Security News
Breach & incident coverage
Distinct breaches, incidents, and newly disclosed issues as they're reported — separate from the CVE-anchored advisories, which track confirmed exploited vulnerabilities specifically.
500 stories published
Cisco Secure Firewall Management Center Bugs Exploited in the Wild (CVE-2026-20079)
Active exploitation of Cisco Secure Firewall Management Center vulnerabilities allows nation-state and ransomware actors to bypass authentication.
Sep 13, 2026Passkey Phishing and Device-Code Attacks Target Microsoft Cloud Tenants
Threat actors use passkey-themed social engineering, device-code phishing, and Graph API abuse to hijack Microsoft cloud accounts and exfiltrate data.
Sep 13, 2026Dutch NCSC Warns of Imminent Exploitation Targeting Check Point VPN Flaws
Dutch cybersecurity authorities warn of imminent attacks against Check Point VPN flaws CVE-2026-85102 and CVE-2026-85103. Urgent patching required.
Sep 13, 2026CISA Adds Actively Exploited Artifactory, ScreenConnect, and RouterOS Flaws to KEV
CISA added five actively exploited vulnerabilities in JFrog Artifactory, ConnectWise ScreenConnect, and MikroTik RouterOS to its KEV catalog.
Sep 13, 2026Enterprise AI Adoption Triggers 685% Surge in SOC Noise and Brand Impersonation
AI-related SOC alerts grew 685% in early 2026, driven by developer coding agents, OAuth shadow IT, and AI brand impersonation phishing attacks.
Sep 12, 2026Houthis Used Anthropic's Claude AI to Assist Advanced Missile Development
Anthropic reported that users in Houthi-controlled Yemen used Claude Code to generate missile guidance software and troubleshoot failed rocket tests.
Sep 12, 2026Stolen Credentials on Personal Device Expose Florida DMV Records to ShinyHunters
Florida officials confirmed a Florida DMV data breach caused by stolen police credentials, with ShinyHunters leaking records and leveraging AI tools.
Sep 12, 2026PaperCut Releases Maintenance Patches to Replace Emergency Fixes Under Active Attack
PaperCut has released fully tested maintenance builds (26.0.5, 25.0.13, 24.1.10) to address actively exploited authentication bypass and RCE flaws.
Sep 12, 2026New Infosec Releases Address AI Agent Drift, Exposure Management, and TPRM
Security vendors announce tools targeting AI agent execution risks, preemptive exposure management, and automated third-party risk management.
Sep 11, 2026BlueMoon Exploit Kit Weaponizes Chromium Patch-Gap and Windows Zero-Day
Threat actors are actively deploying the BlueMoon exploit kit, chaining Chrome V8 patch-gap flaws and a Windows kernel zero-day for code execution.
Sep 11, 2026Cisco FMC Vulnerabilities Under Active Attack by Sandworm and Ransomware Gangs
Active exploitation of Cisco Secure Firewall Management Center flaws (CVE-2026-20079 & CVE-2026-20316) enables root access and ransomware deployment.
Sep 11, 2026BlueMoon Exploit Kit Targets Chrome Zero-Days and Windows ALPC Vulnerability
The modular BlueMoon exploit kit uses Chrome zero-day flaws and a Windows ALPC vulnerability to execute code and drop backdoors.
Sep 11, 2026No news matches your search.