Latest Cybersecurity Threats

Real-time threat intelligence from trusted sources

A recent report from DLA Piper shows that over 160,000 companies have reported breaches to European GDPR regulators, marking a 22% increase in notifications compared to previous years. This surge indicates that businesses are becoming more aware of their obligations under the GDPR and are taking steps to comply with reporting requirements. The increase in notifications could also reflect a rise in actual data breaches or a heightened awareness of data privacy issues. Companies that fail to report breaches risk facing significant fines, which can be as much as 4% of their annual global revenue. This trend is crucial because it emphasizes the ongoing challenges organizations face in protecting personal data and maintaining compliance with data protection laws.

Impact: N/A
Remediation: Companies should ensure compliance with GDPR reporting requirements and enhance data protection measures.
Read Original

A newly discovered vulnerability in SmarterTools' SmarterMail email software is currently being exploited just two days after a patch was released on January 15, 2026. This flaw, tracked as WT-2026-0001 by watchTowr Labs, has not yet been assigned a CVE identifier. The issue allows attackers to bypass authentication mechanisms, posing a significant risk to users of the software. Organizations using SmarterMail should prioritize applying the latest patch to protect against potential exploitation. The rapid exploitation of this vulnerability highlights the need for timely updates and vigilance in monitoring for unusual activity.

Impact: SmarterMail email software, specifically Build 9511 released by SmarterTools.
Remediation: Users should apply the patch provided in Build 9511 released by SmarterTools on January 15, 2026, to mitigate the vulnerability.
Read Original

Atlassian, GitLab, and Zoom have recently released security patches addressing more than two dozen vulnerabilities, some of which are classified as critical or high-severity. These updates aim to protect users from potential attacks that could exploit these weaknesses. Affected products include popular collaboration tools and development platforms, which are widely used in various organizations. It's crucial for users of these applications to apply the patches promptly to safeguard their systems against possible exploitation. The vulnerabilities could allow unauthorized access or other malicious activities if not addressed, making timely updates essential for maintaining security.

Impact: Atlassian products, GitLab, Zoom
Remediation: Users should apply the latest security patches provided by Atlassian, GitLab, and Zoom.
Read Original

Recent research by Pentera has revealed that training applications, designed to teach secure coding and provide hands-on practice, are being left exposed on the public internet. These applications, including OWASP Juice Shop and Damn Vulnerable Web Application, are often used for demos and internal testing. Unfortunately, security teams may not realize that these intentionally vulnerable environments are actively being exploited by attackers. This situation poses a significant risk, as it allows malicious actors to gain access to sensitive information or launch further attacks from these platforms. Organizations using such training tools need to ensure they are properly secured to prevent unauthorized access.

Impact: OWASP Juice Shop, Damn Vulnerable Web Application, Hackazon
Remediation: Organizations should take immediate steps to secure training applications by restricting access to internal networks, implementing strong authentication measures, and regularly monitoring for any unauthorized access. Additionally, teams should ensure that these applications are not exposed to the public internet unless necessary and that they are updated to the latest versions with all security patches applied.
Read Original

NIST has significantly reduced its workforce, cutting over 700 jobs since 2025, which has raised concerns about its ability to manage key projects, including encryption standards. Among the job losses, 89 positions were eliminated from a lab that plays a crucial role in testing and validating encryption methods used by the government. This reduction in staff could hinder NIST's ability to respond to emerging security challenges and develop new standards, potentially putting sensitive government data at risk. The cuts highlight the ongoing struggle within government agencies to balance budgets while maintaining essential cybersecurity functions. The impact of these staff reductions could be felt across various sectors that rely on NIST's guidance for encryption and security protocols.

Impact: Encryption standards and validation processes, NIST's encryption testing lab
Remediation: N/A
Read Original

Cisco has addressed a serious security flaw in its Unified Communications and Webex Calling platforms, identified as CVE-2026-20045. This vulnerability allows attackers to execute arbitrary commands remotely without authentication, posing a significant risk to users. The flaw has been actively exploited in the wild, which raises concerns for organizations relying on these communication tools. With a CVSS score of 8.2, it is classified as critical, emphasizing the urgency for users to apply the available patches. Companies utilizing Cisco's services should prioritize updating their systems to mitigate potential attacks.

Impact: Cisco Unified Communications, Cisco Webex Calling
Remediation: Cisco has released patches to address the vulnerability. Users should update their systems to the latest versions as soon as possible to protect against exploitation.
Read Original

A significant spam wave is hitting users globally, stemming from unsecured Zendesk support systems. Victims are reporting receiving hundreds of unsolicited emails with unusual and sometimes alarming subject lines, raising concerns about the safety and security of their information. This incident indicates a serious lapse in security measures, as attackers are exploiting vulnerabilities in the ticketing system to send out mass spam. The situation is alarming as it not only affects individuals but could also lead to broader security issues if sensitive information is compromised. Companies using Zendesk should review their security protocols to prevent unauthorized access and protect their users from being targeted in this way.

