Mastodon Mastodon Mastodon Mastodon

Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Visual representation of N-able's N-central vulnerability and exploitation.

Active Exploitation of N-able N-central Authentication Flaws

CyberSecureFox Editorial Team

N-able has confirmed active exploitation of critical authentication bypass vulnerabilities in the N-central platform — a remote monitoring and management ...

Visual representation of a supply chain attack involving Keyv npm package.

Keyv npm ecosystem compromise: worm-like spread through stolen tokens

CyberSecureFox Editorial Team

On August 4, 2026, a large-scale supply chain attack was recorded in the npm ecosystem: malicious code first discovered in ...

Graphical representation of N-able N-central and CVE-2026-18577 security issue.

N-able N-central CVE-2026-18577 Auth Bypass Added to CISA KEV

CyberSecureFox Editorial Team

CVE-2026-18577 is an authentication bypass vulnerability in the N-able N-central remote monitoring platform (CVSS 8.2). It was added by CISA ...

Malicious npm packages targeting Alibaba developers illustrated with a Trojan horse.

Dependency-Confusion Attack Delivers RAT via Fake Alibaba npm Packages

CyberSecureFox Editorial Team

Researchers at Socket have discovered 18 malicious npm packages targeting developers who use tools from the Alibaba Group ecosystem. The ...

Visual representation of Chrome passkey exploitation risks on Windows.

Unit 42 details three post-exploit attacks on Chrome passkeys

CyberSecureFox Editorial Team

Researchers from Palo Alto Networks Unit 42 have published a study of three post-exploitation techniques that allow malware running with ...

Coldcard hardware wallet with security lock graphic and data display.

Coldcard firmware flaw leaves Bitcoin seeds under-protected

CyberSecureFox Editorial Team

Researchers at Block have disclosed a critical bug in the firmware of Coldcard hardware wallets made by Canadian company Coinkite: ...

Illustration of Cisco Secure FMC with CVE-2026-20316 alert and shield.

In-depth look at Cisco Secure FMC CVE-2026-20316 and its exploitation chain

CyberSecureFox Editorial Team

On July 29, 2026, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) added vulnerability CVE-2026-20316 to the Known Exploited Vulnerabilities ...

Urgent Updates for Adobe Campaign Classic and Bridge

CyberSecureFox Editorial Team

Adobe has released security updates that address the maximum‑severity vulnerability CVE-2026-48449 (CVSS 10.0) in the marketing automation platform Adobe Campaign ...

Coca-Cola and Fairlife logos with a milk bottle and data security elements.

How the Fairlife Ransomware Attack Hit Coca-Cola’s Operations

CyberSecureFox Editorial Team

Coca-Cola has officially confirmed that the ransomware attack on its dairy subsidiary Fairlife involved unauthorized access to systems and data ...

Hacker attempts to exploit Windows security vulnerability CVE-2026-33825.

CVE-2026-33825 BlueHammer: Windows LPE Exploit and Researcher–Microsoft Conflict

CyberSecureFox Editorial Team

The local privilege escalation vulnerability CVE-2026-33825 affecting Microsoft Windows has become the starting point of a public conflict between a ...