Latest News

Stay informed with the latest cybersecurity news and threat intelligence.

Critical Next.js Flaws Let Attackers Bypass Authentication and Launch SSRF Attacks
News
3 min read

Critical Next.js Flaws Let Attackers Bypass Authentication and Launch SSRF Attacks

Vercel has disclosed nine security vulnerabilities in Next.js, the widely used React framework, including two critical-severity flaws that allow attackers to bypass authentication middleware and hijac

CyberShield TeamRead More
Hackers Weaponize Notepad++ 8.8.3 to Silently Install MATCHBOIL.V2 Malware
News
4 min read

Hackers Weaponize Notepad++ 8.8.3 to Silently Install MATCHBOIL.V2 Malware

CERT-UA has disclosed a significant shift in the tactics of threat cluster UAC-0099, revealing a novel infection chain that abuses a legitimate Notepad++ 8.8.3 executable to sideload malware, alongsid

CyberShield TeamRead More
Chick-fil-A Data Breach Exposes Personal Information and Stored Account Credit
News
3 min read

Chick-fil-A Data Breach Exposes Personal Information and Stored Account Credit

Chick-fil-A has notified customers of a data security incident in which unauthorized parties gained access to Chick-fil-A One loyalty accounts through a credential stuffing attack, exposing personal i

CyberShield TeamRead More
China-Nexus JadeProx Uses New TriBack Loader to Target Governments, Hospitals, and Universities
News
4 min read

China-Nexus JadeProx Uses New TriBack Loader to Target Governments, Hospitals, and Universities

An exposed directory on an operator-controlled Alibaba Cloud server revealed the inner workings of the JadeProx intrusion set, including bash history, webshell paths, phishing kits, and a full post-ex

CyberShield TeamRead More
Claude Security Plugin Uses AI to Find, Validate, and Patch Software Flaws
News
4 min read

Claude Security Plugin Uses AI to Find, Validate, and Patch Software Flaws

Anthropic has expanded its AI-driven vulnerability detection capabilities by launching Claude Security as a native Claude Code plugin, now available in beta for all Claude Code users. The move brings

CyberShield TeamRead More
Critical FreePBX Flaws Let Unauthenticated Attackers Execute Commands and Hijack Admin Accounts
News
3 min read

Critical FreePBX Flaws Let Unauthenticated Attackers Execute Commands and Hijack Admin Accounts

Sangoma has patched two critical vulnerabilities in FreePBX that allow unauthenticated remote attackers to execute arbitrary commands and take over administrator accounts, prompting a “Red&#8221

CyberShield TeamRead More
Critical FreeRDP Clipboard Flaw Could Let Malicious RDP Servers Execute Code
News
4 min read

Critical FreeRDP Clipboard Flaw Could Let Malicious RDP Servers Execute Code

A newly disclosed heap buffer overflow in the FreeRDP Windows client’s clipboard channel allows a malicious RDP server to corrupt heap memory and potentially achieve remote code execution (RCE) on con

CyberShield TeamRead More
Critical XFS Race Condition Enables Linux Privilege Escalation to Root
News
4 min read

Critical XFS Race Condition Enables Linux Privilege Escalation to Root

A newly disclosed CVE-2026-64600, dubbed “RefluXFS,” a critical race condition in the Linux kernel’s XFS filesystem that allows unprivileged local users to escalate to full root priv

CyberShield TeamRead More
Exim Directory Traversal Vulnerability Exposes Files Outside the Mail Spool
News
3 min read

Exim Directory Traversal Vulnerability Exposes Files Outside the Mail Spool

A newly disclosed vulnerability in Exim, one of the most widely deployed mail transfer agents (MTAs) on Unix-like systems, allows local attackers to escalate privileges by accessing files outside the

CyberShield TeamRead More
GitHub Actions Abuse Exploits cPanel CVE-2026-41940 to Steal Server Credentials
News
4 min read

GitHub Actions Abuse Exploits cPanel CVE-2026-41940 to Steal Server Credentials

GitHub Actions abuse is powering a large-scale attack campaign that exploits the cPanel CVE-2026-41940 authentication bypass to steal server credentials and other sensitive secrets from internet-facin

CyberShield TeamRead More
KARR Car Alarm Flaw Lets Nearby Attackers Unlock and Immobilize Vehicles
News
4 min read

KARR Car Alarm Flaw Lets Nearby Attackers Unlock and Immobilize Vehicles

A critical Bluetooth vulnerability in the dealer-installed KARR Security System exposes more than 2.2 million vehicles across the United States to remote unlocking, immobilization, and horn/light mani

CyberShield TeamRead More
Kimi K3 AI Agent Finds Redis RCE Vulnerabilities in Just 27 Minutes
News
3 min read

Kimi K3 AI Agent Finds Redis RCE Vulnerabilities in Just 27 Minutes

Moonshot AI’s newly released Kimi K3, a 2.8-trillion-parameter mixture-of-experts model, has demonstrated the growing offensive capability of autonomous AI agents by independently uncovering rem

