel Hack, Push Fraud, QEMU Abused, New Android RATs Emerge & More | Apr 20, 3:10 pm |
|---|
| 65 | British Scattered Spider hacker pleads guilty to crypto theft charges | Apr 20, 2:10 pm |
|---|
| 66 | The backup myth that is putting businesses at risk | Apr 20, 2:10 pm |
|---|
| 67 | Why Most AI Deployments Stall After the Demo | Apr 20, 1:10 pm |
|---|
| 68 | Microsoft tests Windows Explorer speed, performance improvements | Apr 20, 1:10 pm |
|---|
| 69 | Anthropic MCP Design Vulnerability Enables RCE, Threatening AI Supply Chain | Apr 20, 11:10 am |
|---|
| 70 | Microsoft pulls service update causing Teams launch failures | Apr 20, 10:10 am |
|---|
| 71 | Researchers Detect ZionSiphon Malware Targeting Israeli Water, Desalination OT Systems | Apr 20, 9:10 am |
|---|
| 72 | Microsoft releases emergency updates to fix Windows Server issues | Apr 20, 9:10 am |
|---|
| 73 | Handling the CVE Flood With EPSS, (Mon, Apr 20th) | Apr 20, 7:10 am |
|---|
| 74 | Vercel Breach Tied to Context AI Hack Exposes Limited Customer Credentials | Apr 20, 5:10 am |
|---|
| 75 | ISC Stormcast For Monday, April 20th, 2026 https://isc.sans.edu/podcastdetail/9898, (Mon, Apr 20th) | Apr 20, 2:10 am |
|---|
| 76 | Vercel confirms breach as hackers claim to be selling stolen data | Apr 19, 6:10 pm |
|---|
| 77 | Apple account change alerts abused to send phishing emails | Apr 19, 4:10 pm |
|---|
| 78 | NIST to stop rating non-priority flaws due to volume increase | Apr 19, 3:10 pm |
|---|
| 79 | Critical flaw in Protobuf library enables JavaScript code execution | Apr 18, 4:10 pm |
|---|
| 80 | Microsoft Teams right-click paste broken by Edge update bug | Apr 18, 3:10 pm |
|---|
| 81 | NAKIVO v11.2: Ransomware Defense, Faster Replication, vSphere 9, and Proxmox VE 9.0 Support | Apr 18, 2:10 pm |
|---|
| 82 | $13.74M Hack Shuts Down Sanctioned Grinex Exchange After Intelligence Claims | Apr 18, 9:10 am |
|---|
| 83 | [Webinar] Eliminate Ghost Identities Before They Expose Your Enterprise Data | Apr 18, 9:10 am |
|---|
| 84 | Mirai Variant Nexcorium Exploits CVE-2024-3721 to Hijack TBK DVRs for DDoS Botnet | Apr 18, 7:10 am |
|---|
| 85 | Payouts King ransomware uses QEMU VMs to bypass endpoint security | Apr 17, 8:10 pm |
|---|
| 86 | Inside an Underground Guide: How Threat Actors Vet Stolen Credit Card Shops | Apr 17, 3:10 pm |
|---|
| 87 | Grinex exchange blames "Western intelligence" for $13.7M crypto hack | Apr 17, 3:10 pm |
|---|
| 88 | Three Microsoft Defender Zero-Days Actively Exploited; Two Still Unpatched | Apr 17, 2:10 pm |
|---|
| 89 | Webinar: From phishing to fallout — Why MSPs must rethink both security and recovery | Apr 17, 1:10 pm |
|---|
| 90 | Google Blocks 8.3B Policy-Violating Ads in 2025, Launches Android 17 Privacy Overhaul | Apr 17, 12:10 pm |
|---|
| 91 | CISA flags Apache ActiveMQ flaw as actively exploited in attacks | Apr 17, 10:10 am |
|---|
| 92 | Man gets 30 months for selling thousands of hacked DraftKings accounts | Apr 17, 8:10 am |
|---|
| 93 | NIST Limits CVE Enrichment After 263% Surge in Vulnerability Submissions | Apr 17, 8:10 am |
|---|
| 94 | Microsoft: Some Windows servers enter reboot loops after April patches | Apr 17, 8:10 am |
|---|
| 95 | Operation PowerOFF Seizes 53 DDoS Domains, Exposes 3 Million Criminal Accounts | Apr 17, 7:10 am |
|---|
| 96 | Recently leaked Windows zero-days now exploited in attacks | Apr 17, 7:10 am |
|---|
| 97 | Apache ActiveMQ CVE-2026-34197 Added to CISA KEV Amid Active Exploitation | Apr 17, 4:10 am |
|---|
| 98 | ISC Stormcast For Friday, April 17th, 2026 https://isc.sans.edu/podcastdetail/9896, (Fri, Apr 17th) | Apr 17, 2:10 am |
|---|
| 99 | Lumma Stealer infection with Sectop RAT (ArechClient2), (Fri, Apr 17th) | Apr 17, 1:10 am |
|---|
| 100 | Operation PowerOFF identifies 75k DDoS users, takes down 53 domains | Apr 16, 11:10 pm |
|---|
| 101 | ZionSiphon malware designed to sabotage water treatment systems | Apr 16, 10:10 pm |
|---|
| 102 | New Microsoft Defender “RedSun” zero-day PoC grants SYSTEM privileges | Apr 16, 9:10 pm |
|---|
| 103 | Newly Discovered PowMix Botnet Hits Czech Workers Using Randomized C2 Traffic | Apr 16, 7:10 pm |
|---|
| 104 | Hackers exploit Marimo flaw to deploy NKAbuse malware from Hugging Face | Apr 16, 5:10 pm |
|---|
| 105 | Google expands Gemini AI use to fight malicious ads on its platform | Apr 16, 4:10 pm |
|---|
| 106 | ThreatsDay Bulletin: Defender 0-Day, SonicWall Brute-Force, 17-Year-Old Excel RCE and 15 More Stories | Apr 16, 2:10 pm |
|---|
| 107 | Most "AI SOCs" Are Just Faster Triage. That's Not Enough. | Apr 16, 2:10 pm |
|---|
| 108 | New ATHR vishing platform uses AI voice agents for automated attacks | Apr 16, 2:10 pm |
|---|
| 109 | [Webinar] Find and Eliminate Orphaned Non-Human Identities in Your Environment | Apr 16, 1:10 pm |
|---|
| 110 | Hidden Passenger? How Taboola Routes Logged-In Banking Sessions to Temu | Apr 16, 12:10 pm |
|---|
| 111 | Obsidian Plugin Abuse Delivers PHANTOMPULSE RAT in Targeted Finance, Crypto Attacks | Apr 16, 12:10 pm |
|---|
| 112 | Cisco Patches Four Critical Identity Services, Webex Flaws Enabling Code Execution | Apr 16, 12:10 pm |
|---|
| 113 | Cisco says critical Webex Services flaw requires customer action | Apr 16, 12:10 pm |
|---|
| 114 | Data breach at edtech giant McGraw Hill affects 13.5 million accounts | Apr 16, 11:10 am |
|---|
| 115 | US nationals behind DPRK IT worker 'laptop farm' sent to prison | Apr 16, 9:10 am |
|---|
| 116 | Microsoft: April Windows Server 2025 update may fail to install | Apr 16, 8:10 am |
|---|
| 117 | UAC-0247 Targets Ukrainian Clinics and Government in Data-Theft Malware Campaign | Apr 16, 7:10 am |
|---|
| 118 | ISC Stormcast For Thursday, April 16th, 2026 https://isc.sans.edu/podcastdetail/9894, (Thu, Apr 16th) | Apr 16, 2:10 am |
|---|
