Security News
Breach & incident coverage
Distinct breaches, incidents, and newly disclosed issues as they're reported — separate from the CVE-anchored advisories, which track confirmed exploited vulnerabilities specifically.
500 stories published
Disgruntled Researcher Drops 'ShieldBreak' Windows Defender Zero-Day
A new proof-of-concept exploit dubbed ShieldBreak weaponizes Microsoft Defender cloud hydration and WER to grant local attackers SYSTEM privileges.
Aug 13, 2026Belgium eID Browser Extension Vulnerability Exposes Citizen Accounts to RCE
Critical RCE vulnerabilities in Belgium's eID browser extension compromise the national authentication trust framework.
Aug 13, 2026Cisco Fixes Actively Exploited ASA and FTD Firewall DoS Flaw (CVE-2026-20349)
Cisco has issued hotfixes for an actively exploited high-severity DoS vulnerability (CVE-2026-20349) affecting Cisco ASA and FTD SSL VPN services.
Aug 13, 2026Lazarus Exploits Windows AFD.sys Zero-Day CVE-2026-68820 in Defense Cyberattacks
North Korea's Lazarus Group leveraged a Windows zero-day (CVE-2026-68820) and the FudModule rootkit to breach defense and aerospace targets.
Aug 13, 2026FBI Warns of Account Hacking Schemes Targeting Explicit Photos and Student-Athletes
FBI and NCAA issue alerts on cybercriminals hijacking social media and cloud accounts to steal explicit photos for sextortion and criminal resale.
Aug 12, 2026Microsoft SharePoint Flaw CVE-2026-55040 Exploited in Wild Following PoC Release
Attackers are actively exploiting a Microsoft SharePoint vulnerability (CVE-2026-55040) following public proof-of-concept release.
Aug 12, 2026UK ACRO Criminal Records Office Reprimanded After Unpatched CMS Led to Two-Year Breach
Britain's ACRO Criminal Records Office suffered three intrusions over two years due to an unpatched Kentico CMS and ignored Trend Micro antivirus alerts.
Aug 12, 2026Mindgard Secures $30M Series A to Expand Automated AI Red-Teaming Platform
AI security startup Mindgard raises $30M in Series A funding to scale its automated AI red-teaming and runtime defense capabilities across enterprise sectors.
Aug 12, 2026Microsoft Defender ShieldBreak Zero-Day Grants SYSTEM Privileges
The Microsoft Defender ShieldBreak zero-day bypasses Microsoft's patch for CVE-2026-50656, granting SYSTEM privileges on fully patched Windows systems.
Aug 12, 2026Intel and AMD Release Fixes for Over 80 Hardware and Software Flaws
Intel and AMD patch more than 80 security vulnerabilities across CPU hardware, management engines, wireless drivers, and software development suites.
Aug 12, 2026Ivanti Patches High-Severity Remote Exploitation Flaws in Endpoint Manager
Ivanti released patches for multiple high-severity vulnerabilities in Endpoint Manager, fixing credential leaks, agent crashes, and S3 file manipulation.
Aug 12, 2026SAP Patches Maximum-Severity Commerce Cloud Vulnerability and Critical ABAP, MII Flaws
SAP's August 2026 security update addresses a CVSS 10.0 unauthenticated RCE flaw in Commerce Cloud alongside critical NetWeaver ABAP and MII bugs.
Aug 12, 2026No news matches your search.