Cybersecurity Feed
Updated: 17/04/2026, 02:23:32 β€’ Items: 150
Keywords
CVE- ClickFix Malware Leak Attack 0-day zero-day RCE remote code execution privilege escalation LPE kernel exploit PoC exploit weaponized exploit KEV CISA KEV critical vulnerability supply chain attack dependency hijacking DLL sideloading code injection memory corruption SQL injection SSRF XSS sandbox escape hypervisor escape ransomware data exfiltration lateral movement APT nation state Cobalt Strike Sliver Metasploit malware campaign phishing kit loader infostealer rootkit persistence command and control C2 backdoor Fortinet FortiOS FortiGate GlobalProtect Palo Alto Cortex XDR XSIAM Prisma PAN-OS CrowdStrike SentinelOne Mandiant Elastic Security Azure AD KQL Active Directory Kerberos Golden Ticket pass-the-hash Okta identity breach session hijack exploit
BleepingComputer β€” 17/04/2026, 01:49:31

New Microsoft Defender β€œRedSun” zero-day PoC grants SYSTEM privileges Critical Click here

darkreading β€” 17/04/2026, 01:12:45

North Korea Uses ClickFix to Target macOS Users' Data Click here

SANS Internet Storm Center, InfoCON: green β€” 17/04/2026, 00:50:29

[Guest Diary] Compromised DVRs and Finding Them in the Wild, (Thu, Apr 16th) Critical Click here

darkreading β€” 17/04/2026, 00:37:26

'Harmless' Global Adware Transforms Into an AV Killer Click here

The Hacker News β€” 16/04/2026, 23:22:00

Newly Discovered PowMix Botnet Hits Czech Workers Using Randomized C2 Traffic Click here

Cyber Security News β€” 16/04/2026, 23:01:29

SpankRAT Exploits Windows Explorer Processes for Stealth and Delayed Detection Medium Click here

BleepingComputer β€” 16/04/2026, 22:28:06

Hackers exploit Marimo flaw to deploy NKAbuse malware from Hugging Face Click here

Business Insights Cybersecurity Blog by Bitdefender β€” 16/04/2026, 22:24:08

Bitdefender at Black Hat Asia 2026: Disrupt Attacker Playbooks Click here

BleepingComputer β€” 16/04/2026, 19:39:11

New ATHR vishing platform uses AI voice agents for automated attacks Click here

Threat Intelligence β€” 16/04/2026, 19:30:00

Defending Your Enterprise When AI Models Can Find Vulnerabilities Faster Than Ever Critical Click here

The Hacker News β€” 16/04/2026, 18:35:00

ThreatsDay Bulletin: Defender 0-Day,Β SonicWall Brute-Force, 17-Year-Old Excel RCE and 15 More Stories Critical Click here

SecurityWeek β€” 16/04/2026, 18:10:36

Data Breach at Tennessee Hospital Affects 337,000 High Click here

SOC Prime β€” 16/04/2026, 18:05:26

UAC-0247 Attack Detection: AGINGFLY Malware Targets Hospitals, Local Governments, and FPV Operators in Ukraine Medium Click here

SecurityWeek β€” 16/04/2026, 17:52:02

Artemis Emerges From Stealth With $70 Million in Funding Click here

All CISA Advisories β€” 16/04/2026, 17:30:00

Horner Automation Cscape and XL4, XL7 PLC CVE-2026-6284 Click here

All CISA Advisories β€” 16/04/2026, 17:30:00

Delta Electronics ASDA-Soft CVE-2026-5726 Click here

SecurityWeek β€” 16/04/2026, 17:21:39

Splunk Enterprise Update Patches Code Execution Vulnerability High Click here

Cyber Security News β€” 16/04/2026, 17:19:24

Two U.S. Nationals Sentenced for Running Laptop Farm for DPRK Remote Workers Click here

Cyber Security News β€” 16/04/2026, 17:02:40

New UAC-0247 Campaign Steals Browser and WhatsApp Data From Hospitals and Governments Medium Click here

Cyber Security News β€” 16/04/2026, 17:02:26

Critical Cisco ISE Vulnerabilities Let Remote Attackers Execute Malicious Code CVE-2026-20147 Critical Click here