CyberShield TeamRead More
Apple Fixes Hide My Email Flaw That Exposed Users’ Real Email Addresses
News
3 min read

Apple Fixes Hide My Email Flaw That Exposed Users’ Real Email Addresses

Apple has patched a long-standing vulnerability in its iCloud+ Hide My Email feature that allowed anyone to unmask a user’s real email address. The patch, applied on July 3, 2026, comes more tha

CyberShield TeamRead More
AWS Kiro IDE Flaw Lets Hidden Web Prompts Execute Code on Developer Machines
News
3 min read

AWS Kiro IDE Flaw Lets Hidden Web Prompts Execute Code on Developer Machines

A critical vulnerability in AWS’s agentic IDE Kiro lets attackers hide malicious instructions inside ordinary web pages, tricking the AI agent into rewriting its own configuration file and execu

CyberShield TeamRead More
CISA Warns of Actively Exploited WordPress Flaws Enabling Pre-Auth RCE
News
3 min read

CISA Warns of Actively Exploited WordPress Flaws Enabling Pre-Auth RCE

CISA has added two chained WordPress Core vulnerabilities, CVE-2026-63030 and CVE-2026-60137, to its Known Exploited Vulnerabilities (KEV) catalog, warning that the flaws enable unauthenticated, pre-a

CyberShield TeamRead More
Critical ASUS Router Flaw Lets Remote MITM Attackers Execute Arbitrary Commands
News
3 min read

Critical ASUS Router Flaw Lets Remote MITM Attackers Execute Arbitrary Commands

ASUS has patched a critical router vulnerability, tracked as CVE-2026-13385, that allows remote man‑in‑the‑middle (MITM) attackers to force affected devices to download and execute arbitrary commands

CyberShield TeamRead More
Critical Meta IDOR Flaw Let Attackers Access Customer Support Cases
News
3 min read

Critical Meta IDOR Flaw Let Attackers Access Customer Support Cases

A critical broken access control vulnerability in Meta’s customer support infrastructure allowed attackers to read private support emails, chats, and case data belonging to other users, and even

CyberShield TeamRead More
Critical Zimbra SNMP Flaw Lets Attackers Execute Malicious Commands
News
3 min read

Critical Zimbra SNMP Flaw Lets Attackers Execute Malicious Commands

Zimbra has released Zimbra Collaboration Suite (ZCS) version 10.1.20, addressing a critical command injection vulnerability in its SNMP monitoring component along with multiple cross-site scripting (X

CyberShield TeamRead More
Google Chrome Update Fixes 12 High-Severity Browser Vulnerabilities
News
3 min read

Google Chrome Update Fixes 12 High-Severity Browser Vulnerabilities

Google has rolled out a Stable channel update for Chrome Desktop, patching 12 security vulnerabilities, all rated High severity. The update brings Chrome to version 150.0.7871.181/.182 for Windows and

CyberShield TeamRead More
Google Launches Gemini 3.5 Flash Cyber to Find and Patch Vulnerabilities at Scale
News
4 min read

Google Launches Gemini 3.5 Flash Cyber to Find and Patch Vulnerabilities at Scale

Google has unveiled Gemini 3.5 Flash Cyber, a lightweight cybersecurity model fine-tuned to detect, validate, and patch software vulnerabilities faster and more efficiently than mainline Flash models.

CyberShield TeamRead More
Hackers Abuse Microsoft Device Code Flow to Bypass MFA and Hijack Microsoft 365 Accounts
News
3 min read

Hackers Abuse Microsoft Device Code Flow to Bypass MFA and Hijack Microsoft 365 Accounts

Hackers are increasingly abusing Microsoft’s legitimate device code flow to bypass multi-factor authentication (MFA) and hijack Microsoft 365 accounts, turning trusted identity controls into a covert

CyberShield TeamRead More
Iran-Linked Hackers Exploit Trusted Access and Exposed OT Systems for Espionage and Disruption
News
4 min read

Iran-Linked Hackers Exploit Trusted Access and Exposed OT Systems for Espionage and Disruption

Iran-linked hackers are quietly building long-term, flexible access into critical networks and exposed operational technology (OT), using trusted pathways to pivot between espionage and selective disr

CyberShield TeamRead More
Craneware Data Breach Exposes Employee and US Healthcare Customer Records
News
3 min read

Craneware Data Breach Exposes Employee and US Healthcare Customer Records

Craneware plc (AIM: CRW.L), the Edinburgh-headquartered healthcare financial performance software provider, disclosed on 20 July 2026 that it suffered a cybersecurity incident resulting in unauthorize

CyberShield TeamRead More
Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide RATs and Infostealers
News
3 min read

Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide RATs and Infostealers

The tool combines payload encryption with advanced Windows evasion methods, helping attackers bypass endpoint defenses and complicate incident response. Cruciferra is a Mono-based crypter marketed on

CyberShield TeamRead More
Hackers Use Microsoft 365 Calendar Events as Dead Drops for Malware Commands
News
4 min read

