2150 items
Unread (2150) All Dismissed
INFO
New BTMOB Android Malware Enables Full Device Takeover
SecurityWeek breachesransomwaresupply-chain 9d ago
INFO
Critical FortiClient EMS Vulnerability Exploited in Fresh Attacks
SecurityWeek breachesransomwaresupply-chain 9d ago
INFO
Romanian gets 5 years in prison for hacking Oregon govt network
BleepingComputer breachesransomwaresupply-chain 9d ago
INFO
IBM and Red Hat Commit $5 Billion to Secure Open Source Supply Chains Under “Project Lightwell”
SecurityWeek breachesransomwaresupply-chain 9d ago
INFO
Focus on Cyber Insurance: How Quantifying Risk Is Reshaping Security
rss:darkreading breachesmalwarethreat-actors 9d ago
INFO
Webinar: Why network incidents take too long to resolve
BleepingComputer breachesransomwaresupply-chain +1 9d ago
INFO
Webinar: Too many tools are slowing network incident response
BleepingComputer 11d ago
INFO
New Edamame Platform Aims to Catch AI Coding Agents Going Off the Rails
SecurityWeek breachesransomwaresupply-chain 9d ago
HIGH
Popular GitHub Action Tags Redirected to Imposter Commit to Steal CI/CD Credentials
The Hacker News supply-chainbreachesmalware +81 18d ago
INFO
ABB AC500 V3 Stack Buffer Overflow in Cryptographic Message Syntax
rss:cisa-advisories 25d ago
INFO
Fuji Electric Tellus
rss:cisa-advisories 25d ago
INFO
ABB AC500 V3 Multiple Vulnerabilities
rss:cisa-advisories 25d ago
INFO
Subnet Solutions PowerSYSTEM Center
rss:cisa-advisories 25d ago
INFO
ABB Automation Builder Gateway for Windows
rss:cisa-advisories 25d ago
INFO
ABB WebPro SNMP Card PowerValue Multiple Vulnerabilities
rss:cisa-advisories 25d ago
INFO
Siemens Siemens ROS#
rss:cisa-advisories 23d ago
INFO
Siemens gWAP
rss:cisa-advisories 23d ago
INFO
Siemens SIMATIC
rss:cisa-advisories 23d ago
INFO
Siemens Ruggedcom Rox
rss:cisa-advisories 23d ago
INFO
Siemens Ruggedcom Rox
rss:cisa-advisories 23d ago
INFO
Siemens Simcenter Femap
rss:cisa-advisories 23d ago
INFO
Universal Robots Polyscope 5
rss:cisa-advisories 23d ago
INFO
Siemens Ruggedcom Rox
rss:cisa-advisories 23d ago
INFO
Siemens Teamcenter
rss:cisa-advisories 23d ago
INFO
Siemens Solid Edge
rss:cisa-advisories 23d ago
INFO
Siemens SENTRON 7KT PAC1261 Data Manager
rss:cisa-advisories 23d ago
INFO
Siemens Opcenter RDnL
rss:cisa-advisories 23d ago
INFO
Siemens Ruggedcom Rox
rss:cisa-advisories 23d ago
INFO
Siemens Industrial Devices
rss:cisa-advisories 23d ago
INFO
Siemens SIMATIC S7 PLC Web Server
rss:cisa-advisories 23d ago
INFO
Siemens SIPROTEC 5
rss:cisa-advisories 23d ago
INFO
Siemens SIMATIC
rss:cisa-advisories 23d ago
INFO
Grafana GitHub Token Breach Led to Codebase Download and Extortion Attempt
The Hacker News 20d ago
INFO
Kieback & Peter DDC Building Controllers
rss:cisa-advisories 18d ago
INFO
Siemens RUGGEDCOM APE1808 Devices
rss:cisa-advisories 18d ago
INFO
ABB CoreSense HM and CoreSense M10
rss:cisa-advisories 18d ago
INFO
ScadaBR
rss:cisa-advisories 18d ago
INFO
ZKTeco CCTV Cameras
rss:cisa-advisories 18d ago
INFO
CISA Exposes Secrets, Credentials in 'Private' Repo
rss:darkreading 17d ago
INFO
GitHub Investigating TeamPCP Claimed Breach of ~4,000 Internal Repositories
The Hacker News 17d ago
INFO
GitHub investigates internal repositories breach claimed by TeamPCP
BleepingComputer 17d ago
INFO
GitHub confirms breach of 3,800 repos via malicious VSCode extension
BleepingComputer 17d ago
INFO
Schnieider Electric EcoStruxure Machine Expert HVAC (SEVD-2026-132-01)
rss:cisa-advisories 17d ago
INFO
Senator presses CISA for answers about alleged GitHub repository leak
The Record 17d ago
INFO
GitHub confirms being hacked by TeamPCP, says customer data unaffected
The Record 17d ago
INFO
Grafana breach caused by missed token rotation after TanStack attack
BleepingComputer 16d ago
