← Latest brief

Security news.

·Morning Brief

Today's cybersecurity landscape is marked by widespread data breaches affecting millions of users and organizations, alongside ongoing exploitation of critical vulnerabilities. Ransomware operations continue to target major entities, while new research highlights the evolving capabilities of AI in both defense and offense.

SECURITYWEEKZERO-DAY
2d agoREAD

Hackers Exploiting Unpatched GeoServer Zero-Day

An unpatched SQL injection vulnerability in GeoServer, allowing for potential remote code execution, is actively being exploited in the wild.

WATCHTOWR LABSRCE
2d agoREAD

Citrix NetScaler Pre-Auth RCE Vulnerability (CVE-2026-8452)

A pre-authentication Remote Code Execution vulnerability has been identified in Citrix NetScaler, posing a critical threat to affected systems.

BLEEPINGBREACH
2d agoREAD

RingCentral Data Breach Exposes 1.6 Million Accounts

The ShinyHunters extortion group has claimed responsibility for a data breach at RingCentral, exposing personal information from 1.6 million accounts.

SECURITYWEEKBREACH
2d agoREAD

Over 1,000 Charities Hit by Beacon CRM Data Breach

A compromised AWS access key, exposed in publicly available JavaScript build artifacts, is believed to be the root cause of a data breach impacting over 1,000 charities using Beacon CRM.

BLEEPINGRANSOMWARE
2d agoREAD

Shell Investigates 'Potential Incident' After Clop Ransomware Claims

Oil giant Shell is investigating a potential security incident after the Clop ransomware gang claimed to have stolen 89GB of data from the company.

SECURITYWEEKBREACH
2d agoREAD

Trivy, Not LiteLLM, Behind 2,500 Organization Compromise

New analysis indicates that the compromise of over 2,500 organizations, previously linked to malicious LiteLLM packages, was primarily due to Trivy, with most exposures occurring before the LiteLLM packages were published.

BLEEPINGMALWARE
2d agoREAD

Apple Sends New 'Threat Notification' Alerts Over Mercenary Spyware Attacks

Apple has issued new threat notifications to users believed to be targeted by mercenary spyware attacks on their iPhones.

SECURITYWEEKBREACH
2d agoREAD

14,000 Trezor Customers Impacted by ShipMonk Data Breach

Shipping information, including names, addresses, emails, and phone numbers, for 14,000 Trezor customers was stolen in a data breach at fulfillment partner ShipMonk.

Generated twice daily from public security RSS feeds. Informational only.