Cyber Security
Application Security
VS Code Zero-Day Exposes GitHub OAuth Tokens; No Patch Available
Mitchell Langley
June 3, 2026
Researcher Ammar Askar publicly disclosed a VS Code zero-day that lets malicious extensions steal GitHub OAuth tokens, granting full repository access.
CVE Vulnerability Alerts
Google Patches Android Zero-Day CVE-2025-48595 Under Active Exploit
Andrew Doyle
June 2, 2026
Google confirmed CVE-2025-48595, a no-interaction privilege escalation flaw in Android 14–16, is under active targeted attack. Patches arrive June 5.
Application Security
Red Hat npm Packages Backdoored with Miasma Credential Worm
Andrew Doyle
June 2, 2026
Attackers backdoored 32 Red Hat npm packages with the Miasma worm, stealing CI/CD secrets, cloud keys, and SSH keys across roughly 80,000 weekly downloads.
Application Security
Meta AI Chatbot Flaw Lets Attackers Hijack Instagram Accounts
Mitchell Langley
June 2, 2026
A confused deputy flaw in Meta's AI support chatbot let attackers hijack Instagram accounts including @obamawhitehouse, Sephora, and U.S. Space Force.
Cybersecurity
SideCopy APT Targets Afghan Finance Ministry with Xeno RAT
Gabby Lee
June 2, 2026
Pakistan-attributed SideCopy APT used Pashto-language LNK lures against Afghanistan's Finance Ministry, deploying Xeno RAT for full system access and exfil.
Application Security
IBM WebSphere CVE-2026-8633: CVSS 9.8 No-Auth RCE Flaw Patched
Gabby Lee
June 2, 2026
CVE-2026-8633 is a CVSS 9.8 unauthenticated RCE in IBM WebSphere's Web Server Plug-ins. Patches are available for WebSphere 8.5 and 9.0 and Liberty builds.
CVE Vulnerability Alerts
NIST Inspector General: NVD Backlog Hits 27,000 CVEs
Gabby Lee
June 2, 2026
A NIST Inspector General report finds the NVD backlog has grown to over 27,000 unprocessed CVEs, degrading enterprise vulnerability management programs.
Cybersecurity
TheGentlemen Ransomware Lists US Water Utility Suburban Water
Mitchell Langley
June 2, 2026
TheGentlemen ransomware posted Suburban Water, a US critical infrastructure water utility, among 14 victims across five sectors in a 46-minute window.
Cybersecurity
ShadowByt3$ Ransomware Hits Syngenta’s Cropwise Platform
Gabby Lee
June 2, 2026
ShadowByt3$ ransomware claims unauthorized access to Cropwise, Syngenta's precision agriculture platform, stealing GIS data, yield models, and API keys.
Cybersecurity
UPDATE: Dashlane Confirms Encrypted Vaults Downloaded in Attack
Andrew Doyle
June 2, 2026
Dashlane now confirms attackers downloaded encrypted password vaults from fewer than 20 accounts by brute-forcing 2FA codes to register unauthorized devices.
Cybersecurity
5,000 Election Phishing Domains Pre-Stage US Midterm Attacks
Andrew Doyle
June 2, 2026
Over 5,000 election-themed domains registered between April and May 2026 form phishing infrastructure targeting voters, campaign staff, and election workers.
Cybersecurity
GTA Cheat Service Atlas Menu Hacked; 64,000 Records Exposed
Gabby Lee
June 2, 2026
Atlas Menu, a paid GTA Online cheat service, was breached and 64,000 user records published on GitHub, with the attacker alleging spyware behavior.
Cybersecurity
PSNI Phone Number Spoofed in Gift Card Vishing Campaign
Gabby Lee
June 2, 2026
Scammers have spoofed the PSNI's official switchboard number to impersonate officers and pressure victims into buying gift cards in a vishing campaign.
Cybersecurity
PureLogs Infostealer Uses MSBuild.exe for Fileless Deployment
Mitchell Langley
June 2, 2026
FortiGuard Labs documents PureLogs infostealer delivered via fake purchase order emails, using MSBuild.exe process hollowing to execute entirely in memory.