| 119 | [Guest Diary] Compromised DVRs and Finding Them in the Wild, (Thu, Apr 16th) | Apr 16, 12:10 am |
|---|
| 120 | Critical Nginx UI auth bypass flaw now actively exploited in the wild | Apr 15, 11:10 pm |
|---|
| 121 | New AgingFly malware used in attacks on Ukraine govt, hospitals | Apr 15, 10:10 pm |
|---|
| 122 | WordPress plugin suite hacked to push malware to thousands of sites | Apr 15, 9:10 pm |
|---|
| 123 | n8n Webhooks Abused Since October 2025 to Deliver Malware via Phishing Emails | Apr 15, 6:10 pm |
|---|
| 124 | Signed software abused to deploy antivirus-killing scripts | Apr 15, 6:10 pm |
|---|
| 125 | Microsoft pays $2.3M for cloud and AI flaws at Zero Day Quest | Apr 15, 5:10 pm |
|---|
| 126 | CISA flags Windows Task Host vulnerability as exploited in attacks | Apr 15, 3:10 pm |
|---|
| 127 | April Patch Tuesday Fixes Critical Flaws Across SAP, Adobe, Microsoft, Fortinet, and More | Apr 15, 2:10 pm |
|---|
| 128 | Actively Exploited nginx-ui Flaw (CVE-2026-33032) Enables Full Nginx Server Takeover | Apr 15, 2:10 pm |
|---|
| 129 | Rolling Networks: Securing the Transportation Sector | Apr 15, 2:10 pm |
|---|
| 130 | Deterministic + Agentic AI: The Architecture Exposure Validation Requires | Apr 15, 1:10 pm |
|---|
| 131 | Microsoft: April updates trigger BitLocker key prompts on some servers | Apr 15, 12:10 pm |
|---|
| 132 | Microsoft fixes bug behind Windows Server 2025 automatic upgrades | Apr 15, 11:10 am |
|---|
| 133 | Microsoft Issues Patches for SharePoint Zero-Day and 168 Other New Vulnerabilities | Apr 15, 9:10 am |
|---|
| 134 | OpenAI Launches GPT-5.4-Cyber with Expanded Access for Security Teams | Apr 15, 6:10 am |
|---|
| 135 | ISC Stormcast For Wednesday, April 15th, 2026 https://isc.sans.edu/podcastdetail/9892, (Wed, Apr 15th) | Apr 15, 2:10 am |
|---|
| 136 | Scanning for AI Models, (Tue, Apr 14th) | Apr 15, 1:10 am |
|---|
| 137 | Microsoft adds Windows protections for malicious Remote Desktop files | Apr 14, 11:10 pm |
|---|
| 138 | Over 100 Chrome Web Store extensions steal user accounts, data | Apr 14, 10:10 pm |
|---|
| 139 | Patch Tuesday, April 2026 Edition | Apr 14, 10:10 pm |
|---|
| 140 | Crypto-exchange Kraken extorted by hackers after insider breach | Apr 14, 10:10 pm |
|---|
| 141 | Over 100 Chrome extensions in Web Store target users accounts and data | Apr 14, 9:10 pm |
|---|
| 142 | Microsoft April 2026 Patch Tuesday fixes 167 flaws, 2 zero-days | Apr 14, 6:10 pm |
|---|
| 143 | Microsoft Patch Tuesday April 2026., (Tue, Apr 14th) | Apr 14, 6:10 pm |
|---|
| 144 | Windows 11 cumulative updates KB5083769 & KB5082052 released | Apr 14, 6:10 pm |
|---|
| 145 | McGraw-Hill confirms data breach following extortion threat | Apr 14, 6:10 pm |
|---|
| 146 | Microsoft releases Windows 10 KB5082200 extended security update | Apr 14, 6:10 pm |
|---|
| 147 | New PHP Composer Flaws Enable Arbitrary Command Execution — Patches Released | Apr 14, 5:10 pm |
|---|
| 148 | Fake Ledger Live app on Apple’s App Store stole $9.5M in crypto | Apr 14, 5:10 pm |
|---|
| 149 | AI-Driven Pushpaganda Scam Exploits Google Discover to Spread Scareware and Ad Fraud | Apr 14, 4:10 pm |
|---|
| 150 | Microsoft rolls out fast-track to reinstate Windows hardware dev accounts | Apr 14, 4:10 pm |
|---|
| 151 | 5 Ways Zero Trust Maximizes Identity Security | Apr 14, 3:10 pm |
|---|
| 152 | Google Adds Rust-Based DNS Parser into Pixel 10 Modem to Enhance Security | Apr 14, 2:10 pm |
|---|
| 153 | Mirax Android RAT Turns Devices into SOCKS5 Proxies, Reaching 220,000 via Meta Ads | Apr 14, 12:10 pm |
|---|
| 154 | Analysis of 216M Security Findings Shows a 4x Increase In Critical Risk (2026 Report) | Apr 14, 10:10 am |
|---|
| 155 | 108 Malicious Chrome Extensions Steal Google and Telegram Data, Affecting 20,000 Users | Apr 14, 9:10 am |
|---|
| 156 | CISA Adds 6 Known Exploited Flaws in Fortinet, Microsoft, and Adobe Software | Apr 14, 7:10 am |
|---|
| 157 | ShowDoc RCE Flaw CVE-2025-0520 Actively Exploited on Unpatched Servers | Apr 14, 7:10 am |
|---|
| 158 | ISC Stormcast For Tuesday, April 14th, 2026 https://isc.sans.edu/podcastdetail/9890, (Tue, Apr 14th) | Apr 14, 2:10 am |
|---|
| 159 | European Gym giant Basic-Fit data breach affects 1 million members | Apr 13, 10:10 pm |
|---|
| 160 | JanelaRAT Malware Targets Latin American Banks with 14,739 Attacks in Brazil in 2025 | Apr 13, 8:10 pm |
|---|
| 161 | Critical flaw in wolfSSL library enables forged certificate use | Apr 13, 8:10 pm |
|---|
| 162 | Stolen Rockstar Games analytics data leaked by extortion gang | Apr 13, 8:10 pm |
|---|
| 163 | FBI takedown of W3LL phishing service leads to developer arrest | Apr 13, 7:10 pm |
|---|
| 164 | New Booking.com data breach forces reservation PIN resets | Apr 13, 6:10 pm |
|---|
| 165 | OpenAI rotates macOS certs after Axios attack hit code-signing workflow | Apr 13, 6:10 pm |
|---|
| 166 | FBI and Indonesian Police Dismantle W3LL Phishing Network Behind $20M Fraud Attempts | Apr 13, 4:10 pm |
|---|
| 167 | Adobe rolls out emergency fix for Acrobat, Reader zero-day flaw | Apr 13, 4:10 pm |
|---|
| 168 | ⚡ Weekly Recap: Fiber Optic Spying, Windows Rootkit, AI Vulnerability Hunting and More | Apr 13, 2:10 pm |
|---|
| 169 | The silent “Storm”: New infostealer hijacks sessions, decrypts server-side | Apr 13, 2:10 pm |
|---|
| 170 | Your MTTD Looks Great. Your Post-Alert Gap Doesn't | Apr 13, 1:10 pm |
|---|
| 171 | Scans for EncystPHP Webshell, (Mon, Apr 13th) | Apr 13, 1:10 pm |
|---|
| 172 | North Korea's APT37 Uses Facebook Social Engineering to Deliver RokRAT Malware | Apr 13, 11:10 am |
|---|
| 173 | OpenAI Revokes macOS App Certificate After Malicious Axios Supply Chain Incident | Apr 13, 8:10 am |
|---|
| 174 | ISC Stormcast For Monday, April 13th, 2026 https://isc.sans.edu/podcastdetail/9888, (Mon, Apr 13th) | Apr 13, 2:10 am |
|---|
