Skip to content

Cybersecurity news & advisories

44 / 44 active
Advisory
Threat Intel
Research
News
Media
Podcast
500 articles RSS ↗ Updated 03 Sep 2026 18:59 UTC
Trending Advisory Cisco Security Advisories

Cisco IOS XR Software Security Hardening Release: September 2026

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in software…

↗ Open article
Trending News The Register Security

Prolific Microsoft 0-day hunter drops CrowdStrike Falcon exploit PoC

Vuln Research

The disgruntled security researcher known as Nightmare Eclipse (aka Chaotic Eclipse, Infinite Nightmare, and now also MSNightmare) is moving away from their singular Microsoft vendetta and on to other vendors. On…

↗ Open article
News Cyber Security News

LLMjacking Attack Uses Leaked AWS IAM Key to Steal Paid AI Model Access

Research

A newly documented cloud intrusion shows how quickly attackers can turn a single leaked AWS credential into a revenue stream by hijacking access to premium AI models, a technique researchers call LLMjacking. Security…

↗ Open article
News Cyber Security News

Fewer attacks, more force: Link11’s European Cyber Report finds new DDoS records for the first half of 2026

DoS

Frankfurt am Main, Germany, September 3rd, 2026, CyberNewswire Super-botnets and hijacked cloud servers drive new bandwidth and packet-rate records as international law-enforcement pressure pushes attack counts down…

↗ Open article
Trending Threat Intel Malwarebytes Labs

StreamRat Android malware spreads through Meta and TikTok ads

Malware Research

A malicious advertising campaign promoting a fake free TV-streaming service reached roughly 570,000 Meta users. The researchers who discovered the campaign found that its streaming-themed ads were aimed at…

↗ Open article
Threat Intel Microsoft Security Blog

ASCII smuggling crosses over from AI prompt injection to phishing evasion

Phishing Research

Microsoft researchers observed a high-volume phishing campaign using invisible Unicode tag characters , a technique popularized in AI prompt injection research as ASCII Smuggling . Instead of using these characters to…

↗ Open article
Trending News The Hacker News

Critical Cisco Nexus 9000 Flaw Lets Unauthenticated Remote Attackers Run Code as Root

Vuln

Cisco has released patches to address a critical security flaw affecting 10 Silicon One-based Nexus 9000 switches that could allow an unauthenticated, remote attacker to execute code as root, alongside an IOS XR…

↗ Open article
News 404 Media

Flock Taught Cops How to Surveil No Kings Protesters

Flock taught cops how they could surveil the No Kings protests and “small parades” using a mix of Flock’s technology and law enforcement’s own databases in a webinar last year. As Flock publicly downplays the power of…

↗ Open article
Trending News The Hacker News

BraZetsu Malware Turns Compromised Windows Hosts Into Criminal Marketplace Inventory

Malware Breach Research

Cybersecurity researchers have disclosed details of a sophisticated Python-based Windows malware framework called BraZetsu that fuels an underground marketplace commercializing access to compromised hosts. "Unlike the…

↗ Open article
News Cyber Security News

OpenAI Investigates Elevated Errors Affecting ChatGPT and Codex Services

OpenAI has reported an ongoing service incident involving elevated errors across ChatGPT and Codex, with the company confirming that it is investigating degraded performance affecting the two platforms. The issue was…

↗ Open article
News Cyber Security News

Phantom Deal Hackers Impersonate Executives and Use Fake NDAs to Steal Corporate Wire Transfers

Cybercriminals are using fake acquisition deals to steer employees toward large wire transfers. The campaign, called Phantom Deal, begins with a believable WhatsApp message from someone appearing to be a known…

↗ Open article
News The Register Security

Drowning in CVEs and thirsty for answers? Try CTEM

Vuln

A decade or two ago, board executives asked "why should I care about cybersecurity?" Five years ago, they were asking "Are you patching our software vulnerabilities?" Now, they're starting to ask: "Are we actually…

↗ Open article
Trending News Cyber Security News

Hackers Weaponize ScreenConnect to Spread Worm-Like Malware Across Windows Systems

Malware

Hackers are turning rogue remote-support installations into a tool that can spread malicious code between Windows computers. The activity stands out because an infected remote-access client can pass staged payloads to…

