Skip to content

Cybersecurity news & advisories

45 / 45 active
Advisory
Threat Intel
Research
News
Media
Podcast
500 articles RSS ↗ Updated 08 Sep 2026 02:08 UTC
Threat Intel Malwarebytes Labs

Loyalty points fraud is funding hacker holidays (Lock and Code S07E18)

This week on the Lock and Code podcast… Crooks are taking a holiday. They’re counting on you to fund it. For decades, cybercriminals have stolen roughly the same types of data. Biographical and personal details—like…

↗ Open article
News The Hacker News

PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command Execution

Vuln Research

Cybersecurity researchers have disclosed details of a complex Chromium-based post-exploitation toolkit called PEEP that masquerades as a bookmarks extension for the web browser. "Requiring prior administrative or code…

↗ Open article
Trending News Cyber Security News

Bimbo Bakeries USA Confirms Data Breach in Oracle EBS Zero-Day Attack

Vuln Breach

Bimbo Bakeries USA, the American arm of the world’s largest baking company, has confirmed that hackers stole employee data by exploiting a zero-day vulnerability in Oracle’s E-Business Suite (EBS), joining a growing…

↗ Open article
News 404 Media

We Are Going to Be Okay: A Three Year Anniversary Events Recap

When we launched 404 Media in August 2023, it was a leap of faith. We were leaving the world of big, corporate media — where we worked for years alongside exceptionally brilliant colleagues, but also under the constant…

↗ Open article
Trending News The Hacker News

Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks

Ransom Breach

Threat hunters have disclosed details of a widespread data theft and extortion threat cluster that's targeting Microsoft 365 and other software-as-a-service (SaaS) offerings through information technology (IT) help desk…

↗ Open article
Trending News Cyber Security News

Linux Rootkit Injects Fileless PHP Web Shells Into Compromised F5 BIG-IP Servers

Malware Breach

A stealthy Linux rootkit is giving attackers a new way to keep control of compromised F5 BIG-IP Access Policy Manager servers. Instead of leaving an obvious malicious PHP file behind, it places a web shell only in the…

↗ Open article
News Cyber Security News

Online Maths Learning Platform Mathspace Disclosed Data Breach Impacts 1 Million Users

Breach

Online maths learning platform Mathspace has confirmed a data breach that exposed the personal information of more than one million students, parents, guardians, and school staff across Australia and New Zealand, after…

↗ Open article
Threat Intel Check Point Research

7th September – Threat Intelligence Report

Breach Research

For the latest discoveries in cyber research for the week of 7th Setpember, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Thomson Reuters, a global information and technology company, has…

↗ Open article
Trending News Cyber Security News

Switzerland Moves Away From Microsoft 365 to Open-Source Alternatives

Switzerland’s federal administration is preparing to test a sovereign, open-source digital workplace that could reduce its long-term dependence on Microsoft 365 for sensitive government operations. The Swiss Federal…

↗ Open article
Trending News Cyber Security News

Hackers Abuse Trusted Google Services to Hide Credential-Stealing Phishing Attacks

Phishing

Criminals are using trusted Google services as cover for a wide phishing campaign that steals corporate credentials and, in some cases, installs remote-access software. The malicious path runs through Google-owned…

↗ Open article
News The Register Security

Nightwing CEO has a Labor Day message for staff – and apparently The Register

Nightwing CEO Bob Coleman wanted to thank his employees for their hard work over the Labor Day weekend. Unfortunately, he also thanked The Register. The cybersecurity and intelligence contractor, which prides itself on…

↗ Open article
News The Hacker News

⚡ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and More

Turning off email images should at least stop the pictures. This week, attackers had a workaround: a scannable QR code built out of text. It still appears, even with images blocked. A small detail, but an annoying one…

↗ Open article
News Cyber Security News

Natural Resources Wales Exposes Sensitive Employee Data in Spreadsheet Breach

Breach Privacy

Natural Resources Wales has disclosed a personal data breach involving a spreadsheet containing sensitive diversity information belonging to former and current employees. The incident affected people employed by Natural…

↗ Open article
Trending News Cyber Security News

Microsoft to Retire Manifest V2 Extensions and Switch to V3 for Improved Security and Performance

Microsoft will retire support for Manifest V2 browser extensions in Microsoft Edge by early 2027, requiring users, enterprises, and developers to move to Manifest V3. The transition is intended to strengthen browser…

↗ Open article
News Cyber Security News

ConnectWise Warns of New ScreenConnect Remote Access Flaw – Released Mitigation Steps

ConnectWise has warned customers about a newly identified security issue affecting file transfer behavior in ScreenConnect Remote Access Support and Access sessions. The issue impacts both cloud-hosted and on-premises…

↗ Open article
Trending News Cyber Security News

New Linux Bot Hides as Kernel Process and Launches DDoS Attacks

Malware Breach DoS

A new Linux bot called Tengu is built to stay hidden and turn compromised systems into tools for disruption. The 32-bit malware poses as a routine kernel worker, persists across several Linux setups, and can generate…

↗ Open article
News Cyber Security News

OpenAI Commits $1 Billion to Give Critical Infrastructure Defenders Frontier AI Cyber Tools

OpenAI has launched Daybreak for Frontline Defenders, a global cybersecurity initiative designed to help organizations protecting essential services use frontier AI capabilities against increasingly advanced cyber…

↗ Open article
Threat Intel Malwarebytes Labs

LG TV flaws could let attackers listen in, even in standby mode

Smart TVs are internet-connected computers with microphones, app stores, advertising systems, and access to the same home networks used by your family’s phones, laptops, printers, and smart-home devices. In the past, we…

