Skip to content
AttackFeed by Joe Wagner | Cybersecurity News from Across the Internet

AttackFeed by Joe Wagner

Cybersecurity News from Across the Internet

  • Attack/News Feeds
  • Gov Alerts/ISAC Feeds
  • Vulnerability Alerts
  • Privacy/Governance Feeds
  • Fraud Feeds
  • iOS App
  • Android App
AttackFeed by Joe Wagner | Microsoft Patches 138 Vulnerabilities, Including DNS and Netlogon RCE Flaws  - The Hacker News
Attack Feeds
Microsoft Patches 138 Vulnerabilities, Including DNS and Netlogon RCE Flaws  – The Hacker News
May 13, 2026
AttackFeed by Joe Wagner | Cisco Confirms Active Exploitation of Two Catalyst SD-WAN Manager Vulnerabilities  - The Hacker News
Attack Feeds
Cisco Confirms Active Exploitation of Two Catalyst SD-WAN Manager Vulnerabilities  – The Hacker News
March 5, 2026
AttackFeed by Joe Wagner | Daybreak is OpenAI’s answer to the AI arms race in cybersecurity  - CyberScoop
Attack Feeds
Daybreak is OpenAI’s answer to the AI arms race in cybersecurity  – CyberScoop
May 13, 2026
AttackFeed by Joe Wagner|DPRK-Linked Hackers Use GitHub as C2 in Multi-Stage Attacks Targeting South Korea  – The Hacker News
Attack Feeds
DPRK-Linked Hackers Use GitHub as C2 in Multi-Stage Attacks Targeting South Korea  – The Hacker News
April 7, 2026
AttackFeed by Joe Wagner | House Republicans roll out national privacy bill  - CyberScoop
Attack Feeds
House Republicans roll out national privacy bill  – CyberScoop
April 22, 2026
AttackFeed by Joe Wagner | GrafanaGhost Vulnerability Allows Data Theft via AI Injection  - Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds
GrafanaGhost Vulnerability Allows Data Theft via AI Injection  – Hackread – Cybersecurity News, Data Breaches, AI and More
April 7, 2026

Infosecurity Europe: Why Burnout in Cybersecurity Demands Risk-Based Response –

Posted on May 27, 2026 By Joe-W No Comments on Infosecurity Europe: Why Burnout in Cybersecurity Demands Risk-Based Response –
Infosecurity Europe: Why Burnout in Cybersecurity Demands Risk-Based Response –
Privacy/Governance Feed

Cybermindz warns that cybersecurity burnout is a growing risk, urging organizations to move beyond wellness initiatives and adopt a measurable, risk-based approach to workforce stress – Read More  –  

Malicious npm Package Stole Files From Claude AI User Directory via GitHub  – The Hacker News

Posted on May 27, 2026 By [email protected] (The Hacker News) No Comments on Malicious npm Package Stole Files From Claude AI User Directory via GitHub  – The Hacker News
Malicious npm Package Stole Files From Claude AI User Directory via GitHub  – The Hacker News
Attack Feeds

Cybersecurity researchers have discovered a new malicious package on the npm registry that comes with information stealing capabilities. According to OX Security, the package, named “mouse5212-super-formatter,” is designed to upload files from “/mnt/user-data,” a dedicated directory used by Anthropic’s Claude artificial intelligence (AI) tool to handle uploads and outputs in the background. The  – Read … Read More “Malicious npm Package Stole Files From Claude AI User Directory via GitHub  – The Hacker News” »

Grandoreiro Malware and BTMOB RAT Campaigns Target Windows and Android Users  – The Hacker News

Posted on May 27, 2026 By [email protected] (The Hacker News) No Comments on Grandoreiro Malware and BTMOB RAT Campaigns Target Windows and Android Users  – The Hacker News
Grandoreiro Malware and BTMOB RAT Campaigns Target Windows and Android Users  – The Hacker News
Attack Feeds

