loader image
Microsoft Patches 6 Actively Exploited Zero-Days

Microsoft patches 6 zero-day vulnerabilities as part of its February 2026 Patch Tuesday release, addressing a total of roughly 60 security flaws across its product lineup. The company confirmed that all six zero-days had been actively exploited prior to the update rollout, underscoring the urgency for users and administrators to apply the fixes. The vulnerabilities […]

Europol Postal Sting Halts €1.2 Billion Fake Cash

Authorities from 18 European countries intercepted around EUR 1.2 billion in counterfeit currency during a Europol postal sting that targeted illegal shipments across the continent. The joint action, known as Operation DECOY III, was led by Austria, Portugal, and Spain with support from Europol. Officials seized fake banknotes and coins intended for circulation via international […]

Northern Ireland Police to Get £7,500 Over Breach

Thousands of serving and former Northern Ireland police officers impacted by a major data breach in 2023 are set to receive financial compensation. Each affected officer will be offered £7,500 after personal details were mistakenly made public, according to officials. The breach exposed sensitive information, raising significant concerns over safety and privacy. Authorities acted to […]

Dutch Data Watchdog Admits Ivanti Hack

The Dutch Data Protection Authority (AP) disclosed that it fell victim to a cyberattack exploiting zero-day vulnerabilities in Ivanti products, making the agency part of a growing list affected by the incident. The dutch data watchdog hack came to light after attackers rapidly weaponized flaws identified as CVE-2026-1340 and CVE-2026-1281. These vulnerabilities impact Ivanti Connect […]

SolarWinds WHD Flaws Enable Velociraptor Use

Hackers are actively exploiting SolarWinds WHD flaws to execute code on vulnerable systems and install legitimate tools for remote access. Targeting the company’s Web Help Desk application, threat actors gain execution privileges and deploy Velociraptor, a digital forensics tool designed for endpoint visibility. Security researchers linked the activity to persistence strategies, indicating an effort to […]

UNC3886 Breaches Four Singapore Telcos

Chinese cyber-espionage group UNC3886 breached Singapore’s four largest telecom providers—Singtel, StarHub, M1 and Simba—at least once in 2023, raising new concerns over targeted infrastructure attacks in Southeast Asia. The UNC3886 breaches, tracked by cybersecurity analysts, reveal how state-aligned actors continue to exploit key communications networks to gain undetected access and gather sensitive data. The intrusions […]

North Korea Impersonates Candidates on LinkedIn

A new scheme in which North Korea impersonates candidates on LinkedIn threatens to undermine remote hiring security. Analysts say operatives from the Democratic People’s Republic of Korea (DPRK) are now copying real professionals’ profiles rather than creating fake identities. These actors use verified emails and identity badges to pose as genuine applicants, often with the […]

UNC3886 Breaches Singapore Telecoms

A state-sponsored threat group known as UNC3886 breached Singapore telecoms in a stealthy cyber campaign targeting edge devices and internal infrastructure. The Cyber Security Agency of Singapore and the Infocomm Media Development Authority led a multi-agency response, Operation CYBER GUARDIAN, which ran for more than 11 months. The attackers exploited a zero-day vulnerability and successfully […]

Microsoft Exchange Online Quarantines Legit Mail

Microsoft Exchange Online quarantines have disrupted business communications after the platform mistakenly flagged legitimate emails as phishing. The issue, tracked as incident EX1227432, began on Feb. 5, 2026, and remains unresolved. Microsoft identified a flawed URL policy as the root cause, which incorrectly classifies safe links as malicious, sending authentic messages to quarantine. Affected users […]

Roundcube Flaw Lets Hackers Track Email Opens

A critical Roundcube flaw lets hackers bypass user privacy settings and track when emails are opened, even after users disable remote image loading. The issue, uncovered by security researchers at NULL CATHEDRAL, affects Roundcube Webmail versions before 1.5.13 and all 1.6.x releases prior to 1.6.13. Attackers exploited a loophole in the HTML sanitizer “rcube_washtml,” which […]

Conpet Reports Cyberattack Operations Unaffected

Romania’s state-controlled oil pipeline operator confirmed that Conpet reports a cyberattack that disrupted its business IT systems and temporarily took down its website. The incident, discovered on February 3, 2026, did not affect operational technologies including SCADA and telecommunications systems, according to a company statement. Oil and fuel transport services remain fully functional, with no […]

European Commission Contains Mobile-Device Breach

The European Commission swiftly contained a cyberattack on January 30 after detecting unauthorized access to staff mobile data, marking a limited but targeted European Commission mobile breach. Telemetry tools flagged suspicious activity within the infrastructure managing mobile devices, prompting immediate response from security teams. Forensics confirmed no mobile endpoints were compromised, with the breach restricted […]