Mastodon Mastodon Mastodon Mastodon

Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Visual representation of a critical security vulnerability in LiteSpeed cPanel.

LiteSpeed cPanel Plugin 0‑Day CVE-2026-48172 Exploited in the Wild

CyberSecureFox Editorial Team

The critical vulnerability CVE-2026-48172 with a maximum CVSS rating of 10.0 in the LiteSpeed User-End cPanel Plugin is being actively ...

Graphic representing a VPN service dismantled by Europol and the FBI.

How Europol and the FBI Took Down the Criminal First VPN Service

CyberSecureFox Editorial Team

Law enforcement agencies in Europe and North America carried out a coordinated operation on 19–20 May to dismantle First VPN ...

Visual representation of SQL injection vulnerability in Drupal with PostgreSQL.

CVE-2026-9082: SQL injection risk in Drupal PostgreSQL sites

CyberSecureFox Editorial Team

The Drupal team has released security updates that address the CVE-2026-9082 vulnerability in the CMS core. The flaw allows unauthenticated ...

Graphic of Kimwolf logo with connected devices and arrows, emphasizing DDoS botnet.

Kimwolf DDoS Botnet: Canadian Operator Arrested and Charged

CyberSecureFox Editorial Team

The US Department of Justice announced the arrest of 23-year-old Canadian citizen Jacob Butler (alias Dort) from Ottawa on charges ...

GitHub logo and VS Code icon connected to user and data breaches.

How a Malicious VS Code Extension Exposed 3,800 Internal GitHub Repos

CyberSecureFox Editorial Team

GitHub has confirmed a supply chain attack that resulted in the compromise of approximately 3,800 of the company’s internal repositories. ...

Graphic highlighting CISA vulnerabilities CVE-2025-34291 and CVE-2026-34926.

Langflow RCE and Apex One directory traversal added to CISA KEV

CyberSecureFox Editorial Team

On May 21, 2026, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) added two vulnerabilities to the Known Exploited Vulnerabilities ...

Microsoft Defender shield being compromised by CVE-2026-41091 and -45498.

Active exploitation of Microsoft Defender CVE-2026-41091 and CVE-2026-45498

CyberSecureFox Editorial Team

Microsoft has confirmed active exploitation of two vulnerabilities in Microsoft Defender: CVE-2026-41091 (privilege escalation to SYSTEM, CVSS 7.8) and CVE-2026-45498 ...

How Microsoft’s RAMPART and Clarity Bring Security into AI Agent Development

CyberSecureFox Editorial Team

Microsoft has introduced two open-source tools — RAMPART and Clarity — designed to test the security of AI agents directly ...

Visual representation of AI-driven identity management risks and security.

How Hidden Identities and AI Agents Undermine Enterprise IAM

CyberSecureFox Editorial Team

The company Orchid Security has published the report Identity Gap: Snapshot 2026, according to which 57% of corporate identity infrastructure ...

Graphics showing VPN censorship concepts related to user privacy and restrictions.

Why Mozilla Warns UK VPN Restrictions Threaten Online Privacy

CyberSecureFox Editorial Team

Mozilla has submitted an official appeal to the Ministry of Science, Innovation and Technology of the United Kingdom (DSIT), in ...