loader image
Aura Confirms Breach Exposing 900,000 Contacts

Digital security firm Aura confirms a breach, exposing nearly 900,000 marketing contacts, including names and email addresses. The identity protection company revealed that an unauthorized party gained access to these customer records, raising concerns among cybersecurity experts about the implications of such a breach. Aura must now address potential vulnerabilities and prevent similar incidents in […]

Ubuntu Snapd Bug Enables Local Root

A recently disclosed vulnerability in the popular Ubuntu operating system has cybersecurity experts on alert. The flaw, identified as CVE-2026-3888, affects the Snapd service in Ubuntu versions 24.04 and later. This critical Ubuntu Snapd bug allows local attackers to escalate their privileges to root access, posing significant security risks. According to the report on blog.qualys.com, […]

CISA Warns of Active Attacks on SharePoint, Zimbra

The Cybersecurity and Infrastructure Security Agency (CISA) warns of increasing threats as it expands its Known Exploited Vulnerabilities Catalog. Notably, it now includes new vulnerabilities affecting Microsoft SharePoint and Zimbra. These high-risk vulnerabilities, identified as CVE-2026-0953, CVE-2026-20131, CVE-2026-20963, CVE-2025-66376, and CVE-2023-33010, have attracted active exploitation attempts. Organizations utilizing these platforms should prioritize patching and safeguarding […]

WEF Warns Aviation Cyber Risks Threaten Stability

The World Economic Forum (WEF) warns of aviation risks stemming from cyber vulnerabilities that threaten both operational and regional stability. The WEF’s recent Aviation Sustainability report highlights the increasing threat that cyber-attacks pose to the aviation industry. As cyber incidents become more sophisticated, they have the potential to disrupt flight operations, compromise passenger safety, and […]

Claroty: 82% of CPS Attacks Use Remote Access

Claroty has released a report highlighting that 82% of attacks on cyber-physical systems (CPS) targeted remote access protocols. The findings emphasize a significant focus by hacktivists on human-machine interfaces (HMIs) and supervisory control and data acquisition (SCADA) systems. These systems are critical components of industrial control networks, often playing a pivotal role in sectors such […]

Cisco Zero-Day Used in Interlock Ransomware

A recent investigation has revealed the alarming use of a Cisco zero-day vulnerability in Interlock ransomware attacks. This particular flaw in the Firewall Management Center (FMC) software has been actively exploited since late January, posing significant risks to enterprises relying on Cisco’s security infrastructure. Amazon uncovered evidence linking the exploitation to Russian actors, marking another […]

Cisco Zero-Day Powers Interlock Ransomware

Interlock ransomware actively exploits a Cisco zero-day vulnerability, posing significant risks to cybersecurity. Amazon threat intelligence has detected an active campaign leveraging this zero-day in Cisco Secure Firewall Management Center (FMC). The vulnerability, identified by the CVE-2026-20131 identifier, has been assigned a critical 10.0 CVSS score, underscoring its potential impact. Other vulnerabilities, CVE-2026-0953 and CVE-2026-20963, […]

Russia Turns Vienna Into Hub Targeting NATO

Russia turns Vienna into its largest Western spy hub, according to Western intelligence reports. Russian surveillance operations in the Austrian capital have expanded over the past two years, utilizing diplomatic sites and advanced satellite technology. These efforts target NATO communications and extend across the Middle East and Africa, echoing Cold War-era tactics. A senior European […]

Spring AI Flaw Exposes MariaDB to SQL Injection

A critical vulnerability, identified as CVE-2026-22730, has been discovered in the MariaDB vector store utilized by Spring AI. This spring ai flaw allows for SQL injection, posing significant security risks. Cybersecurity experts at SecureLayer7 have highlighted the potential exploitation of this flaw by malicious actors to compromise data integrity and confidentiality. These actors could potentially […]

Hacktivists Fuel Cybercrime 245% Rise

Hacktivists fuel the cybercrime rise as the ongoing conflict in Iran leads to a dramatic 245% surge in malicious online activities. Cybersecurity experts highlight the strategic use of proxy services by hacktivists from Russia and China. These services facilitate billions of connection attempts designed specifically to abuse networks and bypass security measures. This trend underscores […]

Russia-Linked APT Uses DRILLAPP to Spy on Ukraine

Russia-linked APT groups have intensified efforts against Ukrainian targets by deploying the DRILLAPP backdoor, leveraging Microsoft Edge debugging for discreet espionage. Uncovered in February 2026, the new campaign by Laundry Bear, also known as UAC-0190 or Void Blizzard, mirrors previous Russian-aligned cyber-operations. DRILLAPP employs LNK files to create HTML files that execute obfuscated scripts, exploiting […]

LiveChat Hijacked to Steal Customer Data

A novel cyberattack sees livechat hijacked by phishers seeking to extract personal data through deceptive means. Assailants exploit the SaaS platform LiveChat, manipulating its customer service tools to create convincing phishing schemes. Victims, targeted by phishing emails mimicking services like PayPal and Amazon, are lured into engaging with what they believe are legitimate live support […]