Security News
Breach & incident coverage
Distinct breaches, incidents, and newly disclosed issues as they're reported — separate from the CVE-anchored advisories, which track confirmed exploited vulnerabilities specifically.
500 stories published
New ClickLock macOS Stealer Kills Apps and Exfiltrates Passwords
A new macOS malware, "ClickLock," actively terminates applications every 210 milliseconds to force users into re-typing passwords, which it then steals.
Jul 18, 2026Malicious Vite npm Packages Deliver RAT via Blockchain C2 in Software Supply Chain Attack
A new campaign, "ViteVenom," injects seven malicious npm packages into the Vite ecosystem, utilizing a four-tier blockchain C2 to deploy a RAT.
Jul 18, 2026OpenSSL HollowByte Vulnerability Disclosed, Posing Denial-of-Service Risk
Okta's Red Team disclosed "HollowByte," an OpenSSL denial-of-service vulnerability that can freeze server memory with minimal traffic.
Jul 18, 2026CISA Warns of Actively Exploited SonicWall SMA1000 Zero-Days
Two critical remote access vulnerabilities (CVE-2026-15409, CVE-2026-15410) in SonicWall SMA1000 appliances are being actively exploited.
Jul 18, 2026Morris Communications Company Discloses Data Breach Affecting Sensitive Information
Questo, parent company of Morris Communications, announced a data breach affecting personal and financial data, with notifications sent July 17, 2026.
Jul 18, 2026Inter-Con Security Systems Suffers Ransomware Attack and Data Breach by ShinyHunters
Inter-Con Security Systems Inc., a multinational private security company, disclosed a June 2026 data breach resulting from a ransomware attack, with…
Jul 18, 2026HMC Fresh Foods Discloses Data Breach Exposing Sensitive Information
HMC Fresh Foods LLC, a grape processing company, has disclosed a data breach that occurred on June 5, 2026, potentially exposing personal information of…
Jul 18, 2026GodDamn Ransomware Leverages BYOVD to Disable EDR
A new ransomware campaign, "GodDamn Ransomware," is utilizing a Bring-Your-Own-Vulnerable-Driver (BYOVD) technique with a Microsoft-signed kernel driver to…
Jul 18, 2026Ingram Content Group Suffers Data Breach, ShinyHunters Claims SSNs Exposed
Book distribution giant Ingram Content Group has been hit by a data breach, with the ShinyHunters extortion group claiming to have exfiltrated highly…
Jul 18, 2026Ernst & Young Reports Data Breach via Third-Party Platform
Professional services firm Ernst & Young has disclosed a data breach originating from unauthorized access to a third-party platform, potentially exposing…
Jul 18, 2026Abbott Laboratories Investigates Two Separate Cyber Incidents
Healthcare giant Abbott Laboratories is investigating two distinct cyber incidents affecting its legacy Exact Sciences systems and its LabCentral customer…
Jul 18, 2026Critical RCE and SQLi Vulnerabilities Patched in WordPress Core
Two critical vulnerabilities, an unauthenticated SQL injection and an unauthenticated remote code execution flaw, have been patched in WordPress Core versions…
Jul 18, 2026No news matches your search.