Saltar al contenido
Sáb. Jun 20th, 2026
Trending News: The Gentlemen RaaS Uses GentleKiller EDR Framework Targeting 400 Security ProcessesUnpatchable ‘usbliter8’ Exploit Breaks Apple A12 and A13 SecureROM Boot ChainAutoJack Attack Lets One Web Page Hijack AI Agent for Host Code ExecutionOperation Endgame Disrupts SocGholish Servers, Cleans 14,971 WordPress SitesCISA Warns Fortinet Customers as FortiBleed Hits 86,644 FortiGate DevicesThe AI Shift That’s Redefining Threat ManagementShadow AI’s Real Threat Is Access ControlSalesforce Disables Klue App Integration After OAuth Token Abuse Exposes Customer DataApple Patches Beats Studio Buds Flaw Letting Nearby Attackers Spy via MicrophoneF5 Patches Two Critical NGINX Open Source Flaws Enabling Remote Code ExecutionINC Ransomware Emerges as Major RaaS Threat in 2026 with 830+ Victims Since 2023Claude Chat Abuse, NastyC2 npm Packages, Device-Code Phishing + 25 More StoriesMicrosoft Details Windows Clipper Malware Campaign Using USB LNK Worm and Tor-Based C2DragonForce Hackers Abuse Microsoft Teams Relays to Hide Backdoor.Turn C2 TrafficHow to Find Hidden Access Risks Inside Your NetworkThe Scripts on Your Checkout Page Are Now a PCI DSS ProblemMicrosoft Confirms RoguePlanet Defender Zero-Day, Says Patch is in DevelopmentCrypto Clipper Campaign Abuses Fake Reviews, AI Narrators, and VirusTotal CommentsJunior Hacker Used Tailscale and OpenSSH to Keep Access After His C2 Went OfflineAdversarial Exposure Validation Turns Security Visibility into Confident PrioritizationThe Top 10 Attack Surface Exposures in 2026Malicious JetBrains Plugins Steal AI API Keys as Chrome Extensions Capture Chatbot Chats144 Mastra npm Packages Compromised via Hijacked Contributor AccountCISA Warns of Actively Exploited Joomla JCE Flaw Allowing PHP Code ExecutionGoogle Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket SquattingClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update LuresNew Rokarolla Android Malware Steals PINs, SMS Codes, and Crypto Wallet FundsChina-Linked SprySOCKS Backdoor Expands to Windows with Driver-Based Stealth94% of Incidents Involve Anonymized Infrastructure. Teams Are Still ReactiveAttackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last WeekFake Microsoft Alerts Used to Deploy North Korean NarwhalRAT MalwareCISA Flags LiteSpeed cPanel Plugin Flaw Exploited for Root Privilege EscalationCisco Releases Security Updates for Actively Exploited SD-WAN Manager FlawChinese Hackers Abused Google Workspace Rules to Steal Research and Defense EmailsNorth Korean Hackers Are Turning Developer Tools Into Malware Delivery ChannelsLiteLLM Vulnerability Chain Lets Low-Privilege Users Take Over AI Gateway ServersChrome 0-Day, UniFi Exploits, macOS Stealers, VPN Flaw and MoreOne-Click Microsoft 365 Copilot Flaw Could Have Let Attackers Steal Emails, Files, and MFA CodesPopular WordPress Plugin Scripts Tampered to Plant Hidden Backdoors on SitesThe Onboarding Password Mistake That Creates Unnecessary Risk152 Chrome Wallpaper Extensions with 105K Installs Linked to Adware and Fake TrafficPalo Alto Warns of Active Exploitation of PAN-OS GlobalProtect VPN FlawSniper Dz Scams Target MENA Users via Fake Facebook Offers and Browser AlertsCritical Splunk Enterprise Flaw Lets Attackers Run Code Without AuthenticationU.S. Orders Anthropic to Suspend Fable 5 and Mythos 5 Access for Foreign NationalsChina-Linked Hackers Backdoored Linux Login Software to Hide for Nearly a DecadeGoogle Sues Chinese Smishing Network Accused of Using Gemini AI in PhishingOver 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF RootkitOver 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF