Mastodon Mastodon Mastodon Mastodon

Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Hacker attempts to exploit Windows security vulnerability CVE-2026-33825.

CVE-2026-33825 BlueHammer: Windows LPE Exploit and Researcher–Microsoft Conflict

CyberSecureFox Editorial Team

The local privilege escalation vulnerability CVE-2026-33825 affecting Microsoft Windows has become the starting point of a public conflict between a ...

Visual representation of Firefox update addressing CVE-2026-10702, with JIT emphasis.

CVE-2026-10702: Public Exploit and Firefox 151.0.3 Patch

CyberSecureFox Editorial Team

Mozilla has released an emergency update Firefox 151.0.3 that fixes the high-severity vulnerability CVE-2026-10702 in the browser’s JIT compiler. The ...

Visual representation of CVE-2026-60004 vulnerability in Gitea.

How CVE-2026-60004 Exposes Gitea and Why You Must Upgrade

CyberSecureFox Editorial Team

Gitea has fixed a critical remote code execution vulnerability (CVE-2026-60004, CVSS 9.8) that allows a user with write access to ...

Digital illustration highlighting an IPMI v2.0 vulnerability affecting 36K BMCs.

CVE-2013-4786: IPMI Password Hash Exposure Puts BMCs at Risk

CyberSecureFox Editorial Team

According to researchers at Lava, more than 36,000 Baseboard Management Controllers (BMC) using the IPMI protocol are reachable from the ...

OpenWrt router displaying critical odhcpd vulnerability and DHCPv6 data flow.

Critical DHCPv6 buffer overflow in odhcpd patched in OpenWrt

CyberSecureFox Editorial Team

The OpenWrt project has released version 24.10.8, which fixes the critical vulnerability CVE-2026-53921 (CVSS 3.1: 9.8) — a stack buffer ...

Visual representation of the NightLedger backdoor cyberattack framework.

NightLedger, BridgeHead and ArcBridge Used in Targeted Attacks

CyberSecureFox Editorial Team

According researchers, the Iranian group Nimbus Manticore (also known as Mirage Kitten, Smoke Sandstorm, UNC1549) is carrying out a series ...

Diagram illustrating Microsoft’s MAI-Cyber-1-Flash for MDASH security solutions.

How MAI-Cyber-1-Flash fits into Microsoft’s MDASH cyber strategy

CyberSecureFox Editorial Team

Microsoft has introduced MAI-Cyber-1-Flash, its first artificial intelligence model designed specifically for cybersecurity tasks. The model runs exclusively inside MDASH, ...

Arista VeloCloud Orchestrator with CVE-2026-16812 warning and network connections.

Arista VeloCloud Orchestrator CVE-2026-16812 Under Active Exploitation

CyberSecureFox Editorial Team

The critical vulnerability CVE-2026-16812 with a maximum CVSS score of 10.0 in on-premises versions of Arista VeloCloud Orchestrator (VCO) has ...

NVIDIA's Open Secure AI Alliance visual with security themes and company logos.

Inside NVIDIA’s Open Secure AI Alliance and the NOOA agent framework

CyberSecureFox Editorial Team

NVIDIA, together with 36 organizations, announced the creation of the Open Secure AI Alliance—a coalition to develop open technologies for ...

How Operation BlueDash abuses RMM tools via Microsoft Teams lures

CyberSecureFox Editorial Team

Researchers from ZeroBEC disclosed details of the phishing campaign Operation BlueDash, in which attackers use fake Microsoft Teams update pages ...