Cybersecurity News
Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.
Google Patches Actively Exploited Chrome V8 Zero-Day CVE-2026-11645
Google has released a security update for Chrome that fixes 74 vulnerabilities, including the critically dangerous CVE-2026-11645 (CVSS 8.8) in ...
CVE-2026-50751: Authentication Bypass in Check Point Remote VPN
Check Point has reported active exploitation of critical vulnerability CVE-2026-50751 (CVSS 9.3) in its Remote Access VPN and Mobile Access ...
GitHub.dev Bug Allowed Full Access via Stolen OAuth Tokens
Security researcher Ammar Askar disclosed a vulnerability in the GitHub.dev web editor that allowed an attacker to steal a GitHub ...
VerdantBamboo campaign abuses pfSense, NAS and Egnyte devices
Researchers at Volexity have published a report on a cyber-espionage campaign in which a group believed to be linked to ...
Why VS Code Now Delays Automatic Extension Updates by Two Hours
Starting with VS Code 1.123, Microsoft is introducing a two-hour delay for automatic extension updates — a simple but effective ...
Exploited SolarWinds Serv-U DoS Vulnerability CVE-2026-28318: Analysis
On June 5, 2026, CISA added vulnerability CVE-2026-28318 (CVSS 7.5) to the Known Exploited Vulnerabilities catalog, confirming that it is ...
Miasma Supply Chain Attack Compromises 73 Microsoft GitHub Repos
The self-replicating Miasma supply chain attack has impacted Microsoft repositories on GitHub — according to researchers, 73 repositories in four ...
Active Exploitation of Cisco Catalyst SD-WAN Manager CVE-2026-20245
Cisco has confirmed active exploitation of the CVE-2026-20245 (CVSS 7.8) vulnerability in Cisco Catalyst SD-WAN Manager, which allows an authenticated ...
Asin Android spyware campaign targets Arabic-speaking OSINT users
Researchers from the Slovak company ESET have documented a new family of Android spyware codenamed Asin, targeting Arabic-speaking users. The ...
ReliaQuest Uncovers OP-512, a Stealthy IIS Espionage Framework
ReliaQuest has disclosed a previously unknown threat cluster designated OP-512, targeting Microsoft Internet Information Services (IIS) servers. The group uses ...