INFO
GitHub Confirms Breach, 4K Internal Repos Stolen
rss:darkreading 16d ago
INFO
GitHub Internal Repositories Breached via Malicious Nx Console VS Code Extension
The Hacker News 16d ago
INFO
GitHub links repo breach to TanStack npm supply-chain attack
BleepingComputer 16d ago
INFO
ABB Terra AC Wallbox
rss:cisa-advisories 16d ago
INFO
ABB B&R Automation Studio
rss:cisa-advisories 16d ago
INFO
ABB B&R Automation Runtime
rss:cisa-advisories 16d ago
INFO
ABB B&R PCs
rss:cisa-advisories 16d ago
INFO
Grafana Says Codebase and Other Data Stolen via TanStack Supply Chain Attack
SecurityWeek 15d ago
INFO
Megalodon GitHub Attack Targets 5,561 Repos with Malicious CI/CD Workflows
The Hacker News 15d ago
INFO
CISA Security Leak
rss:schneier 14d ago
INFO
Lawmakers Demand Answers as CISA Tries to Contain Data Leak
Krebs 14d ago
INFO
Packagist Supply Chain Attack Infects 8 Packages Using GitHub-Hosted Linux Malware
The Hacker News 13d ago
INFO
npm Adds 2FA-Gated Publishing and Package Install Controls Against Supply Chain Attacks
The Hacker News 13d ago
INFO
Laravel Lang packages hijacked to deploy credential-stealing malware
BleepingComputer 13d ago
INFO
Over 5,500 GitHub Repositories Infected in ‘Megalodon’ Supply Chain Attack
SecurityWeek 12d ago
INFO
ABB Terra AC
rss:cisa-advisories 11d ago
INFO
ABB LVS MConfig
rss:cisa-advisories 11d ago
INFO
ABB Ability Camera Connect
rss:cisa-advisories 11d ago
INFO
Eppendorf BioFlo 320
rss:cisa-advisories 11d ago
INFO
ABB AbilityTM Zenon Remote Transport Vulnerability
rss:cisa-advisories 11d ago
INFO
ABB AC500 V2
rss:cisa-advisories 11d ago
INFO
ABB B&R Automation Runtime DoS Vulnerability in System Diagnostics Manager (SDM)
rss:cisa-advisories 11d ago
INFO
Feeding Frenzy: 'Megalodon' Malware Infects Thousands of GitHub Repos
rss:darkreading 10d ago
INFO
Malicious npm Package Stole Files From Claude AI User Directory via GitHub
The Hacker News 9d ago
INFO
ABB EIBPORT
rss:cisa-advisories 9d ago
INFO
Jinan USR IOT Technology Limited (PUSR) USR-W610 RS232/485 to Wi-Fi/Ethernet Converter
rss:cisa-advisories 9d ago
INFO
ABB Busch-Welcome 2 Wire Door Opener Actuator
rss:cisa-advisories 9d ago
INFO
Fourth Frontier Frontier X Mobile Application, Frontier X2
rss:cisa-advisories 9d ago
INFO
CP Plus 8 Ch. Network Video Recorder
rss:cisa-advisories 9d ago
INFO
XCharge C6
rss:cisa-advisories 9d ago
INFO
KMW CCTV Security Cameras
rss:cisa-advisories 9d ago
INFO
MacGregor Voyage Data Recorder (VDR) G4e
rss:cisa-advisories 9d ago
INFO
Supply Chain Compromises Impact Nx Console and GitHub Repositories
rss:cisa-advisories 9d ago
INFO
Microsoft Slams Public Zero-Day Disclosures Amid GitHub Researcher Account Removal
The Hacker News 8d ago
INFO
Microsoft calls zero-day releases ‘never justifiable’ as researcher threatens to drop more
The Record 8d ago
INFO
OpenAI Codex Authentication Tokens Stolen in codexui-android npm Supply Chain Attack
The Hacker News 5d ago
INFO
Red Hat removes tainted packages after software pipeline compromise
The Record 4d ago
INFO
VS Code zero-day lets hackers steal GitHub tokens in one click
BleepingComputer 3d ago
INFO
NAVTOR NavBox
rss:cisa-advisories 2d ago
INFO
Hitachi Energy MACH HiDraw
rss:cisa-advisories 2d ago
INFO
Hitachi Energy ITT600 Explorer
rss:cisa-advisories 2d ago
INFO
B&R PPT30 Operating System
rss:cisa-advisories 2d ago
INFO
Hitachi Energy RTU500
rss:cisa-advisories 2d ago
INFO
Claude Code GitHub Action Flaw Let One Malicious Issue Hijack Repositories
The Hacker News 1d ago
INFO
New AI Usage Report: Enterprise AI Risk Is Heavily Concentrated Among a Small Group of AI "Power users"
The Hacker News supply-chainbreachesmalware 9d ago
INFO
Gitea Vulnerability Exposed 30,000 Deployments to Attacks
