Skip to content

Cybersecurity news & advisories

44 / 44 active
Advisory
Threat Intel
Research
News
Media
Podcast
500 articles RSS ↗ Updated
News 404 Media

This ‘World of Warcraft: Forever’ Mod Blocks All Interactions With Asmongold Fans

The beta for the hotly anticipated World of Warcraft: Forever has been marred by fans of the streamer Asmongold who have filled the game’s public spaces with spam and slurs . To fix the issue, a player named Solastro…

↗ Open article
Advisory Cisco Security Advisories

Cisco Identity Services Engine Authentication Bypass Vulnerabilities

Vuln

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a remote attacker to access or manipulate data, obtain sensitive information, or cause a…

↗ Open article
News CyberScoop

Phone-hacking company that won U.S. security agency contracts hid Russian ownership, DOJ alleges

Law enforcement has arrested two leaders of a Russian-owned phone hacking company used by Kremlin agencies who allegedly masked its foreign ownership from the U.S. Defense Department, Department of Homeland Security and…

↗ Open article
Trending News The Register Security

Decades-old file security flaws found in Android, Linux, macOS, and Windows

Research

Security researchers affiliated with Austria's Graz University of Technology have found flaws in the implementation of file notification systems on Android, Linux, macOS, and Windows that leak potentially compromising…

↗ Open article
News The Register Security

CVE flood pushes Ubuntu onto weekly kernel release cycle

Canonical is speeding up Ubuntu kernel releases to one a week as AI-assisted bug hunting helps bury defenders under an ever-growing pile of CVEs. The Ubuntu maker is overhauling how it ships kernel Stable Release…

↗ Open article
Trending News The Hacker News

Placeholder third-party[.]com Referenced Across 1,700+ Repositories Now Serves Malicious Content

The "third-party[.]com" domain, commonly used as a documentation placeholder, has been observed serving a ClickFix lure to Windows browsers while displaying a harmless decoy to other users. "third-party[.]com has been a…

↗ Open article
News The Register Security

Someone went shopping in ASUS's eShop – for customer data

Asus has warned eShop customers that an intruder got into part of its online store and may have helped themselves to contact details and order records. The PC maker disclosed the incident in an email sent to customers…

↗ Open article
News Dark Reading

3 Cyber Threats That Defined the Summer of 2026

Ransom Breach

This installment of the Reporters' Notebook video series discusses the impact of AI agents breaching Hugging Face, Fairlife's ransomware attack, and Iranian-linked threat actors compromising a dozen US water systems. It…

↗ Open article
Trending News The Hacker News

Hacked Ukrainian Sites Serve Fake Cloudflare ClickFix Lures for Psychedelic Stealer

An active ClickFix campaign has been observed compromising legitimate Ukrainian business websites to inject bogus Cloudflare verification pages and trick victims into downloading a previously undocumented information…

↗ Open article
News Bleeping Computer

FedRAMP VDR & VER: Daily Scans Are Only the Beginning

Vuln

FedRAMP's new VDR and VER requirements make vulnerability management more continuous, with faster scanning, tighter remediation deadlines, and stronger evidence requirements. Anecdotes explains why the December 7…

↗ Open article
News CyberScoop

Bipartisan Senate leaders introduce bill to bolster telecom cybersecurity in response to Salt Typhoon hacks

Policy

Two Senate committee leaders are introducing legislation to foster cybersecurity standards for the telecommunications sector nearly two years after the landmark Salt Typhoon campaign was made public. First reported by…

↗ Open article
Trending News Cyber Security News

Fake PDF Files Hide Konni Malware Campaign Targeting Ukraine Organizations

Malware

A newly documented campaign targeting people and organizations focused on Ukraine uses document-themed Windows shortcuts to install a malware downloader called VelvetCake. The goal appears to be gathering political and…

↗ Open article
News 404 Media

Watch Body Cam of Man Arrested for Just Cussing at a County Meeting

Last month Fort Worth, Texas police arrested political activist EJ Carrion a week after he cursed at a city council meeting. In his driveway, they told him the charge was “disrupting some kind of procession,” according…