Hackers Use Microsoft 365 Calendar Events as Dead Drops for Malware Commands

A newly identified Windows malware sample, dubbed HOLLOWGRAPH, is abusing the Microsoft Graph API to turn a compromised Microsoft 365 calendar into a covert two-way command-and-control channel. Group-

CyberShield TeamRead More
Microsoft Defender XDR Blind Spot Lets Public C2 Traffic Evade Detection Queries
News
3 min read

Microsoft Defender XDR Blind Spot Lets Public C2 Traffic Evade Detection Queries

A newly disclosed detection gap in Microsoft Defender XDR could be causing security teams to silently miss command-and-control (C2) traffic and other malicious external communications, according to re

CyberShield TeamRead More
Microsoft Discontinues Copilot Podcasts and Removes Access to Previously Created Content
News
3 min read

Microsoft Discontinues Copilot Podcasts and Removes Access to Previously Created Content

Microsoft has confirmed that the Podcasts feature within its Copilot app will be officially discontinued starting August 18, 2026, cutting off access for users to create new podcasts or retrieve previ

CyberShield TeamRead More
Paidwork Data Breach Exposes 23 Million Users’ Banking and Personal Data
News
3 min read

Paidwork Data Breach Exposes 23 Million Users’ Banking and Personal Data

A massive data breach at gig economy platform Paidwork has compromised the personal and financial information of over 23 million users, marking one of the largest breaches to hit the gig work sector t

CyberShield TeamRead More
Qilin Ransomware Exploits Palo Alto GlobalProtect Flaw for Initial Access
News
4 min read

Qilin Ransomware Exploits Palo Alto GlobalProtect Flaw for Initial Access

Threat actors deploying Qilin ransomware exploited a Palo Alto Networks GlobalProtect authentication bypass flaw, CVE-2026-0257, as the consistent initial access vector across multiple June 2026 intru

CyberShield TeamRead More
Ransomware Groups Claim Record 7,551 Victims as Qilin Activity Jumps 443%
News
4 min read

Ransomware Groups Claim Record 7,551 Victims as Qilin Activity Jumps 443%

Ransomware groups publicly named 7,551 victims from April 2025 through March 2026, a 24.9% rise from the previous reporting period. The surge was led by Qilin, which claimed 1,358 victims up 443% year

CyberShield TeamRead More
Trump’s AI Security Agency Chief Resigns After Just Three Months
News
3 min read

Trump’s AI Security Agency Chief Resigns After Just Three Months

Chris Fall, director of the Center for AI Standards and Innovation (CAISI), has resigned from his post just three months after being appointed by the Trump administration. The departure adds fresh ins

CyberShield TeamRead More
When Trusted Gov Infrastructure Becomes an Attack Channel: PhantomEnigma Puts Banks at Risk
News
5 min read

When Trusted Gov Infrastructure Becomes an Attack Channel: PhantomEnigma Puts Banks at Risk

A recent attack investigated by ANY.RUN experts revealed how attackers used more than 20 hijacked Brazilian government websites to support a campaign targeting banking organizations.  By hid

CyberShield TeamRead More
23 Million Paidwork Users Have Their Banking and Personal Data Exposed
News
3 min read

23 Million Paidwork Users Have Their Banking and Personal Data Exposed

A massive data breach at gig economy platform Paidwork has exposed the personal and financial information of more than 23 million users, marking one of the largest breaches to hit the gig work sector

CyberShield TeamRead More
Actively Exploited SharePoint Flaws Let Hackers Deploy Web Shells and Steal IIS Machine Keys
News
3 min read

Actively Exploited SharePoint Flaws Let Hackers Deploy Web Shells and Steal IIS Machine Keys

Microsoft SharePoint Server flaws are being actively exploited to deploy web shells, steal IIS machine keys, and maintain long-term access to compromised enterprise environments. The attacks affect on

CyberShield TeamRead More
GPT-5.6 Sol Ultra WordPress Pre-Auth RCE Using a Multi-Agent Exploit Chain
News
3 min read

GPT-5.6 Sol Ultra WordPress Pre-Auth RCE Using a Multi-Agent Exploit Chain

A critical pre-authentication remote code execution (RCE) vulnerability in WordPress has been uncovered not by a human researcher but by an AI system. The discovery, attributed to OpenAI’s GPT-5

CyberShield TeamRead More
LG Monitors Silently Install Full-Access Windows App That Pushes McAfee Ads
News
4 min read

LG Monitors Silently Install Full-Access Windows App That Pushes McAfee Ads

Plugging in a monitor is not supposed to change the software on your computer. According to testing by CyberDigest, LG monitors do exactly that, triggering a silent installation process that ends with

CyberShield TeamRead More
Linux Furtex Toolkit Enables Stealthy Process Injection and Data Exfiltration
News
3 min read

Linux Furtex Toolkit Enables Stealthy Process Injection and Data Exfiltration

A newly disclosed toolkit called Furtex is drawing attention for packaging a wide range of post-exploitation, evasion, and telemetry-blinding techniques into a single project built around raw io_uring