| 175 | Critical Marimo pre-auth RCE flaw now under active exploitation | Apr 12, 3:10 pm |
|---|
| 176 | Adobe Patches Actively Exploited Acrobat Reader Flaw CVE-2026-34621 | Apr 12, 6:10 am |
|---|
| 177 | CPUID Breach Distributes STX RAT via Trojanized CPU-Z and HWMonitor Downloads | Apr 12, 6:10 am |
|---|
| 178 | Over 20,000 crypto fraud victims identified in international crackdown | Apr 11, 3:10 pm |
|---|
| 179 | Citizen Lab: Law Enforcement Used Webloc to Track 500 Million Devices via Ad Data | Apr 11, 8:10 am |
|---|
| 180 | ChatGPT rolls out new $100 Pro subscription to challenge Claude | Apr 11, 2:10 am |
|---|
| 181 | CPUID hacked to deliver malware via CPU-Z, HWMonitor downloads | Apr 10, 5:10 pm |
|---|
| 182 | Nearly 4,000 US industrial devices exposed to Iranian cyberattacks | Apr 10, 4:10 pm |
|---|
| 183 | Supply chain attack at CPUID pushes malware with CPU-Z/HWMonitor | Apr 10, 2:10 pm |
|---|
| 184 | GlassWorm Campaign Uses Zig Dropper to Infect Multiple Developer IDEs | Apr 10, 2:10 pm |
|---|
| 185 | Analysis of one billion CISA KEV remediation records exposes limits of human-scale security | Apr 10, 2:10 pm |
|---|
| 186 | Microsoft: Canadian employees targeted in payroll pirate attacks | Apr 10, 12:10 pm |
|---|
| 187 | Marimo RCE Flaw CVE-2026-39987 Exploited Within 10 Hours of Disclosure | Apr 10, 11:10 am |
|---|
| 188 | Google rolls out Gmail end-to-end encryption on mobile devices | Apr 10, 11:10 am |
|---|
| 189 | Browser Extensions Are the New AI Consumption Channel That No One Is Talking About | Apr 10, 11:10 am |
|---|
| 190 | Google Rolls Out DBSC in Chrome 146 to Block Session Theft on Windows | Apr 10, 9:10 am |
|---|
| 191 | Backdoored Smart Slider 3 Pro Update Distributed via Compromised Nextend Servers | Apr 10, 8:10 am |
|---|
| 192 | Obfuscated JavaScript or Nothing, (Thu, Apr 9th) | Apr 10, 7:10 am |
|---|
| 193 | EngageLab SDK Flaw Exposed 50M Android Users, Including 30M Crypto Wallet Installs | Apr 10, 6:10 am |
|---|
| 194 | New VENOM phishing attacks steal senior executives' Microsoft logins | Apr 9, 10:10 pm |
|---|
| 195 | New ‘LucidRook’ malware used in targeted attacks on NGOs, universities | Apr 9, 10:10 pm |
|---|
| 196 | EngageLab SDK Flaw Exposed 50M Android Users, Including 30M Crypto Wallets | Apr 9, 8:10 pm |
|---|
| 197 | Healthcare IT solutions provider ChipSoft hit by ransomware attack | Apr 9, 8:10 pm |
|---|
| 198 | Google Chrome adds infostealer protection against session cookie theft | Apr 9, 7:10 pm |
|---|
| 199 | Smart Slider updates hijacked to push malicious WordPress, Joomla versions | Apr 9, 5:10 pm |
|---|
| 200 | UAT-10362 Targets Taiwanese NGOs with LucidRook Malware in Spear-Phishing Campaigns | Apr 9, 5:10 pm |
|---|
| 201 | When attackers already have the keys, MFA is just another door to open | Apr 9, 3:10 pm |
|---|
| 202 | ThreatsDay Bulletin: Hybrid P2P Botnet, 13-Year-Old Apache RCE and 18 More Stories | Apr 9, 2:10 pm |
|---|
| 203 | Webinar: From noise to signal - What threat actors are targeting next | Apr 9, 1:10 pm |
|---|
| 204 | Bitter-Linked Hack-for-Hire Campaign Targets Journalists Across MENA Region | Apr 9, 12:10 pm |
|---|
| 205 | Adobe Reader Zero-Day Exploited via Malicious PDFs Since December 2025 | Apr 9, 12:10 pm |
|---|
| 206 | The Hidden Security Risks of Shadow AI in Enterprises | Apr 9, 12:10 pm |
|---|
| 207 | Eurail says December data breach impacts 300,000 individuals | Apr 9, 11:10 am |
|---|
| 208 | Hackers exploiting Acrobat Reader zero-day flaw since December | Apr 9, 10:10 am |
|---|
| 209 | Hackers steal $3.6 million from crypto ATM giant Bitcoin Depot | Apr 9, 8:10 am |
|---|
| 210 | Microsoft suspends dev accounts for high-profile open source projects | Apr 9, 7:10 am |
|---|
| 211 | ISC Stormcast For Thursday, April 9th, 2026 https://isc.sans.edu/podcastdetail/9886, (Thu, Apr 9th) | Apr 9, 2:10 am |
|---|
| 212 | Number Usage in Passwords: Take Two, (Thu, Apr 9th) | Apr 9, 1:10 am |
|---|
| 213 | Hackers use pixel-large SVG trick to hide credit card stealer | Apr 8, 11:10 pm |
|---|
| 214 | Google: New UNC6783 hackers steal corporate Zendesk support tickets | Apr 8, 10:10 pm |
|---|
| 215 | New Chaos Variant Targets Misconfigured Cloud Deployments, Adds SOCKS Proxy | Apr 8, 7:10 pm |
|---|
| 216 | CISA orders feds to patch exploited Ivanti EPMM flaw by Sunday | Apr 8, 7:10 pm |
|---|
| 217 | New macOS stealer campaign uses Script Editor in ClickFix attack | Apr 8, 7:10 pm |
|---|
| 218 | Masjesu Botnet Emerges as DDoS-for-Hire Service Targeting Global IoT Devices | Apr 8, 6:10 pm |
|---|
| 219 | TeamPCP Supply Chain Campaign: Update 007 - Cisco Source Code Stolen via Trivy-Linked Breach, Google GTIG Tracks TeamPCP as UNC6780, and CISA KEV Deadline Arrives with No Standalone Advisory, (Wed, Apr 8th) | Apr 8, 6:10 pm |
|---|
| 220 | 13-year-old bug in ActiveMQ lets hackers remotely execute commands | Apr 8, 6:10 pm |
|---|
| 221 | APT28 Deploys PRISMEX Malware in Campaign Targeting Ukraine and NATO Allies | Apr 8, 4:10 pm |
|---|
| 222 | More Honeypot Fingerprinting Scans, (Wed, Apr 8th) | Apr 8, 3:10 pm |
|---|
| 223 | Is a $30,000 GPU Good at Password Cracking? | Apr 8, 2:10 pm |
|---|
| 224 | Shrinking the IAM Attack Surface through Identity Visibility and Intelligence Platforms (IVIP) | Apr 8, 12:10 pm |
|---|
| 225 | Anthropic's Claude Mythos Finds Thousands of Zero-Day Flaws Across Major Systems | Apr 8, 10:10 am |
|---|
| 226 | N. Korean Hackers Spread 1,700 Malicious Packages Across npm, PyPI, Go, Rust | Apr 8, 9:10 am |
|---|
| 227 | Microsoft rolls out fix for broken Windows Start Menu search | Apr 8, 7:10 am |
|---|
| 228 | Iran-Linked Hackers Disrupt U.S. Critical Infrastructure by Targeting Internet-Exposed PLCs | Apr 8, 6:10 am |
|---|
| 229 | ISC Stormcast For Wednesday, April 8th, 2026 https://isc.sans.edu/podcastdetail/9884, (Wed, Apr 8th) | Apr 8, 2:10 am |