SecurityWeek breachesransomwaresupply-chain 9d ago
INFO
Raising the Cybersecurity Stakes: Ante up for the Agentic Era
SecurityWeek breachesransomwaresupply-chain 9d ago
INFO
Hackers Leak DentaQuest Information Impacting 2.6 Million
SecurityWeek breachesransomwaresupply-chain +11 1d ago
INFO
Instructure Breach Exposes Schools' Vendor Dependence
rss:darkreading 30d ago
INFO
ShinyHunters Claims Second Attack Against Instructure
rss:darkreading 28d ago
INFO
Instructure Reaches Ransom Agreement with ShinyHunters to Stop 3.65TB Canvas Leak
The Hacker News 25d ago
INFO
Congress Puts Heat on Instructure After Canvas Outage
rss:darkreading 21d ago
INFO
7-Eleven confirms breach after ShinyHunters claims
The Record 16d ago
INFO
7-Eleven data breach exposes personal information of 185,000 people
BleepingComputer 11d ago
INFO
185,000 Likely Impacted by 7-Eleven Data Breach
SecurityWeek 11d ago
INFO
Charter confirms data breach after ShinyHunters extortion threat
BleepingComputer 10d ago
INFO
Carnival Cruise confirms data breach affecting nearly 6 million people
BleepingComputer 9d ago
INFO
Charter Communications data breach affects 4.9 million accounts
BleepingComputer 8d ago
INFO
Charter Communications Data Breach Could Impact Nearly 5 Million
SecurityWeek 7d ago
CRITICAL
CVE-2026-9813 (CVSS 9.9) — FlowIntel up to version 3.3.0 contains a server-side request forgery (SSRF) vulnerability in the ext...
NVD CVE-2026-9813 9d ago
INFO
2026 World Cup: Discussing The World’s Biggest Game’s Attack Surface
rss:unit42 threat-actorsmalwarenation-state 9d ago
INFO
AI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 Bugs
The Hacker News supply-chainbreachesmalware +19 6h ago
INFO
VoidStealer Malware Darts Past Google Chrome's Encryption
rss:darkreading 30d ago
INFO
Android Adds Intrusion Logging for Sophisticated Spyware Forensics
The Hacker News 24d ago
INFO
A 0-click exploit chain for the Pixel 10: When a Door Closes, a Window Opens
rss:googleprojectzero 24d ago
INFO
Google’s Surge in Chrome Vulnerability Discoveries Likely Driven by AI
SecurityWeek 16d ago
INFO
Google accidentally exposed details of unfixed Chromium flaw
BleepingComputer 15d ago
INFO
Google API Keys Remain Active After Deletion
rss:darkreading 15d ago
INFO
GlassWorm Malware Takedown Disrupts Developer Supply Chain Attack Infrastructure
The Hacker News 10d ago
INFO
Google Unveils AI Threat Defense Platform to Fight AI-Powered Cyberattacks
SecurityWeek 9d ago
INFO
US charges Google security engineer with Polymarket insider trading
BleepingComputer 8d ago
INFO
Google Chrome adds session cookie theft protection for all users
BleepingComputer 8d ago
INFO
Critical WP Maps Pro Flaw Actively Exploited to Create Admin Accounts
The Hacker News 5d ago
INFO
Google fixes one actively exploited Android zero-day, 124 flaws
BleepingComputer 4d ago
INFO
Google adds Android protection against AI deepfake scam calls
BleepingComputer 3d ago
INFO
Malicious Notifications Could Trick Google Gemini Users
rss:darkreading 3d ago
INFO
Google DoubleClick Abused in New Malspam Campaign to Deliver DesckVB RAT
The Hacker News 2d ago
INFO
WhatsApp, Slack Notifications Could Hijack Google Gemini on Android
The Hacker News 2d ago
INFO
Fake Sites Mimicking Open-Source Tools Rank High on Google to Deliver Malware via TDS
The Hacker News 2d ago
INFO
FlutterShell Backdoor Spreads to macOS via Malicious Google and YouTube Ads
The Hacker News 2d ago
INFO
Gemini Voice Assistant Hijacked via Messaging Notifications
SecurityWeek 2d ago
INFO
Sextortionist sentenced to 33 years for targeting 145 children
BleepingComputer breachesransomwaresupply-chain 9d ago
HIGH
CVE-2026-9804 (CVSS 7.7) — A flaw was found in KubeVirt's virt-exportserver component. An attacker with specific namespace-leve...