CyberShield TeamRead More
Microsoft Ends OneDrive Sync App Security Updates on Older Windows 10 PCs
News
4 min read

Microsoft Ends OneDrive Sync App Security Updates on Older Windows 10 PCs

Microsoft has announced it will discontinue updates to the OneDrive sync app for devices running Windows 10 version 21H2 and earlier, effective August 15, 2026. The change, detailed in Message Center

CyberShield TeamRead More
Microsoft Releases Emergency Windows 11 Update to Fix Intel Driver Performance Issues
News
3 min read

Microsoft Releases Emergency Windows 11 Update to Fix Intel Driver Performance Issues

Microsoft has shipped an out-of-band (OOB) emergency update for Windows 11 to resolve performance regressions tied to an Intel Innovation Platform Framework (Intel IPF) driver. The update, tracked as

CyberShield TeamRead More
PENTDEM AI Pentesting Daemon Uses 34 Security Tools to Automate Attack Chains
News
3 min read

PENTDEM AI Pentesting Daemon Uses 34 Security Tools to Automate Attack Chains

A newly surfaced open-source project called PENTDEM is drawing attention for packaging 34 real-world penetration testing tools into an autonomous, LLM-guided daemon that can run full attack chains wit

CyberShield TeamRead More
Citrix Secure Access Client Flaw Lets Low-Privileged Users Gain SYSTEM Privileges
News
3 min read

Citrix Secure Access Client Flaw Lets Low-Privileged Users Gain SYSTEM Privileges

Cloud Software Group has disclosed two security vulnerabilities affecting Citrix Secure Access Client for Windows and Citrix Endpoint Analysis Client for Windows, the more severe of which allows a sta

CyberShield TeamRead More
Critical WordPress wp2shell Flaw Lets Anonymous Attackers Execute Remote Code
News
3 min read

Critical WordPress wp2shell Flaw Lets Anonymous Attackers Execute Remote Code

A critical pre-authentication remote code execution (RCE) vulnerability in WordPress Core, dubbed “wp2shell.” The flaw requires no preconditions and can be exploited by an anonymous attack

CyberShield TeamRead More
Hackers Breach EY Third-Party IT Support Platform and Steal Client Tax Documents
News
3 min read

Hackers Breach EY Third-Party IT Support Platform and Steal Client Tax Documents

Ernst & Young LLP, one of the world’s Big Four professional services firms, has disclosed a data breach in which an unauthorized third party infiltrated a vendor-managed IT service platform

CyberShield TeamRead More
OpenSSL DoS Flaw Lets Unauthenticated Attackers Trigger Massive Memory Allocation
News
3 min read

OpenSSL DoS Flaw Lets Unauthenticated Attackers Trigger Massive Memory Allocation

A newly disclosed critical weakness in OpenSSL lets an attacker crash a server without ever completing a handshake or proving their identity. Documented by the Okta Red Team, named “HollowByte,&

CyberShield TeamRead More
AWS Cost Explorer Bug Shows Customers Trillion-Dollar Billing Estimates
News
4 min read

AWS Cost Explorer Bug Shows Customers Trillion-Dollar Billing Estimates

Amazon Web Services (AWS) confirmed on July 17, 2026, that a defect in its Cost Explorer tool caused some customers to see massively inflated billing projections, with reports showing estimated charge

CyberShield TeamRead More
GPT-5.6 Codex Reportedly Deletes Files From Users’ Home Directories
News
3 min read

GPT-5.6 Codex Reportedly Deletes Files From Users’ Home Directories

OpenAI has confirmed that its GPT-5.6 Codex model has, in a handful of documented cases, unexpectedly deleted files from users’ home directories, raising fresh concerns about the operational saf

CyberShield TeamRead More
LegacyHive Windows Zero-Day Lets Attackers Hijack Administrator Registry Hives
News
4 min read

LegacyHive Windows Zero-Day Lets Attackers Hijack Administrator Registry Hives

A newly disclosed local privilege escalation technique allows non-administrator Windows users to tamper with an administrator’s registry hive, opening the door to code execution at the administr

CyberShield TeamRead More
Spirals Attackers Disable Windows Defender and Kill Backup Services Before Encrypting Systems
News
3 min read

Spirals Attackers Disable Windows Defender and Kill Backup Services Before Encrypting Systems

A newly identified ransomware family, Spirals, was used in a double-extortion attack against an IT services company in South Asia in June 2026. Researchers from Symantec’s Threat Hunter Team said the

CyberShield TeamRead More
TP-Link Kasa Camera Flaws Let Attackers Steal Admin Credentials and Location Data
News
3 min read

TP-Link Kasa Camera Flaws Let Attackers Steal Admin Credentials and Location Data

TP-Link has disclosed two security vulnerabilities affecting its Kasa EC70 v4 and EC71 v4 smart camera models, which could let attackers on the same local network intercept administrative credentials

