IT Security News

Cybersecurity news and articles about information security, vulnerabilities, exploits, hacks, laws, spam, viruses, malware, breaches.

Main menu

Skip to content
  • Advertising
  • Contact
  • Legal and Contact information
  • Opt-out preferences
  • Privacy Policy
  • Social Media
    • Telegram Channel
EN, GBHackers Security | #1 Globally Trusted Cyber Security News Platform

Microsoft Acknowledges Windows 11 Update Failure Linked to Error 0x800f0922

2026-05-18 11:05

Microsoft has acknowledged a growing issue affecting Windows 11 users: the May 2026 cumulative update (KB5089549) fails to install, resulting in error code 0x800f0922. The problem is affecting systems running Windows 11 versions 24H2 and 25H2, raising concerns among enterprise…

Read more →

EN, GBHackers Security | #1 Globally Trusted Cyber Security News Platform

Hackers Abuse Cloudflare Storage to Exfiltrate Network Files

2026-05-18 11:05

A sophisticated cyber espionage campaign targeting multiple Malaysian organizations has been uncovered, revealing a highly structured attack chain that blends custom tooling, cloud infrastructure, and stealthy data exfiltration. At the center of the operation is an Azure virtual machine (IP:…

Read more →

EN, Security Affairs

Chaotic Eclipse discloses MiniPlasma zero-day, suggesting a missing or undone 2020 Windows security fix

2026-05-18 11:05

MiniPlasma: a Windows SYSTEM privilege escalation believed patched in 2020 (CVE-2020-17103) is still fully working on every patched Windows 11. Once again, security researcher Chaotic Eclipse has released a proof-of-concept exploit for a new Windows privilege escalation zero-day called MiniPlasma,…

Read more →

EN, Information Security Buzz

Microsoft discloses Exchange zero-day with no patch yet available

2026-05-18 11:05

Microsoft has disclosed a zero-day vulnerability that affects Exchange Server 2016, 2019, and Subscription Edition. This vulnerability would give bad actors an opportunity to run arbitrary code remotely on the Exchange server.  Although Microsoft has not issued any patches for this security vulnerability, they…

Read more →

EN, Information Security Buzz

OpenAI rotates certificates after TanStack supply chain attack hits employee devices

2026-05-18 11:05

OpenAI has confirmed that two employee devices were compromised in the recent TanStack npm supply chain attack, prompting the company to rotate code-signing certificates and require macOS users to update their applications by 12 June.   In a security advisory published this week, the company…

Read more →

EN, Help Net Security

Attackers accessed, downloaded code from Grafana Labs’ GitHub

2026-05-18 11:05

A threat actor has managed to access Grafana Labs’ GitHub environment and download the company’s codebase, the open-source observability and data visualization firm announced on Sunday. The breach is significant given Grafana Labs’ widespread use across enterprise engineering and DevOps…

Read more →

EN, GBHackers Security | #1 Globally Trusted Cyber Security News Platform

Critical Marimo RCE Flaw Could Let Attackers Execute Malicious Code Remotely

2026-05-18 11:05

A newly disclosed critical vulnerability in the Marimo Python notebook framework is raising serious alarms across the cybersecurity community, as it allows attackers to execute arbitrary commands remotely, without authentication. Tracked as CVE-2026-39987, the flaw exposes a WebSocket endpoint that can…

Read more →

EN, GBHackers Security | #1 Globally Trusted Cyber Security News Platform

Hackers Hide PureLogs Infostealer in PawsRunner Loader

2026-05-18 11:05

Threat actors are increasingly hiding malware inside seemingly harmless files, and a new campaign shows just how effective this tactic has become. The attack begins with a phishing email carrying a TXZ archive attachment. Disguised as an urgent invoice, the…

Read more →

EN, Security Blog G Data Software AG

An AI-generated phishing attack on myself: How Cybercriminals Use ChatGPT and Similar Tools

2026-05-18 11:05

A phishing attack that is frighteningly well tailored to me. The tone is right, the context fits, and details from my professional environment are correctly referenced. For a brief moment, everything appears credible. But I ask myself: Where does this…

