Latest news

  1. Vulnerabilities via Microsoft Security Response Center

    CVE-2026-69719 Microsoft Office Word Information Disclosure Vulnerability

    Microsoft is announcing the availability of the security updates for Microsoft Office for Mac. Customers running affected Mac software should install the update for…

  2. Vulnerabilities via Microsoft Security Response Center

    CVE-2026-69739 Microsoft Office Information Disclosure Vulnerability

    Microsoft is announcing the availability of the security updates for Microsoft Office for Mac. Customers running affected Mac software should install the update for…

  3. Vulnerabilities via Microsoft Security Response Center

    CVE-2026-69759 Microsoft Office Word Remote Code Execution Vulnerability

    Microsoft is announcing the availability of the security updates for Microsoft Office for Mac. Customers running affected Mac software should install the update for…

  4. Vulnerabilities via Microsoft Security Response Center

    CVE-2026-69767 Microsoft Office PowerPoint Remote Code Execution Vulnerability

    Microsoft is announcing the availability of the security updates for Microsoft Office for Mac. Customers running affected Mac software should install the update for…

  5. Vulnerabilities via Microsoft Security Response Center

    CVE-2026-78510 Microsoft Outlook and Word Remote Code Execution Vulnerability

    Microsoft is announcing the availability of the security updates for Microsoft Office for Mac. Customers running affected Mac software should install the update for…

  6. via Infosecurity Magazine

    CISA Urges Critical Infrastructure to Plant Decoys Inside Networks

    CISA released guidance on using cyber decoys to detect & disrupt malicious activity inside networks

  7. Threat Intel via Huntress

    Operational Resilience: Turning Your IR Plan Into a Resilient Team

    An incident response plan only works if it’s tested. Learn the 5 pillars of operational resilience and how to turn your plan into muscle memory before an attack hits.

  8. Vulnerabilities via Qualys

    CISA Warns of Cisco Identity Services Engine Authentication Bypass Vulnerability (CVE-2026-76460)

    Cisco released security updates to address a critical severity vulnerability in Cisco Identity Services Engine. Tracked as CVE-2026-76460, successful exploitation of the…

  9. Threat Intel via CyberScoop

    Authorities seize popular, long-running DDoS-for-hire service domains

    Authorities seized the primary domain and other websites linked to NightmareStresser, one of the longest-running and most popular distributed denial-of-service…

  10. Breaches via Help Net Security

    Iranian strikes on AWS facilities left customer data beyond recovery in Bahrain, UAE

    Six months after Iranian drone strikes tore through its Middle East infrastructure, Amazon Web Services (AWS) has acknowledged the permanent loss of customer data in…

  11. Threat Intel via Kaspersky Securelist

    The Odyssey and trojans again: MovieReaper attacks users in multiple countries via compromised torrents

    Introduction Torrent trackers have long been abused for distributing malicious software, disguised as popular films, games, and other content. Our previous research has…

  12. Breaches via Bishop Fox

    MikroTrick: Inside the RouterOS Takeover Chain

    Attackers were exploiting MikroTik routers before fixes went public. Bishop Fox reproduced the full unauthenticated takeover chain, found persistence artifacts on real…

  13. Threat Intel via Infosecurity Magazine

    New Chinese-Made ‘RatHat’ Android Malware Leverages AI to Steal Financial Data

    Researchers at Zimperium have uncovered a new Android malware strain, dubbed RatHat, with spyware and backdoor capabilities

  14. Ransomware via Huntress

    Ready, Settra, Go: New Settra Ransomware Variant Deploys MeshAgent RMM

    Huntress has recently seen two incidents involving Settra, a ransomware variant that was first publicly reported in June 2026.

  15. Vulnerabilities via SOCRadar

    CVE-2026-76460: Cisco ISE Flaw Actively Exploited

    CVE-2026-76460: Cisco ISE Flaw Actively Exploited CVE-2026-76460 represents a critical security flaw in Cisco’s Identity Services Engine (ISE) and ISE Passive Identity…

  16. Vulnerabilities via The Register

    Cisco drops another exploited zero-day, this time a perfect 10

    Cisco admins who have spent their week patching email gateways now face a perfect-10 Identity Services Engine flaw under active attack. Cisco disclosed CVE-2026-76460 on…

  17. Vulnerabilities via The Hacker News

    Critical Unbound DNSSEC Validator Flaw Could Allow RCE via a Malicious DNS Zone

    Every release of the Unbound DNS resolver before 1.26.1 has a critical heap overflow in its DNSSEC validator, maintainer NLnet Labs said in an advisory on Wednesday. An…

  18. via Infosecurity Magazine

    Cyber Essentials Has Record Year but Takeup Remains Low

    New government figures reveal a 20% annual increase in certifications

  19. Vulnerabilities via CISA

    ABB Ability Edgenius

    View CSAF Summary ABB is aware of public reports of a vulnerability CVE‑2026‑31431 (Copy Fail) in the product versions listed as affected in the advisory. An update is…

  20. Vulnerabilities via CISA

    Mitsubishi Electric CC-Link IE TSN Communication Protocol (Update A)

    View CSAF Summary Successful exploitation of this vulnerability could allow an attacker with access to the same network segment to tamper with communication data in the…