A high-severity heap buffer overflow in NGINX Plus and NGINX Open Source can let unauthenticated attackers crash worker processes and, under certain…
Tag: Cyber Security News
Top 10 Phishing Kits Used by Hackers to Launch Cyberattacks (July 20-26, 2026)
Global phishing-as-a-service (PhaaS) activity surged to 7,295 tracked uploads during the week of July 20-26, 2026, driven overwhelmingly by OAuth…
Apple iOS 26.6 Fixes Flaws Enabling Kernel Code Execution, Root Access and Sandbox Escape
Apple has released iOS 26.6 and iPadOS 26.6 to address a significant number of security vulnerabilities, including flaws that could allow malicious…
An SOC Story of Why Fast Answers Beat Perfect Answers in Cyber Incident Response
A Formula 1 pit crew doesn’t wait until every sensor, camera, and engineer agrees that a tire needs changing. They have a few seconds to make a decision…
Fake Claude Code Install Guide Uses Google Ads to Deliver MacSync Infostealer
Fake Google Ads are being used to push a convincing Claude Code installation guide that delivers the MacSync infostealer to macOS users. The campaign…
Origin Confirms Data Breach – Hackers Accessed 900,000 Customers’ Data
Origin Energy, an Australian energy provider, has confirmed that unauthorized access to customer information has affected approximately 900,000 current…
An SOC Story Why Fast Answers Beat Perfect Answers in Cyber Incident Response
A Formula 1 pit crew doesn’t wait until every sensor, camera, and engineer agrees that a tire needs changing. They have a few seconds to make a decision…
Dismantled Kratos Phishing Kits Acting as Blueprint for Others to Attack Microsoft 365 Users
Kratos is a phishing service built to steal Microsoft 365 credentials at scale. It evolved from the Sneaky2FA kit and gave affiliates ready-made login…
Hackers Are Using Fake Crypto Wallet Screens to Steal Recovery Phrases and Browser Sessions
Criminals are using convincing cryptocurrency wallet screens and browser extensions to steal recovery phrases, login data, and active browser sessions.…
Hackers Exploiting FastJson RCE 0-Day in the Wild to Attack US-based Organizations
A critical vulnerability in FastJson, identified as CVE-2026-16723, is being exploited against organizations in the United States, putting Java…
Dysphoria Botnet Infects 200,000 IoT Devices and Hides C2 Behind Blockchain Domains
Dysphoria has emerged as a fast-moving IoT botnet that has infected an estimated 200,000 devices worldwide. The malware targets routers, cameras,…
Scammers Pose as ShinyHunters to Blackmail Data-Breach Victims With Fake Webcam Videos
Victims of recent data breaches are receiving alarming emails that claim hackers recorded them through their webcams. The messages borrow the ShinyHunters…
Hackers Exploiting Arista VeloCloud Orchestrator 0-Day Vulnerability in the Wild
Arista Networks has issued a security advisory for CVE-2026-16812, a critical command injection vulnerability affecting on-premises VeloCloud Orchestrator…
libssh2 Vulnerabilities Allow a Malicious SSH Server to Corrupt Client Memory
A set of high-severity vulnerabilities in libssh2 could expose SSH and SFTP client applications to memory corruption, crashes, and potential code…
New Tengu Mirai Botnet Reboots Your IoT Device When You Try to Kill It
Tengu, a newly observed Mirai-based botnet, is making infected IoT devices far harder to clean. It targets internet-facing embedded Linux systems,…
LegacyHive Exploitation Chain Bypasses Windows Security Even With July 2026 Patches Installed
A newly disclosed exploit dubbed LegacyHive is raising alarms across the cybersecurity community after researchers confirmed it executes successfully on…
Researchers Say a ‘Ghost’ Chinese Company Built the Network Hiding PLA Cyberattacks
A little-known Chinese company may have helped build the hidden network used to support military-linked cyber operations around the world. Researchers say…
AI-Assisted Research Uncovers Linux Kernel Zero-Day Enabling Root Privilege Escalation
A serious Linux kernel zero-day vulnerability capable of local privilege escalation (LPE) has been uncovered by security researchers, underscoring both…
Five Progress LoadMaster Flaws Let Attackers Execute Commands and Gain Root Access
Progress has addressed five serious vulnerabilities affecting Kemp LoadMaster, ECS Connection Manager, and Connection Manager for ObjectScale appliances. These vulnerabilities, tracked as CVE-2026-59686 through CVE-2026-59690, impact several older product releases and could lead to complete appliance compromise when exploited by…
PortSwigger Launches Burp AT Agentic AI for Human-Led Web Penetration Testing
PortSwigger has officially launched Burp AT in public beta, bringing agentic AI capabilities directly into Burp Suite Professional for the first time. The new feature allows penetration testers to delegate specific investigative tasks to AI agents while retaining full control…