|---|
| 230 | Hackers exploit critical flaw in Ninja Forms WordPress plugin | Apr 7, 10:10 pm |
|---|
| 231 | FBI: Americans lost a record $21 billion to cybercrime last year | Apr 7, 9:10 pm |
|---|
| 232 | Snowflake customers hit in data theft attacks after SaaS integrator breach | Apr 7, 8:10 pm |
|---|
| 233 | A Little Bit Pivoting: What Web Shells are Attackers Looking for?, (Tue, Apr 7th) | Apr 7, 7:10 pm |
|---|
| 234 | Russian State-Linked APT28 Exploits SOHO Routers in Global DNS Hijacking Campaign | Apr 7, 6:10 pm |
|---|
| 235 | Russia Hacked Routers to Steal Microsoft Office Tokens | Apr 7, 6:10 pm |
|---|
| 236 | US warns of Iranian hackers targeting critical infrastructure | Apr 7, 6:10 pm |
|---|
| 237 | Max severity Flowise RCE vulnerability now exploited in attacks | Apr 7, 5:10 pm |
|---|
| 238 | Docker CVE-2026-34040 Lets Attackers Bypass Authorization and Gain Host Access | Apr 7, 4:10 pm |
|---|
| 239 | Authorities disrupt router DNS hijacks used to steal Microsoft 365 logins | Apr 7, 4:10 pm |
|---|
| 240 | Over 1,000 Exposed ComfyUI Instances Targeted in Cryptomining Botnet Campaign | Apr 7, 2:10 pm |
|---|
| 241 | Why Your Automated Pentesting Tool Just Hit a Wall | Apr 7, 2:10 pm |
|---|
| 242 | The Hidden Cost of Recurring Credential Incidents | Apr 7, 1:10 pm |
|---|
| 243 | [Webinar] How to Close Identity Gaps in 2026 Before AI Exploits Enterprise Risk | Apr 7, 1:10 pm |
|---|
| 244 | New GPUBreach Attack Enables Full CPU Privilege Escalation via GDDR6 Bit-Flips | Apr 7, 10:10 am |
|---|
| 245 | China-Linked Storm-1175 Exploits Zero-Days to Rapidly Deploy Medusa Ransomware | Apr 7, 8:10 am |
|---|
| 246 | Flowise AI Agent Builder Under Active CVSS 10.0 RCE Exploitation; 12,000+ Instances Exposed | Apr 7, 6:10 am |
|---|
| 247 | German authorities identify REvil and GandCrab ransomware bosses | Apr 7, 4:10 am |
|---|
| 248 | ISC Stormcast For Tuesday, April 7th, 2026 https://isc.sans.edu/podcastdetail/9882, (Tue, Apr 7th) | Apr 7, 2:10 am |
|---|
| 249 | German authorities identify REvil and GangCrab ransomware bosses | Apr 7, 12:10 am |
|---|
| 250 | New GPUBreach attack enables system takeover via GPU rowhammer | Apr 6, 10:10 pm |
|---|
| 251 | Iran-Linked Password-Spraying Campaign Targets 300+ Israeli Microsoft 365 Organizations | Apr 6, 8:10 pm |
|---|
| 252 | Microsoft fixes Classic Outlook bug causing email delivery issues | Apr 6, 8:10 pm |
|---|
| 253 | Disgruntled researcher leaks “BlueHammer” Windows zero-day exploit | Apr 6, 8:10 pm |
|---|
| 254 | DPRK-Linked Hackers Use GitHub as C2 in Multi-Stage Attacks Targeting South Korea | Apr 6, 6:10 pm |
|---|
| 255 | Microsoft removes Support and Recovery Assistant from Windows | Apr 6, 6:10 pm |
|---|
| 256 | CISA orders feds to patch exploited Fortinet EMS flaw by Friday | Apr 6, 5:10 pm |
|---|
| 257 | Drift $280M crypto theft linked to 6-month in-person operation | Apr 6, 5:10 pm |
|---|
| 258 | Microsoft links Medusa ransomware affiliate to zero-day attacks | Apr 6, 5:10 pm |
|---|
| 259 | CISA orders feds to patch Fortinet flaw exploited in attacks by Friday | Apr 6, 4:10 pm |
|---|
| 260 | ⚡ Weekly Recap: Axios Hack, Chrome 0-Day, Fortinet Exploits, Paragon Spyware and More | Apr 6, 3:10 pm |
|---|
| 261 | Multi-OS Cyberattacks: How SOCs Close a Critical Risk in 3 Steps | Apr 6, 3:10 pm |
|---|
| 262 | Why Simple Breach Monitoring is No Longer Enough | Apr 6, 2:10 pm |
|---|
| 263 | How LiteLLM Turned Developer Machines Into Credential Vaults for Attackers | Apr 6, 1:10 pm |
|---|
| 264 | Qilin and Warlock Ransomware Use Vulnerable Drivers to Disable 300+ EDR Tools | Apr 6, 11:10 am |
|---|
| 265 | How often are redirects used in phishing in 2026?, (Mon, Apr 6th) | Apr 6, 9:10 am |
|---|
| 266 | BKA Identifies REvil Leaders Behind 130 German Ransomware Attacks | Apr 6, 7:10 am |
|---|
| 267 | Germany Doxes “UNKN,” Head of RU Ransomware Gangs REvil, GandCrab | Apr 6, 3:10 am |
|---|
| 268 | ISC Stormcast For Monday, April 6th, 2026 https://isc.sans.edu/podcastdetail/9880, (Mon, Apr 6th) | Apr 6, 2:10 am |
|---|
| 269 | $285 Million Drift Hack Traced to Six-Month DPRK Social Engineering Operation | Apr 5, 8:10 pm |
|---|
| 270 | Traffic violation scams switch to QR codes in new phishing texts | Apr 5, 8:10 pm |
|---|
| 271 | New FortiClient EMS flaw exploited in attacks, emergency patch released | Apr 5, 7:10 pm |
|---|
| 272 | Hackers exploit React2Shell in automated credential theft campaign | Apr 5, 3:10 pm |
|---|
| 273 | Fortinet Patches Actively Exploited CVE-2026-35616 in FortiClient EMS | Apr 5, 6:10 am |
|---|
| 274 | 36 Malicious npm Packages Exploited Redis, PostgreSQL to Deploy Persistent Implants | Apr 5, 6:10 am |
|---|
| 275 | Axios npm hack used fake Teams error fix to hijack maintainer account | Apr 4, 9:10 pm |
|---|
| 276 | LinkedIn secretly scans for 6,000+ Chrome extensions, collects data | Apr 4, 3:10 pm |
|---|
| 277 | Device code phishing attacks surge 37x as new kits spread online | Apr 4, 3:10 pm |
|---|
| 278 | LinkedIn secretely scans for 6,000+ Chrome extensions, collects data | Apr 3, 9:10 pm |
|---|
| 279 | Microsoft Details Cookie-Controlled PHP Web Shells Persisting via Cron on Linux Servers | Apr 3, 6:10 pm |
|---|
| 280 | China-Linked TA416 Targets European Governments with PlugX and OAuth-Based Phishing | Apr 3, 6:10 pm |
|---|
| 281 | Hims & Hers warns of data breach after Zendesk support ticket breach | Apr 3, 6:10 pm |
|---|
| 282 | Die Linke German political party confirms data stolen by Qilin ransomware | Apr 3, 5:10 pm |
|---|
| 283 | Evolution of Ransomware: Multi-Extortion Ransomware Attacks | Apr 3, 3:10 pm |
|---|
| 284 | TeamPCP Supply Chain Campaign: Update 006 - CERT-EU Confirms European Commission Cloud Breach, Sportradar Details Emerge, and Mandiant Quantifies Campaign at 1,000+ SaaS Environments, (Fri, Apr 3rd) | Apr 3, 2:10 pm |