Cyber Security News β€” 16/04/2026, 16:51:55

McGraw Hill Confirms Data Breach Exposing 13.5 Million Users’ Personal Data Click here

SecurityWeek β€” 16/04/2026, 16:51:27

Microsoft Paid Out $2.3 Million at Zero Day Quest 2026 Hacking Contest Critical Click here

Cyble β€” 16/04/2026, 16:32:21

The Week in Vulnerabilities: Azure AI, Spring AI, Fortinet, and Critical ICS Exposure CVE-2026-32213 Critical Click here

SecurityWeek β€” 16/04/2026, 16:17:14

NIST Prioritizes NVD Enrichment for CVEs in CISA KEV, Critical Software Critical Click here

BleepingComputer β€” 16/04/2026, 16:05:09

Data breach at edtech giant McGraw Hill affects 13.5 million accounts Click here

The Hacker News β€” 16/04/2026, 15:50:00

Obsidian Plugin Abuse Delivers PHANTOMPULSE RAT in Targeted Finance, Crypto Attacks Click here

Cyber Security News β€” 16/04/2026, 15:37:54

Hackers Abuse n8n AI Workflow Automation to Deliver Malware Through Trusted Webhooks Click here

SecurityWeek β€” 16/04/2026, 15:34:31

Cisco Patches Critical Vulnerabilities in Webex, ISE Click here

Threat Research & Intelligence Archives - Sekoia.io Blog β€” 16/04/2026, 15:14:12

From APT28 to RePythonNET: automating .NET malware analysis Click here

SecurityWeek β€” 16/04/2026, 15:00:16

Ransomware Hits Automotive Data Expert Autovista High Click here

SecurityWeek β€” 16/04/2026, 14:03:54

Claude Code, Gemini CLI, GitHub Copilot Agents Vulnerable to Prompt Injection via Comments Click here

BleepingComputer β€” 16/04/2026, 14:02:13

US nationals behind DPRK IT worker 'laptop farm' sent to prison Click here

The Hacker News β€” 16/04/2026, 11:50:00

UAC-0247 Targets Ukrainian Clinics and Government in Data-Theft Malware Campaign Click here

darkreading β€” 16/04/2026, 11:30:00

6-Year Ransomware Campaign Targets Turkish Homes & SMBs High Click here

Blog β€” 16/04/2026, 10:30:00

Frontier AI for Defenders: CrowdStrike and OpenAI TAC Click here

BleepingComputer β€” 16/04/2026, 04:05:09

Critical Nginx UI auth bypass flaw now actively exploited in the wild Critical Click here

BleepingComputer β€” 16/04/2026, 03:27:17

New AgingFly malware used in attacks on Ukraine govt, hospitals Click here

darkreading β€” 16/04/2026, 03:15:18

Critical MCP Integration Flaw Puts NGINX at Risk Click here

BleepingComputer β€” 16/04/2026, 02:03:50

WordPress plugin suite hacked to push malware to thousands of sites Click here

The Hacker News β€” 15/04/2026, 22:39:00

n8n Webhooks Abused Since October 2025 to Deliver Malware via Phishing Emails Click here

BleepingComputer β€” 15/04/2026, 20:21:05

CISA flags Windows Task Host vulnerability as exploited in attacks Medium Click here

Threat Intelligence β€” 15/04/2026, 19:30:00

The German Cyber Criminal Überfall: Shifts in Europe's Data Leak Landscape High Click here

The Hacker News β€” 15/04/2026, 18:26:00

Actively Exploited nginx-ui Flaw (CVE-2026-33032) Enables Full Nginx Server Takeover CVE-2026-33032 Critical Click here

The Hacker News β€” 15/04/2026, 18:07:00

April Patch Tuesday Fixes Critical Flaws Across SAP, Adobe, Microsoft, Fortinet, and More CVE-2026-27681 Medium Click here

Cyble β€” 15/04/2026, 17:32:11

MiningDropper – A Global Modular Android Malware Campaign Operating at Scale Critical Click here

darkreading β€” 15/04/2026, 17:30:00

Microsoft, Salesforce Patch AI Agent Data Leak Flaws Click here

Blogs on Information Technology, Network & Cybersecurity | Seqrite β€” 15/04/2026, 16:51:25

