Mastodon Mastodon Mastodon Mastodon

Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Visual representation of the Gravity SMTP vulnerability and its impact.

Gravity SMTP flaw leaks email API keys via unauthenticated endpoint

CyberSecureFox Editorial Team

The Gravity SMTP plugin for WordPress, installed on approximately 100,000 sites, is being massively exploited via the CVE-2026-4020 vulnerability (CVSS ...

Visual representation of SocGholish malware network disrupting fake updates.

Law Enforcement Dismantles SocGholish WordPress Malware

CyberSecureFox Editorial Team

Law enforcement agencies in the Netherlands, Canada, Germany, and the United States have conducted a coordinated operation to dismantle the ...

NGINX logo breaking through a server, highlighting critical CVE bugs.

Critical NGINX vulnerabilities CVE-2026-42530 and CVE-2026-42055 fixed by F5

CyberSecureFox Editorial Team

F5 has released security updates that address two critical vulnerabilities in NGINX Open Source and related products. Both vulnerabilities — ...

Illustration of a USB worm spreading malware via Windows computers.

Microsoft tracks Tor-based Windows crypto-clipper with USB worm

CyberSecureFox Editorial Team

The Microsoft Defender Security Research team has published an in-depth analysis of a Windows crypto-clipper campaign that combines worm-like propagation ...

Visual representation of a security flaw in Microsoft Defender, emphasizing CVE-2026-50656.

Microsoft Confirms Work on Patch for RoguePlanet CVE-2026-50656

CyberSecureFox Editorial Team

Microsoft has confirmed it is working on a fix for vulnerability CVE-2026-50656 (CVSS 7.8) in the Microsoft Malware Protection Engine, ...

Visual representation of Fortinet FortiSandbox impacted by critical CVEs.

Exploitation attempts reported for three critical FortiSandbox flaws

CyberSecureFox Editorial Team

Three critical vulnerabilities in the Fortinet FortiSandbox product line — CVE-2026-39813, CVE-2026-39808, and CVE-2026-25089 — all with a CVSS 9.1 ...

Visual representation of Chrome wallpaper extensions and adware risks.

Socket uncovers 152 Chrome “live wallpaper” extensions faking traffic

CyberSecureFox Editorial Team

Researchers at Socket identified a cluster of 152 Google Chrome extensions that were presented as live wallpapers and new tab ...

Smartphone with a Facebook screen, fishing hook, and a trap illustration.

How Sniper Dz Uses Fake Facebook Pages and Push Ads in MENA

CyberSecureFox Editorial Team

Researchers from Group-IB have revealed details of a large-scale fraud campaign targeting users in the Middle East and North Africa ...

Illustration of PAN-OS VPN flaw highlights and network security threats.

Palo Alto PAN-OS GlobalProtect VPN Auth Bypass Exploited

CyberSecureFox Editorial Team

Palo Alto Networks reported the active exploitation of vulnerability CVE-2026-0257 in the GlobalProtect portal and gateway components of GlobalProtect — ...