|---|
| 285 | Why Third-Party Risk Is the Biggest Gap in Your Clients' Security Posture | Apr 3, 1:10 pm |
|---|
| 286 | UNC1069 Social Engineering of Axios Maintainer Led to npm Supply Chain Attack | Apr 3, 1:10 pm |
|---|
| 287 | Microsoft still working to fix Exchange Online mailbox access issues | Apr 3, 12:10 pm |
|---|
| 288 | Drift Loses $285 Million in Durable Nonce Social Engineering Attack Linked to DPRK | Apr 3, 10:10 am |
|---|
| 289 | New SparkCat Variant in iOS, Android Apps Steals Crypto Wallet Recovery Phrase Images | Apr 3, 10:10 am |
|---|
| 290 | Man admits to locking thousands of Windows devices in extortion plot | Apr 3, 9:10 am |
|---|
| 291 | Microsoft now force upgrades unmanaged Windows 11 24H2 PCs | Apr 3, 8:10 am |
|---|
| 292 | CERT-EU: European Commission hack exposes data of 30 EU entities | Apr 3, 7:10 am |
|---|
| 293 | Drift loses $280 million North Korean hackers seize Security Council powers | Apr 3, 6:10 am |
|---|
| 294 | ISC Stormcast For Friday, April 3rd, 2026 https://isc.sans.edu/podcastdetail/9878, (Fri, Apr 3rd) | Apr 3, 2:10 am |
|---|
| 295 | Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal Credentials | Apr 2, 9:10 pm |
|---|
| 296 | Claude Code leak used to push infostealer malware on GitHub | Apr 2, 9:10 pm |
|---|
| 297 | Drift loses $280 million as hackers seize Security Council powers | Apr 2, 7:10 pm |
|---|
| 298 | Cisco Patches 9.8 CVSS IMC and SSM Flaws Allowing Remote System Compromise | Apr 2, 5:10 pm |
|---|
| 299 | Residential proxies evaded IP reputation checks in 78% of 4B sessions | Apr 2, 4:10 pm |
|---|
| 300 | Attempts to Exploit Exposed "Vite" Installs (CVE-2025-30208), (Thu, Apr 2nd) | Apr 2, 3:10 pm |
|---|
| 301 | ThreatsDay Bulletin: Pre-Auth Chains, Android Rootkits, CloudTrail Evasion & 10 More Stories | Apr 2, 2:10 pm |
|---|
| 302 | Medtech giant Stryker fully operational after data-wiping attack | Apr 2, 2:10 pm |
|---|
| 303 | New Progress ShareFile flaws can be chained in pre-auth RCE attacks | Apr 2, 2:10 pm |
|---|
| 304 | Adversaries Exploit Vacant Homes to Intercept Mail in Hybrid Cybercrime | Apr 2, 2:10 pm |
|---|
| 305 | The State of Trusted Open Source Report | Apr 2, 12:10 pm |
|---|
| 306 | Researchers Uncover Mining Operation Using ISO Lures to Spread RATs and Crypto Miners | Apr 2, 12:10 pm |
|---|
| 307 | WhatsApp Alerts 200 Users After Fake iOS App Installed Spyware; Italian Firm Faces Action | Apr 2, 11:10 am |
|---|
| 308 | Critical Cisco IMC auth bypass gives attackers Admin access | Apr 2, 11:10 am |
|---|
| 309 | Microsoft links Classic Outlook issue to email delivery problems | Apr 2, 10:10 am |
|---|
| 310 | Over 14,000 F5 BIG-IP APM instances still exposed to RCE attacks | Apr 2, 9:10 am |
|---|
| 311 | Apple Expands iOS 18.7.7 Update to More Devices to Block DarkSword Exploit | Apr 2, 8:10 am |
|---|
| 312 | ISC Stormcast For Thursday, April 2nd, 2026 https://isc.sans.edu/podcastdetail/9876, (Thu, Apr 2nd) | Apr 2, 2:10 am |
|---|
| 313 | New CrystalRAT malware adds RAT, stealer and prankware features | Apr 2, 12:10 am |
|---|
| 314 | Hackers exploit TrueConf zero-day to push malicious software updates | Apr 1, 10:10 pm |
|---|
| 315 | Apple expands iOS 18 updates to more iPhones to block DarkSword attacks | Apr 1, 10:10 pm |
|---|
| 316 | New EvilTokens service fuels Microsoft device code phishing attacks | Apr 1, 8:10 pm |
|---|
| 317 | CERT-UA Impersonation Campaign Spread AGEWHEEZE Malware to 1 Million Emails | Apr 1, 6:10 pm |
|---|
| 318 | 'NoVoice' Android malware on Google Play infected 2.3 million devices | Apr 1, 6:10 pm |
|---|
| 319 | Routine Access Is Powering Modern Intrusions, a New Threat Report Finds | Apr 1, 3:10 pm |
|---|
| 320 | New Chrome Zero-Day CVE-2026-5281 Under Active Exploitation — Patch Released | Apr 1, 2:10 pm |
|---|
| 321 | Microsoft Warns of WhatsApp-Delivered VBS Malware Hijacking Windows via UAC Bypass | Apr 1, 2:10 pm |
|---|
| 322 | Casbaneiro Phishing Targets Latin America and Europe Using Dynamic PDF Lures | Apr 1, 2:10 pm |
|---|
| 323 | Block the Prompt, Not the Work: The End of "Doctor No" | Apr 1, 2:10 pm |
|---|
| 324 | TeamPCP Supply Chain Campaign: Update 005 - First Confirmed Victim Disclosure, Post-Compromise Cloud Enumeration Documented, and Axios Attribution Narrows, (Wed, Apr 1st) | Apr 1, 2:10 pm |
|---|
| 325 | 3 Reasons Attackers Are Using Your Trusted Tools Against You (And Why You Don’t See It Coming) | Apr 1, 12:10 pm |
|---|
| 326 | FBI warns against using Chinese mobile apps due to privacy risks | Apr 1, 12:10 pm |
|---|
| 327 | Google fixes fourth Chrome zero-day exploited in attacks in 2026 | Apr 1, 11:10 am |
|---|
| 328 | Malicious Script That Gets Rid of ADS, (Wed, Apr 1st) | Apr 1, 11:10 am |
|---|
| 329 | Google Attributes Axios npm Supply Chain Attack to North Korean Group UNC1069 | Apr 1, 8:10 am |
|---|
| 330 | Claude Code Source Leaked via npm Packaging Error, Anthropic Confirms | Apr 1, 7:10 am |
|---|
| 331 | Google Drive ransomware detection now on by default for paying users | Apr 1, 7:10 am |
|---|
| 332 | New Windows 11 emergency update fixes preview update install issues | Apr 1, 6:10 am |
|---|
| 333 | ISC Stormcast For Wednesday, April 1st, 2026 https://isc.sans.edu/podcastdetail/9874, (Wed, Apr 1st) | Apr 1, 2:10 am |
|---|
| 334 | Claude Code source code accidentally leaked in NPM package | Apr 1, 1:10 am |
|---|
| 335 | Google now allows you to change your @gmail.com address | Apr 1, 12:10 am |
|---|
| 336 | GIGABYTE Control Center vulnerable to arbitrary file write flaw | Mar 31, 11:10 pm |
|---|
| 337 | Proton launches new "Meet" privacy-focused conferencing platform | Mar 31, 11:10 pm |
|---|
| 338 | Claude AI finds Vim, Emacs RCE bugs that trigger on file open | Mar 31, 10:10 pm |