CyberShield TeamRead More
UAT-11795 Deploys Starland RAT and WLDR Backdoor Through Trojanized Software Installers
News
3 min read

UAT-11795 Deploys Starland RAT and WLDR Backdoor Through Trojanized Software Installers

Cisco Talos has uncovered a new financially motivated threat cluster, tracked as UAT-11795, that has been conducting a large-scale malware campaign targeting users across the United States and parts o

CyberShield TeamRead More
11 Malicious NuGet Packages Pose as Game Cheats to Deploy Windows Surveillance Malware
News
4 min read

11 Malicious NuGet Packages Pose as Game Cheats to Deploy Windows Surveillance Malware

Socket’s Threat Research Team has uncovered 11 malicious NuGet packages masquerading as game cheats, bots, and “panels” that deliver a Windows surveillance-capable payload named pepesoft.exe. The pack

CyberShield TeamRead More
Dell PowerProtect Data Domain Flaws Enable Unauthenticated System Takeover
News
4 min read

Dell PowerProtect Data Domain Flaws Enable Unauthenticated System Takeover

A critical batch of vulnerabilities in its PowerProtect Data Domain product line, including two flaws with the maximum-severity CVSS score of 9.8, allows completely unauthenticated attackers to seize

CyberShield TeamRead More
DOJ Indicts Russian Bulletproof Hosting Operators Over $62 Million Cybercrime Losses
News
3 min read

DOJ Indicts Russian Bulletproof Hosting Operators Over $62 Million Cybercrime Losses

The U.S. Department of Justice unsealed an indictment on July 14, 2026, charging three Russian nationals and two affiliated “bulletproof hosting” companies for running criminal infrastruct

CyberShield TeamRead More
Google Chrome Update Fixes 15 Security Flaws, Including Critical Ozone UAF Flaws
News
3 min read

Google Chrome Update Fixes 15 Security Flaws, Including Critical Ozone UAF Flaws

Google has rolled out a new Chrome Stable channel update addressing 15 security vulnerabilities, including two critical-severity use-after-free (UAF) flaws in the Ozone platform layer. The update brin

CyberShield TeamRead More
Malicious LNK Files and PowerShell Deploy Dual Remote-Access Tools Against Indian Applicants
News
3 min read

Malicious LNK Files and PowerShell Deploy Dual Remote-Access Tools Against Indian Applicants

Indian government job seekers are being targeted in a multi-stage malware campaign that uses a fake Cabinet Secretariat recruitment notice to deploy both a legitimate remote-management tool and a cust

CyberShield TeamRead More
Microsoft Active Directory FS Privilege Escalation Flaw Exploited in Active Attacks
News
3 min read

Microsoft Active Directory FS Privilege Escalation Flaw Exploited in Active Attacks

Microsoft has disclosed an actively exploited elevation-of-privilege vulnerability in Active Directory Federation Services (AD FS), tracked as CVE-2026-56155. The flaw was released on July 14, 2026, a

CyberShield TeamRead More
Microsoft Patches Multiple Windows RDP Flaws That Expose Sensitive Data
News
3 min read

Microsoft Patches Multiple Windows RDP Flaws That Expose Sensitive Data

Microsoft has addressed five information disclosure vulnerabilities affecting the Windows Remote Desktop Protocol (RDP) in its July 2026 Patch Tuesday release, each carrying an “Important”

CyberShield TeamRead More
New LabubaRAT Masquerades as NVIDIA Software to Execute Commands and Proxy Malicious Traffic
News
4 min read

New LabubaRAT Masquerades as NVIDIA Software to Execute Commands and Proxy Malicious Traffic

Blackpoint’s Adversary Pursuit Group has identified a new Rust-based remote access trojan, dubbed LabubaRAT, masquerading as NVIDIA software. The malware, delivered as nvidia-sysruntime.exe, uses NVID

CyberShield TeamRead More
SonicWall SMA1000 Flaws Actively Exploited for SSRF and Remote Code Execution
News
3 min read

SonicWall SMA1000 Flaws Actively Exploited for SSRF and Remote Code Execution

SonicWall has issued an urgent security advisory (SNWLID-2026-0008) confirming active, in-the-wild exploitation of two critical vulnerabilities affecting its SMA1000 Series appliances. The flaws, trac

CyberShield TeamRead More
Windows 11 Update Causes Performance, Heat, and Battery Issues on Some Dell PCs
News
3 min read

Windows 11 Update Causes Performance, Heat, and Battery Issues on Some Dell PCs

Microsoft has confirmed a new compatibility issue affecting select Dell PCs after installing a recent Windows 11 preview update, causing unexpected shutdowns, degraded performance, overheating, and ra

CyberShield TeamRead More
AWS GovCloud Credential Leak Prompts CISA to Publish Key Cyber Incident Lessons
News
3 min read

AWS GovCloud Credential Leak Prompts CISA to Publish Key Cyber Incident Lessons

The Cybersecurity and Infrastructure Security Agency (CISA) has publicly detailed an internal security incident involving the exposure of AWS GovCloud credentials in a public code repository, offering

