Mastodon Mastodon Mastodon Mastodon

Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Digital illustration highlighting an IPMI v2.0 vulnerability affecting 36K BMCs.

CVE-2013-4786: IPMI Password Hash Exposure Puts BMCs at Risk

CyberSecureFox Editorial Team

According to researchers at Lava, more than 36,000 Baseboard Management Controllers (BMC) using the IPMI protocol are reachable from the ...

OpenWrt router displaying critical odhcpd vulnerability and DHCPv6 data flow.

Critical DHCPv6 buffer overflow in odhcpd patched in OpenWrt

CyberSecureFox Editorial Team

The OpenWrt project has released version 24.10.8, which fixes the critical vulnerability CVE-2026-53921 (CVSS 3.1: 9.8) — a stack buffer ...

Visual representation of the NightLedger backdoor cyberattack framework.

NightLedger, BridgeHead and ArcBridge Used in Targeted Attacks

CyberSecureFox Editorial Team

According researchers, the Iranian group Nimbus Manticore (also known as Mirage Kitten, Smoke Sandstorm, UNC1549) is carrying out a series ...

Diagram illustrating Microsoft’s MAI-Cyber-1-Flash for MDASH security solutions.

How MAI-Cyber-1-Flash fits into Microsoft’s MDASH cyber strategy

CyberSecureFox Editorial Team

Microsoft has introduced MAI-Cyber-1-Flash, its first artificial intelligence model designed specifically for cybersecurity tasks. The model runs exclusively inside MDASH, ...

Arista VeloCloud Orchestrator with CVE-2026-16812 warning and network connections.

Arista VeloCloud Orchestrator CVE-2026-16812 Under Active Exploitation

CyberSecureFox Editorial Team

The critical vulnerability CVE-2026-16812 with a maximum CVSS score of 10.0 in on-premises versions of Arista VeloCloud Orchestrator (VCO) has ...

NVIDIA's Open Secure AI Alliance visual with security themes and company logos.

Inside NVIDIA’s Open Secure AI Alliance and the NOOA agent framework

CyberSecureFox Editorial Team

NVIDIA, together with 36 organizations, announced the creation of the Open Secure AI Alliance—a coalition to develop open technologies for ...

How Operation BlueDash abuses RMM tools via Microsoft Teams lures

CyberSecureFox Editorial Team

Researchers from ZeroBEC disclosed details of the phishing campaign Operation BlueDash, in which attackers use fake Microsoft Teams update pages ...

Visual representation of user data breach, emphasizing 55.3 million emails.

Have I Been Pwned Confirms Massive Suno Breach with Stripe Data

CyberSecureFox Editorial Team

The Have I Been Pwned service has added to its database data stolen in the breach of Suno, a popular ...

Cl0p targeting Windchill via CVE-2026-12569 with linked data flows.

Active Exploitation of PTC Windchill CVE-2026-12569 in Data-Theft Campaigns

CyberSecureFox Editorial Team

The critical vulnerability CVE-2026-12569 in the PTC Windchill product is being actively exploited as part of a data-theft campaign allegedly ...

Diagram illustrating the RefluXFS Linux XFS Reflink vulnerability CVE-2026-64600.

Linux kernel RefluXFS bug lets local users gain root

CyberSecureFox Editorial Team

On July 22, the vulnerability CVE-2026-64600 (RefluXFS) in the Linux kernel was disclosed: a race condition in the XFS reflink ...