|---|
| 339 | Android Developer Verification Rollout Begins Ahead of September Enforcement | Mar 31, 8:10 pm |
|---|
| 340 | Cisco source code stolen in Trivy-linked dev environment breach | Mar 31, 6:10 pm |
|---|
| 341 | TrueConf Zero-Day Exploited in Attacks on Southeast Asian Government Networks | Mar 31, 5:10 pm |
|---|
| 342 | Vertex AI Vulnerability Exposes Google Cloud Data and Private Artifacts | Mar 31, 2:10 pm |
|---|
| 343 | Hackers compromise Axios npm package to drop cross-platform malware | Mar 31, 2:10 pm |
|---|
| 344 | How to Categorize AI Agents and Prioritize Risk | Mar 31, 2:10 pm |
|---|
| 345 | The AI Arms Race – Why Unified Exposure Management Is Becoming a Boardroom Priority | Mar 31, 1:10 pm |
|---|
| 346 | Silver Fox Expands Asia Cyber Campaign with AtlasCross RAT and Fake Domains | Mar 31, 1:10 pm |
|---|
| 347 | Microsoft fixes Outlook Classic crashes caused by Teams Meeting add-in | Mar 31, 12:10 pm |
|---|
| 348 | Hacker charged with stealing $53 million from Uranium crypto exchange | Mar 31, 10:10 am |
|---|
| 349 | Application Control Bypass for Data Exfiltration, (Tue, Mar 31st) | Mar 31, 8:10 am |
|---|
| 350 | Dutch Finance Ministry takes treasury banking portal offline after breach | Mar 31, 8:10 am |
|---|
| 351 | Axios Supply Chain Attack Pushes Cross-Platform RAT via Compromised npm Account | Mar 31, 7:10 am |
|---|
| 352 | CISA orders feds to patch actively exploited Citrix flaw by Thursday | Mar 31, 7:10 am |
|---|
| 353 | ISC Stormcast For Tuesday, March 31st, 2026 https://isc.sans.edu/podcastdetail/9872, (Tue, Mar 31st) | Mar 31, 2:10 am |
|---|
| 354 | Healthcare tech firm CareCloud says hackers stole patient data | Mar 30, 10:10 pm |
|---|
| 355 | New RoadK1ll WebSocket implant used to pivot on breached networks | Mar 30, 9:10 pm |
|---|
| 356 | OpenAI Patches ChatGPT Data Exfiltration Flaw and Codex GitHub Token Vulnerability | Mar 30, 8:10 pm |
|---|
| 357 | Critical Citrix NetScaler memory flaw actively exploited in attacks | Mar 30, 7:10 pm |
|---|
| 358 | DeepLoad Malware Uses ClickFix and WMI Persistence to Steal Browser Credentials | Mar 30, 5:10 pm |
|---|
| 359 | 3 SOC Process Fixes That Unlock Tier 1 Productivity | Mar 30, 3:10 pm |
|---|
| 360 | ⚡ Weekly Recap: Telecom Sleeper Cells, LLM Jailbreaks, Apple Forces U.K. Age Checks and More | Mar 30, 3:10 pm |
|---|
| 361 | How to Evaluate AI SOC Agents: 7 Questions Gartner Says You Should Be Asking | Mar 30, 3:10 pm |
|---|
| 362 | Apple adds macOS Terminal warning to block ClickFix attacks | Mar 30, 3:10 pm |
|---|
| 363 | TeamPCP Supply Chain Campaign: Update 004 - Databricks Investigating Alleged Compromise, TeamPCP Runs Dual Ransomware Operations, and AstraZeneca Data Released, (Mon, Mar 30th) | Mar 30, 3:10 pm |
|---|
| 364 | The State of Secrets Sprawl 2026: 9 Takeaways for CISOs | Mar 30, 12:10 pm |
|---|
| 365 | Hackers now exploit critical F5 BIG-IP flaw in attacks, patch now | Mar 30, 11:10 am |
|---|
| 366 | Microsoft pulls KB5079391 Windows update over install issues | Mar 30, 10:10 am |
|---|
| 367 | Russian CTRL Toolkit Delivered via Malicious LNK Files Hijacks RDP via FRP Tunnels | Mar 30, 10:10 am |
|---|
| 368 | Three China-Linked Clusters Target Southeast Asian Government in 2025 Cyber Campaign | Mar 30, 8:10 am |
|---|
| 369 | Critical Fortinet Forticlient EMS flaw now exploited in attacks | Mar 30, 8:10 am |
|---|
| 370 | European Commission confirms data breach after Europa.eu hack | Mar 30, 7:10 am |
|---|
| 371 | ISC Stormcast For Monday, March 30th, 2026 https://isc.sans.edu/podcastdetail/9870, (Mon, Mar 30th) | Mar 30, 2:10 am |
|---|
| 372 | DShield (Cowrie) Honeypot Stats and When Sessions Disconnect, (Mon, Mar 30th) | Mar 30, 12:10 am |
|---|
| 373 | FBI confirms hack of Director Patel's personal email inbox | Mar 29, 9:10 pm |
|---|
| 374 | File read flaw in Smart Slider plugin impacts 500K WordPress sites | Mar 29, 3:10 pm |
|---|
| 375 | Iran-Linked Hackers Breach FBI Director’s Personal Email, Hit Stryker With Wiper Attack | Mar 28, 5:10 pm |
|---|
| 376 | TeamPCP Supply Chain Campaign: Update 003 - Operational Tempo Shift as Campaign Enters Monetization Phase With No New Compromises in 48 Hours, (Sat, Mar 28th) | Mar 28, 4:10 pm |
|---|
| 377 | New Infinity Stealer malware grabs macOS data via ClickFix lures | Mar 28, 3:10 pm |
|---|
| 378 | Citrix NetScaler Under Active Recon for CVE-2026-3055 (CVSS 9.3) Memory Overread Bug | Mar 28, 10:10 am |
|---|
| 379 | TA446 Deploys DarkSword iOS Exploit Kit in Targeted Spear-Phishing Campaign | Mar 28, 9:10 am |
|---|
| 380 | CISA Adds CVE-2025-53521 to KEV After Active F5 BIG-IP APM Exploitation | Mar 28, 8:10 am |
|---|
| 381 | TA446 Deploys Leaked DarkSword iOS Exploit Kit in Targeted Spear-Phishing Campaign | Mar 28, 8:10 am |
|---|
| 382 | Backdoored Telnyx PyPI package pushes malware hidden in WAV audio | Mar 27, 10:10 pm |
|---|
| 383 | Apple Sends Lock Screen Alerts to Outdated iPhones Over Active Web-Based Exploits | Mar 27, 7:10 pm |
|---|
| 384 | TeamPCP Pushes Malicious Telnyx Versions to PyPI, Hides Stealer in WAV Files | Mar 27, 6:10 pm |
|---|
| 385 | European Commission investigating breach after Amazon cloud account hack | Mar 27, 5:10 pm |
|---|
| 386 | Fake VS Code alerts on GitHub spread malware to developers | Mar 27, 5:10 pm |
|---|
| 387 | Open VSX Bug Let Malicious VS Code Extensions Bypass Pre-Publish Security Checks | Mar 27, 3:10 pm |
|---|
| 388 | TeamPCP Supply Chain Campaign: Update 002 - Telnyx PyPI Compromise, Vect Ransomware Mass Affiliate Program, and First Named Victim Claim, (Fri, Mar 27th) | Mar 27, 3:10 pm |
|---|
| 389 | Agentic GRC: Teams Get the Tech. The Mindset Shift Is What's Missing. | Mar 27, 2:10 pm |
|---|
| 390 | Bearlyfy Hits Russian Firms with Custom GenieLocker Ransomware | Mar 27, 1:10 pm |
