Stay informed about the latest cybersecurity threats, vulnerabilities, malware campaigns, phishing trends, supply-chain attacks, and security advisories. This section provides timely updates and practical insights to help organizations understand emerging risks and strengthen their security posture.
18-Year-Old SCTPhantom Linux Flaw Shows How an Obscure Networking Feature Can Become a Root and Container-Escape VulnerabilityThe disclosure of CVE-2026-64564, named SCTPhantom by Tencent Zhuque Lab, demonstrates how vulnerabilities can remain hidden for years inside matur…
New WordPress Pre-Authentication XSS Shows How a Browser-Side Bug Can Escalate into Server CompromiseThe disclosure of CVE-2026-64638 highlights how a vulnerability that initially appears to be a browser-side cross-site scripting issue can develop into a much more serious …
North Carolina Ports Cyberattack Shows How IT Disruption Can Quickly Become a Supply-Chain ProblemThe cyberattack affecting North Carolina Ports demonstrates how disruption of ordinary information technology systems can rapidly translate into operational problems across ph…
Levi Strauss Cyberattack Shows How Three Compromised Employees Can Become a Corporate Data BreachThe cybersecurity incident disclosed by Levi Strauss & Co. demonstrates how social engineering can allow attackers to bypass substantial investments in perimeter security by ta…
ClickFix macOS Infostealer Shows How Social Engineering Is Evolving into Direct Cryptocurrency TheftA newly analysed ClickFix campaign targeting macOS users demonstrates how attackers are combining social engineering, credential theft and cryptocurrency transaction manipul…
Cisco’s SD-WAN and IOS XE Security Update Highlights the Risks Concentrated in Network InfrastructureCisco’s release of patches for 12 vulnerabilities affecting Catalyst SD-WAN and IOS XE Software highlights the serious consequences that software weaknesses in routers, net…
Zapscape KVM Vulnerability Shows How Nested Virtualization Can Undermine Guest-to-Host IsolationThe disclosure of a new Linux KVM vulnerability named Zapscape demonstrates how a flaw in virtual-memory management can allow a privileged attacker inside a guest virtual machin…
TONTOU Attack Shows How Interrupts Can Bypass Modern Spectre v2 DefencesThe discovery of a new speculative-execution attack known as TONTOU demonstrates that modern Spectre v2 mitigations can fail during the extremely small interval between cleaning the processor’s branch-…
Swiss Government SharePoint Breach Shows Why Patching Must Be Combined with Credential and Server RecoveryThe cyberattack affecting Microsoft SharePoint servers operated by Switzerland’s Federal Office of Information Technology and Telecommunication demonstrates how quickl…
WebKit Proxy Bypasses Show How Browser Features Can Undermine IP PrivacyThe discovery of proxy bypasses in Apple’s WebKit browser engine demonstrates how privacy protections can fail when individual browser features do not consistently follow the same network-routing polic…
Thousands of Internet-Exposed Rockwell PLCs Highlight Growing Risks to Water and Critical InfrastructureThe discovery of more than 4,400 Rockwell Automation programmable logic controllers directly accessible from the internet demonstrates how basic deployment failures cont…
CISA Flags Actively Exploited TeamCity Vulnerability Threatening CI/CD PipelinesCISA’s decision to add CVE-2026-63077 to its Known Exploited Vulnerabilities Catalog highlights the substantial security consequences of vulnerabilities affecting continuous integration and con…
Actively Exploited TeamCity Flaw Threatens Software Builds and CI/CD Supply ChainsCISA’s addition of CVE-2026-63077 to its Known Exploited Vulnerabilities Catalog highlights the serious risk created when attackers gain control of a continuous integration and continuous del…
Fake COLDCARD Security Audit Uses ScreenConnect to Gain Remote Access to Cryptocurrency UsersA phishing campaign impersonating COLDCARD demonstrates how quickly attackers can weaponise public concern surrounding a genuine security incident. Rather than exploiting the hardw…
ClickFix Campaign Uses Browser Fingerprinting to Hide macOS Infostealer AttacksThe discovery of more than 250 domains supporting a macOS-focused ClickFix campaign demonstrates how attackers are improving the infrastructure surrounding social-engineering attacks rather than…
KHunt Attack Shows How SQL Injection Can Turn an Oracle Database into a Hidden Post-Exploitation PlatformThe discovery of the KHunt post-exploitation toolkit operating directly from inside an Oracle Database demonstrates how a familiar web application weakness can escalate…
CISA Warning Highlights Active Exploitation of Langflow, N-central and Apache Tomcat VulnerabilitiesCISA’s warning regarding actively exploited vulnerabilities in IBM Langflow, N-able N-central and Apache Tomcat demonstrates how attackers continue to focus on platforms tha…
OVSwrap Linux Kernel Flaw Allows Local Users to Gain Root Through Open vSwitchA newly disclosed Linux kernel vulnerability known as OVSwrap demonstrates how a flaw in a specialised networking component can expose systems even when administrators do not believe that compone…
TP-Link Omada ZTP Vulnerabilities Show How Automated Network Provisioning Can Become an Attack PathThe discovery of 15 vulnerabilities affecting TP-Link’s Omada Zero-Touch Provisioning ecosystem demonstrates how technologies designed to simplify network deployment can crea…
QuickFox Supply-Chain Attack Delivered FDMTP Backdoor Through Official Windows InstallerThe discovery of a long-running supply-chain compromise affecting QuickFox demonstrates how attackers can transform a trusted software installer into a targeted malware-delivery channel…