Cybersecurity News and Updates
Cyber Command turns to veteran of intelligence agencies for top AI role
IDScan confirms breach after hackers offer 153 million driver’s license scans for sale
Treasury urges banks to file cyber scam reports, noting nearly $13 billion in losses since 2023
GitHub Adds 3-Day Dependabot Cooldown to Limit Poisoned Package Adoption
“The cooldown configuration option in the dependabot.yml still controls the behavior, though, so you can choose a different cooldown parameter that fits your project,” the Microsoft-owned subsidiary said.
According to GitHub, the
TELESHIM Abuses Telegram for C2 in Attacks Against Middle East Governments
The intrusions have resulted in the deployment of previously unreported malware families dubbed TELESHIM, MIXEDKEY, and BINDCLOAK, according to Zscaler ThreatLabz. The cybersecurity firm said it detected the campaign earlier this month.
Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows Malware
According to a new analysis by Proofpoint, Cruciferra has been utilized by various unrelated cybercriminal threat clusters to deliver a wide array of remote
Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available
Tracked as CVE-2026-16723, the vulnerability carries an Alibaba-assigned CVSS score of 9.0. The confirmed chain requires
Malvertising Sends Malware in Pieces, Then Makes the Browser Build the Executable
Confiant, which detailed the campaign on July 23, 2026, said it has operated since late 2024 and impersonated TradingView, Solana, and Luno to target retail traders and
Rockwell Patches Code Execution Flaws in Arena Simulation Software
A researcher has explained how an attacker could exploit these vulnerabilities to target industrial organizations.
The post Rockwell Patches Code Execution Flaws in Arena Simulation Software appeared first on SecurityWeek.
DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate Payouts
Swiss cybersecurity company PRODAFT is tracking the centrally administered RaaS operation under the name Funky Mantis.
“The portal combined build generation, finance,
Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCE
“Attackers chain a pre-authentication information disclosure in the FlexPLM WSDL endpoint with a server-side flaw in the Windchill login servlet, enabling
CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijacking
That model is changing.
Recent investigations into insurance-focused phishing operations reveal a more immediate approach. Instead of harvesting
Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git
Any authenticated user who can push to a project can run it. The attacker commits a crafted Jupyter notebook and opens its commit diff, which leaks a heap
Recent Comments