Impact: Zendesk support systems
Remediation: Companies should secure their Zendesk systems and review access controls to prevent unauthorized exploitation.
Read Original

Cisco has addressed a serious vulnerability in its Unified Communications and Webex Calling platforms, identified as CVE-2026-20045. This remote code execution flaw was found to be actively exploited by attackers, posing a significant risk to users. The vulnerability could allow unauthorized access to systems, potentially leading to data breaches or service disruptions. Organizations using these Cisco products are urged to apply the latest updates to mitigate the risk. This incident underscores the importance of timely patch management in maintaining cybersecurity hygiene.

Impact: Cisco Unified Communications, Cisco Webex Calling
Remediation: Cisco has released patches for the vulnerability. Users should update to the latest versions of Unified Communications and Webex Calling as soon as possible to protect against potential exploits.
Read Original

A new attack method called the 'Contagious Interview' has emerged, exploiting trust granted to repository authors in Visual Studio Code (VS Code). Once a user gives access to a malicious application from a compromised repository, the app can execute arbitrary commands on the user's system without requiring any further interaction. This poses a significant risk to developers and users who rely on VS Code for their projects, as it can lead to unauthorized access and control over their systems. The attack leverages the trust inherent in open-source collaborations, making it crucial for users to scrutinize the sources of their software. As this method becomes more prevalent, developers should be cautious about the repositories they trust.

Impact: Visual Studio Code, related extensions, potentially any system that interacts with compromised repositories
Remediation: Users should verify the integrity of repositories and only trust well-known sources. Regular updates to VS Code and its extensions are recommended.
Read Original

The launch of the GCVE system aims to provide a decentralized approach to tracking software vulnerabilities, addressing the ongoing issues faced by the 25-year-old CVE program. This initiative comes in response to funding difficulties that have raised concerns about the sustainability of the CVE, a resource widely used by cybersecurity professionals globally. By decentralizing the tracking of vulnerabilities, GCVE hopes to enhance reliability and accessibility for users who need to stay informed about security risks. The success of this system may significantly impact how organizations manage and respond to software vulnerabilities, potentially leading to quicker updates and patches. As cybersecurity threats continue to evolve, having a more resilient tracking system could benefit both developers and end-users.

Impact: CVE program, software vulnerabilities
Remediation: N/A
Read Original

A new type of Linux malware called VoidLink has emerged, specifically targeting cloud environments. What makes this malware stand out is that it has been primarily developed using artificial intelligence. Researchers are concerned about its sophistication and the potential risks it poses to organizations that rely on cloud services. The use of AI in its development could allow for more adaptive and dangerous attacks, making it critical for companies to bolster their security measures. As this malware evolves, it could lead to significant data breaches if not addressed promptly.

Impact: Linux cloud environments
Remediation: Companies should enhance their cloud security protocols and monitor for unusual activity.
Read Original

PcComponentes, a well-known tech retailer in Spain, is facing scrutiny after claims surfaced about a data breach affecting 16 million customers. The company has denied these allegations but acknowledged that it experienced a credential stuffing attack. This type of attack occurs when hackers use stolen credentials from one service to access accounts on another, raising concerns about the security of customer data. While PcComponentes insists that the data breach claims are unfounded, the incident still raises alarms about the potential vulnerabilities faced by online retailers. Customers should be vigilant and consider changing their passwords, especially if they use the same credentials across multiple sites.

Impact: 16 million customer accounts
Remediation: Users should change passwords and enable two-factor authentication.
Read Original

Betsson Group, an online gambling operator, has recently implemented fraud protection and threat intelligence solutions from Group-IB to address increasing sophisticated cyber threats targeting its sports betting and casino platforms. This decision comes as the company aims to bolster its defenses against potential attacks that could compromise user data and financial transactions. The rise in cyber threats in the online gambling industry poses significant risks, not only to operators but also to their customers. By integrating Group-IB’s technology, Betsson is taking proactive steps to enhance its security measures and safeguard its platforms. This move reflects a growing recognition among online gambling companies of the need to invest in advanced cybersecurity solutions to protect against evolving threats.

Impact: Betsson Group's sports betting and casino platforms
Remediation: N/A
Read Original

Group-IB has reported that artificial intelligence is driving a new phase of cybercrime, termed the 'fifth wave.' This new wave is characterized by the availability of advanced hacking tools that are now affordable, scalable, and accessible to criminals regardless of their technical expertise. As a result, even novice attackers can carry out sophisticated cyberattacks that were once limited to highly skilled hackers. This shift raises significant concerns for businesses and organizations, as the barriers to entry for cybercriminals have been drastically lowered. Companies need to be aware of this evolving threat landscape and take proactive measures to protect their systems and data from potential attacks.

Impact: N/A
Remediation: N/A
Read Original

Germany is working on new legislation to enhance the surveillance and hacking powers of its Federal Intelligence Service. This move is intended to lessen the country's dependence on U.S. intelligence while bringing its capabilities in line with those of other European nations, such as the UK and France. The proposed changes are part of a broader effort to strengthen national security and adapt to evolving threats. If passed, the law would significantly expand the government's ability to monitor communications and conduct cyber operations. This development raises concerns about privacy and civil liberties, as the balance between security and individual rights is increasingly scrutinized.

Impact: N/A
Remediation: N/A
Read Original
PreviousPage 153 of 219Next