Cybersecurity News
Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.
Critical SonicWall SMA 1000 Vulnerabilities Exploited in the Wild
SonicWall has confirmed active exploitation of multiple vulnerabilities in Secure Mobile Access (SMA) 1000 series devices — enterprise VPN gateways ...
AI Infrastructure Targeted as CISA Adds New KEV Vulnerabilities
On September 2, 2026, CISA added seven vulnerabilities to the Known Exploited Vulnerabilities (KEV) catalog, confirming their active exploitation. Affected ...
FalconFlank, HardBreacher and ShieldBreak PoCs Against Endpoint Security
The security researcher known under the alias MSNightmare (INFINITE NIGHTMARE) has published on GitHub a public PoC exploit called FalconFlank, ...
How Frontier AI Cybersecurity Models Became Both Shield and Threat
In early September 2026, the three largest AI developers — Google, Anthropic and OpenAI — almost simultaneously unveiled specialized cybersecurity ...
How Global Law Enforcement Dismantled the Sality P2P Botnet
The US Department of Justice has announced the completion of a multinational operation to dismantle the Sality botnet — one ...
CVE-2026-82329 in JFrog Artifactory: Unauthenticated Admin Access
A critical vulnerability CVE-2026-82329 with a CVSS score of 9.8 has been discovered in JFrog Artifactory. It allows an unauthenticated ...
Malicious Packagist Themes Drop iOS Spyware and Steal Crypto
Researchers from Socket discovered 13 malicious Composer packages on Packagist disguised as themes for the Vietnamese CMS platforms OphimCMS and ...
Remote Code Execution in Langflow and Rails Active Storage: CVE Analysis
Two critical vulnerabilities — CVE-2026-0768 in the AI application development platform Langflow and CVE-2026-66066 (KindaRails2Shell) in the Active Storage component ...
Microsoft analyzes TerminalFix attacks with DLL sideloading and AD recon
Microsoft has published a detailed analysis of the new TerminalFix campaign, a variant of the ClickFix technique targeting organizations across ...