IT Security News

Cybersecurity news and articles about information security, vulnerabilities, exploits, hacks, laws, spam, viruses, malware, breaches.

Main menu

Skip to content
  • Advertising
  • Contact
  • Legal and Contact information
  • Opt-out preferences
  • Privacy Policy
  • Social Media
    • Telegram Channel
EN, Help Net Security

Unauthenticated RCE in Splunk Enterprise under active attack (CVE-2026-20253)

2026-06-19 13:06

CISA has added CVE-2026-20253, a critical, remotely exploitable vulnerability in Splunk Enterprise, to its Known Exploited Vulnerabilities catalog, and ordered US federal civilian agencies to apply mitigations by June 21, 2026. In-the-wild exploitation has also been confirmed by the vendor…

Read more →

EN, www.infosecurity-magazine.com

AWS Unveils ‘Continuum,’ an AI-Powered Vulnerability Management Platform

2026-06-19 13:06

Working with frontier AI models, this new platform aims to help discovering, prioritizing, validating and remediating code vulnerabilities This article has been indexed from www.infosecurity-magazine.com Read the original article: AWS Unveils ‘Continuum,’ an AI-Powered Vulnerability Management Platform

Read more →

EN, www.infosecurity-magazine.com

Operation Endgame Disrupts Malware Network Linked to Major Ransomware Gang

2026-06-19 12:06

SocGholish malware has been removed from 15,000 sites associated with Evil Corp hackers This article has been indexed from www.infosecurity-magazine.com Read the original article: Operation Endgame Disrupts Malware Network Linked to Major Ransomware Gang

Read more →

EN, Hackread – Cybersecurity News, Data Breaches, AI and More

FIFA World Cup 2026: Hackers Target Football Fans With Fake Tickets Sites

2026-06-19 12:06

Cybersecurity experts warn that active hacking networks are using fake hotel bookings, cloned websites, and live chat features to scam FIFA World Cup 2026 fans. This article has been indexed from Hackread – Cybersecurity News, Data Breaches, AI and More…

Read more →

EN, Help Net Security

Mastodon 4.6 adds profile Collections and two-factor controls

2026-06-19 12:06

People who run accounts on the open source social network Mastodon can now group profiles together and share those groups across the web. The 4.6 release centers on a feature called Collections, along with reworked profiles, email newsletters, server administration…

Read more →

hourly summary

IT Security News Hourly Summary 2026-06-19 12h : 9 posts

2026-06-19 12:06

9 posts were published in the last hour 9:34 : SmartApeSG Hackers Abuse Okendo Reviews Widget in E-Commerce Supply Chain Attack 9:34 : China-Linked Showboat Malware Uses Linux Persistence to Target Telecom Companies 9:34 : Cybersecurity Firms Impacted by Klue…

Read more →

EN, GBHackers Security | #1 Globally Trusted Cyber Security News Platform

SmartApeSG Hackers Abuse Okendo Reviews Widget in E-Commerce Supply Chain Attack

2026-06-19 11:06

A supply-chain style compromise in the Okendo Reviews widget that enabled the SmartApeSG threat actor to deliver staged JavaScript loaders across a wide e-commerce surface. Okendo’s client-facing review widget is deployed by more than 18,000 brands and commonly appears on…

Read more →

Cyber Security News, EN

China-Linked Showboat Malware Uses Linux Persistence to Target Telecom Companies

2026-06-19 11:06

A sophisticated China-linked malware framework has been quietly targeting telecom companies across the Middle East for nearly four years. Showboat is a Linux-based tool that stayed completely hidden from antivirus systems until April 2026, raising serious concerns about the security…

Read more →

EN, securityweek

Cybersecurity Firms Impacted by Klue Supply Chain Attack

2026-06-19 11:06

The hackers exfiltrated data from Salesforce instances of Klue customers, such as Huntress and Recorded Future. The post Cybersecurity Firms Impacted by Klue Supply Chain Attack appeared first on SecurityWeek. This article has been indexed from SecurityWeek Read the original…

Read more →

EN, Help Net Security

Accenture to buy Dragos, runZero, and NetRise in $4.2 billion cybersecurity deal

2026-06-19 11:06

Accenture is expanding its position with the acquisition of a majority stake in Dragos and all of runZero and NetRise to deliver end-to-end operational technology (OT) security for the critical infrastructure and industrial operations underpinning power grids, pipelines, manufacturing, distribution…

