Cybersecurity News
Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.
June 2026 Microsoft Patch Tuesday: 206 Vulnerabilities Patched
The June 2026 Patch Tuesday was record-breaking in scope: Microsoft addressed 206 vulnerabilities in its products, 39 of which were ...
Miasma supply-chain attack on Microsoft OSS and PyPI packages
Microsoft has confirmed the temporary removal of a number of repositories on GitHub during an investigation into an incident involving ...
How Attackers Use Google DoubleClick to Deliver a .NET RAT Loader
Researchers at Huntress have documented a large-scale phishing email campaign in which attackers use the legitimate Google DoubleClick domain as ...
How OpenClaw AI Agents Are Compromised via Message Objects and Email
Two independent research teams — Imperva and Varonis — published research findings this week showing that OpenClaw, a self-hosted open-source ...
How Operation Ramz Took Down the Sniper Dz PhaaS Platform
According to Group-IB, an international operation led by INTERPOL has resulted in the dismantling of Sniper Dz, a phishing-as-a-service (PhaaS) ...
How LangGraph Checkpoint Flaws Enable Remote Code Execution
Check Point researchers have disclosed three patched vulnerabilities in LangGraph, the LangChain open framework for building multi-agent AI applications. According ...
Google Patches Actively Exploited Chrome V8 Zero-Day CVE-2026-11645
Google has released a security update for Chrome that fixes 74 vulnerabilities, including the critically dangerous CVE-2026-11645 (CVSS 8.8) in ...
CVE-2026-50751: Authentication Bypass in Check Point Remote VPN
Check Point has reported active exploitation of critical vulnerability CVE-2026-50751 (CVSS 9.3) in its Remote Access VPN and Mobile Access ...
GitHub.dev Bug Allowed Full Access via Stolen OAuth Tokens
Security researcher Ammar Askar disclosed a vulnerability in the GitHub.dev web editor that allowed an attacker to steal a GitHub ...
VerdantBamboo campaign abuses pfSense, NAS and Egnyte devices
Researchers at Volexity have published a report on a cyber-espionage campaign in which a group believed to be linked to ...