|---|
| 391 | AitM Phishing Targets TikTok Business Accounts Using Cloudflare Turnstile Evasion | Mar 27, 1:10 pm |
|---|
| 392 | European Commission investigating breach after Amazon cloud hack | Mar 27, 1:10 pm |
|---|
| 393 | We Are At War | Mar 27, 12:10 pm |
|---|
| 394 | Anti-piracy coalition takes down AnimePlay app with 5 million users | Mar 27, 11:10 am |
|---|
| 395 | Windows 11 KB5079391 update rolls out Smart App Control improvements | Mar 27, 10:10 am |
|---|
| 396 | Bearlyfy Hits 70+ Russian Firms with Custom GenieLocker Ransomware | Mar 27, 10:10 am |
|---|
| 397 | LangChain, LangGraph Flaws Expose Files, Secrets, Databases in Widely Used AI Frameworks | Mar 27, 9:10 am |
|---|
| 398 | Dutch Police discloses security breach after phishing attack | Mar 27, 9:10 am |
|---|
| 399 | ISC Stormcast For Friday, March 27th, 2026 https://isc.sans.edu/podcastdetail/9868, (Fri, Mar 27th) | Mar 27, 2:10 am |
|---|
| 400 | Ajax football club hack exposed fan data, enabled ticket hijack | Mar 26, 9:10 pm |
|---|
| 401 | CISA: New Langflow flaw actively exploited to hijack AI workflows | Mar 26, 8:10 pm |
|---|
| 402 | China-Linked Red Menshen Uses Stealthy BPFDoor Implants to Spy via Telecom Networks | Mar 26, 6:10 pm |
|---|
| 403 | TeamPCP Supply Chain Campaign: Update 001 - Checkmarx Scope Wider Than Reported, CISA KEV Entry, and Detection Tools Available, (Thu, Mar 26th) | Mar 26, 6:10 pm |
|---|
| 404 | UK sanctions Xinbi marketplace linked to Asian scam centers | Mar 26, 4:10 pm |
|---|
| 405 | ThreatsDay Bulletin: PQC Push, AI Vuln Hunting, Pirated Traps, Phishing Kits & 20 More Stories | Mar 26, 2:10 pm |
|---|
| 406 | Masters of Imitation: How Hackers and Art Forgers Perfect the Art of Deception | Mar 26, 2:10 pm |
|---|
| 407 | Coruna iOS exploit framework linked to Triangulation attacks | Mar 26, 2:10 pm |
|---|
| 408 | Claude Extension Flaw Enabled Zero-Click XSS Prompt Injection via Any Website | Mar 26, 2:10 pm |
|---|
| 409 | Inside a Modern Fraud Attack: From Bot Signups to Account Takeovers | Mar 26, 2:10 pm |
|---|
| 410 | WhatsApp rolls out more AI features, iOS multi-account support | Mar 26, 2:10 pm |
|---|
| 411 | TikTok for Business accounts targeted in new phishing campaign | Mar 26, 2:10 pm |
|---|
| 412 | Russia arrests suspected owner of LeakBase cybercrime forum | Mar 26, 1:10 pm |
|---|
| 413 | [Webinar] Stop Guessing. Learn to Validate Your Defenses Against Real Attacks | Mar 26, 12:10 pm |
|---|
| 414 | Coruna iOS Kit Reuses 2023 Triangulation Exploit Code in New Mass Attacks | Mar 26, 12:10 pm |
|---|
| 415 | Suspected RedLine infostealer malware admin extradited to US | Mar 26, 12:10 pm |
|---|
| 416 | WebRTC Skimmer Bypasses CSP to Steal Payment Data from E-Commerce Sites | Mar 26, 9:10 am |
|---|
| 417 | ISC Stormcast For Thursday, March 26th, 2026 https://isc.sans.edu/podcastdetail/9866, (Thu, Mar 26th) | Mar 26, 2:10 am |
|---|
| 418 | GitHub adds AI-powered bug detection to expand security coverage | Mar 26, 12:10 am |
|---|
| 419 | Apple Patches (almost) everything again. March 2026 edition., (Wed, Mar 25th) | Mar 25, 10:10 pm |
|---|
| 420 | PolyShell attacks target 56% of all vulnerable Magento stores | Mar 25, 10:10 pm |
|---|
| 421 | Bubble AI app builder abused to steal Microsoft account credentials | Mar 25, 8:10 pm |
|---|
| 422 | New Torg Grabber infostealer malware targets 728 crypto wallets | Mar 25, 7:10 pm |
|---|
| 423 | LeakBase Admin Arrested in Russia Over Massive Stolen Credential Marketplace | Mar 25, 6:10 pm |
|---|
| 424 | Citrix urges admins to patch NetScaler flaws as soon as possible | Mar 25, 4:10 pm |
|---|
| 425 | GlassWorm Malware Uses Solana Dead Drops to Deliver RAT and Steal Browser, Crypto Data | Mar 25, 3:10 pm |
|---|
| 426 | Paid AI Accounts Are Now a Hot Underground Commodity | Mar 25, 2:10 pm |
|---|
| 427 | Device Code Phishing Hits 340+ Microsoft 365 Orgs Across Five Countries via OAuth Abuse | Mar 25, 1:10 pm |
|---|
| 428 | Russian Hacker Sentenced to 2 Years for TA551 Botnet-Driven Ransomware Attacks | Mar 25, 1:10 pm |
|---|
| 429 | The Kill Chain Is Obsolete When Your AI Agent Is the Threat | Mar 25, 1:10 pm |
|---|
| 430 | Kali Linux 2026.1 released with 8 new tools, new BackTrack mode | Mar 25, 1:10 pm |
|---|
| 431 | TP-Link warns users to patch critical router auth bypass flaw | Mar 25, 12:10 pm |
|---|
| 432 | Manager of botnet used in ransomware attacks gets 2 years in prison | Mar 25, 9:10 am |
|---|
| 433 | FCC Bans New Foreign-Made Routers Over Supply Chain and Cyber Risk Concerns | Mar 25, 8:10 am |
|---|
| 434 | TeamPCP Backdoors LiteLLM Versions 1.82.7–1.82.8 via Trivy CI/CD Compromise | Mar 25, 7:10 am |
|---|
| 435 | ISC Stormcast For Wednesday, March 25th, 2026 https://isc.sans.edu/podcastdetail/9864, (Wed, Mar 25th) | Mar 25, 2:10 am |
|---|
| 436 | SmartApeSG campaign pushes Remcos RAT, NetSupport RAT, StealC, and Sectop RAT (ArechClient2), (Wed, Mar 25th) | Mar 25, 1:10 am |
|---|
| 437 | Popular LiteLLM PyPI package backdoored to steal credentials, auth tokens | Mar 25, 12:10 am |
|---|
| 438 | Popular LiteLLM PyPI package compromised in TeamPCP supply chain attack | Mar 24, 11:10 pm |
|---|
| 439 | PTC warns of imminent threat from critical Windchill, FlexPLM RCE bug | Mar 24, 11:10 pm |
|---|
| 440 | FCC bans new routers made outside the USA over security risks | Mar 24, 9:10 pm |
|---|
| 441 | TeamPCP Backdoors LiteLLM Versions 1.82.7–1.82.8 Likely via Trivy CI/CD Compromise | Mar 24, 8:10 pm |
|---|
| 442 | Tax Search Ads Deliver ScreenConnect Malware Using Huawei Driver to Disable EDR | Mar 24, 6:10 pm |
|---|
| 443 | Firefox now has a free built-in VPN with 50GB monthly data limit | Mar 24, 6:10 pm |
|---|
| 444 | Hackers Use Fake Resumes to Steal Enterprise Credentials and Deploy Crypto Miner | Mar 24, 5:10 pm |
|---|
