Threat Actors Probe Gitea Docker Flaw CVE-2026-20896 13 Days After Disclosure
Ravie LakshmananJul 06, 2026Vulnerability / DevOps Threat actors have been observed attempting to exploit a recently patched critical security flaw...
Ravie LakshmananJul 06, 2026Vulnerability / DevOps Threat actors have been observed attempting to exploit a recently patched critical security flaw...
A suspected China-nexus threat activity cluster has been observed targeting Indian taxpayers, tax professionals, and corporate finance teams to deliver...
The North Korean threat actors linked to the Contagious Interview campaign have been observed publishing 108 unique packages and web...
Threat actors with ties to North Korea have been linked to a fresh set of malicious npm packages that masquerade...
A previously undocumented threat actor known as Armored Likho has been attributed to cyber attacks targeting government agencies and the...
Threat actors associated with the Anubis ransomware operation have been observed exploiting the Citrix Bleed 2 (CVE-2025-5777) vulnerability to obtain...
Ravie LakshmananJul 02, 2026API Security / Cyberespionage The threat actor known as ToddyCat has been attributed to a new malware...
Your Chrome searches may not have been going where you thought. Microsoft has uncovered a malicious Chrome extension masquerading as...
An unknown threat actor has been observed exploiting a recently disclosed maximum-severity security flaw in SimpleHelp to deliver two previously...
Identity and social engineering scams have been a time-honored way to gain unauthorized access to systems. Cybercriminals typically use email...
A newly discovered cyber attack campaign has been observed delivering a previously undocumented malware family called SharkLoader that acts as...
Swati KhandelwalJun 26, 2026Phishing / Malware An active phishing campaign has been targeting hotel and other hospitality organizations across Europe...
The Russian state-sponsored threat actor known as Turla has been attributed to a previously undocumented .NET backdoor called STOCKSTAY that...
Proofpoint has been selected to participate in OpenAI Daybreak, which helps trusted cybersecurity companies integrate AI into defensive security operations....
The era of hacking corporate databases may be giving way to something far more direct. Have I Been Pwned has...