Overview of the First VPN Service 🚀 The Federal Bureau of Investigation (FBI) has released a FLASH report to share indicators of compromise (IOCs) and tactics related to the First VPN Service. Thi...
🚨 Important Security Alert! An attachment in an email impersonating DHL about a shipment contains a link to a preconfigured SimpleHelp remote access tool—an ideal starting point for attackers to e...
2026-05-22 Daily Vulns
Hitachi Energy GMS600 Vulnerability Advisory
Hitachi Energy GMS600 Vulnerability Advisory Hitachi Energy is aware of the vulnerability, CVE-2022-4304, in the OSS component OpenSSL, affecting the GMS600 versions 1.3.0 and 1.3.1. This vulnerab...
Canadian Man Arrested for Administering KimWolf DDoS Botnet
Canadian Man Arrested for Administering KimWolf DDoS Botnet 🚨 According to court documents, on April 10, 2026, U.S. authorities criminally charged Jacob Butler, aka “Dort,” 23, of Ottawa, Canada, ...
Attackers Expose Plaintext Passwords of 46k Myspace93 Users After 2021 Breach
Warning to Myspace93 Users 🚨 Users of the Myspace93 parody web art site should be cautious! A dataset leaked after a reported breach in 2021 has revealed the plaintext usernames and passwords of o...
Showboat Linux Malware Hits Middle East Telecom with SOCKS5 Proxy Backdoor
Showboat Linux Malware Hits Middle East Telecom with SOCKS5 Proxy Backdoor 🚨 Cybersecurity researchers have disclosed details of a new Linux malware dubbed Showboat that has been put to use in a c...
One Man, One AI, One Fake Persona - Inside the 5-Year Influence and Fraud 'Patriot Bait' Campaign
One Man, One AI, One Fake Persona - Inside the 5-Year Influence and Fraud ‘Patriot Bait’ Campaign A solo Russian-speaking threat actor (tracked as “bandcampro”) ran a 5-year MAGA-themed Telegram c...
Hackers Hate AI Slop Even More Than You Do
Hackers Hate AI Slop Even More Than You Do “I’m disappointed that you are working to incorporate AI garbage into the site,” one annoyed person, posting anonymously, said in an online message. This...
Critical Pre-Auth RCE in ChromaDB Threatens AI Infrastructure
Critical Pre-Auth RCE in ChromaDB Threatens AI Infrastructure 🚨 A max-severity vulnerability (CVE-2026-45829, CVSS 10.0) has been disclosed affecting ChromaDB, the widely used open-source vector d...
2026-05-21 Daily Vulns
Drupal Admins Rush to Patch Critical SQL Injection Vulnerability
Urgent Security Update for Drupal Admins 🚨 Administrators of the Drupal open-source content management platform are rushing to install an emergency patch issued today to fix a highly critical SQL ...
Apple Server Schematics Stolen in May 2026 Foxconn Cyberattack
Apple Server Schematics Stolen in May 2026 Foxconn Cyberattack 🚨 On May 12, AppleInsider reported that the ransomware group Nitrogen hacked into Foxconn facilities in North America. Initially, it ...
WantToCry Ransomware Evades Detection Through SMB Abuse
WantToCry Ransomware Evades Detection 🚨 Attacks using WantToCry ransomware are targeting exposed Server Message Block (SMB) ports and utilizing remote encryption to minimize the chance of detectio...
The Expendable Extension Name Azure VMAccess Naming Chaos, Password Resets, and a Detection Gap
The Expendable Extension Name: Azure VMAccess Naming Chaos, Password Resets, and a Detection Gap In early April, the Sysdig Threat Research Team (TRT) identified a detection flaw in the process fo...
Carding Forum B1ack's Stash Releases Millions of Stolen Credit Card Records
Major Data Breach Alert 🚨 In a recent and significant development, the dark web carding forum B1ack’s Stash has released approximately 4.6 million stolen credit card records for free. This remarka...
Trapdoor Android Ad Fraud Scheme Hits 659 Million Daily Bid Requests
Trapdoor Android Ad Fraud Scheme Hits 659 Million Daily Bid Requests 🚨 Cybersecurity researchers have disclosed details of a new ad fraud and malvertising operation dubbed Trapdoor targeting Andro...
Drupal to Release Urgent Core Security Updates on May 20, Sites Told to Prepare
Important Security Update Alert 🚨 Drupal has issued an alert stating that it intends to release a core security release for all supported branches on May 20, 2026, from 5-9 p.m. UTC. The Drupal Se...
Disrupting Fox Tempest A Cybercrime Service
Disrupting Fox Tempest: A Cybercrime Service Today, Microsoft unsealed a legal case in the US District Court for the Southern District of New York targeting a cybercrime service known as Fox Tempe...
Verizon 2026 Data Breach Investigations Report (DBIR)
Verizon 2026 Data Breach Investigations Report (DBIR) A data breach is a security incident where unauthorized individuals gain access to sensitive, protected, or confidential data. The Verizon Dat...