Browser Security Malvertising3 Min Read July 25, 2026 Malvertising Sends Malware in Pieces, Then Makes the Browser Build the Executable A malvertising operation dubbed SourTrade is making victims' browsers build the final Windows executable themselves, using a legitimate Bun runtime as its…
3 Min Read July 25, 2026 Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available Security firms ThreatBook and Imperva say attackers are targeting a… Application Security Vulnerability
6 Min Read July 25, 2026 CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijacking For years, phishing campaigns targeting financial institutions followed… Cybercrime Phishing
2 Min Read July 25, 2026 Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCE Threat actors linked to the Cl0p (aka Chubby Scorpius, FIN11, Graceful… Vulnerability
Application Security Vulnerability3 Min Read July 25, 2026 Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git Security researchers at depthfirst published working exploit code on July 24 for a GitLab flaw that GitLab patched six weeks earlier, on June…
Artificial Intelligence Malware5 Min Read July 24, 2026 BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery The North Korean threat actors behind the ClickFix-style campaigns that employ typosquatted Zoom and Microsoft Teams domains have been found…
Enterprise Security Vulnerability3 Min Read July 24, 2026 Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller Researchers H0j3n and Aniq Fakhrul published a working exploit on July 24 that lets a low-privileged Active Directory user obtain a…
Enterprise Security Vulnerability4 Min Read July 24, 2026 ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing Link Cybersecurity researchers have disclosed a critical vulnerability in OpenAI's ChatGPT Workspace Agents that could have allowed a single…
Vulnerability Web Security4 Min Read July 24, 2026 Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers A crafted SVG submitted to Bing's image search ran commands as NT AUTHORITYSYSTEM on Microsoft's production image-processing workers, and as…
AI Security Enterprise Security7 Min Read July 24, 2026 Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can Do AI agent security is moving through a familiar maturity curve: adoption, then visibility, and finally, control. But what we've collectively…
Artificial Intelligence Threat Intelligence5 Min Read July 24, 2026 Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry Someone installed a popular AI assistant on a rented server, switched off the setting that makes it ask permission before running risky…
Browser Security Threat Intelligence3 Min Read July 24, 2026 Golden Chickens Resurfaces With Four New Malware Families and Modular Implants The threat actors behind the Golden Chickens malware-as-a-service (MaaS) ecosystem have resurfaced with four new malware families, indicating…
Vulnerability Web Security4 Min Read July 24, 2026 NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private Chats Eight security flaws in NodeBB went public on Wednesday, along with the code to exploit them. Aikido Security rates all eight as high severity…
Database Security Vulnerability3 Min Read July 24, 2026 Kimi K3 Agents Found Redis Zero-Days and Built RCE Exploit, Researchers Say Redis shipped seven security releases on July 23 after researchers published authenticated RCE PoCs for stock Redis 6.2.22, 7.4.9, 8.6.4, and…
Cyber Espionage Web Security4 Min Read July 24, 2026 Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of a new campaign that involves the use of a malicious program that's…
Email Security Vulnerability5 Min Read July 23, 2026 Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes A Russian state-supported espionage group spent months reading Western mailboxes through a then-unknown flaw in Zimbra's webmail client. The…
Cybersecurity News Hacking News9 Min Read July 23, 2026 ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories Most of this week's trouble came dressed as something useful. A package stole data. A fake extension opened remote access. A safety app became…
Application Security Vulnerability3 Min Read July 23, 2026 Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files Cybersecurity researchers have uncovered a sandbox escape vulnerability in Anthropic's Claude Cowork that makes it possible to break out of…
Network Security Ransomware4 Min Read July 23, 2026 Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge The Chaos ransomware group ran its command-and-control through the victim's own browser. Cisco Talos on Thursday detailed msaRAT, the Rust…
Malware Threat Intelligence3 Min Read July 23, 2026 China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks An exposed Alibaba Cloud server has revealed a China-nexus operation that Group-IB tracks as JadeProx. The cluster has targeted government,…
Cloud Security Identity Security6 Min Read July 23, 2026 How Synthetic Identity Fraud is Coming for Machine Identities Most people understand identity theft as an attacker stealing a real person's sensitive information and impersonating them. Synthetic identity…
Vulnerability Web Security3 Min Read July 23, 2026 Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers Cybersecurity researchers have shed light on a large-scale campaign that has turned compromised GitHub repositories into distributed attack…
Authentication Data Protection3 Min Read July 23, 2026 Google Adds Selfie Video Recovery for Users Locked Out of Their Accounts Google on Thursday announced a new way for users to sign-in to their accounts by letting them take a selfie video. The selfie for sign-in, per…
Linux Vulnerability5 Min Read July 23, 2026 Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs RefluXFS, a Linux kernel flaw disclosed on July 22 and tracked as CVE-2026-64600, lets an unprivileged local user overwrite root-owned files…
