CyberWireDaily.
LIVE · Wed Jul 15
Subscribe
AllBreachesMalwareRansomwareVulnerabilitiesRegulationEspionageToolsCloudMobileGeneral
Archive
Microsoft Patches Record 622 Flaws, Including Two Zero-Days Under Active Attack
7h ago
SAP Patches CVSS 9.9 NetWeaver ABAP Flaw That Could Expose or Modify Data
7h ago
Researchers Say Claude for Chrome Flaw Lets Rogue Extensions Trigger Gmail Reads
7h ago
OAuth Client ID Spoofing Lets Attackers Validate Stolen Microsoft Entra Credentials
7h ago
Grok Build Uploaded Entire Git Repositories to xAI Storage, Not Just Files It Read
7h ago
Records Are Made to Be Broken: Patch Tuesday Raises Triage Stakes
7h ago
LabubaRAT Masquerades as NVIDIA Software to Control Windows Hosts
Yesterday
RabbitMQ Flaws Could Leak OAuth Secrets and Expose Cross-Tenant Queue Metadata
Yesterday
11 Old Microsoft-Signed Linux UEFI Shims Could Let Attackers Bypass Secure Boot
Yesterday
Study of 85 Crypto Wallet Extensions Finds Address Leaks and Cross-Site Tracking Risks
Yesterday
How Pentera Turns AI Security Workflows into Validation Engines
Yesterday
CrashStealer macOS Malware Uses Notarized Dropper to Pass Gatekeeper Checks
Yesterday
Google and Microsoft Pull ModHeader With 1.6 Million Installs After Dormant Collector Found
Yesterday
Attacker Uses Suspected AI-Generated PowerShell Script to Map Active Directory
Yesterday
Misconfigured Server Reveals Three Evilginx Phishing Operations Targeting Microsoft 365
Yesterday
iCagenda and Balbooa Forms Joomla Flaws Reportedly Exploited as Zero-Days
Yesterday
⚡ Weekly Recap: ShareFile Threat, Citrix Bleed 2 Ransomware, AI Coding Attacks, and More
2 days ago
New MemGhost Attack Plants Persistent False Memories in AI Agents Through One Email
2 days ago
Forg365 PhaaS Targets Microsoft 365 with Device Code and AitM Session Theft
2 days ago
Meta Files Patent for AI That Can Listen All Day and Track How You're Feeling
2 days ago
Thinking Fast and Slow in the SOC: The Case for Combining Autonomous AI with Analyst Copilots
2 days ago
Lessons Learned from CISA’s Recent GitHub Leak
2 days ago
Vidar Infostealer Hammers SMBs via Malvertising Campaign
2 days ago
State IDs for AI Agents: Will Estonia Set a Precedent?
2 days ago
Big Brand Jobs Scam Targets Marketing Pros' Google Accounts
2 days ago
Dialogflow CX 'Rogue Agent' Flaw Enabled AI Chatbot Data Theft
2 days ago
Apple Reverses Age-Old Patch Policy to Keep Up With AI
2 days ago
‘Popa’ Botnet Linked to Publicly-Traded Israeli Firm
3 days ago
Hackers Used Meta’s AI Support Bot to Seize Instagram Accounts
3 days ago
'GodDamn' Ransomware Uses BYOVD to Smite US Companies
3 days ago
European Organizations Have a Collaboration Security Confidence Gap
3 days ago
Mexico's New Cyber Plan Faces Its First Real Test
3 days ago
Lone Attacker Uses AI to Breach AWS Cloud Environment in 72 Hours
3 days ago
Compromised jscrambler 8.14.0 npm Release Drops Rust Infostealer During Install
3 days ago
Hackers Weaponize Balochistan Police Portal in Multi-Group Espionage Campaigns
3 days ago
15-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux Distros
3 days ago
CISA Adds 4 Actively Exploited Adobe, Joomla, and Langflow Flaws to KEV
3 days ago
AI Gateways Offer Attackers the Keys to the Kingdom
3 days ago
Critical Zimbra Flaw Could Let Crafted Emails Run Malicious Code in User Sessions
4 days ago
Hackers Use Fake Microsoft Entra Passkey Enrollment to Gain Microsoft 365 Access
4 days ago
Attackers Exploit 'Ill Bloom' Vulnerability to Drain Over $5 Million From Cryptocurrency Wallets
4 days ago
Ransomware Negotiator Gets 70 Months in Prison for Aiding BlackCat Attacks
4 days ago
China-Linked UAT-7810 Expands ORB Network With New LONGLEASH Malware
4 days ago
Microsoft Reins in RoguePlanet Zero-Day Threat
4 days ago
AI Agents Are a New Kind of Identity — and Most Organizations Aren't Ready
4 days ago
URGENT - Progress Tells ShareFile Customers to Shut Down Storage Zone Controllers Over Security Threat