NVD CVE-2026-9804 9d ago
HIGH
CVE-2026-6226 (CVSS 8.8) — The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to unauthenticated privilege esc...
NVD CVE-2026-6226 9d ago
CRITICAL
CVE-2026-4408 (CVSS 9) — A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file servers an...
NVD CVE-2026-4408 9d ago
INFO
BTMOB RAT Spreads Across Brazil, LatAm via MaaS Model
rss:darkreading breachesmalwarethreat-actors 9d ago
HIGH
CVE-2026-9227 (CVSS 8.8) — The GutenBee – Gutenberg Blocks plugin for WordPress is vulnerable to Arbitrary File Upload in all v...
NVD CVE-2026-9227 9d ago
HIGH
CVE-2026-7797 (CVSS 7.5) — The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for WordPress ...
NVD CVE-2026-7797 9d ago
HIGH
CVE-2026-7634 (CVSS 7.2) — The SlimStat Analytics plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Us...
NVD CVE-2026-7634 9d ago
HIGH
CVE-2026-7052 (CVSS 7.2) — The HT Contact Form – Drag & Drop Form Builder for WordPress plugin for WordPress is vulnerable to S...
NVD CVE-2026-7052 9d ago
HIGH
CVE-2026-6455 (CVSS 8.1) — The WP Contact Form 7 DB Handler plugin for WordPress is vulnerable to Cross-Site Request Forgery le...
NVD CVE-2026-6455 9d ago
HIGH
CVE-2026-44604 (CVSS 7) — A command injection vulnerability was discovered in the `rpmuncompress` utility of RPM. When extract...
NVD CVE-2026-44604 9d ago
INFO
JINX-0164 Targets Cryptocurrency Firms with Fake Recruiter Lures and macOS Malware
The Hacker News supply-chainbreachesmalware 9d ago
INFO
Nordic CISOs Handle Rising Cyber Threats Remarkably Well
rss:darkreading breachesmalwarethreat-actors 9d ago
HIGH
CVE-2026-9009 (CVSS 8.8) — The Crawlomatic Multipage Scraper Post Generator plugin for WordPress is vulnerable to Remote Code E...
NVD CVE-2026-9009 9d ago
HIGH
CVE-2026-9795 (CVSS 7.3) — A flaw was found in Keycloak's Fine-Grained Admin Permissions (FGAPv2) feature. An administrator wit...
NVD CVE-2026-9795 9d ago
MEDIUM
CVE-2026-9793 (CVSS 5.9) — A flaw was found in Keycloak. When a JSON Web Encryption (JWE) encrypted request object is submitted...
NVD CVE-2026-9793 9d ago
HIGH
CVE-2026-7802 (CVSS 8.8) — The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to authorization bypass in all v...
NVD CVE-2026-7802 9d ago
HIGH
CVE-2026-2374 (CVSS 7.2) — The Login No Captcha reCAPTCHA plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
NVD CVE-2026-2374 9d ago
INFO
Name That Toon Contest
rss:darkreading breachesmalwarethreat-actors 8d ago
MEDIUM
CVE-2026-44247 (CVSS 6.8) — Volcano is a Kubernetes-native batch scheduling system. Prior to v1.14.2, v1.13.3, and v1.12.4, the ...
NVD CVE-2026-44247 9d ago
INFO
Out of the Crypt: The Evolving Cyber Extortion Economy
rss:unit42 threat-actorsmalwarenation-state 9d ago
INFO
GPU mining malware spreads via SEO poisoning, AI chatbots
BleepingComputer breachesransomwaresupply-chain 9d ago
HIGH
CVE-2026-45136 (CVSS 7.8) — claude-code-cache-fix is a cache optimization proxy for Claude Code. From 3.5.0 to before 3.5.2, too...
NVD CVE-2026-45136 9d ago
HIGH
CVE-2026-44660 (CVSS 7.5) — UltraJSON is a fast JSON encoder and decoder written in pure C with bindings for Python 3.7+. Prior ...
NVD CVE-2026-44660 9d ago
INFO
Ransomware Actors Show Up In Person to Steal Law Firm Data
rss:darkreading breachesmalwarethreat-actors 9d ago
HIGH
CVE-2026-5509 (CVSS 7.2) — An authenticated command injection vulnerability exists in the Archer BE450 v1 and BE7200 v1 router ...
NVD CVE-2026-5509 9d ago
HIGH
CVE-2026-44378 (CVSS 7.5) — Botan is a C++ cryptography library. Prior to 3.12.0, certain patterns of indefinite length encoding...
NVD CVE-2026-44378 9d ago
TL;DR
Many organizations can detect network issues quickly, but investigations and coordination often slow incident resolution. This webinar explores how automation and AI-assisted workflows can help IT teams reduce delays and improve response times. [...]
breachesransomwaresupply-chainmalware
Read full story ↗