loader image
Argo CD Flaw Lets Read-Only Users Extract Secrets

Argo CD, a prominent GitOps tool for Kubernetes, is grappling with a critical security flaw, underscored by a severe 9.6 CVSS score. This vulnerability, identified in the system, allows read-only users to access plaintext Kubernetes secrets via the Argo CD interface. The exposure poses a significant risk to organizations relying on Kubernetes for deploying applications […]

Palo Alto: State Hackers Exploit PAN-OS Zero-Day

Palo Alto Networks has raised alarms with a high-priority security advisory, following the detection of a critical zero-day vulnerability in its PAN-OS software. This vulnerability, identified as CVE-2026-0300, involves a dangerous buffer overflow that has been exploited by state-sponsored actors aiming to gain root access. These cyberattackers have weaponized the flaw, potentially compromising the network […]

Taiwan High-Speed Rail Halts After Student Hack

Taiwan’s high-speed rail system faced unexpected disruptions during the Qingming Festival holiday when a 23-year-old student’s cyber incursion brought the trains to a halt. The incident revealed a significant security flaw in the TETRA radio communication system used by Taiwan High-Speed Rail for nearly two decades. The student, identified as Lin, leveraged software-defined radio tools […]

FEMITBOT Pushes Crypto Fraud, Android Malware

A new threat in the online world has surfaced with the FEMITBOT network, which pushes crypto fraud using Telegram Mini Apps. This sophisticated operation lures victims through deceptive social media ads and direct Telegram invitations. Once engaged, users interact with fake apps posing as cryptocurrency exchanges and financial tools. These apps mimic legitimate platforms, enticing […]

Google Chrome Ships 148 With 127 Fixes, $100k+

Google Chrome ships its 148 stable release, marking a significant advancement in the browser’s security framework. The latest update transitions to version 148.0.7778.96 for Linux and similarly for Windows users, indicating a strategic effort by Google to enhance user security. With 127 vulnerabilities addressed, including critical exposures, users can expect improved protection and performance. The […]

Phishing Campaign Hits 500+ Organizations

A sophisticated phishing campaign has targeted over 500 organizations across diverse sectors such as aviation, critical infrastructure, energy, logistics, public administration, and technology. This persistent cyber threat, which has unfolded over several years, highlights the growing complexities that businesses must navigate in maintaining cyber vigilance. Cybersecurity experts express concerns about the adaptive techniques employed in […]

JDownloader Site Breach Plants Python RAT

The jdownloader site breach has unleashed a sophisticated cyberattack compromising millions. In May 2026, cybercriminals infiltrated JDownloader’s website, replacing legitimate download links with malicious files embedded with a Python-based remote access trojan (RAT). For two days, unsuspecting users who downloaded the installer faced significant risk, opening backdoors into their systems. Despite no tampering with the […]

Android Zero-Click ADB Exploit Goes Public

A recently uncovered android zero-click adb exploit exposes a significant vulnerability within Android’s developer tools, allowing attackers to gain unauthorized access to mobile devices via Wi-Fi without user interaction. The flaw, identified as CVE-2026-0073, permits an astonishingly stealthy breach, bypassing authentication mechanisms crucial for device security. Eight hours ago, researchers released a proof of concept […]

Instagram Removes DM Encryption; Export Your Chats

Instagram removes DM encryption starting May 8, 2026, allowing Meta to access messages on its popular platform. This change affects users who previously opted for encrypted direct messages, fundamentally altering message privacy. While Meta claims low usage and complex maintenance as reasons, some observers note the decision aligns with the U.S. Take It Down Act’s […]

Canvas Faces Extortion Over 8,800 Schools

Canvas faces extortion threats from a group affiliated with The Com, which is demanding ransom from Instructure to prevent a widespread data breach. The attackers have reportedly accessed sensitive data from over 8,800 school systems, increasing pressure on Instructure as the extortion deadline approaches. If the company fails to comply, the data could be leaked, […]

EU Most Wanted Nabs Hungarian Child Abuser

The EU Most Wanted platform played a crucial role in the capture of a 37-year-old Hungarian man, convicted of child abuse, who was hiding in Spain. Officials arrested him on May 7 in Tenerife, just three days after his details appeared on the list. This platform, backed by Europol and the European Network of Fugitive […]

M23-Held Rubaya Landslides Kill Hundreds

In the M23-held Rubaya landslides, which have occurred since early 2026, hundreds of lives have been lost along the Democratic Republic of Congo’s coltan-rich Rubaya mines. The mines, a crucial source for smartphone and e-vehicle components, operate under perilous conditions. Despite global attention, access remains restricted due to control by the Rwandan-backed M23 group. Bellingcat […]