4 days ago
Injective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm Packages
4 days ago
Six New U-Boot Flaws Could Let Malicious Images Crash Devices or Run Code at Boot
4 days ago
Exposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress Sites
4 days ago
Study of 281 Free Android VPN Apps Finds Traffic Leaks, Unencrypted Data, and Tracking
4 days ago
Jen Ellis: Connecting Cyber Community With Political Machinery
4 days ago
Cybercriminals Flock to Healthcare Businesses as Attacks Surge
4 days ago
Fresh ATM Crypto Software Bugs: Jackpot or Bust?
4 days ago
More Countries Jump on the Social Media 'Ban Wagon'
4 days ago
AI Coding: Do Security Risks Outweigh Productivity Gains?
4 days ago
Laser Attack Resets Tangem Wallet Passwords on Cards That Can't Be Patched
5 days ago
Researcher Details WhatsApp-to-Host Attack Chain Using Three OpenClaw Flaws
5 days ago
New MODBEACON RAT Uses gRPC Streaming for Encrypted C2 Traffic
5 days ago
Unpatched XRING Flaw in XQUIC Lets Remote Clients Crash HTTP/3 Servers
5 days ago
From 17,000 to 1.1 Million Assets: How Lumen Technologies Rebuilt Exposure Management at Scale
5 days ago
Dormant GitHub Accounts Help Attackers Blend In While Mapping Corporate Orgs
5 days ago
New GigaWiper Windows Backdoor Bundles Disk Wiping, Fake Ransomware, and Spyware
5 days ago
Microsoft Patches RoguePlanet Defender Flaw That Can Grant SYSTEM Privileges
5 days ago
Meta's New AI Image Tool Lets Others Use Your Public Instagram Photos in AI Images
5 days ago
Top AI Agents Built to Catch Malicious Code Can Be Tricked Into Running It
5 days ago
Iran's Cyber Crosshairs Focus Beyond Critical Infrastructure
5 days ago
AI Agents Are a New Kind of Identity & Most Organizations Aren't Ready
5 days ago
As Global Conflicts Go Digital, Businesses Need Wartime Gameplans
5 days ago
npm 12 Disables Install Scripts by Default to Reduce Supply Chain Risk
6 days ago
ThreatsDay: Cloud Bucket Hijacking, Windows LPE Chain, Global Fraud Bust + 17 More Stories
6 days ago
AI Attacks Move in Minutes. Join This Webinar on Building a Defense That Keeps Up
6 days ago
Summer of Clearinghouses
6 days ago
GodDamn Ransomware Uses PoisonX Driver to Disable Endpoint Defenses
6 days ago
GhostApproval Symlink Flaws Could Let Malicious Repos Run Code in AI Coding Agents
6 days ago
Fake 7-Zip Installers Turn Devices Into Residential Proxy Nodes
6 days ago
GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures
6 days ago
The Verification Step Is the New ATO Battleground in 2026
6 days ago
GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code
6 days ago
AI Coding Agents Found Triggering Endpoint Security Rules Built to Catch Attackers
Jul 8, 2026
New HalluSquatting Attack Could Trick AI Coding Assistants Into Installing Botnet Malware
Jul 8, 2026
Ubiquiti Patches Critical UniFi Flaws Across Connect, Talk, Access, Protect, and OS
Jul 8, 2026
New Ghost Phishing Wave Is Breaking Traditional Email Security
Jul 8, 2026
SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking Users
Jul 8, 2026
Felons, Fraudsters Flog Offensive Cybersecurity Startup
Jul 8, 2026
RedWing MaaS Packages Android Bank Fraud as a Telegram Rental Service
Jul 8, 2026
Rogue Agent Flaw Could Have Let Attackers Hijack Google Dialogflow CX Chatbots
Jul 8, 2026
Suspected China-Aligned Hackers Exploit Roundcube Flaws Against Universities
Jul 8, 2026
CERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware
Jul 8, 2026
BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA
Jul 8, 2026
DEBULL Tooling Abuses Microsoft Device-Code Flow to Target M365 Accounts
Jul 7, 2026
Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo Data
Jul 7, 2026
Court Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider Hacker
Jul 7, 2026
Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across Tenants
Jul 7, 2026
What Changes When Your Software Supply Chain Includes AI Writing Your Code?
