Microsoft Defender 'RoguePlanet' zero-day grants SYSTEM privileges
[..
Aggregating 4544 articles from trusted cybersecurity sources
[..
Microsoft Patch Tuesday security updates for June 2026 fix a record 208 CVEs, including one actively exploited zero-day and multiple critical RCE flaws. Micr...
The AI worm, tested on an isolated 33-host network, demonstrated a significant ability to adapt and exploit.
The vulnerability, tracked as CVE-2026-44963, affects Veeam Backup & Replication (VBR) versions 12.3.
Rubrik introduced Rubrik AI, an agent-first interface for its Security Cloud and Agent Cloud, allowing customers to define business outcomes that the softwar...
XTM One integrates Filigran's OpenCTI threat intelligence platform and OpenAEV exposure validation tool into a unified workflow, addressing the manual proces...
Tempo's technology team reported that the cyberattack generated an unprecedented volume of bot-generated traffic, placing immense pressure on their infrastru...
CISA is set to release a binding operational directive for federal agencies, aiming to revise vulnerability management practices.
As reported by HackRead, an Iranian-linked hacker group named Handala claimed on Sunday, June 7, 2026, to have conducted significant cyberattacks against Isr...
The notice, submitted on June 8, 2026, presents several anomalies that suggest it may not be an officially verified incident.
The KB5094127 update primarily focuses on security enhancements and bug fixes, as Microsoft is no longer introducing new features to Windows 10.
The attack on Tchap, a platform developed for the French public sector, reportedly involved a social engineering attack that compromised a user account.
SailPoint disclosed a GitHub repository breach on April 20. The company contained the incident and said no customer data was affected.
Zimperium launched Mobile App Response Agent, enabling security teams to respond faster than ever before to fraud and security threats.
The UK’s data protection regulator, the Information Commissioner’s Office (ICO), fined South Staffordshire Water’s parent company £963,900 over security fail...
Resetting a password doesn't always remove attackers from Active Directory. Specops Software explains how cached credentials and Kerberos tickets can keep at...
A threat actor claimed to have breached GeForce NOW and stolen millions of user records, including full names, email addresses, usernames, dates of birth, an...
Kaspersky researchers analyzed a dataset of 231 million unique passwords leaked on the dark web between 2023 and 2026.
For the latest discoveries in cyber research for the week of 11th May, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Instructure...
Fashion retailer Inditex, the parent company of Zara, has confirmed unauthorized access to customer transaction databases hosted by a third-party provider. D...
Using a vulnerability in the portal, hackers accessed names, addresses, email addresses, and phone numbers. The post Skoda Data Breach Hits Online Shop Custo...
Key Findings Ransomware in Q1 2026: Consolidation at Scale During the first quarter of 2026, we monitored more than 70 active data leak sites (DLS) that coll...
ShinyHunters gets away with emails and other data on 200,000 Zara customers
In early May 2026, ShinyHunters breached Instructure’s Canvas LMS by abusing the Free-For-Teacher (FFT) account program, triggering an active extortion campa...