Software exploitation, vulnerabilities and trusted communication channels to execute code or obtain sensitive data, while new controls and standards are…
Tag: CyberMaterial
Tencent Input Method Editor RCE Flaw
Chinese threat actors are actively exploiting a critical vulnerability in Tencent’s input method editor (IME) for Windows, allowing them to execute…
Revolut exposed customer data via social engineering
Revolut, the London-based banking platform serving over 80 million customers globally, has confirmed it disclosed sensitive customer data to unauthorized…
EU Cyber Resilience Act mandates crypto wallet 24-hour report
The European Union’s Cyber Resilience Act has introduced strict vulnerability disclosure requirements for cryptocurrency wallet providers, mandating…
CPython makes Rust optional, not required
The CPython development team has stepped back from plans to make Rust a mandatory dependency, instead pursuing an optional integration path that addresses…
WhatsApp Restricted Chat feature limits sync
WhatsApp is developing a new privacy feature called Restricted Chat that allows users to confine specific conversations to their primary mobile device.
Microsoft September Patch: Record 972 Vulnerabilities
Microsoft will release its September 2024 security update addressing 972 vulnerabilities, a new record that continues an escalating trend in patch volumes.
Cyber Briefing: 2026.09.11
Crypto wallets, banking apps, and public-sector systems are being targeted by malicious activity, while defenders and regulators are tightening controls…
EU CRA 24-Hour Vulnerability Reporting Rule Effective Sept 1
Manufacturers selling connected products in the European Union face a new legal obligation beginning September 11, 2025, requiring them to report actively…
F5 launches Workforce AI Security platform
F5 has introduced Workforce AI Security, a new platform designed to give enterprises visibility and control over how employees interact with AI tools and…
Gigabud Android Trojan Clones Banking Apps
Group-IB researchers have identified a sophisticated Android banking trojan called Gigabud that exploits Android’s work profile feature to conduct…
Wipro and CrowdStrike Launch CISO Command Center
Wipro has partnered with CrowdStrike to launch the CISO Command Center, a service that integrates Wipro’s cybersecurity consulting capabilities with…
Springfield Schools Recover from Cyberattack
Springfield Public Schools shut down operations mid-week following a cyberattack that forced all schools to close and left thousands of families…
Trezor, BitBox users targeted in phishing campaign
Trezor and BitBox, two major cryptocurrency hardware wallet manufacturers, have issued urgent warnings after attackers compromised their shared email…
Cyber Briefing: 2026.09.09
Authenticated sessions exploited, application security flaws, weak account-recovery mechanisms, and exposed credentials to gain unauthorized access, steal…
BigBear 2.0 phishing campaign hijacks M365 sessions
A large-scale phishing operation has compromised thousands of Microsoft 365 accounts by stealing authenticated session cookies that remain valid even…
Singapore man pleads guilty to $245M crypto theft
A 22-year-old Singapore national has admitted to leading a criminal operation that stole more than $245 million in cryptocurrency from victims’ digital…
Jellyfin 12.0 releases security fixes
Jellyfin has released version 12.0 of its media server platform with several critical security patches addressing vulnerabilities that could expose files…
ShinyHunters claims Florida DMV breach
The notorious cybercrime group ShinyHunters has claimed responsibility for breaching Florida’s Department of Highway Safety and Motor Vehicles, allegedly…
DeepSeek Harness Sandbox Bypass Flaw
Security researchers have identified a critical sandbox escape vulnerability in DeepSeek Harness, the open-source framework developed by DeepSeek for…