RootkitRethinking MDR as Attackers and Defenders Embrace AIAgentjacking Attack Tricks AI Coding Agents Into Running Malicious CodeINTERPOL Operation Takes Down Sniper Dz Phishing Platform, Arrests AdministratorLangGraph Flaw Chain Exposes Self-Hosted AI Agents to Remote Code ExecutionEuropol Disrupts AudiA6 Crypto Laundering Service Used by Ransomware GangsShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach UniversitiesNew GreatXML Exploit Bypasses Windows BitLocker via Recovery Partition XML FilesNew Attacks Trick OpenClaw AI Agent Into Running Code and Leaking SecretsThe Gentlemen Ransomware Claims 478 Victims, Can Spread Like a WormWorm Code Leaked, AI Agent Phished, Claude Action Patch + 28 New StoriesWinners Announced Across 95 CategoriesAI Broke Vulnerability Management. That’s Why CISOs Are Moving Budget to BAS.OceanLotus Hits Vietnam Investors With SPECTRALVIPER in FireAnt AttackGitHub to Disable npm Install Scripts by Default to Stop Supply Chain AttacksCISA Adds Cisco, Chrome, and Arista Flaws to KEV Catalog Amid Active ExploitationUnpatched Langflow Flaw CVE-2026-5027 Exploited for Unauthenticated RCEChina-Linked JDY Botnet Expands to 1,500+ Devices for Cyber ReconnaissanceIvanti, Fortinet, and SAP Release Patches for Multiple Critical VulnerabilitiesMicrosoft Patches Record 206 Flaws, Including Three Zero-Days and Critical RCE BugsYour Automated Pentest Looks Clean. See What It Missed in This Expert WebinarAnthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber SafeguardsServiceNow Flaw Exploited to Gain Unauthorized Access to Customer InstancesMicrosoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated WindowsSix Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoSVeeam Backup & Replication RCE Flaw Lets Domain Users Run Remote CodeMeta to Use Off-Site Business Data for Feed and AI Personalization19 Packages Poisoned to Auto-Run Bun Credential StealerMicrosoft Restores Some GitHub Repos, Keeps Others Offline as Miasma Probe ContinuesChrome V8 Zero-Day CVE-2026-11645 Exploited in the WildResearchers Build Self-Replicating AI Worm That Operates Entirely on Local, Open-Weight ModelsWinRAR Flaw Exploited by Russia-Aligned Groups to Deploy Stealers in UkraineNew FROST Attack Lets Websites Track What Sites and Apps You Open via SSD TimingThe Hidden Security Risk in Modern Networks: The Work Between ToolsLiteLLM Flaw CVE-2026-42271 Exploited in the Wild, Chains to Unauthenticated RCEOne-Character Linux Kernel Flaw Enables Local Root Access, Exploits Now PublicMeta Blocks NSO Group’s New WhatsApp Phishing Attack, Files Contempt OrderCritical Check Point VPN Flaw Exploited to Bypass Passwords in IKEv1 SetupsInstagram Account Hacks, Android Zero-Day, GitHub Worm and MoreThe Hardest ForkHow to Reduce Tier 1 OverloadVerdantBamboo Deploys BSD Variant of BRICKSTORM on Linux AppliancesUNC3753 Used Vishing and Physical Intrusions in U.S. Data Theft Extortion CampaignVS Code Adds 2-Hour Extension Auto-Update Delay to Limit Supply Chain AttacksNew ChatGPT Lockdown Mode Limits Tools That Could Enable Data ExfiltrationMiasma Worm Hits 73 Microsoft GitHub Repositories in Major Supply Chain AttackCISA Adds Actively Exploited SolarWinds Serv-U DoS Flaw to KEV CatalogFree Apps Are Quietly Turning Smart TVs Into Web-Scraping Proxies for AIAI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 BugsCisco Catalyst SD-WAN Manager CVE-2026-20245 Flaw Actively Exploited – No Patch AvailableIronWorm and New Miasma Worm Variant Hit npm in Supply Chain AttacksAndroid Spyware Asin Targets Arabic Users via Fake News, PDF and War Map Apps
Chicago 12, Melborne City, USA
The Digital Fortress
  • Home
  • Blog
  • Sample Page
