Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Visual representation of CVE-2026-0257 with network security elements.

Active Exploitation of Palo Alto GlobalProtect Auth Bypass CVE-2026-0257

CyberSecureFox Editorial Team

Palo Alto Networks has confirmed active exploitation of the CVE-2026-0257 vulnerability (CVSS 7.8) in PAN-OS and Prisma Access products. The ...

Visual representation of ChatGPT security measures against phishing threats.

How ChatGPhish and New AI Agent Exploits Expand Phishing Risk

CyberSecureFox Editorial Team

Researchers from Permiso Security disclosed an attack technique against ChatGPT called ChatGPhish, which turns routine web page summarization into a ...

Malicious Sicoob.Sdk targeting banking data with icons and code elements.

Fake Sicoob.Sdk NuGet Package Targets Banking APIs

CyberSecureFox Editorial Team

A malicious package named Sicoob.Sdk (versions 2.0.0–2.0.4) has been discovered in the NuGet registry, masquerading as the official C# SDK ...

Digital illustration depicting cyber threats targeting South Korea.

How Kimsuky Used Fake Webex and Security Tools to Hack South Korea

CyberSecureFox Editorial Team

The North Korean threat group Kimsuky (also known as Velvet Chollima) carried out a series of targeted attacks against South ...

Illustration depicting code injection vulnerability in software development.

Unpatched Gogs RCE Lets Authenticated Users Run Server Commands

CyberSecureFox Editorial Team

In Gogs—a popular solution for self-hosting Git repositories—a critical remote code execution (RCE) vulnerability with a CVSS 9.4 rating has ...

Diagram illustrating CVE-2026-35616 affecting FortiClient EMS with multiple devices.

Mass Infostealer Delivery via FortiClient EMS Vulnerability

CyberSecureFox Editorial Team

The critical vulnerability CVE-2026-35616 in FortiClient Endpoint Management Server (EMS) is being actively exploited by threat actors for mass delivery ...

Visual representation of the Kimwolf DDoS botnet's architecture.

Inside the Kimwolf DDoS Botnet and the Arrest of Its Alleged Admin

CyberSecureFox Editorial Team

US and Canadian authorities announced the arrest of 23‑year‑old Ottawa resident Jacob Butler (alias Dort), who is accused of administering ...

Cartoon robot named Claude Mythos in a domed display with error icons.

How Project Glasswing Exposes the Power and Risk of Claude Mythos

CyberSecureFox Editorial Team

Anthropic published the first report on its Project Glasswing program, under which the Claude Mythos AI model scanned more than ...

Visual representation of EU sanctions operation with seized servers and officials.

How Dutch Investigators Dismantled a Sanctions-Evading Hosting Network

CyberSecureFox Editorial Team

The Netherlands Fiscal Information and Investigation Service (FIOD) carried out a large-scale operation to seize more than 800 servers and ...

Unauthenticated Access to Gitea Private Containers (CVE-2026-27771)

CyberSecureFox Editorial Team

A vulnerability CVE-2026-27771 has been discovered in the Gitea version control platform that allows unauthenticated remote attackers to pull private ...