Jul 7, 2026
'GitLost' Flaw Leaks Private Data From GitHub's Agentic Workflows
Jul 7, 2026
JadePuffer: The First Complete LLM-Driven Ransomware Attack
Jul 7, 2026
Aussies Face Reduced Cybercrime Risk, as Pressure Shifts to SMBs
Jul 7, 2026
Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli Organizations
Jul 7, 2026
16-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 Systems
Jul 7, 2026
New Java-Based QuimaRAT MaaS Built to Run on Windows, Linux, and macOS
Jul 7, 2026
Opera GX Flaw Let Malicious Sites Auto-Install Mods to Steal Data From Visited Pages
Jul 7, 2026
SkillCloak Lets Malicious AI Agent Skills Evade Static Scanners with Self-Extracting Packing
Jul 7, 2026
'BusySnake' Infostealer Slithers into Critical Infrastructure Networks
Jul 7, 2026
CitrixBleed-ing Again? NetScaler Vulnerability Under Attack
Jul 7, 2026
Threat Actors Probe Gitea Docker Flaw CVE-2026-20896 13 Days After Disclosure
Jul 6, 2026
⚡ Weekly Recap: Proxy Botnets, Browser Ransomware, AI Agent Tricks, Fake PoC Malware and More
Jul 6, 2026
How to Evaluate an AI SOC Platform in 2026: 6 Capabilities That Separate Leaders from Bolt-On AI solutions
Jul 6, 2026
Suspected China-Nexus Hackers Use Fake Indian Tax Filing Utility to Deploy DcRAT
Jul 6, 2026
New TrojPix Attack Leaks Data From Air-Gapped Systems via Video Cable Emissions
Jul 6, 2026
Netherlands Seizes 800 Servers, Arrests 2 for Aiding Cyberattacks
Jul 6, 2026
Claude Fable relaunch disappoints users with nerfed performance
Jul 6, 2026
Cisco finally confirms attackers exploiting Unified CM flaw
Jul 6, 2026
CISA: Microsoft SharePoint RCE flaw now actively exploited
Jul 6, 2026
Opera rolls out Paste Protect feature to fight ClickFix attacks
Jul 6, 2026
Alleged Scattered Spider hacker extradited to the United States
Jul 6, 2026
Chinese LLMs Broaden the Gap Between Attackers & Defenders
Jul 6, 2026
A Record-Breaking Patch Tuesday for June 2026
Jul 5, 2026
Lawmakers Demand Answers as CISA Tries to Contain Data Leak
Jul 5, 2026
Flipper Zero firmware development continues with community help
Jul 5, 2026
JadePuffer ransomware used AI agent to automate entire attack
Jul 5, 2026
NetNut proxy network disrupted, 2 million infected devices cut off
Jul 5, 2026
ARToken PhaaS exposes EvilTokens' Microsoft 365 phishing toolkit
Jul 5, 2026
Claude Fable 5 isn’t permanently leaving subscriptions, Anthropic says
Jul 5, 2026
Azure CLI Password Spray Hits at Least 78 Microsoft Accounts in 81M+ Attempts
Jul 5, 2026
Researcher Analyzes 3,000 Live ClickFix Payloads, Exposing API-Driven Malware Delivery
Jul 5, 2026
New BioShocking Attack Tricks AI Browsers Into Leaking User Credentials
Jul 5, 2026
Progress Kemp LoadMaster Flaw Could Let Attackers Run Root Commands Pre-Auth
Jul 5, 2026
Apple Patches 30+ iOS, macOS, Safari Flaws, Including AI-Discovered WebKit Bugs
Jul 5, 2026
U.S. Government Entity Paid Kairos $1 Million in Data-Theft Extortion Case
Jul 4, 2026
North Korean Hackers Publish 108 Malicious Packages and Extensions in PolinRider Campaign
Jul 4, 2026
Microsoft Accelerates Post-Quantum Cryptography Shift to 2029
Jul 4, 2026
Phantom Squatting Uses AI-Hallucinated Domains for Phishing and Malware
Jul 4, 2026
Anthropic Restores Claude Fable 5 After U.S. Lifts Jailbreak-Linked Export Controls
Jul 4, 2026
Who Runs the Ransomware Group ‘The Gentlemen?’