Latin America and Europe become the target of two banking trojan campaigns that are designed to infect Windows and Android devices with Grandoreiro and BTMOB malware, respectively. That’s according to new findings from WatchGuard and ESET, which have observed the two malware families being used to single out companies in Spain, Portugal, and Mexico, as … Read More “Grandoreiro Malware and BTMOB RAT Campaigns Target Windows and Android Users  – The Hacker News” »

How Can MSSPs Scale Threat Detection Without Burning Out Their Analysts?  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 27, 2026 By Owais Sultan No Comments on How Can MSSPs Scale Threat Detection Without Burning Out Their Analysts?  – Hackread – Cybersecurity News, Data Breaches, AI and More
How Can MSSPs Scale Threat Detection Without Burning Out Their Analysts?  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Disclosure: This article was provided by ANY.RUN. The information and analysis presented are based on their research and findings.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

3 SOC Steps that Shut Down Incident Risks Early  – The Hacker News

Posted on May 27, 2026 By [email protected] (The Hacker News) No Comments on 3 SOC Steps that Shut Down Incident Risks Early  – The Hacker News
3 SOC Steps that Shut Down Incident Risks Early  – The Hacker News
Attack Feeds

Most organizations still picture cyber defense as a fortress problem: build stronger walls, add more guards, buy another detection engine. But modern incidents rarely crash through the front gate. They drift in disguised as routine activity, hide inside legitimate processes, and quietly accumulate risk long before anyone labels them an “incident.” That changes the role … Read More “3 SOC Steps that Shut Down Incident Risks Early  – The Hacker News” »

Link11 is fully committed to Europe and is opening a Customer Excellence Hub in Lisbon  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 27, 2026 By CyberNewswire No Comments on Link11 is fully committed to Europe and is opening a Customer Excellence Hub in Lisbon  – Hackread – Cybersecurity News, Data Breaches, AI and More
Link11 is fully committed to Europe and is opening a Customer Excellence Hub in Lisbon  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Frankfurt am Main, Germany, 27th May 2026, CyberNewswire  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

CrowdStrike disrupts Glassworm botnet that preyed on open-source supply chain  – CyberScoop

Posted on May 27, 2026 By Greg Otto No Comments on CrowdStrike disrupts Glassworm botnet that preyed on open-source supply chain  – CyberScoop
Attack Feeds

CrowdStrike has dismantled the Glassworm botnet in an operation aided by Google and Shadowserver, stripping the operators’ access to infrastructure that helped threat actors infect hundreds of pieces of open-source software with malware since early 2025, the company said Tuesday.  The coordinated effort involved the simultaneous takedown of four attacker-controlled servers that were designed to … Read More “CrowdStrike disrupts Glassworm botnet that preyed on open-source supply chain  – CyberScoop” »

CrowdStrike disrupts Glassworm botnet that preyed on open-source supply chain  – CyberScoop

Posted on May 27, 2026 By Greg Otto No Comments on CrowdStrike disrupts Glassworm botnet that preyed on open-source supply chain  – CyberScoop
CrowdStrike disrupts Glassworm botnet that preyed on open-source supply chain  – CyberScoop
Attack Feeds

CrowdStrike has dismantled the Glassworm botnet in an operation aided by Google and Shadowserver, stripping the operators’ access to infrastructure that helped threat actors infect hundreds of pieces of open-source software with malware since early 2025, the company said Tuesday.  The coordinated effort involved the simultaneous takedown of four attacker-controlled servers that were designed to … Read More “CrowdStrike disrupts Glassworm botnet that preyed on open-source supply chain  – CyberScoop” »

CrowdStrike, Google Take Down Glassworm Botnet –

Posted on May 27, 2026 By Joe-W No Comments on CrowdStrike, Google Take Down Glassworm Botnet –
CrowdStrike, Google Take Down Glassworm Botnet –
Privacy/Governance Feed

Operators of the malicious Glassworm botnet have been targeting software developers since at least early 2025 – Read More  –  

GlassWorm Malware Takedown Disrupts Developer Supply Chain Attack Infrastructure  – The Hacker News

