Latest Cybersecurity Threats

Real-time threat intelligence from trusted sources

Researchers from SSD Secure Disclosure have identified a serious vulnerability in Unisoc modem firmware that allows attackers to gain full access to the Android kernel through a VoLTE video call. This exploit chain, disclosed on August 17, 2026, is a continuation of a previous discovery from March 2026, which involved remote code execution. Currently, there is no fix available from Unisoc, leaving devices that use this firmware at risk. The implications of this vulnerability are significant, as it can potentially allow attackers to control affected devices completely. Users with devices running Unisoc chipsets should be particularly cautious, as they are directly impacted by this security issue.

Read Original

The French Ministry of the Economy and Finance has reported a significant data breach involving the General Directorate of Public Finances (DGFiP). An attacker managed to access their systems, compromising the personal data of approximately 678,000 individuals. The stolen information may include sensitive financial details, which could put those affected at risk for identity theft or fraud. This incident raises concerns about the security of government systems and the protection of citizens' data. Authorities are urging individuals to monitor their financial accounts and take precautions against potential misuse of their information.

Read Original
Actively Exploited

SafePal, a cryptocurrency wallet provider, has reported a data breach that has affected approximately 40,000 customers. Hackers took advantage of a vulnerability found in the order-tracking feature of a plugin, allowing them to access sensitive customer information. This breach raises significant concerns for users, as it may expose personal data and financial information. SafePal has not specified what particular data was compromised, but the incident highlights ongoing vulnerabilities within digital wallet services. Users are advised to monitor their accounts for any suspicious activity and take necessary precautions to protect their information.

Read Original

Researchers have discovered a new Linux botnet called Evooo1Bot, which builds upon the Mirai botnet's source code. This botnet can exploit known vulnerabilities to convert internet-facing devices into SOCKS5 proxies. The malware not only incorporates the DDoS capabilities of Mirai but also adds several new features that enhance its functionality. This poses a significant risk as it can affect various edge devices that are often less secure and can be used for malicious activities like distributed denial-of-service attacks. Users and companies with exposed devices need to take immediate action to protect their systems from this emerging threat.

Read Original

SafePal, a company known for its hardware wallets, has reported a data breach that has affected nearly 40,000 customers. The breach involved unauthorized access to customer data, raising concerns about the security of sensitive information. Users of SafePal's products may be at risk of identity theft or fraud as a result of this incident. The company has not yet disclosed the specific nature of the data that was compromised. This situation serves as a reminder for users to remain vigilant about their online security and consider updating their passwords and monitoring their accounts for any unusual activity.

Read Original

Microsoft is currently developing a security patch for a zero-day vulnerability known as 'ShieldBreak,' which was disclosed last week by researcher Nightmare Eclipse. This vulnerability is tracked as CVE-2026-69414 and poses a significant risk, as it can potentially allow attackers to exploit Microsoft Defender, an essential security tool for many users and organizations. The information about this vulnerability is particularly concerning because it could be leveraged by cybercriminals to bypass security measures, compromising systems and data. Microsoft is urging users to stay vigilant while they work on a fix to mitigate the threat. As the situation develops, it’s crucial for users of Microsoft Defender to monitor for updates and implement any recommended patches as soon as they are available.

Read Original

The article discusses the ongoing security issues related to Rubrik's Zero Labs and the implications of AI recorders on privacy. Researchers have identified vulnerabilities that could allow unauthorized access to sensitive data managed by Rubrik's systems. This is particularly concerning for organizations that rely on Rubrik for data protection and recovery solutions. Additionally, the rise of AI-powered recorders is raising alarms about potential privacy violations, as these devices may inadvertently capture and store personal information without user consent. The article emphasizes the need for companies to enhance their security measures and for users to be aware of how their data may be collected and used by these technologies.

Read Original

Recently, a vulnerability in macOS screen sharing has been exploited by attackers to gain root access to affected systems. Once inside, they deployed a Monero miner, which utilizes the system's resources to mine the cryptocurrency without the owner's consent. This incident raises concerns for macOS users, particularly those who rely on screen sharing features for remote work or support. The exploitation of this vulnerability not only compromises the integrity of the systems involved but also highlights the need for users to stay vigilant about software updates and security practices. As the attacks are ongoing, users should be particularly cautious and monitor their systems for unusual activity.