↗ Open article
News Cyber Security News

Chaotic Eclipse Claims Avast Antivirus 0-Day Vulnerability – PoC Released

Vuln Research

Researcher Chaotic Eclipse has claimed to have discovered a zero-day privilege-escalation vulnerability affecting Avast Antivirus and released a public proof-of-concept repository named PrettyPrague. The researcher…

↗ Open article
News Cyber Security News

Claude AI Faces Outage Impacting Mythos 5.1, Fable 5.1, and Opus 5

Anthropic’s Claude AI experienced a partial outage on September 3, 2026, disrupting requests across several Claude models and affecting developers, enterprise users, and individuals relying on the platform for coding…

↗ Open article
Trending News The Hacker News

Thomson Reuters Court Software Breach May Have Exposed SSNs and Sealed Data

Breach

Thomson Reuters disclosed on Wednesday that an unauthorized party obtained files from C-Track, the court case management platform sold by its West Publishing Corporation unit, in March 2026, affecting courts in 11 U.S…

↗ Open article
News Cyber Security News

Hackers Use QR Codes in Phishing Emails to Steal Login Credentials

Phishing

Hackers are putting QR codes in phishing emails to steal login credentials. Known as quishing, the method hides a dangerous web address inside a square and persuades recipients to scan it with a phone. The tactic…

↗ Open article
News Cyber Security News

153 Million Driver’s License Scans Surface on Dark Web as FBI Opens Investigation

A dark web identity theft service known as Nexus has reportedly offered scans of more than 153 million driver’s licenses from people in the United States and Canada. The FBI’s New Orleans field office has opened an…

↗ Open article
News Cyber Security News

New $7 SweepLED Device That Allows Anyone to Detect Hidden Cameras in Hotels

Research

Researchers have developed SweepLED, a low-cost smartphone accessory designed to help travelers find concealed cameras in hotel rooms and short-term rentals. The prototype uses an LED-equipped phone case, computer…

↗ Open article
News Bleeping Computer

Your Employee’s Password Appeared in an Infostealer Log. Now What?

Malware Breach

Infostealers can expose far more than passwords, including authenticated sessions that may let attackers bypass MFA. Flare explains how defenders can prioritize compromised identities, determine whether stolen access is…

↗ Open article
News The Register Security

Cybercrooks trawl Fishbrain to net password hashes

Cybercriminals have reeled in password hashes and corresponding salts belonging to users of popular fishing app Fishbrain, opening the door to cracking attempts. Fishbrain AB, which says its eponymous app serves more…

↗ Open article
Trending Advisory CISA Alerts & Advisories

Rockwell Automation 1756-ENBT Module

Vuln

View CSAF Summary Successful exploitation of this vulnerability could crash the module. The device requires a restart to recover. The following versions of Rockwell Automation 1756-ENBT Module are affected: 1756-ENBT…

↗ Open article
Advisory CISA Alerts & Advisories

Tycon Systems TPDIN-Monitor-WEB2 (Update A)

Vuln

View CSAF Summary Successful exploitation of these vulnerabilities could result in an attacker accessing sensitive credentials, disrupting connected infrastructure, or manipulating physical equipment, which could…

↗ Open article
Advisory CISA Alerts & Advisories

Inductive Automation Ignition

Vuln

View CSAF Summary Successful exploitation of this vulnerability could allow any authenticated user to create projects. The following versions of Inductive Automation Ignition are affected: Ignition <=8.1.53…

↗ Open article
Trending Advisory CISA Alerts & Advisories

OPCFoundation OPC UA LocalDiscoveryServer (LDS)

Vuln

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to take control of a high-privilege terminal during installation and run arbitrary commands. The following versions of…

↗ Open article
Advisory CISA Alerts & Advisories

Tycon Systems TPDIN-Monitor-WEB3

Vuln Crypto

View CSAF Summary Successful exploitation of these vulnerabilities could allow for an attacker to perform a man-in-the-middle (MitM) attack, cause a factory reset, wipe credentials, or retrieve sensitive information…

↗ Open article
Trending Advisory CISA Alerts & Advisories

Schneider Electric Easergy, EcoStruxture, PowerLogic, and Saitel Products (Update A)

Vuln

View CSAF Summary Schneider Electric is aware of a vulnerability in the following products: The Easergy C5 is a scalable and interoperable bay controller, protection and merging unit for large and critical…

