Cyber Security
Application Security
North Korean Hackers Backdoor HAProxy in Linux Espionage Campaign
Gabby Lee
September 8, 2026
North Korean threat actors deployed a new Linux espionage toolkit targeting South Korean automotive and media firms by embedding backdoors in HAProxy load balancers.
Application Security
Backdoored ScreenConnect Servers Deliver Worm-Like Payloads
Mitchell Langley
September 8, 2026
Attackers compromised ConnectWise ScreenConnect servers to automatically deliver malicious payloads to newly connected clients in a self-propagating campaign.
Application Security
BigBear Phishing Service Bypassed MFA at 258 Organizations
Andrew Doyle
September 8, 2026
BigBear 2.0 phishing-as-a-service framework stole over 5,000 Microsoft 365 credentials from 258 organizations using adversary-in-the-middle attacks.
Application Security
ConnectWise Discloses Unpatched ScreenConnect Flaw
Andrew Doyle
September 8, 2026
ConnectWise disclosed a new ScreenConnect vulnerability with no patch available. The vendor shared temporary mitigations and plans a fix this week.
Application Security
JSCeal Malware Bypasses Google Auth with Stolen Session Cookies
Andrew Doyle
September 8, 2026
Check Point Research discovered JSCeal malware that harvests credentials and bypasses Google authentication using stolen session cookies on Windows.
Application Security
Trezor Data Breach Impact Reaches 81,000 Customers
Mitchell Langley
September 8, 2026
Trezor updated breach impact to 81,000 total customers after a third-party logistics provider ShipMonk was compromised in August 2026.
Application Security
OpenAI Agents Made 18,000 Unauthorized Edits to German Wiki
Mitchell Langley
September 8, 2026
OpenAI agents made 15,000 to 18,000 autonomous edits to a German wiki over three months, evading moderation controls in unauthorized AI activity.
Application Security
Fake IT Help Desk Calls Target Microsoft 365 Executives
Andrew Doyle
September 8, 2026
Vishing campaign targets directors and VPs with fake IT help desk calls, using adversary-in-the-middle token theft and residential proxies.
Application Security
Telerik UI Padding Oracle Chained to Unauthenticated RCE
Mitchell Langley
September 8, 2026
TantoSec released a PoC exploit chaining Telerik UI padding oracle to unauthenticated RCE two months after Progress Software shipped a patch.
Application Security
REVSTEALER Modules Disable Windows Defender to Deploy Miner
Andrew Doyle
September 8, 2026
Elastic Security Labs found four REVSTEALER persistence modules that remain after the stealer deletes itself, disabling Defender to run a crypto miner.
CVE Vulnerability Alerts
Aurora Ransomware Operators Use Cursor AI to Execute Network Attacks
Andrew Doyle
September 2, 2026
Russian-speaking Aurora ransomware group leveraged Cursor AI coding assistant to conduct hands-on exploitation against 10 targets between April and May 2026.
Application Security
Five Critical WordPress Flaws Enable Site Takeover and RCE
Andrew Doyle
September 2, 2026
Five critical vulnerabilities in WPMU DEV Dashboard, Avada Theme, TranslatePress, Pods, and GiveWP allow authentication bypass, privilege escalation, and RCE.
Application Security
Anthropic Warns Infostealer Malware Hijacking Claude Sessions
Mitchell Langley
September 2, 2026
Anthropic warns Vidar, Lumma, StealC, RedLine, and AMOS malware are stealing Claude session tokens, enabling attackers to drain user credits fraudulently.
Cybersecurity
Boston Scientific Cyberattack Disrupts Manufacturing and Shipping
Gabby Lee
September 2, 2026
August 25 cyberattack hit Boston Scientific's on-premises IT, disrupting manufacturing, order processing, and some cardiac monitor remote activations.
CVE Vulnerability Alerts
FulcrumSec Claims 86GB Manchester Airports Data Breach
Mitchell Langley
September 1, 2026
FulcrumSec claims theft of 86 gigabytes from Manchester Airports Group, exposing booking data for 8.7 million customers from a third-party database breach.
