Mastodon Mastodon Mastodon Mastodon

Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Graphic depicting a hacker, cloud breach, and legal gavel related to Snowflake.

Snowflake Data Theft: Canadian Behind UNC5537 Admits Guilt

CyberSecureFox Editorial Team

26-year-old Canadian Connor Riley Moucka

Diagram illustrating Google Blogger's malware detection process with flagged blogs.

Mass False Positives Lock Blogger Sites After August 4, 2026 Glitch

CyberSecureFox Editorial Team

On August 4, 2026, the automatic moderation system of Google Blogger began massively blocking legitimate blogs, mistakenly classifying them as ...

Visual representation of cyber threats related to ScreenConnect abuse.

Attackers Abuse ScreenConnect and Fake Roblox Cheats to Deliver Malware

CyberSecureFox Editorial Team

Researchers at Securonix have uncovered an active multi-wave campaign dubbed SMOKE#SCREEN, in which attackers use phishing lures — fake Adobe ...

Key vulnerability icons representing HashiCorp, Veeam, and Django fixes.

HashiCorp, Veeam and Django patch 11 new CVEs in 2026

CyberSecureFox Editorial Team

HashiCorp, Veeam and the Django Software Foundation released fixes in early August 2026 for 11 vulnerabilities, three of which are ...

TeamCity interface displaying a highlighted RCE vulnerability alert.

Active Exploitation of CVE-2026-63077 in JetBrains TeamCity Confirmed by CISA

CyberSecureFox Editorial Team

CISA on August 5, 2026 added the vulnerability CVE-2026-63077 to the Known Exploited Vulnerabilities (KEV) catalog, confirming its active exploitation. ...

Vulnerabilities highlighted in cybersecurity advisory, showing key software.

CISA flags Langflow, Tomcat and N-central bugs under active attack

CyberSecureFox Editorial Team

CISA has added three vulnerabilities with confirmed active exploitation to the Known Exploited Vulnerabilities (KEV) catalog: a critical RCE in ...

Visual representation of N-able's N-central vulnerability and exploitation.

Active Exploitation of N-able N-central Authentication Flaws

CyberSecureFox Editorial Team

N-able has confirmed active exploitation of critical authentication bypass vulnerabilities in the N-central platform — a remote monitoring and management ...

Visual representation of a supply chain attack involving Keyv npm package.

Keyv npm ecosystem compromise: worm-like spread through stolen tokens

CyberSecureFox Editorial Team

On August 4, 2026, a large-scale supply chain attack was recorded in the npm ecosystem: malicious code first discovered in ...

Graphical representation of N-able N-central and CVE-2026-18577 security issue.

N-able N-central CVE-2026-18577 Auth Bypass Added to CISA KEV

CyberSecureFox Editorial Team

CVE-2026-18577 is an authentication bypass vulnerability in the N-able N-central remote monitoring platform (CVSS 8.2). It was added by CISA ...

Malicious npm packages targeting Alibaba developers illustrated with a Trojan horse.

Dependency-Confusion Attack Delivers RAT via Fake Alibaba npm Packages

CyberSecureFox Editorial Team

Researchers at Socket have discovered 18 malicious npm packages targeting developers who use tools from the Alibaba Group ecosystem. The ...