  • Get Started
Sáb. Jun 20th, 2026
Trending News: The Gentlemen RaaS Uses GentleKiller EDR Framework Targeting 400 Security ProcessesUnpatchable ‘usbliter8’ Exploit Breaks Apple A12 and A13 SecureROM Boot ChainAutoJack Attack Lets One Web Page Hijack AI Agent for Host Code ExecutionOperation Endgame Disrupts SocGholish Servers, Cleans 14,971 WordPress SitesCISA Warns Fortinet Customers as FortiBleed Hits 86,644 FortiGate DevicesThe AI Shift That’s Redefining Threat ManagementShadow AI’s Real Threat Is Access ControlSalesforce Disables Klue App Integration After OAuth Token Abuse Exposes Customer DataApple Patches Beats Studio Buds Flaw Letting Nearby Attackers Spy via MicrophoneF5 Patches Two Critical NGINX Open Source Flaws Enabling Remote Code ExecutionINC Ransomware Emerges as Major RaaS Threat in 2026 with 830+ Victims Since 2023Claude Chat Abuse, NastyC2 npm Packages, Device-Code Phishing + 25 More StoriesMicrosoft Details Windows Clipper Malware Campaign Using USB LNK Worm and Tor-Based C2DragonForce Hackers Abuse Microsoft Teams Relays to Hide Backdoor.Turn C2 TrafficHow to Find Hidden Access Risks Inside Your NetworkThe Scripts on Your Checkout Page Are Now a PCI DSS ProblemMicrosoft Confirms RoguePlanet Defender Zero-Day, Says Patch is in DevelopmentCrypto Clipper Campaign Abuses Fake Reviews, AI Narrators, and VirusTotal CommentsJunior Hacker Used Tailscale and OpenSSH to Keep Access After His C2 Went OfflineAdversarial Exposure Validation Turns Security Visibility into Confident PrioritizationThe Top 10 Attack Surface Exposures in 2026Malicious JetBrains Plugins Steal AI API Keys as Chrome Extensions Capture Chatbot Chats144 Mastra npm Packages Compromised via Hijacked Contributor AccountCISA Warns of Actively Exploited Joomla JCE Flaw Allowing PHP Code ExecutionGoogle Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket SquattingClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update LuresNew Rokarolla Android Malware Steals PINs, SMS Codes, and Crypto Wallet FundsChina-Linked SprySOCKS Backdoor Expands to Windows with Driver-Based Stealth94% of Incidents Involve Anonymized Infrastructure. Teams Are Still ReactiveAttackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last WeekFake Microsoft Alerts Used to Deploy North Korean NarwhalRAT MalwareCISA Flags LiteSpeed cPanel Plugin Flaw Exploited for Root Privilege EscalationCisco Releases Security Updates for Actively Exploited SD-WAN Manager FlawChinese Hackers Abused Google Workspace Rules to Steal Research and Defense EmailsNorth Korean Hackers Are Turning Developer Tools Into Malware Delivery ChannelsLiteLLM Vulnerability Chain Lets Low-Privilege Users Take Over AI Gateway ServersChrome 0-Day, UniFi Exploits, macOS Stealers, VPN Flaw and MoreOne-Click Microsoft 365 Copilot Flaw Could Have Let Attackers Steal Emails, Files, and MFA CodesPopular WordPress Plugin Scripts Tampered to Plant Hidden Backdoors on SitesThe Onboarding Password Mistake That Creates Unnecessary Risk152 Chrome Wallpaper Extensions with 105K Installs Linked to Adware and Fake TrafficPalo Alto Warns of Active Exploitation of PAN-OS GlobalProtect VPN FlawSniper Dz Scams Target MENA Users via Fake Facebook Offers and Browser AlertsCritical Splunk Enterprise Flaw Lets Attackers Run Code Without AuthenticationU.S. Orders Anthropic to Suspend Fable 5 and Mythos 5 Access for Foreign NationalsChina-Linked Hackers Backdoored Linux Login Software to Hide for Nearly a DecadeGoogle Sues Chinese Smishing Network Accused of Using Gemini AI in PhishingOver 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF RootkitOver 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF RootkitRethinking