↗ Open article
Threat Intel Malwarebytes Labs

OpenAI agent breached Australian government site, took months to report it

Breach

An OpenAI agent didn’t take “no” for an answer when it encountered a government website’s access controls. It got through, prompting Australia’s Prime Minister Anthony Albanese to raise his concerns directly with OpenAI…

↗ Open article
Trending News The Register Security

Google to critical infra orgs: Our AI scanners won't be evil, promise

Google has jumped on the AI-defense-for-critical-systems train with its Scan for Good initiative, and says that its threat-hunting models have already autonomously uncovered critical security issues at hospitals, a…

↗ Open article
Research Rapid7 Blog

When Business Email Compromise Starts Rewriting Reality

Vuln Breach

Business Email Compromise (BEC) operates on a familiar playbook. Threat actors breach a mailbox, silently monitor operations, map approval chains, and ultimately exploit that access to divert funds or exfiltrate…

↗ Open article
Threat Intel Malwarebytes Labs

New Browser Guard features add protection before and after you click

Most of us click on search results without knowing much about the website we’re about to visit. And once we’re there, it’s not always obvious when something isn’t quite right. Now, we’ve added two new features to…

↗ Open article
Trending News Cyber Security News

AvisLoader Windows Malware That Learned to Survive Even After Its Servers Are Taken Down

Malware

AvisLoader is a Windows malware loader built to keep taking instructions after server takedowns. That makes it difficult to disrupt by simply removing a malicious website. It starts with a fake document-signing page…

↗ Open article
Trending News The Hacker News

Corp MDM Spyware Targets Logistics Firms, Steals New SMS and Redirects Calls

Malware

The logistics sector has become the target of a new malicious cyber campaign that distributes an Android spyware codenamed Corp MDM. According to Have I Been Squatted, the campaign uses fake Google Play pages branded as…

↗ Open article
Advisory CISA Alerts & Advisories

Botslab G980H Dashcams

Vuln

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to bypass authentication controls, gain unauthorized access to sensitive data and privileged device functionality, modify device…

↗ Open article
Trending Advisory CISA Alerts & Advisories

Siemens Mendix Runtime (Update A)

View CSAF Summary This advisory is revoked. Re-investigation confirmed the reported behavior is expected platform configuration and does not expose the protected attribute. The following versions of Siemens Mendix…

↗ Open article
Trending Advisory CISA Alerts & Advisories

Eufy Omni C20, Omni X10 Pro

Vuln

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to run system level commands or execute arbitrary code. The following versions of Eufy Omni C20, Omni X10 Pro are affected: Omni…

↗ Open article
Trending Advisory CISA ICS Advisories

Eufy Omni C20, Omni X10 Pro

Vuln

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to run system level commands or execute arbitrary code. The following versions of Eufy Omni C20, Omni X10 Pro are affected: Omni…

↗ Open article
Advisory CISA ICS Advisories

Botslab G980H Dashcams

Vuln

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to bypass authentication controls, gain unauthorized access to sensitive data and privileged device functionality, modify device…

↗ Open article
Trending Advisory CISA ICS Advisories

Siemens Mendix Runtime (Update A)

View CSAF Summary This advisory is revoked. Re-investigation confirmed the reported behavior is expected platform configuration and does not expose the protected attribute. The following versions of Siemens Mendix…

↗ Open article
Media Ars Technica Security

There's a new way to break RSA that's faster than anything we've seen before

The world has known for decades that the RSA cryptosystem ’s days are numbered. Once quantum computing becomes practical (estimates for that range from 3 to 20 or more years), the foundational security it provides will…

↗ Open article
Trending News Cyber Security News

Microsoft Rebuilds the SOC with AI Agents, SIEM Integration and Machine-Speed Defense

Cyberattacks can move faster than a security team can investigate them. Attackers increasingly use AI agents to automate steps that once needed several people, while defenders still work across separate monitoring and…

↗ Open article
Trending Threat Intel Malwarebytes Labs

Update Chrome: 108 security fixes for desktop, new release for Android

Over the last few days, Google issued several different Chrome updates. On September 22, Google released a Stable Channel Update for Desktop . This is the most important one for desktop users. It brings Chrome to…

↗ Open article
No articles found
Try adjusting your search, category, tags, source selection, or date range.