Cyber Security
Four Nation-State Groups Deploy BlueMoon Kit Within 12 Days
NSA, CISA, FBI Accuse Six Chinese AI Firms of Model Distillation
UNC3569 Exploits Sogou Input Method to Deploy GRAYRABBIT Backdoor
Attackers Use BYOD Weaknesses to Access M365 via Graph API
Surfshark VPN Breach Exposes Internal Testing and Proxy Servers
Citrix NetScaler CVE-2026-19490 Exploited Since September 3
CISA Sets September 12 Deadline for Cisco, Citrix, Fortinet Flaws
Infostealer Logs Expose Replayable AI Tokens That Bypass MFA
Google Patches Seventh Chrome Zero-Day of 2026, CVE-2026-87491
PoisonedRefresh Rootkit Injects PHP Web Shells into F5 BIG-IP Memory
September Windows Server Updates Break Remote Desktop Services
Microsoft Excel KB5002914 Update Breaks Copy and Paste Functions
cPanel Critical RCE Enables Full Server Takeover via Mail Account
SAP Patches CVSS 10.0 Kernel RCE in Extended Passport Processing
Microsoft Ships Record 974 Security Patches in September Batch
ShinyHunters Claims Breach of Florida DMV DAVID Database
Grindr Settles UK HIV Data Sharing Lawsuit for £26 Million
Liquid Network Attackers Return 3,400 Bitcoin, Keep $47 Million
OpenAI Artifactory Flaw Enabled Cross-Account Data Theft
Boston Scientific Cyberattack Damages Q3 and Full-Year Earnings
Ohio Man Sentenced to 15 Years for AI-Generated Sextortion
LG Accused of Privacy Violations Over Smart TV Data Collection
Microsoft Adds Age-Awareness APIs to Windows 11
EU Cyber Resilience Act 24-Hour Vulnerability Deadline Arrives
UK Lawmakers Question Cyber Bill’s Executive Liability Exemption
Welsh Regulator Exposes 2,000 Staff Diversity Records via FoI Error
OpenAI Agent Swarm Logs Reveal Emergent Deception and Coordination
PEEP Toolkit Turns Chrome and Edge Into Post-Exploitation Backdoors
Magento StyleSmuggler Zero-Day Deploys Linux Backdoors on Stores
Mathspace Breach Exposes Data of Over 1 Million Students and Staff
Tech Giants Invest $12.5 Million in Open Source Software Security
Cybersecurity
Tech Giants Invest $12.5 Million in Open Source Software Security
Major tech firms contribute $12.5 million to enhance open source software security.
Ongoing Python Package Attack Uses Stolen GitHub Tokens
Application Security
Ongoing Python Package Attack Uses Stolen GitHub Tokens
Attack leverages stolen GitHub tokens to introduce malware into numerous Python repositories.
Stryker's Internal Microsoft Environment Was Breached Last Week
Cybersecurity
Stryker’s Internal Microsoft Environment Was Breached Last Week
Stryker's internal Microsoft environment breach led to the remote wiping of tens of thousands of employee devices last week.
Payload Ransomware Group Claims Breach of Royal Bahrain Hospital
News
Payload Ransomware Group Claims Breach of Royal Bahrain Hospital
Royal Bahrain Hospital reportedly targeted by Payload ransomware, with 110 GB of sensitive data allegedly stolen.
DRILLAPP Backdoor Campaign Targets Ukrainian Organizations With Edge Debugging Abuse
Cybersecurity
DRILLAPP Backdoor Campaign Targets Ukrainian Organizations With Edge Debugging Abuse
Russian-linked threat actors deploy DRILLAPP backdoor campaign in Ukraine.
Phishing Attack Hits Intuitive's Internal IT Business Systems
News
Phishing Attack Hits Intuitive’s Internal IT Business Systems
Intuitive's internal systems hit by phishing attack; patient operations remain unaffected.