MDR as Attackers and Defenders Embrace AIAgentjacking Attack Tricks AI Coding Agents Into Running Malicious CodeINTERPOL Operation Takes Down Sniper Dz Phishing Platform, Arrests AdministratorLangGraph Flaw Chain Exposes Self-Hosted AI Agents to Remote Code ExecutionEuropol Disrupts AudiA6 Crypto Laundering Service Used by Ransomware GangsShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach UniversitiesNew GreatXML Exploit Bypasses Windows BitLocker via Recovery Partition XML FilesNew Attacks Trick OpenClaw AI Agent Into Running Code and Leaking SecretsThe Gentlemen Ransomware Claims 478 Victims, Can Spread Like a WormWorm Code Leaked, AI Agent Phished, Claude Action Patch + 28 New StoriesWinners Announced Across 95 CategoriesAI Broke Vulnerability Management. That’s Why CISOs Are Moving Budget to BAS.OceanLotus Hits Vietnam Investors With SPECTRALVIPER in FireAnt AttackGitHub to Disable npm Install Scripts by Default to Stop Supply Chain AttacksCISA Adds Cisco, Chrome, and Arista Flaws to KEV Catalog Amid Active ExploitationUnpatched Langflow Flaw CVE-2026-5027 Exploited for Unauthenticated RCEChina-Linked JDY Botnet Expands to 1,500+ Devices for Cyber ReconnaissanceIvanti, Fortinet, and SAP Release Patches for Multiple Critical VulnerabilitiesMicrosoft Patches Record 206 Flaws, Including Three Zero-Days and Critical RCE BugsYour Automated Pentest Looks Clean. See What It Missed in This Expert WebinarAnthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber SafeguardsServiceNow Flaw Exploited to Gain Unauthorized Access to Customer InstancesMicrosoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated WindowsSix Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoSVeeam Backup & Replication RCE Flaw Lets Domain Users Run Remote CodeMeta to Use Off-Site Business Data for Feed and AI Personalization19 Packages Poisoned to Auto-Run Bun Credential StealerMicrosoft Restores Some GitHub Repos, Keeps Others Offline as Miasma Probe ContinuesChrome V8 Zero-Day CVE-2026-11645 Exploited in the WildResearchers Build Self-Replicating AI Worm That Operates Entirely on Local, Open-Weight ModelsWinRAR Flaw Exploited by Russia-Aligned Groups to Deploy Stealers in UkraineNew FROST Attack Lets Websites Track What Sites and Apps You Open via SSD TimingThe Hidden Security Risk in Modern Networks: The Work Between ToolsLiteLLM Flaw CVE-2026-42271 Exploited in the Wild, Chains to Unauthenticated RCEOne-Character Linux Kernel Flaw Enables Local Root Access, Exploits Now PublicMeta Blocks NSO Group’s New WhatsApp Phishing Attack, Files Contempt OrderCritical Check Point VPN Flaw Exploited to Bypass Passwords in IKEv1 SetupsInstagram Account Hacks, Android Zero-Day, GitHub Worm and MoreThe Hardest ForkHow to Reduce Tier 1 OverloadVerdantBamboo Deploys BSD Variant of BRICKSTORM on Linux AppliancesUNC3753 Used Vishing and Physical Intrusions in U.S. Data Theft Extortion CampaignVS Code Adds 2-Hour Extension Auto-Update Delay to Limit Supply Chain AttacksNew ChatGPT Lockdown Mode Limits Tools That Could Enable Data ExfiltrationMiasma Worm Hits 73 Microsoft GitHub Repositories in Major Supply Chain AttackCISA Adds Actively Exploited SolarWinds Serv-U DoS Flaw to KEV CatalogFree Apps Are Quietly Turning Smart TVs Into Web-Scraping Proxies for AIAI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 BugsCisco Catalyst SD-WAN Manager CVE-2026-20245 Flaw Actively Exploited – No Patch AvailableIronWorm and New Miasma Worm Variant Hit npm in Supply Chain AttacksAndroid Spyware Asin Targets Arabic Users via Fake News, PDF and War Map Apps
Chicago 12, Melborne City, USA
  • Home
  • Blog
  • Sample Page
The Digital Fortress
  • Get Started