Posted on May 27, 2026 By [email protected] (The Hacker News) No Comments on GlassWorm Malware Takedown Disrupts Developer Supply Chain Attack Infrastructure  – The Hacker News
GlassWorm Malware Takedown Disrupts Developer Supply Chain Attack Infrastructure  – The Hacker News
Attack Feeds

CrowdStrike, in partnership with Google and the Shadowserver Foundation, has announced the simultaneous disruption of all command-and-control (C2) channels associated with GlassWorm, a persistent software chain campaign targeting software developers through malicious packages and extensions. “Since at least early 2025, GlassWorm operators have systematically targeted software developers, a  – Read More  – The Hacker News 

All Major LLMs Exposed to Multi-Turn Manipulation, Warn Researchers –

Posted on May 27, 2026 By Joe-W No Comments on All Major LLMs Exposed to Multi-Turn Manipulation, Warn Researchers –
All Major LLMs Exposed to Multi-Turn Manipulation, Warn Researchers –
Privacy/Governance Feed

Post Content – Read More  –  

Gitea Vulnerability Exposes Private Container Images without Authentication  – The Hacker News

Posted on May 27, 2026 By [email protected] (The Hacker News) No Comments on Gitea Vulnerability Exposes Private Container Images without Authentication  – The Hacker News
Gitea Vulnerability Exposes Private Container Images without Authentication  – The Hacker News
Attack Feeds

Cybersecurity researchers have disclosed a security flaw in Gitea, an open-source, self-hosted platform for version control, that allows unauthenticated remote attackers to pull private container images from Gitea deployments without requiring an account, password, or other credentials. The vulnerability, tracked as CVE-2026-27771 (CVSS score: N/A), affects all versions of Gitea prior to 1.26.2  – Read … Read More “Gitea Vulnerability Exposes Private Container Images without Authentication  – The Hacker News” »

5 Steps to Managing Shadow AI Tools Without Slowing Down Employees  – The Hacker News

Posted on May 27, 2026 By [email protected] (The Hacker News) No Comments on 5 Steps to Managing Shadow AI Tools Without Slowing Down Employees  – The Hacker News
5 Steps to Managing Shadow AI Tools Without Slowing Down Employees  – The Hacker News
Attack Feeds

When an employee installs an AI writing assistant, connects a coding copilot to their IDE, or starts summarizing meetings with a new browser tool, they are doing exactly what a productive employee should do: finding faster ways to work. Across most organizations today, employees are running three to five AI tools on any given day. … Read More “5 Steps to Managing Shadow AI Tools Without Slowing Down Employees  – The Hacker News” »

Thousands of Fake FIFA Domains Target World Cup Fans –

Posted on May 27, 2026 By Joe-W No Comments on Thousands of Fake FIFA Domains Target World Cup Fans –
Thousands of Fake FIFA Domains Target World Cup Fans –
Privacy/Governance Feed

Group-IB uncovered Ghost Stadium phishing and 4300 fake FIFA World Cup domains targeting fans – Read More  –  

Building a crypto-agile KMS: how CryptoBind KMS prepares you for post-quantum migration – JISA Softech Pvt Ltd

Posted on May 27, 2026 By Aakash Chaudhary No Comments on Building a crypto-agile KMS: how CryptoBind KMS prepares you for post-quantum migration – JISA Softech Pvt Ltd
Building a crypto-agile KMS: how CryptoBind KMS prepares you for post-quantum migration – JISA Softech Pvt Ltd
Privacy/Governance Feed

The Quantum computing threat or time horizon is now an engineering time gone. In 2024, NIST published its initial… The post Building a crypto-agile KMS: how CryptoBind KMS prepares you for post-quantum migration appeared first on JISA Softech Pvt Ltd.  – Read More  – JISA Softech Pvt Ltd 

BYOK, HYOK, and BYOE explained: choosing the right key control model for your cloud strategy – JISA Softech Pvt Ltd