New Malware Tactics Take Aim at Windows, iOS, and Linux Users
Application Security
New Malware Tactics Take Aim at Windows, iOS, and Linux Users
Explore how new malware strains are targeting users with advanced methods and reverse engineering insights.
Companies House Restores WebFiling Service After Security Flaw Exposed Corporate Data
Cybersecurity
Companies House Restores WebFiling Service After Security Flaw Exposed Corporate Data
Companies House fixes a security flaw in WebFiling, protecting UK companies' data.
How AI Is Making Financial Fraud 4.5 Times More Profitable
Cybersecurity
How AI Is Making Financial Fraud 4.5 Times More Profitable
Financial fraud schemes using AI boost profitability by 4.5 times, Interpol reports.
Ongoing Exchange Online Outage Leaves Customers Without Mailbox Access
Application Security
Ongoing Exchange Online Outage Leaves Customers Without Mailbox Access
Microsoft is addressing an Exchange Online outage impacting mailbox and calendar access.
Signal Cyberattack in Germany Targets Politicians Through Impersonation
Cybersecurity
Signal Cyberattack in Germany Targets Politicians Through Impersonation
Cyberattack on Signal and WhatsApp targets high-profile German officials, including former BND VP, using impersonation tactics.
Targeted Phishing Attack Breaches Security Firm Executive
News
Targeted Phishing Attack Breaches Security Firm Executive
A phishing attack involved DKIM-signed emails, trusted infrastructures, and Cloudflare protection against a security firm executive.
Silence from the Corporate Giants Four Companies Yet to Comment on Oracle EBS Hack
Application Security
Silence from the Corporate Giants: Four Companies Yet to Comment on Oracle EBS Hack
Four major corporations, Broadcom, Bechtel, Estée Lauder, and Abbott, remain silent amid Oracle EBS hack.
FBI Seeks Gamer Help in Steam Malware Investigation
Cybersecurity
FBI Seeks Gamer Help in Steam Malware Investigation
The FBI seeks gamers affected by malware-infected Steam games to join an ongoing investigation.
Shadow AI Is Quietly Spreading Across SaaS Environments
Application Security
Shadow AI Is Quietly Spreading Across SaaS Environments
Explore the growing trend of Shadow AI in SaaS environments as employees adopt AI tools without IT oversight, and learn how security teams can respond...
Microsoft Teams Is Adding Automatic Bot Tagging in Meeting Lobbies
Application Security
Microsoft Teams Is Adding Automatic Bot Tagging in Meeting Lobbies
Microsoft improves control over third-party bots in Teams meetings.
Canadian Outsourcing Leader Telus Digital Faces a Severe Data Breach
Cybersecurity
Canadian Outsourcing Leader Telus Digital Faces a Severe Data Breach
Telus Digital hit by data breach, with claims of nearly 1 petabyte stolen over months.
VENON Banking Malware Targets Brazilian Users With Rust-Based Code
Cybersecurity
VENON Banking Malware Targets Brazilian Users With Rust-Based Code
New banking malware VENON targets Brazilian users, developed in Rust, diverging from traditional Delphi-based threats.
Apple Releases iOS and iPadOS Updates to Patch Coruna Exploits
Application Security
Apple Releases iOS and iPadOS Updates to Patch Coruna Exploits
Apple issues iOS and iPadOS updates to address vulnerabilities, safeguarding against the Coruna exploit.
Veeam Software Fixes Critical RCE Vulnerabilities in Backup & Replication Solution
Application Security
Veeam Software Fixes Critical RCE Vulnerabilities in Backup & Replication Solution
Veeam Software addresses critical security flaws in their Backup & Replication tool, preventing potential remote code execution risks.
