← Latest brief

Security news.

·Afternoon Brief

Today's security landscape is dominated by active exploitation targeting critical infrastructure and enterprise appliances, led by zero-day attacks on SonicWall and unpatched AhsayCBS platforms. Federal agencies face urgent remediation deadlines as CISA flags multiple vulnerabilities leveraged by Chinese state-sponsored threat actors, while law enforcement continues its aggressive crackdown on major cybercrime rings including ShinyHunters and Qilin.

BLEEPINGEXPLOIT
9h agoREAD

Max-Severity SonicWall SMA1000 Flaw Under Active Attack

Threat actors are actively exploiting CVE-2026-102255, a maximum-severity flaw affecting SonicWall SMA1000 appliances patched just days ago.

THNKEV
9h agoREAD

Flax Typhoon Exploits Five Flaws as CISA Adds Them to KEV Catalog

CISA has ordered federal agencies to patch five vulnerabilities exploited by the Chinese threat actor Flax Typhoon, including legacy flaws such as CVE-2015-3306 in ProFTPD.

BLEEPINGEXPLOIT
4h agoREAD

Unpatched AhsayCBS Flaws Exploited to Deploy Web Shells and Miners

Attackers are weaponizing unpatched vulnerabilities in the AhsayCBS backup platform, including CVE-2026-105133, to gain remote access and drop cryptocurrency miners disguised as legitimate software.

BLEEPINGRCE
13h agoREAD

Citrix Urges Immediate Patching for Critical NetScaler RCE Flaw

Citrix has issued an urgent advisory warning administrators to patch CVE-2026-107406, a critical remote code execution and denial-of-service vulnerability impacting NetScaler ADC and Gateway appliances.

THNRCE
8h agoREAD

Working Pre-Auth RCE Exploit Released for AnyDesk Linux

Researchers have publicly released a functional exploit for an unauthenticated remote code execution vulnerability in AnyDesk Linux that grants root privileges prior to session approval.

WATCHTOWR LABSRCE
4h agoREAD

PaperCut Hit by Multiple Pre-Auth RCE Bugs and Patch Bypasses

Security researchers detailed an unauthenticated remote code execution chain and multiple patch bypasses affecting PaperCut servers, tracked under CVE-2026-82077, CVE-2026-82078, and CVE-2026-81578.

THNPOLICY
3h agoREAD

FBI Arrests Suspect in ShinyHunters Extortion Operation

Law enforcement has taken another suspected ShinyHunters hacker into custody following the extortion group's recent breach of the FBI's job application portal.

BLEEPINGRANSOMWARE
5h agoREAD

Core Qilin Ransomware Member Extradited and Arrested in Germany

German authorities have arrested an alleged high-ranking Russian member of the notorious Qilin ransomware syndicate following extradition from Japan.

Generated twice daily from public security RSS feeds. Informational only.