Application Security
PaperCut Zero-Days Under Active Exploit Despite Two Patches
Andrew Doyle
September 1, 2026
CVE-2026-81578 and CVE-2026-82078 allow unauthenticated RCE on PaperCut NG/MF versions 24-26; WatchTowr found patch bypasses forcing second emergency patch.
Application Security
McKesson Breach: ShinyHunters Demands $55M for 284M Records
Gabby Lee
September 1, 2026
ShinyHunters demands $55 million for 284 million McKesson records containing PHI, prescriptions, and billing data; threatens release by September 1.
Cybersecurity
Slovenian Casino Operator Hit Resumes After Three-Day Shutdown
Gabby Lee
September 1, 2026
Hit casino operator reopened six Slovenian and Bosnian casinos after a three-day cyberattack shutdown, with gaming functions and loyalty systems still offline.
Application Security
Hasbro Data Breach Exposed 436+ Employee Records
Gabby Lee
September 1, 2026
Hasbro disclosed breach affecting 436+ Massachusetts employees, exposing names, national IDs, and financial data, tied to late March cyberattack.
Cybersecurity
Berlin Refuses Rhysida Ransom as Group Claims 5.7TB Data Theft
Andrew Doyle
September 1, 2026
Rhysida ransomware group demanded 30 bitcoin for 5.7 terabytes of Berlin state data, but Governing Mayor Kai Wegner flatly refused to negotiate or pay.
Application Security
cPanel Critical RCE Enables Full Server Takeover via Mail Account
Andrew Doyle
September 9, 2026
Cybersecurity
ShinyHunters Claims Breach of Florida DMV DAVID Database
Mitchell Langley
September 9, 2026
CVE Vulnerability Alerts
Aurora Ransomware Operators Use Cursor AI to Execute Network Attacks
Andrew Doyle
September 2, 2026
Cybersecurity
Boston Scientific Cyberattack Disrupts Manufacturing and Shipping
Gabby Lee
September 2, 2026
TOP CYBERSECURITY HEADLINES
Cybersecurity
ShinyHunters Claims Breach of Florida DMV DAVID Database
Cybersecurity
OpenAI Artifactory Flaw Enabled Cross-Account Data Theft
This Week’s Security Spotlight
Cybersecurity
LG Accused of Privacy Violations Over Smart TV Data Collection
Mitchell Langley
September 9, 2026
Application Security
OpenAI Agents Made 18,000 Unauthorized Edits to German Wiki
Mitchell Langley
September 8, 2026
Application Security
Judge Rules Pentagon Actions Against Anthropic Unlawful
Gabby Lee
September 1, 2026
Application Security
AI Research Org METR Loses $600K in Credits to Dual Breach Attacks
Mitchell Langley
September 1, 2026
Trending
Daily Briefing Newsletter
Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.
Featured Videos
Podcasts
- All
- Application Security
- Blog
- CVE Vulnerability Alerts
- Cybersecurity
- Cybersecurity Newsletter
- Data Security
- Endpoint Security
- Identity and Access Management
- Information Security
- Network Security
- News
- Phishing
- Podcasts
- Product Reviews
- Ransomware
- Ransomware Victims
- Resources
- Security Spotlight
- Sponsored
- Threat Actors
- Threat Actors
- Threat Detection Tools
ConnectWise Discloses Unpatched ScreenConnect Flaw
September 8, 2026
ConnectWise disclosed a new ScreenConnect vulnerability with no patch available. The vendor shared temporary mitigations and plans a fix this week.
JSCeal Malware Bypasses Google Auth with Stolen Session Cookies
September 8, 2026
Check Point Research discovered JSCeal malware that harvests credentials and bypasses Google authentication using stolen session cookies on Windows.
Trezor Data Breach Impact Reaches 81,000 Customers
September 8, 2026
Trezor updated breach impact to 81,000 total customers after a third-party logistics provider ShipMonk was compromised in August 2026.
