Attack & News
Attack & News
Latest cybersecurity news, threat reports, and attack campaigns

NEWSHackreadabout 1 month ago
FortiBleed Credential Theft Connected to INC and Lynx Ransomware
NEWSThe Registerabout 1 month ago
Ctrl+Alt+Oops: FortiBleed criminal's logins stitch two gangs together

NEWSCyberScoopabout 1 month ago
Alleged longstanding member of Scattered Spider extradited to US

NEWSThe Hacker Newsabout 1 month ago
ThreatsDay: AI Compute Hijacking, Apple Email Flaw, BlueHammer Ransomware + 14 Stories

NEWSBleeping Computerabout 1 month ago
Google loses final appeal to overturn €4.1 billion EU fine

NEWShighSecurityWeekabout 1 month ago
New CitrixBleed Vulnerability Exploited Immediately After Public Disclosure
NEWShighThe Registerabout 1 month ago
Microsoft said exploitation was 'less likely' ... but CISA just added SharePoint RCE to KEV list

NEWSBleeping Computerabout 1 month ago
ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 Seconds

NEWSSecurityWeekabout 1 month ago
How to Conduct a Successful Audit of AI-Driven Software Development

NEWShighThe Hacker Newsabout 1 month ago
ToddyCat-Linked Umbrij Malware Abuses OAuth to Access Gmail via Google API
NEWSThe Registerabout 1 month ago
Pacemaker manufacturer Medtronic warns patients cybercrooks may have swiped health data

NEWScriticalInfosecurity Magazineabout 1 month ago
Researcher Behind 'Exploitarium' Explains Release of Undisclosed Zero-Day Exploits

NEWScriticalSecurityWeekabout 1 month ago
FortiBleed Campaign Linked to INC, Lynx Ransomware Attacks

NEWSBleeping Computerabout 1 month ago
Microsoft fixes bug that removed Copilot buttons in Outlook

NEWShighInfosecurity Magazineabout 1 month ago
Cybercriminals Pose as Interpol in Phishing Emails to Infect Victims With Ransomware
NEWSThe Registerabout 1 month ago
India gives WhatsApp three days to defend username rollout amid security fears

NEWShighBleeping Computerabout 1 month ago
Cisco finally confirms attackers exploiting Unified CM flaw

NEWSThe Hacker Newsabout 1 month ago
Identity Lifecycle Management Wasn't Built for AI Agents

NEWSSecurityWeekabout 1 month ago
Trump Administration Lifts Restrictions on Anthropic’s Claude Models After Cybersecurity Alarm

NEWScriticalBleeping Computerabout 1 month ago
CISA: Microsoft SharePoint RCE flaw now actively exploited

NEWShighSecurityWeekabout 1 month ago
Cisco Confirms In-the-Wild Exploitation of Unified CM Vulnerability

NEWSBleeping Computerabout 1 month ago
Opera rolls out Paste Protect feature to fight ClickFix attacks

NEWSSecurityWeekabout 1 month ago
‘BioShocking’ Attack Tricks AI Browsers Into Stealing Credentials
NEWScriticalThe Registerabout 1 month ago
Oracle E-Business Suite was under attack via critical flaw before the public exploit code was even released

NEWScriticalCVE-2026-456598.8 HIGHSecurityWeekabout 1 month ago
CISA Warns of Actively Exploited Microsoft SharePoint Vulnerability

NEWSHackreadabout 1 month ago
Sysdig Details JADEPUFFER, the First Documented Agentic Ransomware Operation

NEWSInfosecurity Magazineabout 1 month ago
NCSC Shares Tips on How to Make a Pen Tester’s Job Harder

NEWScriticalThe Hacker Newsabout 1 month ago
AI Agent Exploits Langflow RCE to Automate Database Ransomware Attack

NEWShighBleeping Computerabout 1 month ago
Alleged Scattered Spider hacker extradited to the United States

NEWSInfosecurity Magazineabout 1 month ago