Read more →

EN, Help Net Security

Google sets timeline for Android developer verification enforcement

2026-06-19 11:06

Android’s developer verification protections will take effect on September 30, 2026, starting with users in Brazil, Indonesia, Singapore, and Thailand. Developers distributing apps through participating stores in those markets must complete the verification process by the deadline. Google Play, HONOR…

Read more →

EN, The Hacker News

Salesforce Disables Klue App Integration After OAuth Token Abuse Exposes Customer Data

2026-06-19 11:06

Salesforce has revealed that it disabled the Klue Battlecards app integration within its platform in response to a security incident impacting the competitive intelligence company on June 11, 2026. To that end, organizations will be unable to connect to Salesforce…

Read more →

EN, GBHackers Security | #1 Globally Trusted Cyber Security News Platform

CISA Issues Alert on Critical Splunk Enterprise Bug Under Active Exploitation

2026-06-19 11:06

CISA has issued an urgent alert regarding a critical vulnerability in Splunk Enterprise, tracked as CVE-2026-20253, which is now listed in the Known Exploited Vulnerabilities (KEV) catalog following evidence of active exploitation. The flaw, categorized under CWE-306 (Missing Authentication for…

Read more →

EN, GBHackers Security | #1 Globally Trusted Cyber Security News Platform

HazyBeacon Abuses AWS Lambda Function URLs for Stealthy Command-and-Control Operations

2026-06-19 11:06

HazyBeacon is a stealthy cloud-native malware campaign identified as CL-STA-1020. It is exploiting Amazon Web Services (AWS) Lambda Function URLs to create covert command-and-control (C2) channels, marking a significant evolution in attacker tactics. According to recent Qualys research, the campaign…

Read more →

EN, www.infosecurity-magazine.com

Confidence Lacks in Threat Detection Across Non-Email Channels like Slack and Teams

2026-06-19 11:06

Half of cybersecurity leaders lack confidence in detecting threats on Slack, Teams and other non-email platforms, despite growing attacker focus This article has been indexed from www.infosecurity-magazine.com Read the original article: Confidence Lacks in Threat Detection Across Non-Email Channels like…

Read more →

EN, GBHackers Security | #1 Globally Trusted Cyber Security News Platform

Node.js Releases Security Updates for 12 Vulnerabilities, Two Rated High Severity

2026-06-19 10:06

Node.js has announced critical security updates that address 12 vulnerabilities across its supported release lines. Among these, two high-severity flaws could lead to denial-of-service (DoS) conditions and authentication bypass. These updates, released on June 18, 2026, affect Node.js versions 22.x,…

Read more →

EN, Palo Alto Networks Blog

The Invisible CEO of Crisis: Breaking the Cycle of CISO Burnout

2026-06-19 10:06

When a major cyber incident hits, all eyes are on the CISO. They become the invisible CEO of crisis, steering the entire enterprise through the storm, managing stakeholders and making major decisions under immense pressure. The clock is ticking. Every…

Read more →

EN, Palo Alto Networks Blog

Expanding Our Footprint: Local Cloud Availability for Prisma AIRS in Japan

2026-06-19 10:06

Securing the Future of Japan’s AI Landscape The shift from static LLMs to autonomous agents has fundamentally changed the global threat surface. Frontier models like Anthropic’s Mythos can now autonomously discover hundreds … The post Expanding Our Footprint: Local Cloud…

Read more →

Cyber Security News, EN

Hackers Use Weaponized Windows Shortcuts to Spread Crypto Clipper Across USB Drives

2026-06-19 10:06

A newly discovered cryptocurrency clipper malware has been quietly stealing digital assets from victims since February 2026, spreading through a trick that most users would never suspect: weaponized Windows shortcut files on USB drives. The malware is not just a…

Read more →

Cyber Security News, EN

Node.js Fixes 12 Vulnerabilities, Including 2 High-Severity Authentication Bypasses

2026-06-19 10:06

Node.js has released a new round of security updates addressing 12 vulnerabilities across its supported release lines, including two high-severity flaws that could lead to authentication bypass and denial-of-service (DoS) attacks. The updates impact Node.js versions 22.x, 24.x, and 26.x,…