↗ Open article
Trending Advisory CISA Alerts & Advisories

Rockwell Automation ControlFLASH

Vuln

View CSAF Summary Successful exploitation of this vulnerability could give an attacker the ability to run any commands or code of the attacker's choice on a target machine at the logged-in user's permission level. The…

↗ Open article
Trending Advisory CISA Alerts & Advisories

Rockwell Automation ArmorStart LT

Vuln

View CSAF Summary Successful exploitation of these vulnerabilities could result in a loss of webserver availability or allow an attacker to inject malicious scripts that will be executed when other users access the…

↗ Open article
Advisory CISA Alerts & Advisories

IXON VPN Client

Vuln

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to perform remote code execution on the computer running the client with elevated privileges. The following versions of IXON VPN…

↗ Open article
Advisory CISA Alerts & Advisories

Preparing for the Post-Quantum Era: A Call to Action

CISA and the Group of Seven (G7) Cyber Security Working Group released Preparing for the Post-Quantum Era: A Call to Action highlighting the urgent need for organizations and governments to begin transitioning to…

↗ Open article
Trending Advisory CISA Alerts & Advisories

Pyramid Solutions NetStaX EtherNet/IP Stack

Vuln

View CSAF Summary Successful exploitation of this vulnerability could result in memory corruption, a device crash, or a potential remote attack vector without the originating device receiving a CIP error indicating that…

↗ Open article
Advisory CISA ICS Advisories

Tycon Systems TPDIN-Monitor-WEB3

Vuln Crypto

View CSAF Summary Successful exploitation of these vulnerabilities could allow for an attacker to perform a man-in-the-middle (MitM) attack, cause a factory reset, wipe credentials, or retrieve sensitive information…

↗ Open article
Trending Advisory CISA ICS Advisories

Pyramid Solutions NetStaX EtherNet/IP Stack

Vuln

View CSAF Summary Successful exploitation of this vulnerability could result in memory corruption, a device crash, or a potential remote attack vector without the originating device receiving a CIP error indicating that…

↗ Open article
Advisory CISA ICS Advisories

Inductive Automation Ignition

Vuln

View CSAF Summary Successful exploitation of this vulnerability could allow any authenticated user to create projects. The following versions of Inductive Automation Ignition are affected: Ignition <=8.1.53…

↗ Open article
Trending Advisory CISA ICS Advisories

Rockwell Automation 1756-ENBT Module

Vuln

View CSAF Summary Successful exploitation of this vulnerability could crash the module. The device requires a restart to recover. The following versions of Rockwell Automation 1756-ENBT Module are affected: 1756-ENBT…

↗ Open article
Trending Advisory CISA ICS Advisories

Rockwell Automation ArmorStart LT

Vuln

View CSAF Summary Successful exploitation of these vulnerabilities could result in a loss of webserver availability or allow an attacker to inject malicious scripts that will be executed when other users access the…

↗ Open article
Trending Advisory CISA ICS Advisories

Rockwell Automation ControlFLASH

Vuln

View CSAF Summary Successful exploitation of this vulnerability could give an attacker the ability to run any commands or code of the attacker's choice on a target machine at the logged-in user's permission level. The…

↗ Open article
Advisory CISA ICS Advisories

IXON VPN Client

Vuln

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to perform remote code execution on the computer running the client with elevated privileges. The following versions of IXON VPN…

↗ Open article
Trending Advisory CISA ICS Advisories

OPCFoundation OPC UA LocalDiscoveryServer (LDS)

Vuln

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to take control of a high-privilege terminal during installation and run arbitrary commands. The following versions of…

↗ Open article
Trending Advisory CISA ICS Advisories

Schneider Electric Easergy, EcoStruxture, PowerLogic, and Saitel Products (Update A)

Vuln

View CSAF Summary Schneider Electric is aware of a vulnerability in the following products: The Easergy C5 is a scalable and interoperable bay controller, protection and merging unit for large and critical…

↗ Open article
Advisory CISA ICS Advisories

Tycon Systems TPDIN-Monitor-WEB2 (Update A)

Vuln

View CSAF Summary Successful exploitation of these vulnerabilities could result in an attacker accessing sensitive credentials, disrupting connected infrastructure, or manipulating physical equipment, which could…

↗ Open article
No articles found
Try adjusting your search, category, tags, source selection, or date range.