OpenAI Agents Made 18,000 Unauthorized Edits to German Wiki
September 8, 2026
OpenAI agents made 15,000 to 18,000 autonomous edits to a German wiki over three months, evading moderation controls in unauthorized AI activity.
Fake IT Help Desk Calls Target Microsoft 365 Executives
September 8, 2026
Vishing campaign targets directors and VPs with fake IT help desk calls, using adversary-in-the-middle token theft and residential proxies.
Telerik UI Padding Oracle Chained to Unauthenticated RCE
September 8, 2026
TantoSec released a PoC exploit chaining Telerik UI padding oracle to unauthenticated RCE two months after Progress Software shipped a patch.
REVSTEALER Modules Disable Windows Defender to Deploy Miner
September 8, 2026
Elastic Security Labs found four REVSTEALER persistence modules that remain after the stealer deletes itself, disabling Defender to run a crypto miner.
Aurora Ransomware Operators Use Cursor AI to Execute Network Attacks
September 2, 2026
Russian-speaking Aurora ransomware group leveraged Cursor AI coding assistant to conduct hands-on exploitation against 10 targets between April and May 2026.
Five Critical WordPress Flaws Enable Site Takeover and RCE
September 2, 2026
Five critical vulnerabilities in WPMU DEV Dashboard, Avada Theme, TranslatePress, Pods, and GiveWP allow authentication bypass, privilege escalation, and RCE.
Anthropic Warns Infostealer Malware Hijacking Claude Sessions
September 2, 2026
Anthropic warns Vidar, Lumma, StealC, RedLine, and AMOS malware are stealing Claude session tokens, enabling attackers to drain user credits fraudulently.
Boston Scientific Cyberattack Disrupts Manufacturing and Shipping
September 2, 2026
August 25 cyberattack hit Boston Scientific's on-premises IT, disrupting manufacturing, order processing, and some cardiac monitor remote activations.
FulcrumSec Claims 86GB Manchester Airports Data Breach
September 1, 2026
FulcrumSec claims theft of 86 gigabytes from Manchester Airports Group, exposing booking data for 8.7 million customers from a third-party database breach.
PaperCut Zero-Days Under Active Exploit Despite Two Patches
September 1, 2026
CVE-2026-81578 and CVE-2026-82078 allow unauthenticated RCE on PaperCut NG/MF versions 24-26; WatchTowr found patch bypasses forcing second emergency patch.
McKesson Breach: ShinyHunters Demands $55M for 284M Records
September 1, 2026
ShinyHunters demands $55 million for 284 million McKesson records containing PHI, prescriptions, and billing data; threatens release by September 1.
Slovenian Casino Operator Hit Resumes After Three-Day Shutdown
September 1, 2026
Hit casino operator reopened six Slovenian and Bosnian casinos after a three-day cyberattack shutdown, with gaming functions and loyalty systems still offline.
Hasbro Data Breach Exposed 436+ Employee Records
September 1, 2026
Hasbro disclosed breach affecting 436+ Massachusetts employees, exposing names, national IDs, and financial data, tied to late March cyberattack.
Berlin Refuses Rhysida Ransom as Group Claims 5.7TB Data Theft
September 1, 2026
Rhysida ransomware group demanded 30 bitcoin for 5.7 terabytes of Berlin state data, but Governing Mayor Kai Wegner flatly refused to negotiate or pay.
Two Nigerians Extradited to US for Sextortion That Killed Two Teens
September 1, 2026
Adebola Adekunle and Mudasiru Olawale were extradited from Nigeria on August 31 to face charges in sextortion schemes that killed two U.S. teens.
Judge Rules Pentagon Actions Against Anthropic Unlawful
September 1, 2026
U.S. District Judge Rita Lin ruled Pentagon
AI Research Org METR Loses $600K in Credits to Dual Breach Attacks
September 1, 2026
METR disclosed two incidents where attackers stole API keys and consumed $600,000 in AI credits through fail-open authentication and targeted probing.
































