Mastodon Mastodon Mastodon Mastodon

Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

** Illustration depicting cloud data theft concepts with devices and security symbols.

How PREY-0058 Targets Microsoft 365 with Vishing and AitM

CyberSecureFox Editorial Team

Researchers at Arctic Wolf have uncovered a large-scale data theft and extortion campaign targeting users of Microsoft 365 and other ...

Visual representation of CVE-2026-84869 VBScript worm spreading to devices.

CVE-2026-84869: Worm-like VBScript Campaign Targeting ScreenConnect Clients

CyberSecureFox Editorial Team

The critical vulnerability CVE-2026-84869 (CVSS 9.9) in the client components of ConnectWise ScreenConnect is being actively exploited for worm-like propagation ...

Email with 'INVOICE' text showcasing unicode manipulation in phishing.

How Unicode Tags Help a Mass Phishing Campaign Bypass Email Security

CyberSecureFox Editorial Team

Microsoft has recorded a large-scale phishing campaign in which attackers insert invisible characters from the Unicode Tags block (U+E0000–U+E007F) into ...

Visual representation of PostgreSQL vulnerability CVE-2026-6471 with database elements.

How CVE-2026-6471 Impacts PostgreSQL Logical Replication

CyberSecureFox Editorial Team

PostgreSQL has released security updates that fix the CVE-2026-6471 vulnerability (CVSS 7.2) in the logical decoding mechanism. The flaw allows ...

Illustration of a MikroTik router with a security vulnerability theme.

CERT Polska Warns of Active Attacks on MikroTik RouterOS Devices

CyberSecureFox Editorial Team

CERT Polska published a warning about active exploitation of vulnerabilities in MikroTik RouterOS that allow attackers to gain full administrative ...

Chrome logo on a laptop with alert symbols highlighting vulnerabilities.

Major Chrome 153 security update fixes 230 vulnerabilities, including 5 critical flaws in WebGL and Cast

CyberSecureFox Editorial Team

On September 8, 2026, Google released the stable version of Chrome 153 (153.0.8010.36 for Linux, 153.0.8010.36/.37 for Windows and Mac) ...

Graphic illustrating vulnerabilities in PaperCut MF/NG software.

PaperCut MF/NG auth bypass and RCE vulnerabilities under attack

CyberSecureFox Editorial Team

Two recently disclosed vulnerabilities in PaperCut MF/NG — CVE-2026-81578 (authentication bypass, CVSS v4.0: 8.8) and CVE-2026-82078 (remote code execution, CVSS ...

WordPress logo breached by codes, highlighting vulnerabilities in plugins.

RCE Attacks via Super Forms and Elementor Pro File Upload Bugs

CyberSecureFox Editorial Team

Two critical vulnerabilities in the popular WordPress plugins Super Forms (CVE-2026-14894, CVSS 9.8) and Elementor Pro (CVE-2026-32475, CVSS 9.8) are ...

Graphic illustrating Chrome CVE-2026-85046 with V8 logo and error message.

CVE-2026-85046: Actively Exploited V8 Zero-Day in Google Chrome

CyberSecureFox Editorial Team

On September 3, 2026, Google released an update to the stable Chrome channel for desktop platforms, addressing 12 vulnerabilities, including ...

** Graphic depicting Cisco Nexus 9000 vulnerabilities and security alerts.

Guidance on Cisco Nexus 9000 and IOS XR Security Updates

CyberSecureFox Editorial Team

On 2 September 2026, Cisco released patches for critical vulnerability CVE-2026-20212 (CVSS 9.8) in ten Silicon One–based Nexus 9000 switch ...