CyberShield TeamRead More
Dell BIOS Flaw Lets Attackers Recover Passwords From SPI Flash
News
3 min read

Dell BIOS Flaw Lets Attackers Recover Passwords From SPI Flash

A newly disclosed critical flaw in how Dell stores BIOS administrator and user passwords allows full recovery of plaintext credentials from a flash dump in milliseconds. Tracked as CVE-2026-40639 (DSA

CyberShield TeamRead More
New Trojan Turns Visual Studio Projects Into a Software Supply Chain Attack Vector
News
4 min read

New Trojan Turns Visual Studio Projects Into a Software Supply Chain Attack Vector

A multi-stage Trojan is turning ordinary software development workflows into a supply chain attack vector by weaponizing Visual Studio project files. Documented by Doctor Web researchers, first detect

CyberShield TeamRead More
Zimbra 10.1.19 Fixes Stored XSS Flaw Triggered by Crafted Emails
News
3 min read

Zimbra 10.1.19 Fixes Stored XSS Flaw Triggered by Crafted Emails

Zimbra has released version 10.1.19 of its Collaboration Suite (ZCS), codenamed “Daffodil,” addressing a stored cross-site scripting (XSS) vulnerability in the Classic Web Client. The patc

CyberShield TeamRead More
281 Google Play VPN Apps Expose Sensitive Information Through Cleartext Data Transmission
News
3 min read

281 Google Play VPN Apps Expose Sensitive Information Through Cleartext Data Transmission

A new disclosure of widespread security and privacy failures across popular Android VPN applications, revealing that dozens of apps transmit sensitive data in plaintext and fail to deliver the fundame

CyberShield TeamRead More
Best Next-Generation Firewall (NGFW) Solutions for Every Business Size (2026)
News
14 min read

Best Next-Generation Firewall (NGFW) Solutions for Every Business Size (2026)

There is no single best next-generation firewall there’s a best one for your size, your team, and your regulatory reality. A 40-person company buying a Palo Alto chassis wastes money; a bank running a

CyberShield TeamRead More
Citrix NetScaler MCP Gateway Adds Unified Security for Agentic AI Traffic
News
4 min read

Citrix NetScaler MCP Gateway Adds Unified Security for Agentic AI Traffic

Citrix, a Cloud Software Group company, has introduced Model Context Protocol (MCP) Gateway capabilities for NetScaler, extending its application delivery and security platform to govern enterprise ag

CyberShield TeamRead More
Fake Braintree Package Steals Credit Cards Only in Production to Avoid Detection
News
3 min read

Fake Braintree Package Steals Credit Cards Only in Production to Avoid Detection

A highly sophisticated malware campaign was recently discovered lurking within the NuGet ecosystem, targeting developers who use the popular Braintree payment gateway. Security researchers at Socket f

CyberShield TeamRead More
Forg365 PhaaS Abuses Microsoft Device-Code Flow to Hijack M365 Sessions
News
4 min read

Forg365 PhaaS Abuses Microsoft Device-Code Flow to Hijack M365 Sessions

A newly identified phishing-as-a-service (PhaaS) platform, Forg365, is abusing Microsoft’s device code authentication flow to hijack Microsoft 365 sessions at scale. ZeroBEC researchers uncovere

CyberShield TeamRead More
GNU Guix Flaws Enable Remote Privilege Escalation and Store Corruption
News
4 min read

GNU Guix Flaws Enable Remote Privilege Escalation and Store Corruption

Multiple critical security flaws in GNU Guix could allow malicious substitute servers or network attackers to achieve remote privilege escalation, corrupt the Guix store, and potentially expose sensit

CyberShield TeamRead More
Hackers Abuse CitrixBleed 2 to Steal Session Tokens and Bypass MFA Protections
News
4 min read

Hackers Abuse CitrixBleed 2 to Steal Session Tokens and Bypass MFA Protections

Hackers are exploiting the CitrixBleed 2 vulnerability to steal active session tokens, bypass multi-factor authentication, and deploy ransomware in targeted Citrix NetScaler environments. Huntress Tac

CyberShield TeamRead More
Linux FUSE Page Cache Overflow Lets Local Attackers Gain Root Access
News
4 min read

Linux FUSE Page Cache Overflow Lets Local Attackers Gain Root Access

A newly disclosed Linux kernel vulnerability in the Filesystem in Userspace (FUSE) subsystem could allow unprivileged local attackers to gain root privileges on affected systems. Tracked as CVE-2026-3

CyberShield TeamRead More
Microsoft Uses AI to Accelerate Windows Vulnerability Discovery and Patching
News
3 min read

Microsoft Uses AI to Accelerate Windows Vulnerability Discovery and Patching

Microsoft has unveiled a major expansion of AI-driven security tooling across Windows, aiming to find vulnerabilities earlier, fix them faster, and deliver more reliable patches at scale. The initiati

CyberShield TeamRead More
Multiple U-Boot FIT Signature Flaws Enable Code Execution and DoS Attacks
News
4 min read

