Mastodon Mastodon Mastodon Mastodon

Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

SonicWall SMA 1000 device depicted under attack with folders below.

Critical SonicWall SMA 1000 Vulnerabilities Exploited in the Wild

CyberSecureFox Editorial Team

SonicWall has confirmed active exploitation of multiple vulnerabilities in Secure Mobile Access (SMA) 1000 series devices — enterprise VPN gateways ...

SonicWall device with a CVSS 10.0 threat indicator and icons representing vulnerabilities.

AI Infrastructure Targeted as CISA Adds New KEV Vulnerabilities

CyberSecureFox Editorial Team

On September 2, 2026, CISA added seven vulnerabilities to the Known Exploited Vulnerabilities (KEV) catalog, confirming their active exploitation. Affected ...

Digital art of a shield with a stylized eagle and data breach concept.

FalconFlank, HardBreacher and ShieldBreak PoCs Against Endpoint Security

CyberSecureFox Editorial Team

The security researcher known under the alias MSNightmare (INFINITE NIGHTMARE) has published on GitHub a public PoC exploit called FalconFlank, ...

AI brain breaking free from a glass enclosure amid cybersecurity elements.

How Frontier AI Cybersecurity Models Became Both Shield and Threat

CyberSecureFox Editorial Team

In early September 2026, the three largest AI developers — Google, Anthropic and OpenAI — almost simultaneously unveiled specialized cybersecurity ...

Android phone displays a banking trojan concept with Meta ads and a mouse trap.

ThreatFabric reports StreamRat Android banking trojan via Meta ads

CyberSecureFox Editorial Team

Researchers at ThreatFabric have discovered a new Android banking trojan called StreamRat, which was distributed through a fake advertising campaign ...

Visual representation of the Sality botnet takedown with flags and computers.

How Global Law Enforcement Dismantled the Sality P2P Botnet

CyberSecureFox Editorial Team

The US Department of Justice has announced the completion of a multinational operation to dismantle the Sality botnet — one ...

Cybersecurity breach visualization with cracked server and glowing elements.

CVE-2026-82329 in JFrog Artifactory: Unauthenticated Admin Access

CyberSecureFox Editorial Team

A critical vulnerability CVE-2026-82329 with a CVSS score of 9.8 has been discovered in JFrog Artifactory. It allows an unauthenticated ...

Visual representation of iOS spyware delivery via Composer packages.

Malicious Packagist Themes Drop iOS Spyware and Steal Crypto

CyberSecureFox Editorial Team

Researchers from Socket discovered 13 malicious Composer packages on Packagist disguised as themes for the Vietnamese CMS platforms OphimCMS and ...

Visual representation of CVE vulnerabilities related to Langflow and Rails.

Remote Code Execution in Langflow and Rails Active Storage: CVE Analysis

CyberSecureFox Editorial Team

Two critical vulnerabilities — CVE-2026-0768 in the AI application development platform Langflow and CVE-2026-66066 (KindaRails2Shell) in the Active Storage component ...

Visual representation of a PowerShell reverse tunnel in cybersecurity context.

Microsoft analyzes TerminalFix attacks with DLL sideloading and AD recon

CyberSecureFox Editorial Team

Microsoft has published a detailed analysis of the new TerminalFix campaign, a variant of the ClickFix technique targeting organizations across ...