↗ Open article
News The Register Security

Hackers drain $320M in Bitcoin from Liquid Network, claim they're the good guys

Crypto

Hackers have drained roughly $320 million in Bitcoin from the federation wallet backing the Liquid Network, while claiming to be the good guys. Liquid, a Bitcoin sidechain developed by Blockstream and used by exchanges…

↗ Open article
News The Hacker News

Your Cloud Security Checklist Doesn't Work the Way You Think It Does

If managing security across multiple cloud providers wasn't hard enough, each one fails in a different way. For the 2026 Cloud Security Index, Intruder analyzed misconfiguration data from 3,000 organizations across AWS…

↗ Open article
News The Hacker News

Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts

Malware Research

Cybersecurity researchers have disclosed details of worm-like activity that abuses ConnectWise ScreenConnect to distribute a malicious Visual Basic Script (VBScript) payload to newly connected systems. According to…

↗ Open article
Trending News The Hacker News

Telerik UI Padding-Oracle Bug Chained to Unauthenticated RCE — Public Exploit Released

Vuln Research

A TantoSec proof-of-concept turns an AES-CBC "padding oracle" in Telerik UI for ASP.NET AJAX into unauthenticated remote code execution — but only against applications in a specific non-default configuration, and…

↗ Open article
Threat Intel Malwarebytes Labs

Flirty OnlyFans promoters on X may be using AI to appear human

In a recent post, we looked at reports of League of Legends players receiving suspicious friend requests shortly after matches. The accounts quickly steered the conversation toward Discord, where they promoted paid…

↗ Open article
News The Register Security

Welsh environment regulator's FoI blunder exposes diversity data of 2,000 staff

Natural Resources Wales (NRW) says diversity data belonging to around 2,000 current and former employees who worked at the environmental regulator between April 2013 and March 2018 was exposed in a classic Freedom of…

↗ Open article
News The Register Security

UK food supply chain at risk from hostile attacks

A UK watchdog is warning that cyber criminals making moves against online systems in the food supply chain could cause serious upset, following damaging attacks on the Co-op and Marks & Spencer last year. The National…

↗ Open article
News The Register Security

Peers ask why UK cyber bill leaves execs off the personal liability hook

Peers have questioned why the UK's Cyber Security and Resilience Bill does not allow regulators to penalize senior executives when an organization's failure to comply involves their consent, connivance, or deliberate or…

↗ Open article
News The Hacker News

N-able Issues Fourth N-central Hotfix in Five Weeks for Unauthenticated RCE Flaw

Vuln

Every on-premises N-central build below 2026.3.1.14 — including servers updated to Hotfix 3 a day earlier — needs Hotfix 4. N-able's incident notice says the flaw has been exploited in the wild; its release notes say…

↗ Open article
News The Register Security

OpenAI's rebel agent swarm died young, but its chilling logs live on

OPINION You will have heard of July's OpenAI/Hugging Face incident, where thousands of the former's AI agents conducted a mass jailbreak from a notionally secure capture-the-flag lab experiment, before going on to…

↗ Open article
Trending News The Hacker News

JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies

Malware Privacy Research

Cybersecurity researchers have unpacked JSCeal, a sophisticated compiled V8 JavaScript (JSC) malware with credential harvesting, surveillance, and traffic-interception capabilities. "The payloads are protected with…

↗ Open article
Threat Intel Malwarebytes Labs

A week in security (August 31 – September 6)

Last week on Malwarebytes Labs: The hidden work of modernizing Malwarebytes X Money rollout linked to password-reset attacks Free streaming boxes may be routing criminal traffic through your home StreamRat Android…

↗ Open article
Research SANS Internet Storm Center

Critical MikroTik Vulnerability - Patch Now, (Sun, Sep 6th)

Vuln

Mikrotik released a patch late last week for an already-exploited vulnerability. The vulnerability allows an SSH authentication bypass and is already being exploited. At this point, assume compromise. Attackers have…

↗ Open article
News The Hacker News

Attackers Hijack MikroTik Routers Through Internet-Exposed SSH Without Authentication

Vuln

Attackers are exploiting MikroTik routers with their Secure Shell (SSH) remote-access service, which is reachable from the internet, to gain full administrative control without authentication, according to CERT Polska's…

↗ Open article
News The Hacker News

Four REVSTEALER-Linked Modules Disable Windows Update and Defender to Run a Crypto Miner

Elastic Security Labs has documented four previously unreported programs associated with REVSTEALER, an emerging Windows information stealer, that remain on an infected machine after the stealer deletes itself. One of…

↗ Open article
Trending News The Hacker News

Unpatched Magento and Adobe Commerce Zero-Day Exploited to Backdoor Online Stores

Vuln Malware

Attackers are exploiting a new unpatched vulnerability in Magento Open Source and Adobe Commerce that lets them run malicious code on an online store's server without logging in, Dutch e-commerce security company Sansec…

↗ Open article
News The Hacker News

Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials

Vuln Breach

JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerability in TeamCity to…

↗ Open article
News The Hacker News

Critical VMware Workstation and Fusion Flaw Lets VM Admins Execute Host Code

Broadcom has released security updates for two security flaws impacting VMware Workstation and Fusion, including one critical bug that could result in arbitrary code execution under certain conditions. The…

↗ Open article
News 404 Media

Breakthrough Quantum Test Resolves a Major Cosmic Mystery

Welcome back to the Abstract! Here are the studies this week that transcended realms, switched sexes, went south, and expanded their range. First, scientists break new ground in trying to get the universe to fit nicely…

↗ Open article
No articles found
Try adjusting your search, category, tags, source selection, or date range.