DevSecOps Vulnerability4 Min Read July 22, 2026 GitHub Cuts Public Bug Bounty Payouts, Moves Top Rewards to VIP Tier Beginning July 27, 2026, GitHub will cut public bug bounty payouts by at least half at every severity level. Critical findings will drop from…
Linux Vulnerability3 Min Read July 22, 2026 Ubuntu snap-confine Flaw Could Give Local Users Root on Default Desktop Installs Cybersecurity researchers have disclosed details of a new local privilege escalation (LPE) vulnerability in snap-confine that an unprivileged…
Browser Security Vulnerability3 Min Read July 22, 2026 Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web Data Cybersecurity researchers have disclosed details of a now-patched vulnerability chain in the Adobe Acrobat Chrome extension that has over 314…
Vulnerability Web Security3 Min Read July 22, 2026 Hackers Exploit Windmill Flaw to Read Arbitrary Server Files Without Authentication A high-severity security flaw impacting open-source developer platform Windmill has come under active exploitation in the wild, per VulnCheck.…
AI Security Shadow IT3 Min Read July 22, 2026 The Fastest Path to AI Adoption Runs Through Security Security leaders who build fast, visible paths to AI adoption are becoming the most valued partners in their organizations. AI governance done…
Artificial Intelligence Network Security5 Min Read July 22, 2026 Why Modern SOCs Need Multi-Layered Detections The cycle is over. For years, cybersecurity followed a familiar pattern: defenses improved, attackers adapted, and the back-and-forth…
Cybercrime Law Enforcement3 Min Read July 22, 2026 Police Dismantle Kratos Phishing Kit Built to Steal Microsoft 365 Sessions and Bypass MFA German and US law enforcement have taken down the core infrastructure of Kratos, described by German investigators as one of the world's most…
Malware Supply Chain Attack3 Min Read July 22, 2026 Trojanized Newtonsoft.Json Fork Hides Game-Rigging Code in a Working Library Cybersecurity researchers have discovered a NuGet typosquat that's unlike the typical information-stealing malware distributed via package…
AI Security DevSecOps5 Min Read July 22, 2026 Microsoft Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Review Agents A single invisible comment in an Azure DevOps pull request can turn a reviewer's own AI coding agent against them, driving it into projects…
AI Security Cloud Security2 Min Read July 22, 2026 OpenAI Says Its AI Models Escaped Sandbox, Targeted Hugging Face to Cheat Benchmark OpenAI on Tuesday said a combination of its artificial intelligence (AI) models, including GPT-5.6 Sol and an "even more capable pre-release…
Cloud Security Vulnerability2 Min Read July 21, 2026 Apple Fixes Hide My Email Bug That Exposed Real Addresses in Mail Logs Apple has moved to address a security flaw in its Hide My Email service that enabled users' real email addresses to be unmasked, effectively…
AI Security Vulnerability5 Min Read July 21, 2026 AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run Code Hidden text on a web page was enough to make Kiro, AWS's agentic coding IDE, rewrite its own configuration file and run an attacker's code on…
Artificial Intelligence Software Security3 Min Read July 21, 2026 Google Launches Gemini 3.5 Flash Cyber AI to Find and Fix Software Vulnerabilities Google's DeepMind on Tuesday announced the release of Gemini 3.5 Flash Cyber, a specialized artificial intelligence (AI) model built atop 3.5…
Vulnerability Web Security2 Min Read July 21, 2026 Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC A third SharePoint Server flaw patched by Microsoft as part of its Patch Tuesday update for July 2026 has come under active exploitation, per…
Network Security Vulnerability2 Min Read July 21, 2026 Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial Access Threat actors have been observed exploiting a now-patched high-severity Palo Alto Networks PAN-OS vulnerability as an entry point to deploy…
Cyber Attacks Vulnerability4 Min Read July 21, 2026 WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass Scanning Attackers have begun to exploit two critical vulnerabilities in WordPress that, when combined together, enable unauthenticated remote code…
Threat Intelligence Vulnerability5 Min Read July 21, 2026 New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE Attack Researchers at Sysdig have linked a second attack on the same Langflow server to JADEPUFFER, the AI-agent-driven operator it first documented…
Artificial Intelligence Vulnerability1 Min Read July 21, 2026 Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution Threat actors are now exploiting a recently disclosed critical security flaw impacting ServiceNow AI Platform, according to Defused Cyber. In…
Artificial Intelligence Malware3 Min Read July 20, 2026 FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware Cybersecurity researchers have discovered nearly 7,600 malicious GitHub repositories, out of which more than 800 pose as artificial…
Malware Vulnerability4 Min Read July 20, 2026 Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign A malware operator left its delivery server wide open, and Rapid7 pulled down the whole toolkit: 1,048 files spanning lure templates,…
Cyber Espionage SaaS Security3 Min Read July 20, 2026 HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050 A newly discovered espionage implant has been using a hijacked Microsoft 365 calendar as its command channel, planting operator instructions…
Cybersecurity Hacking11 Min Read July 20, 2026 ⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More A single request should not be able to do this much. But this week, small inputs led to code execution, memory loss, stolen keys, and disabled…