List cybersec
Tax Search Ads Deliver ScreenConnect Malware Using Huawei Driver to Disable EDR
{ "priority": "HIGH", "cve": "N/A", "target": "ConnectWise ScreenConnect", "threat_actor": "N/A", "patch_ready": false, "insight": "A large-scale malvertising campaign delivers ScreenConne..
6:10 pm, March 24, 2026 Cybersecurity
Firefox now has a free built-in VPN with 50GB monthly data limit
{"priority":"INFO","cve":"N/A","target":"Firefox","threat_actor":"N/A","patch_ready":false,"insight":"Mozilla released Firefox 149 with a built-in VPN tool offering 50GB of monthly traffic."}
6:10 pm, March 24, 2026 Cybersecurity
Hackers Use Fake Resumes to Steal Enterprise Credentials and Deploy Crypto Miner
{"priority":"HIGH","cve":"N/A","target":"Enterprise Environments","threat_actor":"N/A","patch_ready":false,"insight":"Hackers use fake resumes to steal enterprise credentials and deploy crypto miners ..
5:10 pm, March 24, 2026 Cybersecurity
Microsoft fixes bug causing Classic Outlook sync issues with Gmail
Microsoft has fixed a known issue causing Gmail and Yahoo email synchronization and connection problems for classic Outlook users. [...]
4:10 pm, March 24, 2026 Cybersecurity
Yanluowang ransomware access broker gets 81 months in prison
{ "priority": "LOW", "cve": "N/A", "target": "N/A", "threat_actor": "N/A", "patch_ready": false, "insight": "A Russian national was sentenced to 81 months in prison for acting as an initia..
2:10 pm, March 24, 2026 Cybersecurity
Infinite Campus warns of breach after ShinyHunters claims data theft
{ "priority": "HIGH", "cve": "N/A", "target": "Infinite Campus", "threat_actor": "ShinyHunters", "patch_ready": false, "insight": "Infinite Campus warns of data breach after ShinyHunters c..
2:10 pm, March 24, 2026 Cybersecurity
Detecting IP KVMs, (Tue, Mar 24th)
{ "priority": "LOW", "cve": "N/A", "target": "IP KVMs", "threat_actor": "North Koreans", "patch_ready": false, "insight": "Rogue IP KVMs can be used by threat actors to gain remote access ..
2:10 pm, March 24, 2026 Cybersecurity
HackerOne discloses employee data breach after Navia hack
Bug bounty platform HackerOne is notifying hundreds of employees that their data was stolen after attackers hacked Navia, one of its U.S. benefits administrators. [...]
2:10 pm, March 24, 2026 Cybersecurity
Zero Trust: Bridging the Gap Between Authentication and Trust
{ "priority": "INFO", "cve": "N/A", "target": "N/A", "threat_actor": "N/A", "patch_ready": false, "insight": "The article discusses the limitations of Multi-Factor Authentication (MFA) and..
2:10 pm, March 24, 2026 Cybersecurity
5 Learnings from the First-Ever Gartner Market Guide for Guardian Agents
{ "priority": "INFO", "cve": "N/A", "target": "N/A", "threat_actor": "N/A", "patch_ready": false, "insight": "Gartner published its first Market Guide for Guardian Agents on February 25, 2..
12:10 pm, March 24, 2026 Cybersecurity
Ghost Campaign Uses 7 npm Packages to Steal Crypto Wallets and Credentials
Cybersecurity researchers have uncovered a new set of malicious npm packages that are designed to steal cryptocurrency wallets and sensitive data. The activity is being tracked by ReversingLabs as the..
12:10 pm, March 24, 2026 Cybersecurity
Dutch Ministry of Finance discloses breach affecting employees
The Dutch Ministry of Finance confirmed on Monday that some of its systems were breached in a cyberattack detected last week. [...]
12:10 pm, March 24, 2026 Cybersecurity
TeamPCP Hacks Checkmarx GitHub Actions Using Stolen CI Credentials
Two more GitHub Actions workflows have become the latest to be compromised by credential-stealing malware by a threat actor known as TeamPCP, the cloud-native cybercriminal operation also behind the T..
