Mastodon Mastodon Mastodon Mastodon

Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Chrome logo and CVE-2026-11645 graphic in a digital security update visual.

Google Patches Actively Exploited Chrome V8 Zero-Day CVE-2026-11645

CyberSecureFox Editorial Team

Google has released a security update for Chrome that fixes 74 vulnerabilities, including the critically dangerous CVE-2026-11645 (CVSS 8.8) in ...

Illustration depicting the Check Point VPN flaw CVE-2026-50751 alert.

CVE-2026-50751: Authentication Bypass in Check Point Remote VPN

CyberSecureFox Editorial Team

Check Point has reported active exploitation of critical vulnerability CVE-2026-50751 (CVSS 9.3) in its Remote Access VPN and Mobile Access ...

Illustration of OAuth token vulnerability related to GitHub.dev.

GitHub.dev Bug Allowed Full Access via Stolen OAuth Tokens

CyberSecureFox Editorial Team

Security researcher Ammar Askar disclosed a vulnerability in the GitHub.dev web editor that allowed an attacker to steal a GitHub ...

Diagram illustrating the BRICKSTORM backdoor targeting MSPs through pfSense.

VerdantBamboo campaign abuses pfSense, NAS and Egnyte devices

CyberSecureFox Editorial Team

Researchers at Volexity have published a report on a cyber-espionage campaign in which a group believed to be linked to ...

VS Code interface highlighting a 2-hour delay for extension updates.

Why VS Code Now Delays Automatic Extension Updates by Two Hours

CyberSecureFox Editorial Team

Starting with VS Code 1.123, Microsoft is introducing a two-hour delay for automatic extension updates — a simple but effective ...

SolarWinds Serv-U server graphic highlighting CVE-2026-28318 vulnerability.

Exploited SolarWinds Serv-U DoS Vulnerability CVE-2026-28318: Analysis

CyberSecureFox Editorial Team

On June 5, 2026, CISA added vulnerability CVE-2026-28318 (CVSS 7.5) to the Known Exploited Vulnerabilities catalog, confirming that it is ...

Miasma worm emerging from a box, threatening Microsoft GitHub repositories.

Miasma Supply Chain Attack Compromises 73 Microsoft GitHub Repos

CyberSecureFox Editorial Team

The self-replicating Miasma supply chain attack has impacted Microsoft repositories on GitHub — according to researchers, 73 repositories in four ...

Visualization of Cisco SD-WAN Manager flaw CVE-2026-20245 exploitation.

Active Exploitation of Cisco Catalyst SD-WAN Manager CVE-2026-20245

CyberSecureFox Editorial Team

Cisco has confirmed active exploitation of the CVE-2026-20245 (CVSS 7.8) vulnerability in Cisco Catalyst SD-WAN Manager, which allows an authenticated ...

Graphic illustrating Asin spyware targeting Android in Arab regions.

Asin Android spyware campaign targets Arabic-speaking OSINT users

CyberSecureFox Editorial Team

Researchers from the Slovak company ESET have documented a new family of Android spyware codenamed Asin, targeting Arabic-speaking users. The ...

Visual representation of new cyber threats targeting IIS servers, linked to China.

ReliaQuest Uncovers OP-512, a Stealthy IIS Espionage Framework

CyberSecureFox Editorial Team

ReliaQuest has disclosed a previously unknown threat cluster designated OP-512, targeting Microsoft Internet Information Services (IIS) servers. The group uses ...