Archivos mayo 2026

  1. Inicio
  2. 2026
  3. mayo
Gitea Vulnerability Exposes Private Container Images without Authentication
  • adminadmin
  • Authentication
  • Container
  • mayo 27, 2026
  • 0 Comentarios
Gitea Vulnerability Exposes Private Container Images without Authentication

Ravie LakshmananMay 27, 2026Vulnerability / Software Security Cybersecurity researchers have disclosed a security flaw in Gitea, an open-source, self-hosted platform for version control, that allows unauthenticated remote attackers to pull…

Continue reading
AI Chatbot Recommendations Redirect Users to Cryptojacking Malware Sites
  • adminadmin
  • Chatbot
  • Cryptojacking
  • mayo 27, 2026
  • 0 Comentarios
AI Chatbot Recommendations Redirect Users to Cryptojacking Malware Sites

Microsoft has warned of an active cryptojacking campaign that makes use of artificial intelligence (AI) chatbot interactions as a mechanism for surfacing malicious download sites. «This emerging delivery technique extends…

Continue reading
MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 Countries
  • adminadmin
  • Campaign
  • Countries
  • mayo 26, 2026
  • 0 Comentarios
MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 Countries

The Iranian hacking group known as MuddyWater has been linked to a new campaign affecting at least nine organizations across nine countries on four continents in the first quarter of…

Continue reading
Microsoft Patches SharePoint RCE Flaw CVE-2026-45659 Across Server Versions
  • adminadmin
  • CVE202645659
  • Flaw
  • mayo 26, 2026
  • 0 Comentarios
Microsoft Patches SharePoint RCE Flaw CVE-2026-45659 Across Server Versions

Ravie LakshmananMay 26, 2026Vulnerability / Enterprise Security Microsoft has rolled out updates to fix a remote code execution vulnerability impacting SharePoint that could be exploited by bad actors in attacks…

Continue reading
New AI DDoS Attacks Are Smarter. Learn How to Fight Back in This Webinar
  • adminadmin
  • Attacks
  • DDoS
  • mayo 26, 2026
  • 0 Comentarios
New AI DDoS Attacks Are Smarter. Learn How to Fight Back in This Webinar

The Hacker NewsMay 26, 2026Web Security / Artificial Intelligence Every single day, hackers are finding new ways to crash websites and steal data. But right now, something has changed. Hackers…

Continue reading
Why Your Second Factor Isn’t Saving You
  • adminadmin
  • Factor
  • isnt
  • mayo 26, 2026
  • 0 Comentarios
Why Your Second Factor Isn’t Saving You

Multi-factor authentication (MFA) was supposed to close a critical gap in identity security. It meant that, even if an attacker possessed the account credentials, they couldn’t log in without the…

