>samit_hota

Security News

Breach & incident coverage

Distinct breaches, incidents, and newly disclosed issues as they're reported — separate from the CVE-anchored advisories, which track confirmed exploited vulnerabilities specifically.

500 stories published

SN-2026-452CriticalOpen

Magento StyleSmuggler Zero-Day Exploited to Install Linux Backdoor

An unpatched zero-day dubbed StyleSmuggler affecting all versions of Magento and Adobe Commerce is being actively exploited to deploy stealthy Linux malware.

Sep 7, 2026
SN-2026-451HighOpen

Nightmare Eclipse Drops Zero-Day Exploits for CrowdStrike, Nvidia, and Avast

Security researcher Nightmare Eclipse released zero-day privilege escalation exploits targeting Avast Antivirus, CrowdStrike Falcon Sensor, and Nvidia.

Sep 7, 2026
SN-2026-450CriticalMitigated

N-able Patches Critical N-central RCE Zero-Day Exploited in the Wild

N-able has issued an emergency hotfix for CVE-2026-86218, a critical pre-authentication RCE zero-day vulnerability in its N-central RMM platform.

Sep 7, 2026
SN-2026-449InformationalOpen

OpenAI Begins Rolling Out ChatGPT Astra Model to Plus Subscribers

OpenAI is deploying GPT-6 Astra across ChatGPT Plus and enterprise tiers, introducing enhanced computer-use, coding, and cybersecurity capabilities.

Sep 7, 2026
SN-2026-448HighOpen

Phishers Use Invisible Unicode Characters to Bypass Email Keyword Filters

Threat actors are abusing ASCII smuggling and invisible Unicode tag characters in high-volume phishing campaigns to evade email security detection.

Sep 6, 2026
SN-2026-447CriticalMitigated

Unauthenticated MikroTik RouterOS SSH Exploit "MikroTrick" Triggers Mass Hijack Warning

Attackers are actively exploiting a zero-day flaw chain dubbed MikroTrick to gain full root-level control over internet-exposed MikroTik routers.

Sep 6, 2026
SN-2026-446HighMitigated

Trezor Discloses Expanded ShipMonk Breach via Metabase Zero-Day

A third-party breach at logistics provider ShipMonk exposed 67,000 Trezor customer records following exploitation of a critical Metabase zero-day.

Sep 6, 2026
SN-2026-445CriticalOpen

Unpatched StyleSmuggler Zero-Day Hits Magento and Adobe Commerce Stores

Attackers are actively exploiting an unpatched zero-day vulnerability dubbed StyleSmuggler to drop persistent backdoors on Adobe Commerce and Magento stores.

Sep 6, 2026
SN-2026-444CriticalOpen

Attackers Target Education Sector via PaperCut Vulnerabilities CVE-2026-81578 and…

Active exploitation of PaperCut vulnerabilities CVE-2026-81578 and CVE-2026-82078 allows threat actors to harvest credentials across schools and universities.

Sep 5, 2026
SN-2026-443InformationalOpen

Dark Reading Announces Virtual Event on Enterprise AI Security Strategy

Dark Reading is hosting a virtual event focused on helping security leaders build a secure AI strategy for the enterprise.

Sep 5, 2026
SN-2026-442InformationalOpen

Dark Reading Hosts Virtual Event on Securing Cloud Assets in the Age of AI

Dark Reading is hosting a virtual event focusing on enterprise strategies for securing cloud assets and managing risk in AI deployments.

Sep 5, 2026
SN-2026-441HighResolved

Google Patches Sixth Exploited Chrome Zero-Day of 2026 (CVE-2026-85046)

Google has patched CVE-2026-85046, an actively exploited high-severity V8 type confusion zero-day vulnerability in Chrome 152.

Sep 5, 2026