| 445 | Microsoft fixes bug causing Classic Outlook sync issues with Gmail | Mar 24, 4:10 pm |
|---|
| 446 | Yanluowang ransomware access broker gets 81 months in prison | Mar 24, 2:10 pm |
|---|
| 447 | Infinite Campus warns of breach after ShinyHunters claims data theft | Mar 24, 2:10 pm |
|---|
| 448 | Detecting IP KVMs, (Tue, Mar 24th) | Mar 24, 2:10 pm |
|---|
| 449 | HackerOne discloses employee data breach after Navia hack | Mar 24, 2:10 pm |
|---|
| 450 | Zero Trust: Bridging the Gap Between Authentication and Trust | Mar 24, 2:10 pm |
|---|
| 451 | 5 Learnings from the First-Ever Gartner Market Guide for Guardian Agents | Mar 24, 12:10 pm |
|---|
| 452 | Ghost Campaign Uses 7 npm Packages to Steal Crypto Wallets and Credentials | Mar 24, 12:10 pm |
|---|
| 453 | Dutch Ministry of Finance discloses breach affecting employees | Mar 24, 12:10 pm |
|---|
| 454 | TeamPCP Hacks Checkmarx GitHub Actions Using Stolen CI Credentials | Mar 24, 11:10 am |
|---|
| 455 | The Hidden Cost of Cybersecurity Specialization: Losing Foundational Skills | Mar 24, 11:10 am |
|---|
| 456 | Citrix Urges Patching Critical NetScaler Flaw Allowing Unauthenticated Data Leaks | Mar 24, 8:10 am |
|---|
| 457 | U.S. Sentences Russian Hacker to 6.75 Years for Role in $9M Ransomware Damage | Mar 24, 8:10 am |
|---|
| 458 | ISC Stormcast For Tuesday, March 24th, 2026 https://isc.sans.edu/podcastdetail/9862, (Tue, Mar 24th) | Mar 24, 2:10 am |
|---|
| 459 | OpenAI rolls out ChatGPT Library to store your personal files | Mar 24, 12:10 am |
|---|
| 460 | Mazda discloses security breach exposing employee and partner data | Mar 23, 11:10 pm |
|---|
| 461 | Tycoon2FA phishing platform returns after recent police disruption | Mar 23, 10:10 pm |
|---|
| 462 | Tool updates: lots of security and logic fixes, (Mon, Mar 23rd) | Mar 23, 9:10 pm |
|---|
| 463 | North Korean Hackers Abuse VS Code Auto-Run Tasks to Deploy StoatWaffle Malware | Mar 23, 8:10 pm |
|---|
| 464 | Crunchyroll probes breach after hacker claims to steal 6.8M users' data | Mar 23, 8:10 pm |
|---|
| 465 | TeamPCP deploys Iran-targeted wiper in Kubernetes attacks | Mar 23, 8:10 pm |
|---|
| 466 | Trivy supply-chain attack spreads to Docker, GitHub repos | Mar 23, 6:10 pm |
|---|
| 467 | ‘CanisterWorm’ Springs Wiper Attack Targeting Iran | Mar 23, 4:10 pm |
|---|
| 468 | Varonis Atlas: Securing AI and the Data That Powers It | Mar 23, 3:10 pm |
|---|
| 469 | We Found Eight Attack Vectors Inside AWS Bedrock. Here's What Attackers Can Do with Them | Mar 23, 2:10 pm |
|---|
| 470 | ⚡ Weekly Recap: CI/CD Backdoor, FBI Buys Location Data, WhatsApp Ditches Numbers & More | Mar 23, 2:10 pm |
|---|
| 471 | Microsoft Exchange Online service change causes email access issues | Mar 23, 1:10 pm |
|---|
| 472 | Microsoft Warns IRS Phishing Hits 29,000 Users, Deploys RMM Malware | Mar 23, 12:10 pm |
|---|
| 473 | FBI warns of Handala hackers using Telegram in malware attacks | Mar 23, 10:10 am |
|---|
| 474 | Trivy Hack Spreads Infostealer via Docker, Triggers Worm and Kubernetes Wiper | Mar 23, 9:10 am |
|---|
| 475 | CISA orders feds to patch DarkSword iOS flaws exploited attacks | Mar 23, 9:10 am |
|---|
| 476 | New KB5085516 emergency update fixes Microsoft account sign-in | Mar 23, 8:10 am |
|---|
| 477 | Hackers Exploit CVE-2025-32975 (CVSS 10.0) to Hijack Unpatched Quest KACE SMA Systems | Mar 23, 7:10 am |
|---|
| 478 | ISC Stormcast For Monday, March 23rd, 2026 https://isc.sans.edu/podcastdetail/9860, (Mon, Mar 23rd) | Mar 23, 2:10 am |
|---|
| 479 | VoidStealer malware steals Chrome master key via debugger trick | Mar 22, 3:10 pm |
|---|
| 480 | Trivy vulnerability scanner breach pushed infostealer via GitHub Actions | Mar 21, 6:10 pm |
|---|
| 481 | Microsoft Azure Monitor alerts abused for callback phishing attacks | Mar 21, 5:10 pm |
|---|
| 482 | Microsoft Azure Monitor alerts abused in callback phishing campaigns | Mar 21, 3:10 pm |
|---|
| 483 | Google adds ‘Advanced Flow’ for safe APK sideloading on Android | Mar 21, 3:10 pm |
|---|
| 484 | FBI Warns Russian Hackers Target Signal, WhatsApp in Mass Phishing Attacks | Mar 21, 2:10 pm |
|---|
| 485 | Oracle Patches Critical CVE-2026-21992 Enabling Unauthenticated RCE in Identity Manager | Mar 21, 11:10 am |
|---|
| 486 | CISA Flags Apple, Craft CMS, Laravel Bugs in KEV, Orders Patching by April 3, 2026 | Mar 21, 9:10 am |
|---|
| 487 | Trivy Supply Chain Attack Triggers Self-Spreading CanisterWorm Across 47 npm Packages | Mar 21, 8:10 am |
|---|
| 488 | FBI links Signal phishing attacks to Russian intelligence services | Mar 20, 9:10 pm |
|---|
| 489 | Trivy Security Scanner GitHub Actions Breached, 75 Tags Hijacked to Steal CI/CD Secrets | Mar 20, 7:10 pm |
|---|
| 490 | Oracle pushes emergency fix for critical Identity Manager RCE flaw | Mar 20, 7:10 pm |
|---|
| 491 | Police take down 373,000 fake CSAM sites in Operation Alice | Mar 20, 6:10 pm |
|---|
| 492 | Critical Langflow Flaw CVE-2026-33017 Triggers Attacks within 20 Hours of Disclosure | Mar 20, 5:10 pm |
|---|
| 493 | CISA orders feds to patch max-severity Cisco flaw by Sunday | Mar 20, 3:10 pm |
|---|
| 494 | How CISOs Can Survive the Era of Geopolitical Cyberattacks | Mar 20, 2:10 pm |
|---|
| 495 | Magento PolyShell Flaw Enables Unauthenticated Uploads, RCE and Account Takeover | Mar 20, 1:10 pm |
|---|
| 496 | Google Adds 24-Hour Wait for Unverified App Sideloading to Reduce Malware and Scams | Mar 20, 12:10 pm |
|---|
| 497 | The Importance of Behavioral Analytics in AI-Enabled Cyber Attacks | Mar 20, 11:10 am |
|---|
| 498 | Musician admits to $10M streaming royalty fraud using AI bots | Mar 20, 10:10 am |
|---|
| 499 | GSocket Backdoor Delivered Through Bash Script, (Fri, Mar 20th) | Mar 20, 9:10 am |
|---|
| 500 | Microsoft: March Windows updates break Teams, OneDrive sign-ins | Mar 20, 8:10 am |
|---|