Your Brand is Being Impersonated Right Now, and Your Customers are Paying the Price Click here

The Hacker News β€” 15/04/2026, 14:10:00

Microsoft Issues Patches for SharePoint Zero-Day and 168 Other New Vulnerabilities Critical Click here

SANS Internet Storm Center, InfoCON: green β€” 15/04/2026, 05:49:53

Scanning for AI Models, (Tue, Apr 14th) Click here

Krebs on Security β€” 15/04/2026, 03:17:59

Patch Tuesday, April 2026 Edition CVE-2026-32201 Critical Click here

darkreading β€” 15/04/2026, 02:52:07

Privilege Elevation Dominates Massive Microsoft Patch Update Click here

darkreading β€” 15/04/2026, 01:50:34

EDR-Killer Ecosystem Expansion Requires Stronger BYOVD Defenses Click here

security - Ars Technica β€” 15/04/2026, 00:41:25

UK gov's Mythos AI tests help separate cybersecurity threat from hype Click here

SANS Internet Storm Center, InfoCON: green β€” 14/04/2026, 23:16:09

Microsoft Patch Tuesday April 2026., (Tue, Apr 14th) CVE-2026-33827 Critical Click here

darkreading β€” 14/04/2026, 21:36:14

War Game Exercise Demonstrates How Social Media Manipulation Works Click here

The Hacker News β€” 14/04/2026, 21:27:00

New PHP Composer Flaws Enable Arbitrary Command Execution β€” Patches Released CVE-2026-40176 Click here

The Hacker News β€” 14/04/2026, 20:00:00

AI-Driven Pushpaganda Scam Exploits Google Discover to Spread Scareware and Ad Fraud Click here

All CISA Advisories β€” 14/04/2026, 17:30:00

CISA Adds Two Known Exploited Vulnerabilities to Catalog CVE-2009-0238 Critical Click here

The Hacker News β€” 14/04/2026, 15:30:00

Analysis of 216M Security Findings Shows a 4x Increase In Critical Risk (2026 Report) Click here

The Hacker News β€” 14/04/2026, 14:05:00

108 Malicious Chrome Extensions Steal Google and Telegram Data, Affecting 20,000 Users Click here

The Hacker News β€” 14/04/2026, 11:20:00

ShowDoc RCE Flaw CVE-2025-0520 Actively Exploited on Unpatched Servers CVE-2025-0520 Critical Click here

The Hacker News β€” 14/04/2026, 11:09:00

CISA Adds 6 Known Exploited Flaws in Fortinet, Microsoft, and Adobe Software CVE-2026-21643 Critical Click here

Blog β€” 14/04/2026, 10:30:00

April 2026 Patch Tuesday: Two Zero-Days and Eight Critical Vulnerabilities Among 164 CVEs Click here

darkreading β€” 14/04/2026, 03:18:09

Why Orgs Need to Test Networks to Withstand DDoS Attacks During Peak Loads Click here

darkreading β€” 14/04/2026, 02:59:31

CSA: CISOs Should Prepare for Post-Mythos Exploit Storm Click here

darkreading β€” 14/04/2026, 02:22:38

Adobe Patches Actively Exploited Zero-Day That Lingered for Months Critical Click here

The Hacker News β€” 13/04/2026, 22:45:00

JanelaRAT Malware Targets Latin American Banks with 14,739 Attacks in Brazil in 2025 Click here

darkreading β€” 13/04/2026, 20:38:12

APT41 Delivers 'Zero-Detection' Backdoor to Harvest Cloud Credentials Click here

Cyble β€” 13/04/2026, 18:44:40

Black Hat Asia 2026 Is Coming to Singapore β€” Here’s What the Threat Landscape Looks Like Ahead of It High Click here

Check Point Research β€” 13/04/2026, 18:41:17

13th April – Threat Intelligence Report CVE-2026-1340 Critical Click here

SANS Internet Storm Center, InfoCON: green β€” 13/04/2026, 18:32:50

Scans for EncystPHP Webshell, (Mon, Apr 13th) Click here

The Hacker News β€” 13/04/2026, 18:31:00

⚑ Weekly Recap: Fiber Optic Spying, Windows Rootkit, AI Vulnerability Hunting and More Critical Click here