Read more →

Cyber Security News, EN

1 Million WordPress Sites Affected by Avada Builder File Read and SQL Injection Flaws

2026-05-18 11:05

A widely used WordPress plugin powering over one million websites has been hit by two serious vulnerabilities that could allow attackers to steal sensitive data and access server files. Security researchers warn that the flaws in the Avada Builder plugin could…

Read more →

Cyber Security News, EN

CISA Warns of Microsoft Exchange Server Vulnerability Exploited in Attacks

2026-05-18 11:05

CISA has issued a fresh warning about a newly disclosed Microsoft Exchange Server vulnerability that is already being exploited in real-world attacks, raising concerns for organizations relying on on-premises email infrastructure. The flaw CVE-2026-42897 is a cross-site scripting (XSS) vulnerability affecting…

Read more →

EN, securityweek

Grafana Confirms Breach After Hackers Claim They Stole Data

2026-05-18 11:05

Grafana appears to have been targeted by Coinbase Cartel, a cybercrime group linked to ShinyHunters, Scattered Spider, and Lapsus$. The post Grafana Confirms Breach After Hackers Claim They Stole Data appeared first on SecurityWeek. This article has been indexed from…

Read more →

EN, Help Net Security

201 arrested in INTERPOL disruption of phishing and fraud networks

2026-05-18 11:05

Operation Ramz, a cybercrime initiative coordinated by INTERPOL across the MENA region, focused on disrupting phishing campaigns, malware activity, and cyber scams that caused substantial financial losses across the region. The operation resulted in the arrest of 201 individuals and…

Read more →

EN, The Hacker News

MiniPlasma Windows 0-Day Enables SYSTEM Privilege Escalation on Fully Patched Systems

2026-05-18 11:05

Chaotic Eclipse, the security researcher behind the recently disclosed Windows flaws, YellowKey and GreenPlasma, has released a proof-of-concept (PoC) for a Windows privilege escalation zero-day flaw that grants attackers SYSTEM privileges on fully patched Windows systems. Codenamed MiniPlasma, the vulnerability…

Read more →

EN, The Hacker News

Pre-Stuxnet Fast16 Malware Tampered with Nuclear Weapons Simulations

2026-05-18 11:05

A new analysis of the Lua-based fast16 malware has confirmed that it was a cyber sabotage tool designed to tamper with nuclear weapons testing simulations. According to Broadcom-owned Symantec and Carbon Black teams, the pre-Stuxnet tool was engineered to corrupt…

Read more →

EN, www.infosecurity-magazine.com

Bank of England, FCA and Treasury Raise Alarm Over Frontier AI

2026-05-18 11:05

The UK’s financial authorities have set expectations for the sector on cybersecurity and operational resilience This article has been indexed from www.infosecurity-magazine.com Read the original article: Bank of England, FCA and Treasury Raise Alarm Over Frontier AI

Read more →

EN, Silicon UK

OpenAI Considers Legal Action As Apple Relationship Sours

2026-05-18 10:05

ChatGPT developer reportedly feels Apple failed to hold up its end of bargain as expected exposure, subscriptions fail to materialise This article has been indexed from Silicon UK Read the original article: OpenAI Considers Legal Action As Apple Relationship Sours

Read more →

EN, GBHackers Security | #1 Globally Trusted Cyber Security News Platform

OtterCookie Malware Steals Dev Secrets, SSH Keys, Cloud Credentials, and Tokens

2026-05-18 10:05

A newly analyzed malware strain, OtterCookie, is emerging as a serious threat to developers, quietly harvesting sensitive data from active workstations in real time. Unlike earlier assumptions, OtterCookie is not a variant of BeaverTail but a separate Node. js-based remote…

Read more →

EN, GBHackers Security | #1 Globally Trusted Cyber Security News Platform

n8n Security Flaws Could Let Attackers Achieve Remote Code Execution

2026-05-18 10:05

A set of critical vulnerabilities in the popular workflow automation platform n8n has raised serious security concerns, with researchers warning that attackers could chain multiple flaws to achieve full remote code execution (RCE) on affected systems. The issues, disclosed in…

Read more →

EN, Silicon UK

EVs Dominate China Vehicle Sales Amid Oil Price Shock

2026-05-18 10:05

Surging petrol prices drive EVs to take nine of 10 best-seller spots in world’s biggest car and EV market, as Tesla sales sag This article has been indexed from Silicon UK Read the original article: EVs Dominate China Vehicle Sales…