Jul 4, 2026
Unpatched Flaws Disclosed in Filesystem Bundled Into Millions of Embedded Devices
Jul 4, 2026
New "Bad Epoll" Linux Kernel Flaw Lets Unprivileged Users Gain Root, Hits Android
Jul 4, 2026
New Avalon Malware Framework Packs CrownX Ransomware Capabilities
Jul 4, 2026
New ChocoPoC RAT Targets Vulnerability Researchers via Fake PoC Exploit Repos
Jul 4, 2026
SharePoint RCE CVE-2026-45659 Added to CISA KEV After Active Exploitation
Jul 4, 2026
North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer Secrets
Jul 3, 2026
Armored Likho Targets Government Agencies, Power Sector with BusySnake Stealer
Jul 3, 2026
European Parliament Member Investigating Spyware Was Hacked With Pegasus
Jul 3, 2026
PamStealer Uses Fake Maccy Sites and PAM Checks to Steal Mac Login Passwords
Jul 3, 2026
FortiBleed Credential Theft Linked to INC and Lynx Ransomware Operations
Jul 3, 2026
Google Disrupts NetNut Residential Proxy Network Spanning 2 Million Home Devices
Jul 3, 2026
Ransomware Groups Turn to Citrix Bleed 2, BYOVD, and Supply Chain Credentials
Jul 3, 2026
ToddyCat-Linked Umbrij Malware Abuses OAuth to Access Gmail via Google API
Jul 3, 2026
Identity Lifecycle Management Wasn't Built for AI Agents
Jul 3, 2026
AI Agent Exploits Langflow RCE to Automate Database Ransomware Attack
Jul 3, 2026
FBI Seizes NetNut Proxy Platform, Popa Botnet
Jul 3, 2026
ThreatsDay: AI Compute Hijacking, Apple Email Flaw, BlueHammer Ransomware + 14 Stories
Jul 2, 2026
Google loses final appeal to overturn €4.1 billion EU fine
Jul 2, 2026
ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 Seconds
Jul 2, 2026
Microsoft fixes bug that removed Copilot buttons in Outlook
Jul 2, 2026
Anthropic's AI Finds Bugs. IBM Bets $5B It Can Fix Them.
