← Latest brief

Security news.

·Afternoon Brief

Today's security landscape is dominated by multiple critical vulnerabilities under active exploitation, alongside significant data breaches impacting millions. Organizations are urged to review advisories and implement patches promptly, especially for widely used platforms and edge devices.

BLEEPINGVULN
2d agoREAD

Max severity SAP Commerce Cloud flaw now targeted in attacks

A maximum-severity SAP Commerce Cloud remote code execution vulnerability, patched just three days ago, is already being actively exploited.

SECURITYWEEKZERO-DAY
2d agoREAD

Hackers Exploiting Unpatched GeoServer Zero-Day

An unpatched GeoServer zero-day, described as an SQL injection potentially leading to remote code execution, is being actively exploited by attackers.

BLEEPINGEXPLOIT
2d agoREAD

Hackers exploit macOS Screen Sharing flaw to deploy Monero miner

Hackers are actively exploiting a macOS authentication bypass vulnerability after public exploit code emerged, deploying a Monero miner.

BLEEPINGBREACH
2d agoREAD

RingCentral data breach exposed info of 1.6 million accounts

The ShinyHunters extortion group stole personal information from 1.6 million RingCentral accounts after a hack in July, as confirmed by Have I Been Pwned.

SECURITYWEEKBREACH
2d agoREAD

Over 1,000 Charities Hit by Beacon CRM Data Breach

A data breach impacting over 1,000 charities is believed to stem from a compromised AWS access key exposed in publicly available JavaScript build artifacts.

DARK READINGBREACH
2d agoREAD

Scottish Govt Suffers Potentially Widening Data Breach at Prosecutor's Office

The Scottish government reported a data breach at a prosecutor's office, with concerns that the third-party vendor involved may have serviced other agencies, potentially widening the impact.

BLEEPINGMALWARE
1d agoREAD

New Evooo1Bot Linux botnet turns routers into traffic relay nodes

A new Mirai-based modular Linux botnet, Evooo1Bot, is targeting internet-facing gateway devices, turning them into SOCKS5 traffic relay nodes for malicious activities.

BLEEPINGPOLICY
2d agoREAD

Hackers arrested over €30M bank fraud exploiting service provider flaw

Four cybercriminals were arrested in Brazil, and three others charged in Europe, for a €30 million bank fraud scheme that exploited a vulnerability at a service provider to withdraw funds from Commerzbank customer accounts.

Generated twice daily from public security RSS feeds. Informational only.