Cybersecurity

Drupal Urges Emergency Update by May 20

Drupal will release a critical security fix for its CMS on May 20, 2026, warning that exploits could appear "within hours or days."Patches will...

Four Malicious npm Packages Steal Data, Spread Botnet

Four malicious npm packages discovered distributing information-stealing malware and a DDoS botnet.One package contains a clone of the open-source Shai-Hulud worm leaked by TeamPCP.Attackers...

NGINX Under Active Attack After Patch Release

A critical heap buffer overflow vulnerability (CVE-2026-42945) in NGINX is being actively exploited in the wild, allowing for denial-of-service or potential remote code execution.Exploitation...

Grafana Code Breach & Extortion Attempt Revealed

Grafana disclosed a data breach where an unauthorized party accessed its GitHub and downloaded its codebase.The cybercrime group CoinbaseCartel has claimed responsibility for the...

Turla’s Kazuar Malware Evolves Into Stealthy P2P Botnet

The Russian state-sponsored group Turla (aka Secret Blizzard) has evolved its Kazuar malware into a modular, peer-to-peer botnet.This new architecture features three specialized modules—Kernel,...

Microsoft Exchange Under Attack Via New XSS Bug

Microsoft disclosed an actively exploited spoofing vulnerability tracked as CVE-2026-42897 in on-premise Exchange Server versions.The flaw allows attackers to execute arbitrary JavaScript by sending...

Cisco SD-WAN Exploited Auth Bypass Patched

Cisco patched a critical vulnerability (CVE-2026-20182) in its Catalyst SD-WAN software that has been exploited in limited attacks.The flaw, with a maximum CVSS score...

PraisonAI flaw exploited in under four hours

Attackers targeted the PraisonAI vulnerability within 3 hours and 44 minutes of its public disclosure on May 11, 2026.The flaw, CVE-2026-44338, is a missing...

Latest news

Polymarket Eyes Japan Entry Amid Global Scrutiny

Polymarket is preparing to lobby for authorization of prediction markets in Japan, aiming for approval by 2030.Japan's strict gambling...

Canadian man arrested for Kimwolf DDoS botnet

A Canadian man was arrested for allegedly operating the Kimwolf DDoS botnet, a service sold to other cybercriminals.The botnet...

AI Stock Surge Sparks Dot-Com Bubble Comparison

The AI stock surge fueling the US market shows similarities to the dot-com bubble, including widespread excitement and FOMO.A...