Cybersecurity News
Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.
CVE-2026-23550: Critical Modular DS WordPress Plugin Vulnerability Under Active Exploitation
A critical security flaw in the popular Modular DS plugin for WordPress is being actively exploited to take over production ...
Windows 11 KB5077797: Emergency Fix for Shutdown Failures and Cloud Login Problems
Microsoft has released an out-of-band update, Windows 11 KB5077797, after January’s cumulative patches disrupted core power management features in the ...
Google Chrome Lets Users Remove On-Device AI Model from Enhanced Protection
Google is expanding the use of artificial intelligence in Chrome security while simultaneously giving users more control over these technologies. ...
XSS Vulnerability in StealC Stealer Panel Exposes Cybercriminal Operators
CyberArk researchers have uncovered a critical XSS vulnerability in the web-based admin panel of the well-known info‑stealer StealC, and successfully ...
Gootloader Malware Uses Corrupted ZIP Archives to Evade Detection
Operators of the Gootloader malware family have adopted an unusual evasion technique that significantly complicates the work of antivirus engines, ...
New Windows NTFS Driver Vulnerabilities Allow SYSTEM-Level Privilege Escalation
Microsoft’s January security updates address two high-severity Windows NTFS driver vulnerabilities in ntfs.sys, the core component responsible for the NTFS ...
Mandiant NTLMv1 Rainbow Tables Turn Legacy Windows Authentication into a High-Risk Liability
The security of legacy Windows environments has taken a significant hit: Mandiant has released rainbow tables capable of cracking any ...
WhisperPair (CVE-2025-36911): How a Google Fast Pair Flaw Puts Bluetooth Headphones at Risk
Researchers from the Computer Security and Industrial Cryptography (COSIC) group at KU Leuven have disclosed a critical Google Fast Pair ...
Microsoft Dismantles RedVDS Bulletproof Hosting Platform Used for Global BEC and Phishing Attacks
Microsoft has shut down RedVDS, a large-scale virtual server rental service that functioned as bulletproof hosting for cybercriminals. According to ...
Android Accessibility Bug Disrupts Volume and Camera Controls for Select to Speak Users
Google has officially confirmed an Android accessibility bug that affects users who rely on the built‑in Select to Speak feature. ...