Security news.
Today's security landscape is marked by widespread data breaches and active exploitation of critical vulnerabilities across various platforms. Several high-severity flaws in enterprise software are seeing immediate targeting, while new botnets and macOS malware highlight evolving threats.
SAP Commerce Cloud flaw actively exploited
A maximum-severity remote code execution vulnerability (CVE-2026-58231) in SAP Commerce Cloud, patched just three days ago, is already being targeted in attacks.
Unpatched GeoServer zero-day under active exploitation
Hackers are exploiting an unpatched SQL injection vulnerability in GeoServer, which could lead to remote code execution.
macOS Screen Sharing flaw exploited for Monero miner deployment
An authentication bypass vulnerability in macOS Screen Sharing is being actively exploited by hackers to deploy Monero cryptocurrency miners.
Scottish Govt suffers data breach at Prosecutor's Office
A third-party vendor compromise has led to a potentially widening data breach affecting the Scottish Government's prosecutor's office, with concerns it may impact other agencies.
RingCentral data breach exposes 1.6 million accounts
The ShinyHunters extortion group reportedly stole personal information from 1.6 million RingCentral accounts after a July hack.
Evooo1Bot Linux botnet turns routers into traffic relay nodes
A new Mirai-based modular Linux botnet, Evooo1Bot, is targeting internet-facing gateway devices to transform them into SOCKS5 traffic relay nodes.
Hackers arrested over €30M bank fraud
Four individuals were arrested in Brazil and three charged in Europe for exploiting a service provider vulnerability to withdraw funds from Commerzbank customer accounts, totaling €30 million.
AmnesiaStealer macOS malware steals data and controls browser sessions
A new Rust-based macOS infostealer, AmnesiaStealer, is harvesting user passwords, keychain information, browser data, and Safari cookies.