Security News
Breach & incident coverage
Distinct breaches, incidents, and newly disclosed issues as they're reported — separate from the CVE-anchored advisories, which track confirmed exploited vulnerabilities specifically.
305 stories published
LLM-Driven Agentic Ransomware "JADEPUFFER" Marks New Threat Landscape
Researchers uncover JADEPUFFER, the first fully autonomous LLM-driven ransomware operation exploiting Langflow vulnerability.
Jul 10, 2026US Army Websites Defaced with Pro-Kurdish Messages
Two U.S. Army websites were temporarily defaced on error pages with pro-Kurdish messages and criticism of former President Donald Trump.
Jul 10, 2026Finance Yorkshire Hit by Cmdorganization Ransomware Group
UK-based funding provider Finance Yorkshire suffered a ransomware attack by the Cmdorganization group, potentially impacting SME data.
Jul 10, 2026Deutsche Bank Implicated in Ransomware Incident via External Service Provider
The "Unsafe" ransomware group claims to have breached Deutsche Bank, though the bank states a third-party service provider was the actual target.
Jul 10, 2026Mercado Libre Reportedly Hit by "The Gentleman" Ransomware Group
Latin American e-commerce giant Mercado Libre is reportedly targeted by "The Gentleman" ransomware group, with claims of data exfiltration.
Jul 10, 2026CISA Warns of Active Exploitation in Adobe ColdFusion and Joomla Page Builders
CISA added critical vulnerabilities in Adobe ColdFusion, Joomlack Page Builder, and JoomShaper SP Page Builder to its KEV Catalog, citing active exploitation.
Jul 10, 2026United HealthCare Data Breach Affects Over 34,000 Individuals
United HealthCare Services Inc. disclosed a data breach affecting 34,574 individuals, with details of the exposed information publicly undisclosed.
Jul 9, 2026Critical Vulnerabilities Patched in Ubiquiti UniFi OS Ecosystem
Ubiquiti has released critical security updates addressing seven severe vulnerabilities in its UniFi OS, including a maximum-severity command injection flaw…
Jul 9, 2026AssuranceAmerica Data Breach Exposes 6.9 Million Driver's Licenses
A cyberattack on AssuranceAmerica compromised data for 6.9 million individuals, including driver's license numbers and other sensitive information.
Jul 9, 2026CISA Warns of Active Exploitation of Langflow IDOR for Credential Harvesting
CISA has added an Insecure Direct Object Reference (IDOR) vulnerability in Langflow (CVE-2026-55255) to its KEV catalog due to active exploitation.
Jul 9, 2026China-Aligned Hackers Exploit Roundcube Vulnerabilities in University Attacks
A suspected China-aligned APT group is actively exploiting patched Roundcube flaws (e.g., CVE-2024-42009) targeting U.S. and Canadian universities.
Jul 9, 2026Critical Gitea Authentication Bypass Under Active Exploitation
A critical vulnerability in Gitea (CVE-2026-20896) allows authentication bypass and is being actively exploited in the wild.
Jul 9, 2026No news matches your search.