Multiple U-Boot FIT Signature Flaws Enable Code Execution and DoS Attacks

A newly disclosed six vulnerabilities in U-Boot, one of the most widely deployed bootloaders in embedded systems, routers, IoT devices, and Baseboard Management Controllers (BMCs) used in data center

CyberShield TeamRead More
OpenClaw Vulnerabilities Let Attackers Turn WhatsApp Messages Into Host-Level Code Execution
News
4 min read

OpenClaw Vulnerabilities Let Attackers Turn WhatsApp Messages Into Host-Level Code Execution

Security researchers have disclosed three high-severity vulnerabilities in OpenClaw, the popular open-source AI coding assistant with over 381,000 GitHub stars, that allow attackers to achieve full re

CyberShield TeamRead More
Roundcube Webmail 1.7.2 Fixes Zero-Click XSS, SSRF Bypass, and DoS Flaws
News
3 min read

Roundcube Webmail 1.7.2 Fixes Zero-Click XSS, SSRF Bypass, and DoS Flaws

Roundcube has released version 1.7.2, a security-focused update addressing six vulnerabilities, including two CVE-tracked flaws that could allow attackers to execute stored cross-site scripting (XSS)

CyberShield TeamRead More
Wireshark 4.6.7 Fixes 12 Security Flaws Causing Crashes and Infinite Loops
News
4 min read

Wireshark 4.6.7 Fixes 12 Security Flaws Causing Crashes and Infinite Loops

Wireshark has released version 4.6.7, addressing 12 security vulnerabilities that could lead to application crashes, information disclosure, and resource exhaustion via maliciously crafted network tra

CyberShield TeamRead More
Agentic Botnets Attack Uses HalluSquatting to Hijack AI Coding Assistants
News
4 min read

Agentic Botnets Attack Uses HalluSquatting to Hijack AI Coding Assistants

A newly disclosed attack technique, called adversarial hallucination squatting (HalluSquatting), developed by researchers at Tel Aviv University and Technion, exploits the predictable tendency of larg

CyberShield TeamRead More
AI-Assisted Cloud Attack Compromises AWS Environment in Just 72 Hours
News
4 min read

AI-Assisted Cloud Attack Compromises AWS Environment in Just 72 Hours

A threat actor leveraging AI-assisted tooling breached a large AWS-based environment and expanded across applications, cloud infrastructure, source-control repositories, CI/CD pipelines, and runtime s

CyberShield TeamRead More
AI-Coded Malware Uses Vibe Coding to Map Active Directory Environments
News
3 min read

AI-Coded Malware Uses Vibe Coding to Map Active Directory Environments

Threat actors are now weaponizing AI-generated PowerShell scripts to enumerate Active Directory (AD) environments, according to new findings from Huntress. The discovery, tied to an incident on June 3

CyberShield TeamRead More
AssuranceAmerica Data Breach Exposes 6.9 Million Driver’s License Numbers
News
3 min read

AssuranceAmerica Data Breach Exposes 6.9 Million Driver’s License Numbers

U.S. insurer AssuranceAmerica has confirmed a data breach exposing the personal information and driver’s license numbers of roughly 6.9 million people, marking the largest known exposure of Amer

CyberShield TeamRead More
Fake Chinese VPN Drops GoodPersonRAT With Keylogging, Proxying, and Telegram Theft
News
3 min read

Fake Chinese VPN Drops GoodPersonRAT With Keylogging, Proxying, and Telegram Theft

The legitimate VPN service is highly popular for its ability to bypass China’s Great Firewall. However, attackers are exploiting its reputation to deploy hidden malware. This fake installer drop

CyberShield TeamRead More
GitLab Patch Release Fixes Affecting CE and EE Installations
News
3 min read

GitLab Patch Release Fixes Affecting CE and EE Installations

GitLab released versions 19.1.2, 19.0.4, and 18.11.7 on July 8, 2026, patching eight vulnerabilities ranging from high to low severity across Community Edition (CE) and Enterprise Edition (EE). The co

CyberShield TeamRead More
Hackers Use Device Code Phishing to Replay Sessions and Register MFA for Persistence
News
3 min read

Hackers Use Device Code Phishing to Replay Sessions and Register MFA for Persistence

Threat researchers have uncovered a new data extortion group named “Helix” that bypasses traditional security perimeters without deploying a single piece of malware. Emerging from the remn

CyberShield TeamRead More
Nike Alleged Breach: Threat Actors Claim Customer Records Leaked on Dark Web Forum
News
3 min read

Nike Alleged Breach: Threat Actors Claim Customer Records Leaked on Dark Web Forum

A threat actor operating under the alias “Nocturne” has posted a database listing on a dark web forum claiming to have exfiltrated customer data from Nike and confidential records from oph

CyberShield TeamRead More
Palo Alto PAN-OS Buffer Overflow Flaws Could Let Attackers Execute Code
News
3 min read

