Skip to content

Cybersecurity news & advisories

47 / 47 active
Advisory
Threat Intel
Research
News
Media
Podcast
500 articles RSS ↗ Updated 08 Sep 2026 19:08 UTC
News CyberScoop

Why federal cyber defense demands an offense-driven mindset

Federal agencies are drowning in cybersecurity data. Every day, security operations centers absorb millions of logs, scanner alerts and inventory feeds. But raw, static data isn’t actionable intelligence. Ask a room of…

↗ Open article
News 404 Media

Channel 5 Gave Hunter Biden a List of Its Subscribers’ Emails for Some Reason

Privacy

Channel 5, the YouTube channel hosted by Andrew Callaghan, said it gave a list of its email subscribers to Hunter Biden, the former president’s son, who went on to promote his new memecoin, a move that a data privacy…

↗ Open article
Trending Research Tenable Blog

Microsoft’s September 2026 Patch Tuesday addresses 964 CVEs (CVE-2026-81963, CVE-2026-85880)

CVE-2026-81963 ↗ CVE-2026-85880 ↗ Vuln

104 Critical 860 Important 0 Moderate 0 Low Microsoft addresses 964 CVEs, smashing July’s release as the largest Patch Tuesday release. This month’s updates include patches for two zero-days that were exploited in the…

↗ Open article ↗ CVE feed
Research Tenable Blog

Claude Mythos 5 is coming to Tenable One, powering the new “Adversary View”

Tenable is bringing Anthropic’s Claude Mythos 5 into our enterprise security offerings. Adding frontier adversarial reasoning to the Tenable One Exposure Management Platform will help customers better anticipate how…

↗ Open article
News Cyber Security News

FortiOS and FortiProxy ZTNA Validation Vulnerability Allows Attacker to Perform a Man-in-the-Middle Attack

Vuln

Fortinet has disclosed a high-severity certificate validation flaw in the Agentless ZTNA portal of FortiOS and FortiProxy that could let an unauthenticated remote attacker intercept traffic flowing between the ZTNA…

↗ Open article
News Cyber Security News

Hackers Actively Exploiting FortiGate Firewalls to Deploy Custom Node.js Malware

Vuln Malware Breach

An active exploitation campaign targeting FortiGate firewalls, in which attackers weaponize a critical vulnerability to plant a custom-built Node.js remote access trojan (RAT) that turns compromised perimeter devices…

↗ Open article
Trending News Cyber Security News

CISA Warns of Chromium Type Confusion 0-Day Vulnerability Actively Exploited in Attacks

CVE-2026-85046 ↗ Vuln

CISA has added a critical Google Chromium V8 type confusion vulnerability, tracked as CVE-2026-85046 , to its Known Exploited Vulnerabilities (KEV) Catalog, warning that the flaw is being actively exploited in attacks…

↗ Open article ↗ CVE feed
Trending News The Hacker News

Slim Spider Steals Crypto Custody Secrets From Brazilian Financial Institution

APT Privacy

A previously undocumented financially motivated threat actor has been linked to attacks targeting Brazilian financial institutions since at least March 2026. Cybersecurity company CrowdStrike is tracking the…

↗ Open article
Advisory Cisco Security Advisories

Cisco UCS and UCS-Based Appliances UEFI Shell Secure Boot Bypass Vulnerability

Vuln

A vulnerability in the Unified Extensible Firmware Interface (UEFI) Shell implementation of Cisco UCS Servers and UCS-based appliances could allow an authenticated attacker with valid credentials for a user account with…

↗ Open article
News The Register Security

Boston Scientific left nursing its bottom line after cyberattack

Boston Scientific says that last month's cyberattack caused enough disruption that it is unlikely to meet its sales growth and adjusted earnings guidance for either the third quarter or the full year. The medical device…

↗ Open article
News Cyber Security News

Ivanti EPMM, Neurons and Sentry Vulnerabilities Enable Privilege Escalation and RCE Attacks

Vuln

Ivanti has disclosed a wave of security advisories affecting three flagship enterprise products, Endpoint Manager Mobile , Neurons for ITSM, and Sentry, exposing organizations to risks ranging from privilege escalation…

↗ Open article
Trending News Cyber Security News

Dell Secure Connect Gateway Vulnerabilities Allow Hackers to Gain Unauthorized Access

Vuln

Dell has disclosed three critical vulnerabilities in its Secure Connect Gateway 5.0 platform that could allow attackers to gain unauthorized access , execute commands remotely, and obtain root-level control of affected…

↗ Open article
News Cyber Security News

ChatGPT Sandbox Flaw Lets Attackers Steal Gmail Data Across Accounts via Hidden Channel

A covert cross-account communication channel inside ChatGPT let an attacker hijack a victim’s session and silently exfiltrate data from connected apps like Gmail, all while the victim saw nothing unusual in their…

↗ Open article
News The Register Security

How to secure hybrid meeting rooms without sacrificing user experience

Secure by design videoconferencing products may be vital for customer trust and operational resilience, but if they aren't usable, organizations are on a hiding to nothing. Videoconferencing security is no longer a…

↗ Open article
News The Hacker News

Liquid Hackers Return 3,400 Bitcoin Taken via Elements Bug, Still Holding $47M in BTC

Crypto

Whoever took nearly 4,000 bitcoin from the Liquid Network on Sunday, September 6, returned 3,400 of it the next day, Bitcoin's public record shows. About 598.5 bitcoin has not come back. Liquid is a Bitcoin sidechain…

↗ Open article
News The Hacker News

ChatGPT Flaw Let a Planted Prompt Send a Victim's Gmail Data to Another Account

Research

Check Point Research said in a report published today that a single instruction planted in a ChatGPT conversation could cause ChatGPT to quietly work for an attacker while answering the user's question as usual. In the…

↗ Open article
News The Register Security

LG accused of 'egregious invasion of privacy' over TV data collection

Privacy

LG is once again fending off allegations that its expensive consumer hardware gathers extensive information about users and their surroundings for the benefit of its advertising business. The latest concerns center on…

↗ Open article
News Cyber Security News

Reflectiz Launches Agentic Pentesting for Websites: Up to 10x Coverage vs Conventional Pentests

Vuln

Boston, MA, USA, September 8th, 2026, CyberNewswire Specialized team of AI agents that discover, attack, and validate web vulnerabilities, leveraging pre-existing site context to eliminate noise and speed remediation…

↗ Open article
Trending Research Tenable Blog

StyleSmuggler (CVE-2026-75650): Frequently asked questions about Adobe Commerce and Magento zero-day

CVE-2026-75650 ↗ Vuln

A critical unauthenticated remote code execution (RCE) zero-day in Adobe Commerce and Magento Open Source, dubbed StyleSmuggler, has been actively exploited since September 4 with attacks observed three days before a…

↗ Open article ↗ CVE feed
No articles found
Try adjusting your search, category, tags, source selection, or date range.