government social media healthcare service provider fine education law enforcement finance dark web web retail security phama app insurance telecoms charity travel manufacturing legal operating system tech ransomware publishing gaming
story hacked malware unauthorised access vulnerability accidental disclosure phishing unsecured database poor security insider threat unsecured server hacked email lost device hacking financial website hacked identity theft ddos stolen documents Trojans breached RDP inside job spear phishing spyware
cyber attack breach notification privacy security flaw legislation poor operations user credentials physical security customer data third party Cryptocurrency enforcement email hacked insecure storage court action encryption fraud VPN passwords zero day state hacking 3rd parties employee data remote working stolen data

CISA Adds Six Exploited Flaws to KEV Including NetScaler Linux and SQL Server Bugs
New GPUThor Rowhammer Defeats ECC on NVIDIA RTX A6000 to Gain Host Root Access
GoCaracal Malware Uses Ethereum Smart Contract to Fetch Replacement C2 Address
Spark RAT Targets Cambodia Abuses Vulnerable OPSWAT Driver to Disable Security Tools
What the Data Says About AI in Security Operations in 2026
Alleged TeamPCP Hackers Charged in Australia Over Major Supply Chain Attacks
Learn How to Build Security Operations Ready for AIPowered Attacks
Amazon Kiro Prompt Injection Can Exfiltrate Sensitive Data Through Kiro Powers
ThreatsDay 296K IoT Botnet 100 Water Systems Targeted SharePoint RCE Chain 27 New Stories
Nextjs Patches Critical AVIF and Windows Flaws Enabling Unauthenticated RCE
OpenAI Says Reward Hacking Drove AI Agents to Exploit ZeroDays and Breach Hugging Face
Two Alleged TeamPCP Hackers Arrested in Australia
Manchester Airports Group confirms cyber attack exposed customer emails phone numbers and vehicle details
Swarm of 700 AI bots went rogue in hacking attack
Qilin claimed they attacked the ATF Heres what the ATF says
Fake Apple Support AI Calls Target StolenDevice Owners for Passcodes and 2FA Codes
Critical Gitea RCE Actively Exploited as Reported Attack Drops MinerLike Payload
New SLEEPWALKER Backdoor Waits for One Crafted Packet Then Runs Its Own Bytecode
INTERPOL Operation Jackal IV Arrests 58 Identifies 263 in Global Cyber Fraud Crackdown
OpenAI Bans Russian ChatGPT Accounts Used to Run Influence Operation
Claude Opus 46 Bypasses Gym Booking Limit Cancels Other Users Reservations in Tests
Imagine the SOC Without a Queue From Alert Backlog to AI Hypothesis Engine
Unpatched Kaltura mwEmbed Flaws Could Let Remote Attackers Read Files and Run Code
CISA Red Team Compromised Two Critical Infrastructure Orgs One Detected Nothing
NovaCookies Campaigns Abuse Genuine Docusign Notifications to Steal Microsoft 365 Sessions
Nimbus Manticore Expands Toolset With TWOSTROKELike Backdoor and SSH Tunneler
FBI Disrupts ChinaLinked QTFY Infrastructure Used to Steal Data From US Organizations
A recommendation from the Saskatchewan Information and Privacy Commissioner caught our eye
National Kidney Registry allegedly hacked by DireWolf ransomware group
US takes down alleged Chinese hacking tools used against Federal Reserve DOJ and Senate
NSA to host a hacker reunion in bid to rebuild secretive unit
Actively Exploited Oracle WebLogic Flaw Lets Unauthenticated Attackers Access Critical Data
Attackers Target miniOrange SAML Flaws That Can Grant WordPress Admin Access
Frontier AI Vulnerability Managements Systemic Revolution
E4del and PINHOLE RATs Turn FTP Banners Into Dead Drops for Malware Commands
24 npm Packages Abuse unpkg Mirrors to Host Fake Cloudflare CAPTCHA Pages
Mirage2FA Surge Hits 4500 US and EU Companies Abusing Microsoft 365 Login Flows
Marimo Notebook Flaw Could Run MCP Commands Before Cells Execute in Edit Mode
WhatsApp Adds Multiple Passkeys for PhishingResistant SignIns Across iOS and Android
A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw