Operating system command injection
A critical vulnerability in Arista VeloCloud Orchestrator is currently being actively exploited. CISA has added the flaw, rated at the maximum severity of 10.0, to its KEV list.
MFA Bypassing
Attackers alter DNS settings in hotel Wi-Fi networks to redirect users to fake Microsoft 365 pages and steal credentials.
New Names for Cybercriminals
The Google Threat Intelligence Group is overhauling its tracking system for cyber threat actors. Instead of cryptic abbreviations such as APT41, the group will use two part codenames to make threat tracking easier to navigate.
Shaping The Digital Future
On June 29, the U.S. Supreme Court ruled in Trump v. Slaughter that the independence of the Federal Trade Commission (FTC) is unconstitutional.
Malvertising via Search Engines
Attackers used manipulated Bing ads to distribute SectopRAT malware, compromising at least 29 organizations.
Malware Attacks Target Developers
Security researchers at Zscaler have uncovered a new attack campaign in which cybercriminals use manipulated AI chats to distribute malware.
Machine Key Theft
Security researchers are tracking attacks against Microsoft SharePoint systems exploiting the vulnerability CVE-2026-50522. Attackers are stealing machine keys from compromised servers.
Operations Remain Uninterrupted
Swiss train manufacturer Stadler Rail has rejected a ransom demand of 10 million Swiss francs, equivalent to approximately $12.3 million US dollars, from the Everest group following a data breach at a supplier.
Credential-Stuffing Attack
Chick-fil-A is notifying customers about a data security incident following credential-stuffing attacks in June. Personal information and account balances may have been exposed.
Most Read Articles
26. August 2026
20. August 2026
17. August 2026
12. August 2026
10. August 2026