Read more →

Cyber Security News, EN

CISA Warns of Splunk Enterprise Critical Function Vulnerability Actively Exploited in Attacks

2026-06-19 10:06

CISA has issued a high-priority alert warning organizations about a critical vulnerability in Splunk Enterprise that is actively being exploited in the wild. The flaw, tracked as CVE-2026-20253, has been added to CISA’s Known Exploited Vulnerabilities (KEV) catalog, signaling immediate…

Read more →

Cybersecurity News: Threats, Vulnerabilities & Privacy Updates - gHacks, EN

Frontier Airlines API Exposes Passport, Credit Card, and Personal Data via Boarding Pass Information

2026-06-19 10:06

A security researcher known as BobDaHacker has revealed significant vulnerabilities in Frontier Airlines’ booking system. Thank you for being a Ghacks reader. The post Frontier Airlines API Exposes Passport, Credit Card, and Personal Data via Boarding Pass Information appeared first…

Read more →

EN, Panda Security Mediacenter

Did Iranian hackers cause operational disruptions to water and wastewater systems in the USA?

2026-06-19 10:06

No, they did not. Handala, a hacker organization with alleged ties to the Islamic Republic of Iran, recently claimed it had gained the ability to… The post Did Iranian hackers cause operational disruptions to water and wastewater systems in the…

Read more →

EN, GBHackers Security | #1 Globally Trusted Cyber Security News Platform

INC Ransomware Uses Double Extortion and Printer Ransom Notes to Pressure Victims

2026-06-19 10:06

INC has matured from an emerging RaaS operation into one of 2026’s most active ransomware families, claiming more than 800 victims since 2023 and capitalizing on disruption among competitors to expand its affiliate base. The group’s recent campaigns demonstrate both…

Read more →

Page 21 of 5600
« 1 … 19 20 21 22 23 … 5,600 »

Pages

  • Advertising
  • Contact
  • Legal and Contact information
  • Opt-out preferences
  • Privacy Policy
  • Social Media
    • Telegram Channel

Recent Posts

  • Met Police To Deploy Facial Recognition In West End June 24, 2026
  • Federal Probe After Tesla Crash Kills Woman Inside Brick House June 24, 2026
  • Hackers Exploit RAR Vulnerability to Drop Startup VBS in Ukraine UAV Malware Campaign June 24, 2026
  • IT Security News Hourly Summary 2026-06-24 09h : 7 posts June 24, 2026
  • Linux Process Name Masquerading, (Wed, Jun 24th) June 24, 2026
  • Samsung KNOX Kernel Flaw Exposes Galaxy Devices to Memory Corruption Attacks June 24, 2026
  • Where IT meets OT and railway cybersecurity gets harder June 24, 2026
  • Competition Court Gives Go-Ahead To £3bn Apple Claim June 24, 2026
  • GTA 6 Early Access Scam Uses Fake VIP Pages to Steal Cryptocurrency Payments June 24, 2026
  • Hackers Exploiting Cisco Unified CM Vulnerability June 24, 2026
  • Praxen: Open-source AI agent behavior verification June 24, 2026
  • Bajaj Auto Discloses Ransomware Cyberattack Impacting Company and Technology Unit June 24, 2026
  • Product showcase: How to evaluate AI SOC platforms and where Prophet AI leads June 24, 2026
  • CISA Adds Ubiquiti UniFi OS Flaws to KEV Catalog June 24, 2026
  • Anthropic Launches Claude Tag AI Agent for Slack to Automate Enterprise Team Workflows June 24, 2026
  • You have got to be KDDI-ng – Japanese telco exposes 14.2 million managed email credentials June 24, 2026
  • Security testing was built for a slower world June 24, 2026
  • CISA Warns of Ubiquiti UniFi OS Vulnerability Actively Exploited in Attacks June 24, 2026
  • Cybersecurity jobs available right now: June 24, 2026 June 24, 2026
  • FortiBleed: Fortinet Says It’s Not a Bug June 24, 2026

Copyright © 2026 IT Security News. All Rights Reserved. The Magazine Basic Theme by bavotasan.com.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}