11:10 am, March 24, 2026 Cybersecurity
The Hidden Cost of Cybersecurity Specialization: Losing Foundational Skills
Cybersecurity has changed fast. Roles are more specialized, and tooling is more advanced. On paper, this should make organizations more secure. But in practice, many teams struggle with the same basi..
11:10 am, March 24, 2026 Cybersecurity
Citrix Urges Patching Critical NetScaler Flaw Allowing Unauthenticated Data Leaks
{"priority":"CRITICAL","cve":"CVE-2026-3055","target":"Citrix NetScaler ADC and NetScaler Gateway","threat_actor":"N/A","patch_ready":true,"insight":"Citrix patches critical NetScaler flaw allowing un..
8:10 am, March 24, 2026 Cybersecurity
U.S. Sentences Russian Hacker to 6.75 Years for Role in $9M Ransomware Damage
``` { "priority": "LOW", "cve": "N/A", "target": "N/A", "threat_actor": "Yanluowang ransomware crew", "patch_ready": false, "insight": "A Russian hacker was sentenced to 6.75 years in pris..
8:10 am, March 24, 2026 Cybersecurity
ISC Stormcast For Tuesday, March 24th, 2026 https://isc.sans.edu/podcastdetail/9862, (Tue, Mar 24th)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
2:10 am, March 24, 2026 Cybersecurity
OpenAI rolls out ChatGPT Library to store your personal files
{"priority":"INFO","cve":"N/A","target":"ChatGPT","threat_actor":"N/A","patch_ready":false,"insight":"OpenAI introduces ChatGPT Library for storing personal files and images on their cloud storage."}
12:10 am, March 24, 2026 Cybersecurity
Mazda discloses security breach exposing employee and partner data
{ "priority": "MEDIUM", "cve": "N/A", "target": "Mazda Motor Corporation", "threat_actor": "N/A", "patch_ready": false, "insight": "Mazda Motor Corporation disclosed a security breach expo..
11:10 pm, March 23, 2026 Cybersecurity
Tycoon2FA phishing platform returns after recent police disruption
``` { "priority": "HIGH", "cve": "N/A", "target": "Tycoon2FA phishing-as-a-service platform", "threat_actor": "N/A", "patch_ready": false, "insight": "Tycoon2FA phishing platform resumes a..
10:10 pm, March 23, 2026 Cybersecurity
Tool updates: lots of security and logic fixes, (Mon, Mar 23rd)
{ "priority": "INFO", "cve": "N/A", "target": "N/A", "threat_actor": "N/A", "patch_ready": false, "insight": "The developer performed a security review of their Python scripts using Claude..
9:10 pm, March 23, 2026 Cybersecurity
North Korean Hackers Abuse VS Code Auto-Run Tasks to Deploy StoatWaffle Malware
{ "priority": "HIGH", "cve": "N/A", "target": "Microsoft Visual Studio Code", "threat_actor": "WaterPlum", "patch_ready": false, "insight": "North Korean hackers use VS Code auto-run tasks..
8:10 pm, March 23, 2026 Cybersecurity
Crunchyroll probes breach after hacker claims to steal 6.8M users' data
Popular anime streaming platform Crunchyroll is investigating a breach after hackers claimed to have stolen personal information for approximately 6.8 million people. [...]
8:10 pm, March 23, 2026 Cybersecurity
TeamPCP deploys Iran-targeted wiper in Kubernetes attacks
{ "priority": "HIGH", "cve": "N/A", "target": "Kubernetes", "threat_actor": "TeamPCP", "patch_ready": false, "insight": "TeamPCP hacking group targets Kubernetes clusters with a malicious ..
8:10 pm, March 23, 2026 Cybersecurity
Trivy supply-chain attack spreads to Docker, GitHub repos
{ "priority": "HIGH", "cve": "N/A", "target": "Aqua Security, Docker, GitHub", "threat_actor": "TeamPCP", "patch_ready": false, "insight": "TeamPCP hackers spread Trivy supply-chain attack..
6:10 pm, March 23, 2026 Cybersecurity
‘CanisterWorm’ Springs Wiper Attack Targeting Iran
{ "priority": "HIGH", "cve": "N/A", "target": "Iran", "threat_actor": "CanisterWorm", "patch_ready": false, "insight": "A financially motivated group is using a worm to wipe data on infect..