Jul 2, 2026
Crafty Phishing Campaigns Auto-Adapt to Victim's Device, OS
Jul 2, 2026
Unpatched Argo CD Repo-Server Flaw Could Let Attackers Take Over Kubernetes Clusters
Jul 2, 2026
19-Year-Old Scattered Spider Suspect Extradited to Face U.S. Hacking Charges
Jul 2, 2026
SEO-Poisoned Software Sites Abuse ScreenConnect to Deploy AsyncRAT
Jul 2, 2026
VEIL#DROP Malware Chain Uses Blogger Platform to Deliver PureLogs Stealer
Jul 2, 2026
2026 Cybersecurity Assessment: The Gap Between Awareness and Resilience
Jul 2, 2026
Alleged Kimwolf Botmaster ‘Dort’ Arrested, Charged in U.S. and Canada
Jul 2, 2026
Medtronic notifies customers impacted by ShinyHunters data breach
Jul 2, 2026
FortiBleed credential-theft campaign linked to Lynx ransomware
Jul 2, 2026
Kubota says hackers had month-long access to network systems
Jul 2, 2026
New ChocoPoC malware targets researchers via trojanized PoC exploits
Jul 2, 2026
Ousaban Banking Trojan Targets Iberian Bank Users with Fake PDF Lures
Jul 1, 2026
Adobe Patches 7 CVSS 10.0 Flaws in ColdFusion and Campaign Classic
Jul 1, 2026
Critical Cursor Flaws Could Let Prompt Injection Escape Sandbox and Run Commands
Jul 1, 2026
Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation Attempts
Jul 1, 2026
AI-Generated Browser Ransomware Abuses Chromium API on Windows and Android
Jul 1, 2026
Citrix Patches Six NetScaler Flaws Allowing File Read and Denial-of-Service
Jul 1, 2026
Microsoft Warns Poisoned MCP Tool Descriptions Can Make AI Agents Leak Data
Jul 1, 2026
RustDuck Botnet Rebuilds in Rust to Hijack Routers and Servers for DDoS
Jul 1, 2026
Attackers Exploit SimpleHelp CVE-2026-48558 to Deploy TaskWeaver and Djinn Stealer
Jul 1, 2026
AirDrop and Quick Share Flaws Let Nearby Attackers Trigger Crashes and Bypass Checks
Jul 1, 2026
Anthropic to restore Claude Fable access on Wednesday
Jul 1, 2026
Anthropic rolls out Sonnet 5 with near-Opus 4.8 performance at a lower price
Jul 1, 2026
New BioShocking attack manipulates AI browser into data theft
Jul 1, 2026
Microsoft accelerates quantum-safe roadmap as risks grow
Jul 1, 2026
Langflow RCE Exploited to Deploy Monero Miner on Exposed AI App Endpoints
Jun 30, 2026
Silent Swap Crypto Clipper Uses Fake Google Notes Extension to Replace Wallet Addresses
Jun 30, 2026
GuardFall Exposes Open-Source AI Coding Agents to Decades-Old Shell Injection Risks
Jun 30, 2026
282 iOS AI Apps Leak API Keys and Open AI Proxy Access in Network Traffic Study
Jun 30, 2026
What the Numbers Say About FIFA 2026 Cyber Risk
Jun 30, 2026
CISA Admin Leaked AWS GovCloud Keys on Github
Jun 30, 2026
Fake Perplexity extension on Chrome Web Store tracked searches
Jun 30, 2026
Oracle E-Business Suite Flaw CVE-2026-46817 Actively Exploited in the Wild
Jun 30, 2026
Malicious Perplexity Chrome Extension Intercepted Searches and Address Bar Input
Jun 30, 2026
Gamaredon Expands Ukraine Attacks with New Malware and Cloud Service Abuse
Jun 30, 2026
Microsoft Removes 119 Edge Extensions That Hid Malware in Images and Fonts
Jun 30, 2026
Public PoC Released for Critical libssh2 CVE-2026-55200 Client-Side SSH Flaw
Jun 30, 2026
WhatsApp is Finally Getting Usernames to Help Keep Phone Numbers Private
Jun 29, 2026
Mustang Panda Uses Zoho WorkDrive as Command Channel in Indian Government Attacks
Jun 29, 2026
⚡ Weekly Recap: Linux Kernel Flaws, AI Malware Tricks, Turla Backdoor, Infostealers and More
Jun 29, 2026
236,000 DCloud Uni-App Sites Used in Crypto Scams, Phishing, and Wallet Drainers
Jun 29, 2026
Why Post-Quantum Cryptography Starts With Credentials
Jun 29, 2026
Microsoft extends Windows Server 2022 hotpatching until October 2027
Jun 29, 2026
U.S. offers $10 million for hackers targeting WhatsApp, Signal users
Jun 29, 2026
Ukraine Says Russian Intelligence Used Fake Support Texts to Steal Messaging Credentials
Jun 29, 2026
© 2026 CyberWireDaily — Security Breaches, Threats & Cyber News — About — Contact — Privacy