Cybersecurity News
Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.
How LangGraph Checkpoint Flaws Enable Remote Code Execution
Check Point researchers have disclosed three patched vulnerabilities in LangGraph, the LangChain open framework for building multi-agent AI applications. According ...
Google Patches Actively Exploited Chrome V8 Zero-Day CVE-2026-11645
Google has released a security update for Chrome that fixes 74 vulnerabilities, including the critically dangerous CVE-2026-11645 (CVSS 8.8) in ...
CVE-2026-50751: Authentication Bypass in Check Point Remote VPN
Check Point has reported active exploitation of critical vulnerability CVE-2026-50751 (CVSS 9.3) in its Remote Access VPN and Mobile Access ...
GitHub.dev Bug Allowed Full Access via Stolen OAuth Tokens
Security researcher Ammar Askar disclosed a vulnerability in the GitHub.dev web editor that allowed an attacker to steal a GitHub ...
VerdantBamboo campaign abuses pfSense, NAS and Egnyte devices
Researchers at Volexity have published a report on a cyber-espionage campaign in which a group believed to be linked to ...
Why VS Code Now Delays Automatic Extension Updates by Two Hours
Starting with VS Code 1.123, Microsoft is introducing a two-hour delay for automatic extension updates — a simple but effective ...
Exploited SolarWinds Serv-U DoS Vulnerability CVE-2026-28318: Analysis
On June 5, 2026, CISA added vulnerability CVE-2026-28318 (CVSS 7.5) to the Known Exploited Vulnerabilities catalog, confirming that it is ...
Miasma Supply Chain Attack Compromises 73 Microsoft GitHub Repos
The self-replicating Miasma supply chain attack has impacted Microsoft repositories on GitHub — according to researchers, 73 repositories in four ...
Active Exploitation of Cisco Catalyst SD-WAN Manager CVE-2026-20245
Cisco has confirmed active exploitation of the CVE-2026-20245 (CVSS 7.8) vulnerability in Cisco Catalyst SD-WAN Manager, which allows an authenticated ...
Asin Android spyware campaign targets Arabic-speaking OSINT users
Researchers from the Slovak company ESET have documented a new family of Android spyware codenamed Asin, targeting Arabic-speaking users. The ...