An AI agent can pass every safety check and still leak secretsHelp Net Security·Jul 29, 00:00 UTC · Jul 29, 2026Vulnerability142
Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert RelaysThe Hacker News·Jul 28, 11:55 UTC · Jul 28, 2026Malware42
Mirage Kitten’s new malware set: NightLedger backdoor and two tunneling toolsKaspersky Securelist·Jul 28, 09:18 UTC · Jul 28, 2026Malware42
222 GitHub Repositories Linked to Fake Go Package Malware OperationSecurity Affairs·Jul 10, 10:23 UTC · Jul 10, 2026Malware42
Fake VPN and 7-Zip Apps Turn Victims Into Residential Proxy NodesSecurity Affairs·Jul 9, 08:29 UTC · Jul 9, 2026Malware42
Scattered Spider’s Structure More Like a Cybercrime CollectiveInfosecurity Magazine·Jul 7, 14:00 UTC · Jul 7, 2026Ransomware57
Unpatched Flaws Disclosed in Filesystem Bundled Into Millions of Embedded DevicesThe Hacker News·Jul 3, 20:19 UTC · Jul 3, 2026VulnerabilityCVE-2026-6682CVE-2026-6687CVE-2026-6688+4 CVEs147
GuardFall Exposes Open-Source AI Coding Agents to DecadesThe Hacker News·Jun 30, 14:26 UTC · Jun 30, 2026Vulnerability142
RedAlpha: New Campaigns Discovered Targeting the Tibetan CommunityRecorded Future·Jun 26, 00:00 UTC · Jun 26, 2026Threat actorCVE-2017-0199160
FortiBleed: The Broker Who Turned 73,000 Firewalls Into a Product CatalogSecurity Affairs·Jun 24, 09:36 UTC · Jun 24, 2026Ransomware57
Samsung KNOX Kernel UAF Exposes Millions of Galaxy DevicesSecurity Affairs·Jun 23, 23:01 UTC · Jun 23, 2026VulnerabilityCVE-2026-2097147
29-Year-Old Squid Proxy Bug 'Squidbleed' Can Leak Cleartext HTTP RequestsThe Hacker News·Jun 23, 11:30 UTC · Jun 23, 2026Exploit / PoC in the wildCVE-2026-47729CVE-2026-50012160
Infostealers, AI, and a 90% Affiliate Cut Fuel The Gentlemen group’s RiseSecurity Affairs·Jun 21, 17:00 UTC · Jun 21, 2026MalwareCVE-2024-55591147
IoT Botnet C0XMO Adds CompetitorSecurity Affairs·Jun 14, 11:48 UTC · Jun 14, 2026MalwareCVE-2021-27137CVE-2015-2051CVE-2022-35914+2 CVEs47
Infosecurity Europe: AI-Powered Cybercrime Tools Surge on Dark WebInfosecurity Magazine·Jun 3, 07:30 UTC · Jun 3, 2026Ransomware57
Infosecurity Europe: CyCOS Project Expands to Support UK SMEsInfosecurity Magazine·May 29, 10:00 UTC · May 29, 2026Threat actor57
Google publishes exploit code threatening millions of Chromium usersArs Technica · Security·May 20, 19:10 UTC · May 20, 2026Exploit / PoC157
Turla Turns Kazuar Backdoor Into Modular P2P Botnet for Persistent AccessThe Hacker News·May 17, 07:19 UTC · May 17, 2026Malware42
Quasar Linux RAT (QLNX): A Fileless Linux Implant Built for Stealth and PersistenceSecurity Affairs·May 9, 13:11 UTC · May 9, 2026Malware42
Quasar Linux RAT Steals Developer Credentials for Software Supply Chain CompromiseThe Hacker News·May 8, 11:00 UTC · May 8, 2026Malware42
CVE-2025-68670: an RCE vulnerability in the xrdp serverKaspersky Securelist·May 8, 08:00 UTC · May 8, 2026VulnerabilityCVE-2025-6867047
Iranian cyber espionage disguised as a Chaos Ransomware attackSecurity Affairs·May 6, 14:19 UTC · May 6, 2026Ransomware57
OceanLotus suspected of distributing ZiChatBot malware via wheel packages in PyPIKaspersky Securelist·May 5, 14:33 UTC · May 5, 2026Malware42
New Deep#Door RAT uses stealth and persistence to target WindowsSecurity Affairs·May 2, 08:22 UTC · May 2, 2026Malware42
Proxmox Backup Server 4.2 arrives with S3 storage support and parallel sync jobsHelp Net Security·Apr 30, 00:00 UTC · Apr 30, 2026Tools42
Week in review: Claude Mythos finds 271 Firefox flaws, Vercel breachHelp Net Security·Apr 26, 00:00 UTC · Apr 26, 2026Ransomware in the wildCVE-2026-20133CVE-2026-21876CVE-2026-2895060
Cybercriminal groups embrace corporate structures to scale, sustain operationsHelp Net Security·Apr 23, 13:51 UTC · Apr 23, 2026Ransomware57
Attackers don’t linger, they strike and move onHelp Net Security·Apr 23, 13:51 UTC · Apr 23, 2026Malware42
Bluesky hit by 24-hour DDoS attack as proSecurity Affairs·Apr 21, 07:45 UTC · Apr 21, 2026Data breach57
JanelaRAT targeting online banking users in Latin AmericaKaspersky Securelist·Apr 13, 09:00 UTC · Apr 13, 2026Malware42
An analysis of CrystalX commercial RAT with prankware featuresKaspersky Securelist·Apr 1, 05:33 UTC · Apr 1, 2026Malware42
Security leaders say the next two years are going to be 'insane'CyberScoop·Mar 27, 17:16 UTC · Mar 27, 2026Ransomware157
Widely used Trivy scanner compromised in ongoing supplyArs Technica · Security·Mar 20, 20:50 UTC · Mar 20, 2026Vulnerability42
Chrome Extension Turns Malicious After Ownership Transfer, Enabling Code Injection and Data TheftThe Hacker News·Mar 9, 14:35 UTC · Mar 9, 2026Malware42
Fake Tech Support Spam Deploys Customized Havoc C2 Across OrganizationsThe Hacker News·Mar 3, 17:15 UTC · Mar 3, 2026Ransomware57
Discord to require video selfies or government IDs to verify all users’ agesThe Record·Feb 9, 21:51 UTC · Feb 9, 2026Data breach57
China-Linked Amaranth-Dragon Exploits WinRAR Flaw in Espionage CampaignsThe Hacker News·Feb 4, 16:46 UTC · Feb 4, 2026Threat actorCVE-2025-808860