>samit_hota

Security News

Breach & incident coverage

Distinct breaches, incidents, and newly disclosed issues as they're reported — separate from the CVE-anchored advisories, which track confirmed exploited vulnerabilities specifically.

500 stories published

SN-2026-476CriticalOpen

Cisco Secure Firewall Management Center Bugs Exploited in the Wild (CVE-2026-20079)

Active exploitation of Cisco Secure Firewall Management Center vulnerabilities allows nation-state and ransomware actors to bypass authentication.

Sep 13, 2026
SN-2026-475HighOpen

Passkey Phishing and Device-Code Attacks Target Microsoft Cloud Tenants

Threat actors use passkey-themed social engineering, device-code phishing, and Graph API abuse to hijack Microsoft cloud accounts and exfiltrate data.

Sep 13, 2026
SN-2026-474CriticalOpen

Dutch NCSC Warns of Imminent Exploitation Targeting Check Point VPN Flaws

Dutch cybersecurity authorities warn of imminent attacks against Check Point VPN flaws CVE-2026-85102 and CVE-2026-85103. Urgent patching required.

Sep 13, 2026
SN-2026-473CriticalOpen

CISA Adds Actively Exploited Artifactory, ScreenConnect, and RouterOS Flaws to KEV

CISA added five actively exploited vulnerabilities in JFrog Artifactory, ConnectWise ScreenConnect, and MikroTik RouterOS to its KEV catalog.

Sep 13, 2026
SN-2026-472MediumOpen

Enterprise AI Adoption Triggers 685% Surge in SOC Noise and Brand Impersonation

AI-related SOC alerts grew 685% in early 2026, driven by developer coding agents, OAuth shadow IT, and AI brand impersonation phishing attacks.

Sep 12, 2026
SN-2026-471HighMitigated

Houthis Used Anthropic's Claude AI to Assist Advanced Missile Development

Anthropic reported that users in Houthi-controlled Yemen used Claude Code to generate missile guidance software and troubleshoot failed rocket tests.

Sep 12, 2026
SN-2026-470HighOpen

Stolen Credentials on Personal Device Expose Florida DMV Records to ShinyHunters

Florida officials confirmed a Florida DMV data breach caused by stolen police credentials, with ShinyHunters leaking records and leveraging AI tools.

Sep 12, 2026
SN-2026-469CriticalMitigated

PaperCut Releases Maintenance Patches to Replace Emergency Fixes Under Active Attack

PaperCut has released fully tested maintenance builds (26.0.5, 25.0.13, 24.1.10) to address actively exploited authentication bypass and RCE flaws.

Sep 12, 2026
SN-2026-468InformationalOpen

New Infosec Releases Address AI Agent Drift, Exposure Management, and TPRM

Security vendors announce tools targeting AI agent execution risks, preemptive exposure management, and automated third-party risk management.

Sep 11, 2026
SN-2026-467CriticalOpen

BlueMoon Exploit Kit Weaponizes Chromium Patch-Gap and Windows Zero-Day

Threat actors are actively deploying the BlueMoon exploit kit, chaining Chrome V8 patch-gap flaws and a Windows kernel zero-day for code execution.

Sep 11, 2026
SN-2026-466CriticalOpen

Cisco FMC Vulnerabilities Under Active Attack by Sandworm and Ransomware Gangs

Active exploitation of Cisco Secure Firewall Management Center flaws (CVE-2026-20079 & CVE-2026-20316) enables root access and ransomware deployment.

Sep 11, 2026
SN-2026-465CriticalMitigated

BlueMoon Exploit Kit Targets Chrome Zero-Days and Windows ALPC Vulnerability

The modular BlueMoon exploit kit uses Chrome zero-day flaws and a Windows ALPC vulnerability to execute code and drop backdoors.

Sep 11, 2026