In early 2026, the Iranian APT group MuddyWater launched cyberattacks against U.S. banking, a major airport, and Israeli operations of a U.S.-based software company. The attacks intensified in March, coinciding with…
On May 7, 2026, Ubuntu published USN-8251-1, addressing several critical vulnerabilities in libpng, affecting Ubuntu 25.10, 24.04 LTS, and 22.04 LTS. The vulnerabilities include improper memory handling when processing…
On March 10, 2026, Microsoft released its Patch Tuesday updates, fixing 79 vulnerabilities, including two zero-day flaws. The updates address critical vulnerabilities across various products, with one zero-day actively…
WhatsApp has alerted approximately 200 users, primarily in Italy, about a malicious version of its app that contained spyware developed by the Italian firm SIO. The fake app was distributed through deceptive means,…
In June 2026, a malware campaign was identified that spreads malicious VBScript files through WhatsApp direct messages. The campaign primarily targets users of WhatsApp Desktop and WhatsApp Web, with the highest number…
The Information Commissioner's Office (ICO) has fined South Staffordshire Plc and South Staffordshire Water Plc £963,900 due to a serious cyber attack that compromised the personal data of 633,887 individuals. The…
The Based Apparel website, co-founded by FBI Director Kash Patel, was taken offline after being compromised by malware designed to steal cryptocurrency wallet credentials from macOS users. The malware, identified as an…
In 2026, cybercriminals are increasingly bypassing traditional security tools by exploiting gaps between isolated controls. Businesses are facing significant breaches despite having comprehensive security stacks, as…
A new malware campaign is exploiting a fake OpenClaw installer to deploy the Hologram infostealer framework, which is designed to harvest credentials from over 250 crypto wallet and password manager browser extensions.…
BaserCMS versions prior to 5.3.0 contain a CSV file injection vulnerability identified as CVE-2026-65875. This flaw allows attackers to inject malicious code into CSV files, which may execute when opened by users. The…