Read Original

A litigant in a case against the New York Bariatric Group attempted to manipulate a court ruling by including AI prompt injections in his filing. These prompts were designed to instruct any AI reviewing the documents to rule in his favor. The presiding judge noticed this unusual tactic and responded by banning the individual from submitting electronic filings. This incident raises concerns about the misuse of AI in legal proceedings and the potential for similar tactics in future cases. Judges and courts may need to implement stricter guidelines to prevent such manipulative practices, ensuring that legal processes remain fair and unbiased.

Read Original

A serious vulnerability in SAP Commerce Cloud, identified as CVE-2026-58231, has been actively exploited just three days after its disclosure. This flaw allows attackers to execute arbitrary code, which can compromise internal components of the affected systems. Organizations using SAP Commerce Cloud should be particularly vigilant, as the rapid exploitation indicates a high level of risk. The urgency for companies to patch their systems is critical to prevent unauthorized access and potential data breaches. Users and administrators need to prioritize updates to safeguard their environments against this vulnerability.

Read Original

German and Brazilian police recently dismantled a cybercrime ring linked to a €30 million bank fraud that targeted a German financial institution. The operation, named 'Klonen,' led to the arrest of four suspects in Brazil, with additional suspects being pursued in Spain and Bulgaria. The investigation began in late 2023 after attackers exploited a flaw in the booking process of the bank. On August 13, law enforcement executed 21 search warrants across several Brazilian cities, including Rio de Janeiro and Goiânia. This incident underscores the ongoing risks of cybercrime, especially in the banking sector, and highlights the need for stronger security measures to protect financial institutions from sophisticated attacks.

Read Original

A seller on a data-trading forum claims to have obtained 1.7 million employee records from McDonald's Azure tenant. An 8,000-row sample of these records was shared, and initial checks suggest it is authentic, although its full size and the age of the data remain uncertain. This incident raises concerns about the security of employee information at McDonald's, potentially impacting current and former employees. If the claims are verified, it could lead to serious privacy issues and a loss of trust among employees. Companies like McDonald's must ensure robust security measures to protect sensitive employee data from unauthorized access.

Read Original

Cybersecurity researchers have identified a new security threat linked to a suspected China-nexus advanced persistent threat group. The group is exploiting a serious vulnerability in Broadcom's VMware vCenter, known as CVE-2026-59310, which has a CVSS score of 9.8, indicating its severity. This directory-traversal flaw allows attackers to execute arbitrary code on affected systems. Recent reports show that the attackers are deploying Babuk-derived ransomware during these exploits, raising concerns for organizations using VMware vCenter. Companies that rely on this software need to act quickly to secure their environments and protect sensitive data from potential ransomware attacks.

Read Original
Actively Exploited

In the first half of 2026, infostealers have compromised a staggering 1.7 billion credentials, according to data from Flashpoint. These infostealers are malicious programs designed to collect sensitive login information from users across various platforms. The scale of this credential theft could have far-reaching implications for individuals and organizations alike, as stolen credentials can lead to unauthorized access to personal accounts, financial data, and corporate networks. As users continue to rely on digital services, the need for robust security measures, like two-factor authentication and regular password updates, becomes increasingly vital. Companies must also enhance their monitoring and detection capabilities to mitigate the risks associated with these types of attacks.

Read Original

A cybercriminal has claimed to have stolen millions of records from several Fortune 500 companies, including McDonald’s, Tata Consultancy Services (TCS), and Vodafone. This incident raises serious concerns about data security among major corporations, especially those using cloud services like Microsoft Azure. The attackers have not disclosed how they gained access to these records, but the scale of the breach suggests a significant vulnerability. If these claims are verified, it could lead to severe repercussions for the affected companies, including legal action and loss of customer trust. Companies need to reassess their data protection measures to prevent similar incidents in the future.

Read Original
PreviousPage 19 of 363Next