4:10 pm, March 23, 2026 Cybersecurity
Varonis Atlas: Securing AI and the Data That Powers It
AI agents can access data directly, making data security the foundation of AI security. Learn more about how Varonis Atlas helps orgs see, secure, and control AI systems and the data they can reach. [..
3:10 pm, March 23, 2026 Cybersecurity
We Found Eight Attack Vectors Inside AWS Bedrock. Here's What Attackers Can Do with Them
I don't have access to read_lines information. However, I can provide some general information based on the provided text. The article discusses potential vulnerabilities in AWS Bedrock, specifically..
2:10 pm, March 23, 2026 Cybersecurity
⚡ Weekly Recap: CI/CD Backdoor, FBI Buys Location Data, WhatsApp Ditches Numbers & More
{ "priority": "INFO", "cve": "N/A", "target": "N/A", "threat_actor": "N/A", "patch_ready": false, "insight": "A weekly recap of various cybersecurity issues, including supply chain attacks..
2:10 pm, March 23, 2026 Cybersecurity
Microsoft Exchange Online service change causes email access issues
{ "priority": "MEDIUM", "cve": "N/A", "target": "Microsoft Exchange Online", "threat_actor": "N/A", "patch_ready": false, "insight": "Microsoft is addressing an ongoing service issue affec..
1:10 pm, March 23, 2026 Cybersecurity
Microsoft Warns IRS Phishing Hits 29,000 Users, Deploys RMM Malware
Microsoft has warned of fresh campaigns that are capitalizing on the upcoming tax season in the U.S. to harvest credentials and deliver malware. The email campaigns take advantage of the urgency and t..
12:10 pm, March 23, 2026 Cybersecurity
FBI warns of Handala hackers using Telegram in malware attacks
The U.S. Federal Bureau of Investigation (FBI) warned network defenders that Iranian hackers linked to the country's Ministry of Intelligence and Security (MOIS) are using Telegram in malware attacks...
10:10 am, March 23, 2026 Cybersecurity
Trivy Hack Spreads Infostealer via Docker, Triggers Worm and Kubernetes Wiper
{ "priority": "HIGH", "cve": "N/A", "target": "Trivy", "threat_actor": "N/A", "patch_ready": false, "insight": "Malicious Trivy versions 0.69.4, 0.69.5, and 0.69.6 spread Infostealer via D..
9:10 am, March 23, 2026 Cybersecurity
CISA orders feds to patch DarkSword iOS flaws exploited attacks
{ "priority": "CRITICAL", "cve": "N/A", "target": "DarkSword iOS", "threat_actor": "N/A", "patch_ready": true, "insight": "CISA ordered U.S. government agencies to patch three iOS vulnerab..
9:10 am, March 23, 2026 Cybersecurity
New KB5085516 emergency update fixes Microsoft account sign-in
{ "priority": "HIGH", "cve": "N/A", "target": "Microsoft account sign-in", "threat_actor": "N/A", "patch_ready": true, "insight": "Microsoft released an emergency update KB5085516 to fix a..
8:10 am, March 23, 2026 Cybersecurity
Hackers Exploit CVE-2025-32975 (CVSS 10.0) to Hijack Unpatched Quest KACE SMA Systems
{ "priority": "CRITICAL", "cve": "CVE-2025-32975", "target": "Quest KACE Systems Management Appliance (SMA)", "threat_actor": "N/A", "patch_ready": false, "insight": "Hackers are exploitin..
7:10 am, March 23, 2026 Cybersecurity
ISC Stormcast For Monday, March 23rd, 2026 https://isc.sans.edu/podcastdetail/9860, (Mon, Mar 23rd)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
2:10 am, March 23, 2026 Cybersecurity
VoidStealer malware steals Chrome master key via debugger trick
An information stealer called VoidStealer uses a new approach to bypass Chrome's Application-Bound Encryption (ABE) and extract the master key for decrypting sensitive data stored in the browser. [.....
3:10 pm, March 22, 2026 Cybersecurity
Trivy vulnerability scanner breach pushed infostealer via GitHub Actions
The Trivy vulnerability scanner was compromised in a supply-chain attack by threat actors known as TeamPCP, which distributed credential-stealing malware through official releases and GitHub Actions. ..