Palo Alto PAN-OS Buffer Overflow Flaws Could Let Attackers Execute Code

Palo Alto Networks has disclosed multiple buffer overflow vulnerabilities in the User-ID Terminal Server Agent (TSA) component of PAN-OS. Tracked as CVE-2026-0288, it could allow unauthenticated attac

CyberShield TeamRead More
PoC and Technical Details Released for Linux Kernel Privilege Escalation Vulnerability
News
4 min read

PoC and Technical Details Released for Linux Kernel Privilege Escalation Vulnerability

A researcher has published proof-of-concept exploit code and a full technical breakdown of a Linux kernel vulnerability that lets any logged-in desktop user escalate to root, requiring no special priv

CyberShield TeamRead More
Windows Update Allegedly Installs LG Monitor App Triggering McAfee Popup
News
3 min read

Windows Update Allegedly Installs LG Monitor App Triggering McAfee Popup

A Windows update reportedly triggered the silent installation of an LG-branded application on user systems, which then displayed an unsolicited McAfee promotional pop-up even on machines where McAfee

CyberShield TeamRead More
Attackers Can Abuse Claude Desktop to Execute Commands on Victim Machines
News
3 min read

Attackers Can Abuse Claude Desktop to Execute Commands on Victim Machines

A novel attack chain that turns Anthropic’s Claude Desktop application into a remote code execution vector, requiring no phishing email and no traditional malware. The technique instead weaponiz

CyberShield TeamRead More
Claude Cowork Expands to Web and Mobile With Background AI Agent Tasks
News
4 min read

Claude Cowork Expands to Web and Mobile With Background AI Agent Tasks

Anthropic has rolled out Claude Cowork to web and mobile platforms, letting AI agent sessions persist across devices and continue executing tasks even when users step away. The expansion, announced Ju

CyberShield TeamRead More
DuckDuckGo Browser to Block YouTube Ads by Default
News
4 min read

DuckDuckGo Browser to Block YouTube Ads by Default

A native YouTube ad-blocking feature was rolled out by DuckDuckGo across its desktop and mobile browsers, allowing users to watch YouTube videos without pre-roll or mid-roll interruptions. The feature

CyberShield TeamRead More
GitHub Verified Badge Can Appear on Multiple Hashes for Same Signed Commit
News
4 min read

GitHub Verified Badge Can Appear on Multiple Hashes for Same Signed Commit

A new disclosure reveals that a GitHub “Verified” badge does not guarantee that a commit hash uniquely identifies signed content, undermining a core assumption behind hash-based security c

CyberShield TeamRead More
New Research Details How FBI Uncovered Alleged Scattered Spider Member
News
4 min read

New Research Details How FBI Uncovered Alleged Scattered Spider Member

The extradition of an alleged Scattered Spider member from Finland to the United States has drawn attention far beyond the criminal charges themselves. Buried on page 8 of the indictment lies a detail

CyberShield TeamRead More
Bad Epoll Zero-Day Linux Kernel Flaw Lets Unprivileged Users Escalate to Root
News
4 min read

Bad Epoll Zero-Day Linux Kernel Flaw Lets Unprivileged Users Escalate to Root

A severe zero-day vulnerability dubbed Bad Epoll has been publicly disclosed in the Linux kernel’s epoll I/O event notification subsystem, allowing any unprivileged local user to escalate privil

CyberShield TeamRead More
Gaslight Malware Abuses Prompt Injection to Trick Automated AI Cybersecurity Agents
News
4 min read

Gaslight Malware Abuses Prompt Injection to Trick Automated AI Cybersecurity Agents

North Korean hackers have launched a sophisticated new macOS malware campaign that targets Mac users, specifically developers and those in the Web3 space. Historically, these threat actors rely on fak

CyberShield TeamRead More
ModSecurity Flaws Let Attackers Bypass WAF Rules and Request-Body Inspection
News
4 min read

ModSecurity Flaws Let Attackers Bypass WAF Rules and Request-Body Inspection

Two newly disclosed vulnerabilities in ModSecurity, the widely deployed open-source Web Application Firewall (WAF) engine, could allow attackers to bypass detection rules entirely. Both flaws affect M

CyberShield TeamRead More
Ousaban Banking Trojan Uses Daily-Changing DDNS Domains to Hide C2 Infrastructure
News
3 min read

Ousaban Banking Trojan Uses Daily-Changing DDNS Domains to Hide C2 Infrastructure

In May 2026, researchers at FortiGuard Labs uncovered a sophisticated new campaign delivering the Ousaban banking Trojan to users in Spain and Portugal. Originally known for targeting Brazil, this lat

CyberShield TeamRead More
Seven FatFs Vulnerabilities Exposing Embedded Devices to Code Execution
News
3 min read

Seven FatFs Vulnerabilities Exposing Embedded Devices to Code Execution

Seven newly disclosed vulnerabilities in FatFs, the ubiquitous FAT/exFAT filesystem library, could let a malicious USB drive, SD card, or firmware update trigger memory corruption and code execution o

CyberShield TeamRead More