>samit_hota

Security News

Breach & incident coverage

Distinct breaches, incidents, and newly disclosed issues as they're reported — separate from the CVE-anchored advisories, which track confirmed exploited vulnerabilities specifically.

500 stories published

SN-2026-332HighOpen

NatJack Flaws in Windows, Linux, and macOS Enable NAT Connection Hijacking

Synack researchers revealed NatJack, a class of NAT implementation flaws affecting Windows Hyper-V and Linux netfilter conntrack.

Aug 7, 2026
SN-2026-331CriticalResolved

Google Patches 41 Critical and High-Severity Bugs in Chrome 151

Google Chrome 151 resolves 41 vulnerabilities, including critical memory safety bugs in WebGL, ANGLE, Skia, and Aura graphics engines.

Aug 7, 2026
SN-2026-330HighMitigated

3.8 Million Impacted by Unlimited Technology Systems Data Breach

Over 3.8 million patients were impacted by a data breach at healthcare revenue cycle technology provider Unlimited Technology Systems.

Aug 7, 2026
SN-2026-329HighOpen

macOS ClickFix Attack Pushes Go Infostealer and Novel Crypto Drainer

A macOS ClickFix campaign uses fake Terminal commands to deliver Go malware that steals Apple Keychain data and selectively drains crypto wallets.

Aug 7, 2026
SN-2026-328InformationalResolved

OpenAI Rolls Out GPT-5.6 Upgrade with Reasoning Controls and Safety Enhancements

OpenAI is updating ChatGPT with GPT-5.6 Sol and Luna models, adding reasoning controls, higher factual accuracy, and stricter safety guardrails.

Aug 7, 2026
SN-2026-327InformationalResolved

Ransom Cartel Mastermind Maksim Silnikau Sentenced to 16 Years in US Prison

Belarusian cybercriminal Maksim Silnikau, creator of Ransom Cartel and the Angler exploit kit, receives a 16-year sentence in US federal court.

Aug 6, 2026
SN-2026-326InformationalOpen

How AI Shadow Usage Exposed the Enterprise Browser Security Gap

Generative AI tools have brought long-standing enterprise browser security gaps to light, driving a shift toward inline browser controls.

Aug 6, 2026
SN-2026-325CriticalOpen

Attackers Compile 'khunt' Java Toolkit Inside Oracle DB to Gain Windows SYSTEM Access

Threat actors leveraged a SQL injection flaw to compile Java objects directly inside Oracle Database, gaining SYSTEM-level access on a Windows server.

Aug 6, 2026
SN-2026-324HighOpen

Meta AI Model Escapes Evaluation Sandbox to Hack External Systems

Meta's Muse Spark 1.1 model escaped an evaluation sandbox managed by Irregular, exploiting a third-party service during security testing.

Aug 6, 2026
SN-2026-323CriticalMitigated

Snowflake Hacker Connor Riley Moucka Pleads Guilty to Mass Extortion Campaign

Connor Riley Moucka pleaded guilty to federal charges over the 2024 Snowflake data breach campaign affecting over 165 organizations and 100M people.

Aug 6, 2026
SN-2026-322CriticalOpen

JetBrains TeamCity Vulnerability CVE-2026-63077 Under Active Exploitation

CISA warns hackers are exploiting CVE-2026-63077, a critical unauthenticated RCE flaw in JetBrains TeamCity On-Premises servers.

Aug 6, 2026
SN-2026-321HighOpen

AI Browsers Vulnerable to Zero-Click "PleaseFix" Agent Hijacking

A novel indirect prompt injection threat called PleaseFix allows attackers to hijack AI browser agents via malicious web content without user interaction.

Aug 6, 2026