6:10 pm, March 21, 2026 Cybersecurity
Microsoft Azure Monitor alerts abused for callback phishing attacks
{ "priority": "HIGH", "cve": "N/A", "target": "Microsoft Azure Monitor", "threat_actor": "N/A", "patch_ready": false, "insight": "Microsoft Azure Monitor alerts are being abused to send ca..
5:10 pm, March 21, 2026 Cybersecurity
Microsoft Azure Monitor alerts abused in callback phishing campaigns
{ "priority": "HIGH", "cve": "N/A", "target": "Microsoft Azure Monitor", "threat_actor": "N/A", "patch_ready": false, "insight": "Microsoft Azure Monitor alerts are being abused to send ca..
3:10 pm, March 21, 2026 Cybersecurity
Google adds ‘Advanced Flow’ for safe APK sideloading on Android
{ "priority": "INFO", "cve": "N/A", "target": "Android", "threat_actor": "N/A", "patch_ready": false, "insight": "Google introduces 'Advanced Flow' for secure APK sideloading from unverifi..
3:10 pm, March 21, 2026 Cybersecurity
FBI Warns Russian Hackers Target Signal, WhatsApp in Mass Phishing Attacks
{"priority": "HIGH", "cve": "N/A", "target": "WhatsApp, Signal", "threat_actor": "Russian Intelligence Services", "patch_ready": false, "insight": "Russian hackers target Signal and WhatsApp in mass p..
2:10 pm, March 21, 2026 Cybersecurity
Oracle Patches Critical CVE-2026-21992 Enabling Unauthenticated RCE in Identity Manager
{ "priority": "CRITICAL", "cve": "CVE-2026-21992", "target": "Oracle Identity Manager", "threat_actor": "N/A", "patch_ready": true, "insight": "Oracle patches critical CVE-2026-21992 enabl..
11:10 am, March 21, 2026 Cybersecurity
CISA Flags Apple, Craft CMS, Laravel Bugs in KEV, Orders Patching by April 3, 2026
{ "priority": "CRITICAL", "cve": "CVE-2025-31277", "target": "Apple", "threat_actor": "N/A", "patch_ready": true, "insight": "CISA flags CVE-2025-31277 in Apple products for patching by Ap..
9:10 am, March 21, 2026 Cybersecurity
Trivy Supply Chain Attack Triggers Self-Spreading CanisterWorm Across 47 npm Packages
{"priority":"HIGH","cve":"N/A","target":"npm packages","threat_actor":"Trivy","patch_ready":false,"insight":"Trivy supply chain attack leads to self-spreading CanisterWorm across 47 npm packages"}
8:10 am, March 21, 2026 Cybersecurity
FBI links Signal phishing attacks to Russian intelligence services
{"priority":"HIGH","cve":"N/A","target":"Signal, WhatsApp","threat_actor":"Russian intelligence services","patch_ready":false,"insight":"Russian intelligence services are actively targeting Signal and..
9:10 pm, March 20, 2026 Cybersecurity
Trivy Security Scanner GitHub Actions Breached, 75 Tags Hijacked to Steal CI/CD Secrets
{ "priority": "CRITICAL", "cve": "N/A", "target": "Trivy Security Scanner GitHub Actions", "threat_actor": "N/A", "patch_ready": false, "insight": "Trivy Security Scanner GitHub Actions br..
7:10 pm, March 20, 2026 Cybersecurity
Oracle pushes emergency fix for critical Identity Manager RCE flaw
{ "priority": "CRITICAL", "cve": "CVE-2026-21992", "target": "Oracle Identity Manager", "threat_actor": "N/A", "patch_ready": true, "insight": "Oracle releases emergency fix for critical I..
7:10 pm, March 20, 2026 Cybersecurity
Police take down 373,000 fake CSAM sites in Operation Alice
{ "priority": "INFO", "cve": "N/A", "target": "N/A", "threat_actor": "N/A", "patch_ready": false, "insight": "International law enforcement operation shut down over 373,000 dark web sites ..
6:10 pm, March 20, 2026 Cybersecurity