Read more →

EN, GBHackers Security | #1 Globally Trusted Cyber Security News Platform

Fast16 Malware Sabotages Nuclear Test Simulations by Altering Data

2026-05-18 10:05

A newly analyzed cyber-espionage framework called Fast16 has revealed one of the most precise and covert sabotage operations ever uncovered targeting nuclear weapons simulations by silently manipulating critical test data. Researchers confirm that the malware didn’t just infiltrate systems it…

Read more →

EN, Silicon UK

AI Companies’ London Office Space Jumps Tenfold

2026-05-18 09:05

Office space leased by AI firms in capital rises to 450,000 sq ft in surprise jump, amid sustained boom in sector This article has been indexed from Silicon UK Read the original article: AI Companies’ London Office Space Jumps Tenfold

Read more →

EN, Security Affairs

Experts warn of active exploitation of critical NGINX flaw CVE-2026-42945

2026-05-18 09:05

A critical NGINX flaw (CVE-2026-42945) is actively exploited, allowing crashes or possible code execution via malicious HTTP requests. A critical vulnerability in NGINX Plus and NGINX Open, tracked as CVE-2026-42945 (CVSS v4 score of 9.2), is already being actively exploited…

Read more →

Cyber Security News, EN

New Windows ‘MiniPlasma’ Zero-Day Let Attackers Gain SYSTEM Access – PoC Released

2026-05-18 09:05

A critical Windows privilege escalation zero-day vulnerability dubbed “MiniPlasma” has emerged with a public proof-of-concept exploit that allows attackers to achieve SYSTEM-level privileges on fully patched Windows systems. Security researcher Nightmare-Eclipse released the weaponized exploit on GitHub on May 13,…

Read more →

Page 197 of 5613
« 1 … 195 196 197 198 199 … 5,613 »

Pages

  • Advertising
  • Contact
  • Legal and Contact information
  • Opt-out preferences
  • Privacy Policy
  • Social Media
    • Telegram Channel

Recent Posts

  • CISA Adds Two Known Exploited Vulnerabilities to Catalog June 26, 2026
  • IT Security News Hourly Summary 2026-06-26 00h : 5 posts June 26, 2026
  • IT Security News Daily Summary 2026-06-25 June 25, 2026
  • FortiBleed Turns FortiGate Access Into Enterprise Credential Theft June 25, 2026
  • Tata Electronics Confirms Data Breach After 630GB Leak Claim Targets Apple and Tesla June 25, 2026
  • Operation Endgame Disrupts StealC Malware Infrastructure June 25, 2026
  • Ex-Huntress analyst claims company insider fed info to a ransomware crim. Social media drama ensues June 25, 2026
  • Curl Fixes a 25-Year-Old Bug in Its Largest CVE Release Yet June 25, 2026
  • Polymarket says hackers stole users’ funds June 25, 2026
  • Wordfence Intelligence Weekly WordPress Vulnerability Report (June 15, 2026 to June 21, 2026) June 25, 2026
  • Interpol: Cybercrime Hits 30% of Recorded Crime in Surveyed APAC Countries June 25, 2026
  • Denmark Ordered to Pay $12M Over Huawei Equipment Removal June 25, 2026
  • Beware of “Parcel Expert” job offers: They’re parcel mule scams June 25, 2026
  • IT Security News Hourly Summary 2026-06-25 21h : 5 posts June 25, 2026
  • Cisco Unified CM SSRF Flaw Is Being Exploited to Drop Webshells June 25, 2026
  • Russia Used Cellebrite Tool to Hack Activist’s iPhone Despite Contract Cancellation June 25, 2026
  • Beyond IOCs: AI-enabled threat intelligence June 25, 2026
  • The New MCP Specification: What Security Teams Must Prepare For June 25, 2026
  • Sharing SBOMs Securely Without Giving Too Much Away June 25, 2026
  • Fake GTA 6 Early Access Websites Target Gamers with Malware and Crypto Scams June 25, 2026

Copyright © 2026 IT Security News. All Rights Reserved. The Magazine Basic Theme by bavotasan.com.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}