Cybersecurity
Russian Actor Uses AI to Exploit PaperCut, Hits 440+ Organizations
Cybersecurity
ShinyHunters Claims Breach of Florida DMV DAVID Database
Application Security
GoldFactory and Mantax Otax Target Indonesian Android Bank Users
CVE Vulnerability Alerts
Aurora Ransomware Operators Use Cursor AI to Execute Network Attacks

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Cybersecurity
Russian Actor Uses AI to Exploit PaperCut, Hits 440+ Organizations
Cybersecurity
LG Accused of Privacy Violations Over Smart TV Data Collection
Application Security
OpenAI Agents Made 18,000 Unauthorized Edits to German Wiki
Application Security
Judge Rules Pentagon Actions Against Anthropic Unlawful
Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
Payload Ransomware Group Claims Breach of Royal Bahrain Hospital
Royal Bahrain Hospital reportedly targeted by Payload ransomware, with 110 GB of sensitive data allegedly stolen.
Phishing Attack Hits Intuitive’s Internal IT Business Systems
Intuitive's internal systems hit by phishing attack; patient operations remain unaffected.
DRILLAPP Backdoor Campaign Targets Ukrainian Organizations With Edge Debugging Abuse
Russian-linked threat actors deploy DRILLAPP backdoor campaign in Ukraine.
New Malware Tactics Take Aim at Windows, iOS, and Linux Users
Explore how new malware strains are targeting users with advanced methods and reverse engineering insights.
Companies House Restores WebFiling Service After Security Flaw Exposed Corporate Data
Companies House fixes a security flaw in WebFiling, protecting UK companies' data.
How AI Is Making Financial Fraud 4.5 Times More Profitable
Financial fraud schemes using AI boost profitability by 4.5 times, Interpol reports.
Ongoing Exchange Online Outage Leaves Customers Without Mailbox Access
Microsoft is addressing an Exchange Online outage impacting mailbox and calendar access.
Signal Cyberattack in Germany Targets Politicians Through Impersonation
Cyberattack on Signal and WhatsApp targets high-profile German officials, including former BND VP, using impersonation tactics.
Targeted Phishing Attack Breaches Security Firm Executive
A phishing attack involved DKIM-signed emails, trusted infrastructures, and Cloudflare protection against a security firm executive.
Silence from the Corporate Giants: Four Companies Yet to Comment on Oracle EBS Hack
Four major corporations, Broadcom, Bechtel, Estée Lauder, and Abbott, remain silent amid Oracle EBS hack.
FBI Seeks Gamer Help in Steam Malware Investigation
The FBI seeks gamers affected by malware-infected Steam games to join an ongoing investigation.
Shadow AI Is Quietly Spreading Across SaaS Environments
Explore the growing trend of Shadow AI in SaaS environments as employees adopt AI tools without IT oversight, and learn how security teams can respond...
Microsoft Teams Is Adding Automatic Bot Tagging in Meeting Lobbies
Microsoft improves control over third-party bots in Teams meetings.
Canadian Outsourcing Leader Telus Digital Faces a Severe Data Breach
Telus Digital hit by data breach, with claims of nearly 1 petabyte stolen over months.
VENON Banking Malware Targets Brazilian Users With Rust-Based Code
New banking malware VENON targets Brazilian users, developed in Rust, diverging from traditional Delphi-based threats.
Apple Releases iOS and iPadOS Updates to Patch Coruna Exploits
Apple issues iOS and iPadOS updates to address vulnerabilities, safeguarding against the Coruna exploit.
Veeam Software Fixes Critical RCE Vulnerabilities in Backup & Replication Solution
Veeam Software addresses critical security flaws in their Backup & Replication tool, preventing potential remote code execution risks.
England Hockey Investigates Possible Data Breach by AiLock Ransomware Group
England Hockey is assessing a potential data breach by the AiLock ransomware gang that listed it on its data leak site.
International Operation Dismantles the Dangerous SocksEscort Proxy Service
Global law enforcement dismantles SocksEscort proxy service involved in digital fraud, impacting numerous networks worldwide.
Slopoly Malware Linked to Interlock Ransomware Attack
Investigating Slopoly malware's impact, AI origins, and role in Interlock attacks.