All CISA Advisories β€” 13/04/2026, 17:30:00

CISA Adds Seven Known Exploited Vulnerabilities to Catalog CVE-2012-1854 Critical Click here

The Hacker News β€” 13/04/2026, 17:11:00

Your MTTD Looks Great. Your Post-Alert Gap Doesn't Critical Click here

The Hacker News β€” 13/04/2026, 14:45:00

North Korea's APT37 Uses Facebook Social Engineering to Deliver RokRAT Malware Click here

The Hacker News β€” 12/04/2026, 09:55:00

Adobe Patches Actively Exploited Acrobat Reader Flaw CVE-2026-34621 CVE-2026-34621 Critical Click here

The Hacker News β€” 11/04/2026, 11:32:00

Citizen Lab: Law Enforcement Used Webloc to Track 500 Million Devices via Ad Data Click here

darkreading β€” 11/04/2026, 00:51:55

Your Next Breach Will Look Like Business as Usual Click here

darkreading β€” 10/04/2026, 18:30:00

Can Anthropic Keep Its Exploit-Writing AI Out of the Wrong Hands? Click here

Cyble β€” 10/04/2026, 17:48:58

When Geopolitical Conflict Spills into Cyberspace β€” How US Organizations Should Respond High Click here

The Hacker News β€” 10/04/2026, 13:07:00

Marimo RCE Flaw CVE-2026-39987 Exploited Within 10 Hours of Disclosure CVE-2026-39987 High Click here

SANS Internet Storm Center, InfoCON: green β€” 10/04/2026, 12:10:46

Obfuscated JavaScript or Nothing, (Thu, Apr 9th) Click here

The Hacker News β€” 10/04/2026, 11:58:00

Backdoored Smart Slider 3 Pro Update Distributed via Compromised Nextend Servers Click here

darkreading β€” 10/04/2026, 02:20:37

Russia's 'Fancy Bear' APT Continues Its Global Onslaught Click here

darkreading β€” 10/04/2026, 01:43:34

'BlueHammer' Windows Zero-Day Exploit Signals Microsoft Bug Disclosure Issues Critical Click here

darkreading β€” 09/04/2026, 23:45:00

Do Ceasefires Slow Cyberattacks? History Suggests Not Click here

The Hacker News β€” 09/04/2026, 21:53:00

UAT-10362 Targets Taiwanese NGOs with LucidRook Malware in Spear-Phishing Campaigns Click here

The Hacker News β€” 09/04/2026, 18:27:00

ThreatsDay Bulletin: Hybrid P2P Botnet, 13-Year-Old Apache RCE and 18 More Stories High Click here

All CISA Advisories β€” 09/04/2026, 17:30:00

Contemporary Controls BASC 20T CVE-2025-13926 Click here

All CISA Advisories β€” 09/04/2026, 17:30:00

GPL Odorizers GPL750 CVE-2026-4436 Click here

The Hacker News β€” 09/04/2026, 16:45:00

Adobe Reader Zero-Day Exploited via Malicious PDFs Since December 2025 Critical Click here

darkreading β€” 09/04/2026, 06:30:00

Russia's Forest Blizzard Nabs Rafts of Logins via SOHO Routers Click here

Unit 42 β€” 09/04/2026, 03:30:51

Cracks in the Bedrock: Agent God Mode Medium Click here

darkreading β€” 09/04/2026, 01:17:32

AI-Led Remediation Crisis Prompts HackerOne to Pause Bug Bounties Click here

The Hacker News β€” 08/04/2026, 23:21:00

New Chaos Variant Targets Misconfigured Cloud Deployments, Adds SOCKS Proxy Click here

The Hacker News β€” 08/04/2026, 22:00:00

Masjesu Botnet Emerges as DDoS-for-Hire Service Targeting Global IoT Devices Click here

The Hacker News β€” 08/04/2026, 19:20:00

APT28 Deploys PRISMEX Malware in Campaign Targeting Ukraine and NATO Allies Click here

darkreading β€” 08/04/2026, 19:16:29

Iranian Threat Actors Disrupt US Critical Infrastructure via Exposed PLCs Click here

