Security News
Breach & incident coverage
Distinct breaches, incidents, and newly disclosed issues as they're reported — separate from the CVE-anchored advisories, which track confirmed exploited vulnerabilities specifically.
500 stories published
Magento StyleSmuggler Zero-Day Exploited to Install Linux Backdoor
An unpatched zero-day dubbed StyleSmuggler affecting all versions of Magento and Adobe Commerce is being actively exploited to deploy stealthy Linux malware.
Sep 7, 2026Nightmare Eclipse Drops Zero-Day Exploits for CrowdStrike, Nvidia, and Avast
Security researcher Nightmare Eclipse released zero-day privilege escalation exploits targeting Avast Antivirus, CrowdStrike Falcon Sensor, and Nvidia.
Sep 7, 2026N-able Patches Critical N-central RCE Zero-Day Exploited in the Wild
N-able has issued an emergency hotfix for CVE-2026-86218, a critical pre-authentication RCE zero-day vulnerability in its N-central RMM platform.
Sep 7, 2026OpenAI Begins Rolling Out ChatGPT Astra Model to Plus Subscribers
OpenAI is deploying GPT-6 Astra across ChatGPT Plus and enterprise tiers, introducing enhanced computer-use, coding, and cybersecurity capabilities.
Sep 7, 2026Phishers Use Invisible Unicode Characters to Bypass Email Keyword Filters
Threat actors are abusing ASCII smuggling and invisible Unicode tag characters in high-volume phishing campaigns to evade email security detection.
Sep 6, 2026Unauthenticated MikroTik RouterOS SSH Exploit "MikroTrick" Triggers Mass Hijack Warning
Attackers are actively exploiting a zero-day flaw chain dubbed MikroTrick to gain full root-level control over internet-exposed MikroTik routers.
Sep 6, 2026Trezor Discloses Expanded ShipMonk Breach via Metabase Zero-Day
A third-party breach at logistics provider ShipMonk exposed 67,000 Trezor customer records following exploitation of a critical Metabase zero-day.
Sep 6, 2026Unpatched StyleSmuggler Zero-Day Hits Magento and Adobe Commerce Stores
Attackers are actively exploiting an unpatched zero-day vulnerability dubbed StyleSmuggler to drop persistent backdoors on Adobe Commerce and Magento stores.
Sep 6, 2026Attackers Target Education Sector via PaperCut Vulnerabilities CVE-2026-81578 and…
Active exploitation of PaperCut vulnerabilities CVE-2026-81578 and CVE-2026-82078 allows threat actors to harvest credentials across schools and universities.
Sep 5, 2026Dark Reading Announces Virtual Event on Enterprise AI Security Strategy
Dark Reading is hosting a virtual event focused on helping security leaders build a secure AI strategy for the enterprise.
Sep 5, 2026Dark Reading Hosts Virtual Event on Securing Cloud Assets in the Age of AI
Dark Reading is hosting a virtual event focusing on enterprise strategies for securing cloud assets and managing risk in AI deployments.
Sep 5, 2026Google Patches Sixth Exploited Chrome Zero-Day of 2026 (CVE-2026-85046)
Google has patched CVE-2026-85046, an actively exploited high-severity V8 type confusion zero-day vulnerability in Chrome 152.
Sep 5, 2026No news matches your search.