Cybersecurity

China-Linked JDY Botnet Expands, Infects 1,500 Devices

The JDY botnet, used by Chinese state-sponsored hacking groups like Volt Typhoon, has rapidly expanded to over 1,500 compromised SOHO routers and IoT devices.Its...

ServiceNow Flaw Exploited in Cyber Attack

ServiceNow has patched a vulnerability allowing unauthenticated users excessive access to certain customer instances.The company detected "anomalous activity" and evidence of successful queries against...

Meta Expands AI Data Use for Feeds, Chatbots

Meta will now use data from other businesses to personalize user feeds and AI chatbot responses, expanding beyond targeted ads.The company asserts it is...

Russian Hackers Exploit Old WinRAR Flaw Against Ukraine

Two Russian-aligned hacking groups continue to exploit a patched WinRAR vulnerability to target Ukrainian organizations.The flaw, CVE-2025-8088, allows attackers to hide malicious payloads outside...

AI Gateway Flaw Exploited, Added to US List

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a severe command injection flaw in BerriAI's LiteLLM software to its Known Exploited Vulnerabilities...

Linux Kernel Flaw Lets Attackers Escalate to Root

A critical Linux kernel vulnerability (CVE-2026-23111) allows local attackers to gain root access and break out of containers.The flaw was patched upstream in February...

Critical Check Point VPN Flaw Actively Exploited

Check Point warns of active exploitation of CVE-2026-50751, a critical VPN authentication bypass vulnerability.The flaw affects Remote Access VPN deployments using the deprecated IKEv1...

Chinese Hackers Target Linux With BRICKSTORM

The China-nexus cyber espionage group VerdantBamboo deployed a BSD variant of the BRICKSTORM backdoor against Linux systems.The group compromised an Egnyte Storage Sync system...

Latest news

Kraken Named FIFA World Cup’s Official Crypto Exchange

Kraken has been named the official crypto exchange partner for the 2026 FIFA World Cup.The partnership aims to connect...

U.S. Blocks Anthropic’s Top AI Models Over Security Fears

The U.S. government ordered Anthropic to suspend foreign access to its advanced AI models, Claude Fable 5 and Claude...

Critical Splunk Vulnerability Allows Unauthenticated RCE

Splunk has patched a critical vulnerability, CVE-2026-20253, rated 9.8 on the CVSS scale, allowing unauthenticated file operations and potential...