Continue reading
CERT-In Mandates 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted Attacks
  • adminadmin
  • 12Hour
  • AIAssisted
  • mayo 26, 2026
  • 0 Comentarios
CERT-In Mandates 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted Attacks

The Indian Computer Emergency Response Team (CERT-In) has issued new guidelines requiring organizations to patch critical security vulnerabilities in internet-exposed systems within 12 hours of being flagged where «feasible» to…

Continue reading
Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO Poisoning
  • adminadmin
  • Deploy
  • Hackers
  • mayo 26, 2026
  • 0 Comentarios
Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO Poisoning

The Iranian state-sponsored threat actor known as Nimbus Manticore (aka Screening Serpens and UNC1549) has been attributed to a fresh campaign using lures impersonating organizations in the aviation and software…

Continue reading
KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike
  • adminadmin
  • Cobalt
  • Deploy
  • mayo 26, 2026
  • 0 Comentarios
KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike

Ravie LakshmananMay 26, 2026Vulnerability / Threat Intelligence A now-patched high-severity security flaw affecting Digital Knowledge KnowledgeDeliver, a Learning Management System (LMS) popular in Japan, was exploited as a zero-day to…

Continue reading
Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain Chaos
  • adminadmin
  • 0Days
  • Botnets
  • mayo 25, 2026
  • 0 Comentarios
Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain Chaos

Ravie LakshmananMay 25, 2026Cybersecurity / Hacking Monday recap. Same mess, new week. A sketchy dev tool got people pwned, old bugs came back from the dead, and security products somehow…

Continue reading

Paginación de entradas

1 2 3 4 … 17

Recent Posts

  • The Gentlemen RaaS Uses GentleKiller EDR Framework Targeting 400 Security Processes
  • Unpatchable ‘usbliter8’ Exploit Breaks Apple A12 and A13 SecureROM Boot Chain
  • AutoJack Attack Lets One Web Page Hijack AI Agent for Host Code Execution
  • Operation Endgame Disrupts SocGholish Servers, Cleans 14,971 WordPress Sites
  • CISA Warns Fortinet Customers as FortiBleed Hits 86,644 FortiGate Devices

Recent Comments

No hay comentarios que mostrar.

Archives

  • junio 2026
  • mayo 2026
  • abril 2026
  • marzo 2026
  • febrero 2026
  • agosto 2024

Categories

  • Uncategorized

Other Story

Uncategorized

The Gentlemen RaaS Uses GentleKiller EDR Framework Targeting 400 Security Processes

  • admin
  • junio 19, 2026
The Gentlemen RaaS Uses GentleKiller EDR Framework Targeting 400 Security Processes
Uncategorized

Unpatchable ‘usbliter8’ Exploit Breaks Apple A12 and A13 SecureROM Boot Chain

  • admin
  • junio 19, 2026
Unpatchable ‘usbliter8’ Exploit Breaks Apple A12 and A13 SecureROM Boot Chain
Uncategorized

AutoJack Attack Lets One Web Page Hijack AI Agent for Host Code Execution

  • admin
  • junio 19, 2026
AutoJack Attack Lets One Web Page Hijack AI Agent for Host Code Execution
Uncategorized

Operation Endgame Disrupts SocGholish Servers, Cleans 14,971 WordPress Sites

  • admin
  • junio 19, 2026
Operation Endgame Disrupts SocGholish Servers, Cleans 14,971 WordPress Sites
Uncategorized

CISA Warns Fortinet Customers as FortiBleed Hits 86,644 FortiGate Devices

  • admin
  • junio 19, 2026
CISA Warns Fortinet Customers as FortiBleed Hits 86,644 FortiGate Devices
Uncategorized

The AI Shift That’s Redefining Threat Management

  • admin
  • junio 19, 2026
The AI Shift That’s Redefining Threat Management
Copyright © 2026 The Digital Fortress | Powered by Desert Themes
Back to Top