Cyble β€” 08/04/2026, 18:14:37

Dual-Brain Architecture: The Cybersecurity AI Innovation That Changes Everything Click here

All CISA Advisories β€” 08/04/2026, 17:30:00

CISA Adds One Known Exploited Vulnerability to Catalog CVE-2026-1340 Critical Click here

The Hacker News β€” 08/04/2026, 17:00:00

Shrinking the IAM Attack Surface through Identity Visibility and Intelligence Platforms (IVIP) Click here

The Hacker News β€” 08/04/2026, 14:46:00

Anthropic's Claude Mythos Finds Thousands of Zero-Day Flaws Across Major Systems Critical Click here

The Hacker News β€” 08/04/2026, 13:17:00

N. Korean Hackers Spread 1,700 Malicious Packages Across npm, PyPI, Go, Rust Click here

The Hacker News β€” 08/04/2026, 09:53:00

Iran-Linked Hackers Disrupt U.S. Critical Infrastructure by Targeting Internet-Exposed PLCs Click here

Business Insights Cybersecurity Blog by Bitdefender β€” 08/04/2026, 04:20:05

Bitdefender Threat Debrief | April 2026 Click here

darkreading β€” 08/04/2026, 01:45:07

Storm-1175 Deploys Medusa Ransomware at 'High Velocity' Critical Click here

darkreading β€” 08/04/2026, 01:22:26

Grafana Patches AI Bug That Could Have Leaked User Data Click here

Krebs on Security β€” 07/04/2026, 22:32:44

Russia Hacked Routers to Steal Microsoft Office Tokens Click here

The Hacker News β€” 07/04/2026, 22:18:00

Russian State-Linked APT28 Exploits SOHO Routers in Global DNS Hijacking Campaign Click here

All CISA Advisories β€” 07/04/2026, 17:30:00

Mitsubishi Electric GENESIS64 and ICONICS Suite products CVE-2025-14815 Click here

All CISA Advisories β€” 07/04/2026, 17:30:00

Iranian-Affiliated Cyber Actors Exploit Programmable Logic Controllers Across US Critical Infrastructure CVE-2021-22681 Click here

Threat Research & Intelligence Archives - Sekoia.io Blog β€” 07/04/2026, 12:00:00

EvilTokens: an AI-augmented Phishing-as-a-Service for automating BEC fraud – Part 2 Click here

Unit 42 β€” 07/04/2026, 03:30:08

Understanding Current Threats to Kubernetes Environments Click here

darkreading β€” 07/04/2026, 03:08:53

AI-Assisted Supply Chain Attack Targets GitHub Click here

darkreading β€” 07/04/2026, 02:25:44

Axios Attack Shows How Complex Social Engineering Is Industrialized Click here

darkreading β€” 07/04/2026, 01:54:19

Fortinet Issues Emergency Patch for FortiClient Zero-Day CVE-2026-35616 Critical Click here

darkreading β€” 06/04/2026, 21:01:09

Automated Credential Harvesting Campaign Exploits React2Shell Flaw Click here

Cyble β€” 06/04/2026, 17:40:04

UK Businesses Are Being Targeted Through Their Middle East Supply Chains β€” What to Do Now High Click here

All CISA Advisories β€” 06/04/2026, 17:30:00

CISA Adds One Known Exploited Vulnerability to Catalog CVE-2026-35616 Critical Click here

Check Point Research β€” 06/04/2026, 16:51:31

6th April – Threat Intelligence Report CVE-2026-20093 Critical Click here

Blog β€” 05/04/2026, 12:30:00

How CrowdStrike Is Accelerating Exposure Evaluation as Adversaries Gain Speed Click here

Unit 42 β€” 04/04/2026, 03:30:38

When an Attacker Meets a Group of Agents: Navigating Amazon Bedrock's Multi-Agent Applications Click here

All CISA Advisories β€” 02/04/2026, 17:30:00

Siemens SICAM 8 Products CVE-2026-27663 High Click here

All CISA Advisories β€” 02/04/2026, 17:30:00

Yokogawa CENTUM VP CVE-2025-7741 Click here

All CISA Advisories β€” 02/04/2026, 17:30:00

CISA Adds One Known Exploited Vulnerability to Catalog CVE-2026-3502 Critical Click here

