>samit_hota

Security News

Breach & incident coverage

Distinct breaches, incidents, and newly disclosed issues as they're reported — separate from the CVE-anchored advisories, which track confirmed exploited vulnerabilities specifically.

290 stories published

SN-2026-206CriticalMitigated

Certighost PoC Released: AD CS Vulnerability Allows Full Windows Domain Hijack

A public PoC exploit for the Certighost AD CS flaw (CVE-2026-54121) allows low-privileged users to impersonate Domain Controllers and compromise domains.

Jul 27, 2026
SN-2026-205HighOpen

Dysphoria Botnet Compromises 200,000 IoT Devices Using Web3 Domain C2

The Dysphoria botnet has infected 200,000 devices worldwide, leveraging Ethereum ENS, Solana SNS, and UPnP abuse to build DDoS and proxy networks.

Jul 27, 2026
SN-2026-204HighOpen

AnMed Health System Halts Operations Across SC and GA After Malware Attack

AnMed has closed dozens of clinics across South Carolina and Georgia following a cyberattack involving malware that knocked out phone and network systems.

Jul 27, 2026
SN-2026-203InformationalOpen

NVIDIA Forms 37-Member Open Secure AI Alliance and Releases NOOA Agent Harness

NVIDIA and 36 partners launched the Open Secure AI Alliance alongside NOOA, an open-source framework for testing and securing autonomous AI agents.

Jul 27, 2026
SN-2026-202HighOpen

AnMed Health System Shutters Clinics Following Network Malware Disruption

Non-profit health system AnMed has closed dozens of clinics across South Carolina and Georgia following a network-wide malware incident.

Jul 27, 2026
SN-2026-201HighOpen

UK Supreme Court Strips Bahrain Immunity in FinSpy Spyware Case

The UK Supreme Court ruled that Bahrain cannot claim state immunity against a lawsuit alleging it infected UK dissidents with FinSpy spyware.

Jul 27, 2026
SN-2026-200InformationalMitigated

GitHub and PyPI Introduce New Rules to Counter Open Source Supply Chain Attacks

GitHub Dependabot adds a three-day cooldown on dependency PRs, while PyPI limits uploads to releases older than 14 days to curb software supply chain risk.

Jul 27, 2026
SN-2026-199HighOpen

ShinyHunters Claims Extortion of Ernst & Young Following ITSM Breach

The ShinyHunters extortion group claims it breached Ernst & Young via a supply-chain attack that compromised client tax files and internal systems.

Jul 27, 2026
SN-2026-198InformationalResolved

Beelzebub Secures $3.4 Million to Scale AI-Native Deception Platform

Beelzebub raises $3.4M in seed funding to expand its LLM-powered runtime deception and continuous adversary emulation security platform.

Jul 27, 2026
SN-2026-197HighOpen

Coca-Cola Confirms Data Breach Following Fairlife Ransomware Attack

Coca-Cola confirmed a data breach at dairy subsidiary Fairlife after an attack by the Anubis ransomware group forced production suspensions.

Jul 27, 2026
SN-2026-196HighOpen

Hacked Public Wi-Fi Gateways Exploited to Steal Corporate M365 Credentials

Threat actors are compromising public Wi-Fi gateway appliances to target traveling corporate personnel and steal Microsoft 365 credentials.

Jul 27, 2026
SN-2026-195HighOpen

TELESHIM Malware Abuses Telegram C2 in Middle East Government Attacks

Cyber-espionage actors linked to East Asia are targeting Middle Eastern government organizations using TELESHIM and custom malware controlled via Telegram.

Jul 27, 2026