Cybersecurity
Gamaredon Hides USB Worm in NTFS Alternate Data Streams
Andrew Doyle
June 2, 2026
Sekoia documents an active Gamaredon campaign using NTFS Alternate Data Streams to conceal USB worm modules targeting Ukrainian government networks.
Cybersecurity
Play Ransomware Claims US Telecom Hightower Communications
Gabby Lee
June 2, 2026
Play ransomware has listed Hightower Communications on its dark web leak site, marking the second US telecom claimed by the group within a ten-day period.
Cybersecurity
Play Ransomware Claims US Telecom Hightower Communications
Gabby Lee
June 2, 2026
Play ransomware has listed Hightower Communications on its dark web leak site, marking the second US telecom claimed by the group within a ten-day period.
Cybersecurity
Gamaredon Hides USB Worm in NTFS Alternate Data Streams
Gabby Lee
June 2, 2026
Sekoia documents an active Gamaredon campaign using NTFS Alternate Data Streams to conceal USB worm modules targeting Ukrainian government networks.
Cybersecurity
PureLogs Infostealer Uses MSBuild.exe for Fileless Deployment
Gabby Lee
June 2, 2026
FortiGuard Labs documents PureLogs infostealer delivered via fake purchase order emails, using MSBuild.exe process hollowing to execute entirely in memory.
Cybersecurity
PSNI Phone Number Spoofed in Gift Card Vishing Campaign
Andrew Doyle
June 2, 2026
Scammers have spoofed the PSNI's official switchboard number to impersonate officers and pressure victims into buying gift cards in a vishing campaign.
CVE Vulnerability Alerts
Issabel Framework Flaw Enables Unauthenticated OS Command Execution
Andrew Doyle
September 21, 2026
Cybersecurity
Researchers Escape OpenAI Codex Sandbox, Compromise Staff Accounts
Gabby Lee
September 21, 2026
Cybersecurity
KREMLIN Banking Malware Hijacks Chrome and Edge for Credential Theft
Gabby Lee
September 21, 2026
Application Security
GoldFactory and Mantax Otax Target Indonesian Android Bank Users
Andrew Doyle
September 11, 2026
TOP CYBERSECURITY HEADLINES
Cybersecurity
Malicious npm Packages Bypass Install-Script Detection
Application Security
Single Browser Extension Hijacks AI Assistants Across Five Browsers
This Week’s Security Spotlight
Cybersecurity
Viral AI Actress Service Face-Scans Callers, Tracks Emotions
Gabby Lee
September 21, 2026
Cybersecurity
Russian Actor Uses AI to Exploit PaperCut, Hits 440+ Organizations
Andrew Doyle
September 11, 2026
Cybersecurity
LG Accused of Privacy Violations Over Smart TV Data Collection
Mitchell Langley
September 9, 2026
Application Security
OpenAI Agents Made 18,000 Unauthorized Edits to German Wiki
Mitchell Langley
September 8, 2026
Trending
Daily Briefing Newsletter
Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.
Featured Videos
Podcasts
Cyber Security News
- All
- Application Security
- Blog
- CVE Vulnerability Alerts
- Cybersecurity
- Cybersecurity Newsletter
- Data Security
- Endpoint Security
- Identity and Access Management
- Information Security
- Network Security
- News
- Phishing
- Podcasts
- Product Reviews
- Ransomware
- Ransomware Victims
- Resources
- Security Spotlight
- Sponsored
- Threat Actors
- Threat Actors
- Threat Detection Tools
Meta AI Chatbot Flaw Lets Attackers Hijack Instagram Accounts
June 2, 2026
A confused deputy flaw in Meta's AI support chatbot let attackers hijack Instagram accounts including @obamawhitehouse, Sephora, and U.S. Space Force.
SideCopy APT Targets Afghan Finance Ministry with Xeno RAT
June 2, 2026
Pakistan-attributed SideCopy APT used Pashto-language LNK lures against Afghanistan's Finance Ministry, deploying Xeno RAT for full system access and exfil.
IBM WebSphere CVE-2026-8633: CVSS 9.8 No-Auth RCE Flaw Patched
June 2, 2026
CVE-2026-8633 is a CVSS 9.8 unauthenticated RCE in IBM WebSphere's Web Server Plug-ins. Patches are available for WebSphere 8.5 and 9.0 and Liberty builds.