All CISA Advisories β€” 02/04/2026, 17:30:00

Hitachi Energy Ellipse CVE-2025-10492 High Click here

Cyble β€” 02/04/2026, 15:22:21

The Week in Vulnerabilities: AI Frameworks, VMware, and Critical ICS Exposure CVE-2026-25769 Critical Click here

Unit 42 β€” 02/04/2026, 00:00:10

Threat Brief: Widespread Impact of the Axios Supply Chain Attack Click here

All CISA Advisories β€” 01/04/2026, 17:30:00

CISA Adds One Known Exploited Vulnerability to Catalog CVE-2026-5281 Critical Click here

Unit 42 β€” 01/04/2026, 02:30:39

Weaponizing the Protectors: TeamPCP’s Multi-Stage Supply Chain Attack on Security Infrastructure High Click here

Business Insights Cybersecurity Blog by Bitdefender β€” 01/04/2026, 02:03:53

Technical Advisory: Axios npm Supply Chain Attack - Cross-Platform RAT Deployed via Compromised Maintainer Account Click here

Threat Intelligence β€” 31/03/2026, 19:30:00

North Korea-Nexus Threat Actor Compromises Widely Used Axios NPM Package in Supply Chain Attack High Click here

Check Point Research β€” 31/03/2026, 18:46:50

Operation TrueChaos: 0-Day Exploitation Against Southeast Asian Government Targets CVE-2026-3502 Critical Click here

All CISA Advisories β€” 31/03/2026, 17:30:00

PX4 Autopilot CVE-2026-1579 High Click here

All CISA Advisories β€” 31/03/2026, 17:30:00

Anritsu Remote Spectrum Monitor CVE-2026-3356 Click here

Blogs on Information Technology, Network & Cybersecurity | Seqrite β€” 31/03/2026, 11:46:41

Operation DualScript – A Multi-Stage PowerShell Malware Campaign Targeting Cryptocurrency and Financial Activity Click here

Blog β€” 31/03/2026, 10:30:00

Detecting CVE-2026-20929: Kerberos Authentication Relay via CNAME Abuse CVE-2026-20929 Click here

Cloud Threat Landscape β€” 31/03/2026, 05:30:00

Axios supply chain attack (Incident) Click here

Check Point Research β€” 30/03/2026, 18:39:01

ChatGPT Data Leakage via a Hidden Outbound Channel in the Code Execution Runtime Click here

Check Point Research β€” 30/03/2026, 18:23:08

30th March – Threat Intelligence Report CVE-2026-20131 High Click here

Cybersecurity Blog - Nextron Systems β€” 30/03/2026, 18:22:54

The AIX Blind Spot – Getting Visibility Where EDR Can’t Run Click here

All CISA Advisories β€” 30/03/2026, 17:30:00

CISA Adds One Known Exploited Vulnerability to Catalog CVE-2026-3055 Critical Click here

Threat Research & Intelligence Archives - Sekoia.io Blog β€” 30/03/2026, 12:18:07

New widespread EvilTokens kit: device code phishing as-a-service – Part 1 Click here

Check Point Research β€” 29/03/2026, 15:38:45

AI Threat Landscape Digest January-February 2026 High Click here

Blogs on Information Technology, Network & Cybersecurity | Seqrite β€” 27/03/2026, 19:21:48

Weaponizing Legitimate Low-Level Tools: How Ransomware Evades Antivirus Protections High Click here

All CISA Advisories β€” 27/03/2026, 17:30:00

CISA Adds One Known Exploited Vulnerability to Catalog CVE-2025-53521 Critical Click here

Unit 42 β€” 27/03/2026, 03:40:07

Threat Brief: March 2026 Escalation of Cyber Risk Related to Iran (Updated March 26) Click here

Unit 42 β€” 27/03/2026, 03:30:32

Converging Interests: Analysis of Threat Clusters Targeting a Southeast Asian Government Click here

Red Canary β€” 26/03/2026, 21:48:49

Scarlet Goldfinch’s year in ClickFix Click here

All CISA Advisories β€” 26/03/2026, 17:30:00

PTC Windchill Product Lifecycle Management CVE-2026-4681 High Click here

↑