Skip to content

Cybersecurity news & advisories

47 / 47 active
Advisory
Threat Intel
Research
News
Media
Podcast
500 articles RSS ↗ Updated
News 404 Media

Fighting for the Future of Libraries (With Jennie Rose Halperin)

This week we’re joined by Jennie Rose Halprein, executive director of Library Futures, a non-profit that advocates for a fair digital future for libraries and the communities they serve. We have written a bunch of…

↗ Open article
Research Rapid7 Blog

Rapid7 Named Among Notable Vendors in Forrester MDR Landscape: Why the Future is Exposure-informed, Preemptive MDR

The managed detection and response (MDR) market has reached a turning point. We’ve gone beyond the baseline of 24/7 monitoring focusing on the speed of detection and moved to a world with a convergence of exposure…

↗ Open article
News The Hacker News

⚡ Weekly Recap: Rogue AI Agents, WeChat Worm, PaperCut Attacks, AI Espionage, and Rootkits

Vuln Malware APT

AI keeps showing up in the wrong places. Attackers are using it to speed up exploits, test defenses, and automate more of the job. Some models are also crossing lines on their own. That is not a great combination. The…

↗ Open article
Trending News The Register Security

Perfect-10 GitLab bug under attack days after patch lands

Vuln

CISA says attackers are exploiting a maximum-severity GitLab flaw that lets unauthenticated miscreants read arbitrary files from vulnerable servers after the code shack released fixes on September 10. The US…

↗ Open article
News 404 Media

Inside ‘Project Lily’: The Humans Reading Your ChatGPT Chats

OpenAI is hiring hundreds of contractors who read a massive stream of real users’ ChatGPT prompts, with the prompts sometimes including sensitive personal information, 404 Media has learned. The prompts these people…

↗ Open article
Trending Threat Intel Malwarebytes Labs

Google’s new search redirects make links harder to check before you click

Google is changing how some links in its search results work. Instead of linking directly to the destination, Google has started routing some search result links through opaque google.com/goto?url=... redirects. The url…

↗ Open article
News Bleeping Computer

Why Patch Automation Needs Brakes, Not Just an Accelerator

Vuln

Patch automation can help IT teams keep pace with growing update volumes, but deploying faster also means bad updates can spread faster. Action1 explains how update rings, predefined success criteria, and human…

↗ Open article
Threat Intel Check Point Research

14th September – Threat Intelligence Report

Breach Research

For the latest discoveries in cyber research for the week of 14th Setpember, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES IDScan.net, a US identity verification provider, has disclosed a…

↗ Open article
News The Hacker News

AI Changed the Exposure Problem. Validation Needs to Change With It

Vuln

There's a lot of noise around AI and cybersecurity right now. What’s actually important is far simpler, if often lost in the hubbub. Vulnerability discovery is getting faster and happening at a much greater scale, while…

↗ Open article
Threat Intel Malwarebytes Labs

Revolut gave customer IDs and financial data to a government impostor

Revolut has acknowledged that it disclosed sensitive customer records to an unauthorized party. The company had accepted fraudulent information requests sent from an email address on a legitimate government agency…

↗ Open article
Trending Media Schneier on Security

Microsoft’s Patching

Vuln

Once a month, Microsoft pushes a security update to all Windows users. Tomorrow’s is a new record : Microsoft’s patch for September is a doozy, with a record number of roughly 972 vulnerabilities fixed and 112 of them…

↗ Open article
Trending News Cyber Security News

Hackers Leverage Claude to Exfiltrate Secrets from 1.8M Android apps

Cybercriminals linked to the ShinyHunters ecosystem used Claude to support a large-scale credential theft operation that downloaded, decompiled, and scanned 1.8 million Android applications for hardcoded secrets. The…

↗ Open article
Trending News Cyber Security News

Microsoft Confirms Remote Desktop Services Might Stop Working Following Sept. 2026 Security Update

Microsoft has confirmed that its September 2026 Windows security updates can destabilize Remote Desktop Services (RDS), potentially disrupting remote administration across a broad range of enterprise endpoints and…