NIST Inspector General: NVD Backlog Hits 27,000 CVEs
June 2, 2026
A NIST Inspector General report finds the NVD backlog has grown to over 27,000 unprocessed CVEs, degrading enterprise vulnerability management programs.
TheGentlemen Ransomware Lists US Water Utility Suburban Water
June 2, 2026
TheGentlemen ransomware posted Suburban Water, a US critical infrastructure water utility, among 14 victims across five sectors in a 46-minute window.
ShadowByt3$ Ransomware Hits Syngenta’s Cropwise Platform
June 2, 2026
ShadowByt3$ ransomware claims unauthorized access to Cropwise, Syngenta's precision agriculture platform, stealing GIS data, yield models, and API keys.
UPDATE: Dashlane Confirms Encrypted Vaults Downloaded in Attack
June 2, 2026
Dashlane now confirms attackers downloaded encrypted password vaults from fewer than 20 accounts by brute-forcing 2FA codes to register unauthorized devices.
5,000 Election Phishing Domains Pre-Stage US Midterm Attacks
June 2, 2026
Over 5,000 election-themed domains registered between April and May 2026 form phishing infrastructure targeting voters, campaign staff, and election workers.
GTA Cheat Service Atlas Menu Hacked; 64,000 Records Exposed
June 2, 2026
Atlas Menu, a paid GTA Online cheat service, was breached and 64,000 user records published on GitHub, with the attacker alleging spyware behavior.
PSNI Phone Number Spoofed in Gift Card Vishing Campaign
June 2, 2026
Scammers have spoofed the PSNI's official switchboard number to impersonate officers and pressure victims into buying gift cards in a vishing campaign.
PureLogs Infostealer Uses MSBuild.exe for Fileless Deployment
June 2, 2026
FortiGuard Labs documents PureLogs infostealer delivered via fake purchase order emails, using MSBuild.exe process hollowing to execute entirely in memory.
Gamaredon Hides USB Worm in NTFS Alternate Data Streams
June 2, 2026
Sekoia documents an active Gamaredon campaign using NTFS Alternate Data Streams to conceal USB worm modules targeting Ukrainian government networks.
Play Ransomware Claims US Telecom Hightower Communications
June 2, 2026
Play ransomware has listed Hightower Communications on its dark web leak site, marking the second US telecom claimed by the group within a ten-day period.
Play Ransomware Claims US Telecom Hightower Communications
June 2, 2026
Play ransomware has listed Hightower Communications on its dark web leak site, marking the second US telecom claimed by the group within a ten-day period.
Gamaredon Hides USB Worm in NTFS Alternate Data Streams
June 2, 2026
Sekoia documents an active Gamaredon campaign using NTFS Alternate Data Streams to conceal USB worm modules targeting Ukrainian government networks.
PureLogs Infostealer Uses MSBuild.exe for Fileless Deployment
June 2, 2026
FortiGuard Labs documents PureLogs infostealer delivered via fake purchase order emails, using MSBuild.exe process hollowing to execute entirely in memory.
PSNI Phone Number Spoofed in Gift Card Vishing Campaign
June 2, 2026
Scammers have spoofed the PSNI's official switchboard number to impersonate officers and pressure victims into buying gift cards in a vishing campaign.
GTA Cheat Service Atlas Menu Hacked; 64,000 Records Exposed
June 2, 2026
Atlas Menu, a paid GTA Online cheat service, was breached and 64,000 user records published on GitHub, with the attacker alleging spyware behavior.
5,000 Election Phishing Domains Pre-Stage US Midterm Attacks
June 2, 2026
Over 5,000 election-themed domains registered between April and May 2026 form phishing infrastructure targeting voters, campaign staff, and election workers.
UPDATE: Dashlane Confirms Encrypted Vaults Downloaded in Attack
June 2, 2026
Dashlane now confirms attackers downloaded encrypted password vaults from fewer than 20 accounts by brute-forcing 2FA codes to register unauthorized devices.





































