Mastodon Mastodon Mastodon Mastodon

Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Diagram illustrating the CVE-2026-85880 Windows ALPC vulnerability.

CVE-2026-85880: Windows ALPC heap overflow used for privilege escalation

CyberSecureFox Editorial Team

Microsoft has published a security advisory on the CVE-2026-85880 vulnerability — a heap-based buffer overflow in the Windows Advanced Local ...

AI agent Claude processes malware files linked to APT29 group.

Anthropic report: how Midnight Blizzard used Claude for automatic malware rebuilding

CyberSecureFox Editorial Team

Anthropic has published its September 2026 threat report, revealing an unprecedentedly large-scale picture of abuse of the Claude model — ...

** AI-themed illustration showing compromised servers related to PaperCut attacks.

Hundreds of AI agents used for mass exploitation of PaperCut NG/MF vulnerabilities

CyberSecureFox Editorial Team

Two critical zero-day vulnerabilities in the print management systems PaperCut NG and PaperCut MF — CVE-2026-81578 (authentication bypass, CVSS 8.8) ...

Visual representation of ShieldCrash exploiting a vulnerability in Microsoft Defender.

ShieldCrash: Public PoC Claims to Bypass the ShieldBreak Fix in Microsoft Defender

CyberSecureFox Editorial Team

A few days after Microsoft released a patch for the CVE-2026-69414 (ShieldBreak) privilege escalation vulnerability in the Microsoft Malware Protection ...

Visual representation of JSCeal malware targeting crypto with logos and data icons.

Inside JSCeal: V8 Bytecode Malware Hijacking Crypto Traders

CyberSecureFox Editorial Team

Researchers at Check Point Research have published an in-depth technical analysis of JSCeal — malware compiled into V8 engine bytecode ...

Visual representation of Microsoft’s patch addressing 970 vulnerabilities.

Inside Microsoft’s Record-Breaking September 2026 Patch Tuesday

CyberSecureFox Editorial Team

On 8 September 2026, Microsoft released the largest Patch Tuesday security update in its history, fixing around 970 vulnerabilities in ...

Graphic illustrating a critical RCE vulnerability in N-able N-central.

N-able N-central zero-day chain puts MSP environments at risk

CyberSecureFox Editorial Team

The N-able N-central remote monitoring and management platform, widely used by managed service providers (MSPs) and IT departments, contains a ...

** Illustration depicting cloud data theft concepts with devices and security symbols.

How PREY-0058 Targets Microsoft 365 with Vishing and AitM

CyberSecureFox Editorial Team

Researchers at Arctic Wolf have uncovered a large-scale data theft and extortion campaign targeting users of Microsoft 365 and other ...

Visual representation of CVE-2026-84869 VBScript worm spreading to devices.

CVE-2026-84869: Worm-like VBScript Campaign Targeting ScreenConnect Clients

CyberSecureFox Editorial Team

The critical vulnerability CVE-2026-84869 (CVSS 9.9) in the client components of ConnectWise ScreenConnect is being actively exploited for worm-like propagation ...

Email with 'INVOICE' text showcasing unicode manipulation in phishing.

How Unicode Tags Help a Mass Phishing Campaign Bypass Email Security

CyberSecureFox Editorial Team

Microsoft has recorded a large-scale phishing campaign in which attackers insert invisible characters from the Unicode Tags block (U+E0000–U+E007F) into ...