↗ Open article
Trending Research Rapid7 Blog

CVE-2026-85706: Critical GitLab Path Traversal Exploited in the Wild

CVE-2026-85706 ↗ Vuln

Overview On September 10, 2026, GitLab published a critical patch release for GitLab Community Edition (CE) and Enterprise Edition (EE). The release addresses CVE-2026-85706 , a critical path traversal vulnerability (…

↗ Open article ↗ CVE feed
News The Register Security

UK.gov begins killing off passwords for 23 million users

The UK government is giving more than 23 million people the chance to ditch passwords for passkeys – and could save itself a tidy sum on authentication texts in the process. Passkeys are being rolled out more widely…

↗ Open article
News Cyber Security News

GitHub Pays $100,000 Bounty for Critical RCE Flaw in Git Push Pipeline

CVE-2026-3854 ↗ Vuln Research

GitHub has awarded security researcher Saif Ghani a $100,000 bug bounty after the disclosure of CVE-2026-3854 , a critical remote code execution vulnerability affecting GitHub’s Git push processing pipeline. The reward…

↗ Open article ↗ CVE feed
News Cyber Security News

Hackers Deploy Casbaneiro Banking Trojan That Activates When Victims Open Bank Websites

Phishing Malware

Casbaneiro is targeting online banking users in Latin America through phishing messages that look like urgent invoices or legal notices. The campaign uses personalised PDF lures to push recipients toward a malicious…

↗ Open article
News Cyber Security News

Hackers Abuse YouTube Gaming Channels and SEO Poisoning to Deploy RATs and Chrome Hijacker

Malware

Hackers are turning ordinary searches and gaming videos into malware traps. A long-running campaign used YouTube channels and search-engine manipulation to steer victims toward installers that looked like useful…

↗ Open article
Trending News The Hacker News

Malicious Twitch Browser Extension Leaks OAuth Tokens From Nearly 31,000 Users

A malicious cross-store Twitch browser extension has leaked OAuth tokens associated with nearly 31,000 users to proxy servers operated by a Russian commercial bot service. The extension, named "Twitch Enhanced Viewer |…

↗ Open article
Trending News Cyber Security News

Hackers Abuse AutoIt to Inject AsyncRAT Into Microsoft-Signed Windows Process

Malware

Hackers are using a familiar Windows automation tool to hide AsyncRAT, a remote-access trojan, inside a trusted system process. The campaign starts with a deceptive batch file named “Right-click to open Invoice…

↗ Open article
Trending Threat Intel Malwarebytes Labs

A week in security (September 7 – September 13)

Malware Breach

Here’s what we’ve covered in the last seven days on Malwarebytes Labs: Crypto customers targeted by scammers after email marketing provider breach Android malware creates a hidden copy of your banking app BlueMoon…

↗ Open article
Trending News Cyber Security News

NCSC Warns of Critical Check Point VPN Flaws as Large-Scale Exploitation Is Expected

Vuln

The Dutch National Cyber Security Center (NCSC) has issued an urgent warning over two critical vulnerabilities in Check Point VPN products, saying it expects large-scale exploitation attempts in the near term…

↗ Open article
Trending Research Zero Day Initiative

ZDI-26-702: Linux Kernel usbnet Driver Race Condition Privilege Escalation Vulnerability

Vuln

This vulnerability allows physically present attackers to escalate privileges on affected installations of Linux Kernel. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating…

↗ Open article
Trending Research Zero Day Initiative

ZDI-26-701: Linux Kernel TLS Protocol Out-Of-Bounds Read Information Disclosure Vulnerability

Vuln

This vulnerability allows local attackers to disclose sensitive information on affected installations of Linux Kernel. An attacker must first obtain the ability to execute high-privileged code on the target system in…

↗ Open article
Trending Research Zero Day Initiative

ZDI-26-700: Linux Kernel QFQ Plus Scheduler Use-After-Free Local Privilege Escalation Vulnerability

Vuln

This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to execute low-privileged code on the target system in order to…

