Mastodon Mastodon Mastodon Mastodon

Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Diagram showing data transfer from a laptop to cloud storage with warning sign.

How xAI’s Grok Build Tool Sent Full Git Repositories to Its Cloud

CyberSecureFox Editorial Team

The Grok Build CLI tool from xAI, designed to help with writing code, was, according to a researcher, uploading to ...

Visual representation of Secure Boot concepts with UEFI and Microsoft's role.

ESET finds vulnerable legacy UEFI shims undermining Secure Boot

CyberSecureFox Editorial Team

Researchers at ESET identified 11 legacy UEFI bootloaders (so-called shims) signed by Microsoft that are still considered trusted on most ...

Visual representation of ClickLock Stealer malware affecting a macOS device.

How ClickLock Stealer Forces macOS Users to Give Up Passwords

CyberSecureFox Editorial Team

Researchers at Group-IB have discovered a new macOS infostealer, ClickLock Stealer, which uses a fundamentally different approach to obtaining the ...

n8n Enterprise token exchange illustration highlighting CVE-2026-59208.

How CVE-2026-59208 exposes n8n Enterprise token exchange

CyberSecureFox Editorial Team

A vulnerability CVE-2026-59208 has been discovered in the n8n workflow automation platform that allows an attacker to authenticate as another ...

SAP logo shield with warning icons illustrating vulnerability risks.

Three Critical SAP Vulnerabilities Patched in July 2026 Release

CyberSecureFox Editorial Team

SAP has released the July 2026 security update bundle, which fixes three critical vulnerabilities: memory corruption in SAP NetWeaver Application ...

Visual representation of Zoom's security vulnerability and patch announcement.

Emergency Zoom Updates Fix Critical Windows Account Takeover Bug

CyberSecureFox Editorial Team

Zoom has released emergency security updates addressing critical vulnerability CVE-2026-53412 with a CVSS score of 9.8 in the Zoom Workplace ...

Graphic illustrating cyberattack on Transport for London featuring a broken screen.

Five-Year Sentences for TfL Cyberattack Linked to Scattered Spider

CyberSecureFox Editorial Team

On 16 July 2026, Woolwich Crown Court sentenced Owen Flowers (18) and Talha Jubair (20) to five and a half ...

Visual representation of AI-assisted attacks on networks, featuring servers and users.

How AI Is Accelerating Real-World Attacks on Active Directory and AWS

CyberSecureFox Editorial Team

In early June 2025, researchers at Huntress documented an incident in which an unknown attacker used a PowerShell script, apparently ...

Diagram illustrating Microsoft 365 phishing tactics using Evilginx.

How Lexfo uncovered dual MFA-bypass phishing for Microsoft 365

CyberSecureFox Editorial Team

The French company Lexfo discovered three active phishing campaigns against Microsoft 365 after taking advantage of one operator’s mistake: they ...

Diagram illustrating Forg365 phishing as a service targeting Microsoft 365.

Inside the Forg365 phishing-as-a-service platform for Microsoft 365

CyberSecureFox Editorial Team

Researchers from ZeroBAC have disclosed details of a new phishing-as-a-service (PhaaS) platform called Forg365, which targets Microsoft 365 accounts. Distributed ...