↗ Open article
Research Zero Day Initiative

ZDI-26-699: Linux Kernel NTFS3 Out-of-Bounds Read Information Disclosure Vulnerability

Vuln

This vulnerability allows local attackers to disclose sensitive information on affected installations of Linux Kernel. An attacker must first obtain the ability to execute low-privileged code on the target system in…

↗ Open article
Research Zero Day Initiative

ZDI-26-698: Linux Kernel NTFS3 Out-Of-Bounds Read Information Disclosure Vulnerability

Vuln

This vulnerability allows local attackers to disclose sensitive information on affected installations of Linux Kernel. An attacker must first obtain the ability to execute low-privileged code on the target system in…

↗ Open article
Research Zero Day Initiative

ZDI-26-697: Linux Kernel NTFS3 Out-Of-Bounds Read Information Disclosure Vulnerability

Vuln

This vulnerability allows local attackers to disclose sensitive information on affected installations of Linux Kernel. An attacker must first obtain the ability to execute low-privileged code on the target system in…

↗ Open article
Research Zero Day Initiative

ZDI-26-696: Linux Kernel NTFS3 Journal Heap-based Buffer Overflow Code Execution Vulnerability

Vuln

This vulnerability allows local attackers to execute arbitrary code on affected installations of Linux Kernel. An attacker must first obtain the ability to execute low-privileged code on the target system in order to…

↗ Open article
Research Zero Day Initiative

ZDI-26-695: Linux Kernel NFSv4 Server Race Condition Remote Code Execution Vulnerability

Vuln

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Linux Kernel. Authentication is required to exploit this vulnerability. Furthermore, only systems with nfsd enabled are…

↗ Open article
Research Zero Day Initiative

ZDI-26-694: Linux Kernel Net Scheduler Clsact Qdisc Use-After-Free Local Privilege Escalation Vulnerability

Vuln

This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to execute high-privileged code on the target system in order to…

↗ Open article
Research Zero Day Initiative

ZDI-26-693: Linux Kernel ksmbd Share Configuration Race Condition Remote Code Execution Vulnerability

Vuln

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Linux Kernel. Authentication is required to exploit this vulnerability. Furthermore, only systems with ksmbd enabled are…

↗ Open article
Research Zero Day Initiative

ZDI-26-692: Linux Kernel eMPIA USB Device Driver Race Condition Code Execution Vulnerability

Vuln

This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Linux Kernel. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS…

↗ Open article
Research Zero Day Initiative

ZDI-26-691: Linux Kernel Netlink-based Wireless Configuration Integer Overflow Local Privilege Escalation Vulnerability

Vuln

This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to execute high-privileged code on the target system in order to…

↗ Open article
Research Zero Day Initiative

ZDI-26-690: Linux Kernel MCTP Routing Uninitialized Memory Information Disclosure Vulnerability

Vuln

This vulnerability allows local attackers to disclose sensitive information on affected installations of Linux Kernel. An attacker must first obtain the ability to execute high-privileged code on the target system in…

↗ Open article
Research Zero Day Initiative

ZDI-26-689: Linux Kernel SCTP Subsystem Race Condition Information Disclosure Vulnerability

Vuln

This vulnerability allows local attackers to disclose sensitive information on affected installations of Linux Kernel. An attacker must first obtain the ability to execute low-privileged code on the target system in…

↗ Open article
Research Zero Day Initiative

ZDI-26-688: Linux Kernel OpenvSwitch Race Condition Local Privilege Escalation Vulnerability

Vuln

This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to execute low-privileged code on the target system in order to…

↗ Open article
Research Zero Day Initiative

ZDI-26-687: Linux Kernel Open vSwitch Flow Delete Use-After-Free Information Disclosure Vulnerability

Vuln

This vulnerability allows local attackers to disclose sensitive information on affected installations of the Linux Kernel. An attacker must first obtain the ability to execute low-privileged code on the target system in…

↗ Open article
No articles found
Try adjusting your search, category, tags, source selection, or date range.