Posted on May 27, 2026 By Aakash Chaudhary No Comments on BYOK, HYOK, and BYOE explained: choosing the right key control model for your cloud strategy – JISA Softech Pvt Ltd
BYOK, HYOK, and BYOE explained: choosing the right key control model for your cloud strategy – JISA Softech Pvt Ltd
Privacy/Governance Feed

In the fast-growing environment of cloud adoption, one question often comes into the Board’s mind, who are the ones… The post BYOK, HYOK, and BYOE explained: choosing the right key control model for your cloud strategy appeared first on JISA Softech Pvt Ltd.  – Read More  – JISA Softech Pvt Ltd 

68% of UK Firms Plan to Increase Cyber Spending as AI Risks Rise –

Posted on May 27, 2026 By Joe-W No Comments on 68% of UK Firms Plan to Increase Cyber Spending as AI Risks Rise –
68% of UK Firms Plan to Increase Cyber Spending as AI Risks Rise –
Privacy/Governance Feed

UK firms plan higher cyber spending as AI adoption raises security concerns – Read More  –  

Designing secure access with ZTNA  – All Feed

Posted on May 27, 2026 By Joe-W No Comments on Designing secure access with ZTNA  – All Feed
Designing secure access with ZTNA  – All Feed
Gov/ISAC Feeds

New guidance explains how to design Zero Trust Network Access architectures aligned with zero trust principles and not built on old trust assumptions. – Read More – All Feed 

AI Chatbot Recommendations Redirect Users to Cryptojacking Malware Sites  – The Hacker News

Posted on May 27, 2026 By [email protected] (The Hacker News) No Comments on AI Chatbot Recommendations Redirect Users to Cryptojacking Malware Sites  – The Hacker News
AI Chatbot Recommendations Redirect Users to Cryptojacking Malware Sites  – The Hacker News
Attack Feeds

Microsoft has warned of an active cryptojacking campaign that makes use of artificial intelligence (AI) chatbot interactions as a mechanism for surfacing malicious download sites. “This emerging delivery technique extends social engineering beyond conventional search results and increases the visibility of malicious software recommendations,” Microsoft Defender Experts and the Microsoft  – Read More  – The … Read More “AI Chatbot Recommendations Redirect Users to Cryptojacking Malware Sites  – The Hacker News” »

PureLogs Variant Steals Data via Purchase Order Lures –

Posted on May 27, 2026 By Joe-W No Comments on PureLogs Variant Steals Data via Purchase Order Lures –
PureLogs Variant Steals Data via Purchase Order Lures –
Privacy/Governance Feed

FortiGuard Labs detailed a PureLogs campaign using JavaScript, PowerShell and process hollowing – Read More  –  

Trojanized Gemini and Claude Installers Target Developers Via SEO Poisoning  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 26, 2026 By Deeba Ahmed No Comments on Trojanized Gemini and Claude Installers Target Developers Via SEO Poisoning  – Hackread – Cybersecurity News, Data Breaches, AI and More
Trojanized Gemini and Claude Installers Target Developers Via SEO Poisoning  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Cybercriminals are using SEO poisoning and fake Gemini and Claude installer sites to infect developers with fileless malware and steal data.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

White House charts new course for federal agencies and cybersecurity logging  – CyberScoop

Posted on May 26, 2026 By Tim Starks No Comments on White House charts new course for federal agencies and cybersecurity logging  – CyberScoop
White House charts new course for federal agencies and cybersecurity logging  – CyberScoop
Attack Feeds

The White House has updated rules for federal agencies to keep logs of significant cyber activities in their networks, touting it as a measure to cut back on red tape and focus on how cybersecurity risks have evolved. The Office of Management and Budget memorandum, released Friday, replaces a 2021 memo signed by then-President Joe … Read More “White House charts new course for federal agencies and cybersecurity logging  – CyberScoop” »

Apple open-sources quantum-resistant encryption code  – CyberScoop

Posted on May 26, 2026 By Greg Otto No Comments on Apple open-sources quantum-resistant encryption code  – CyberScoop
Apple open-sources quantum-resistant encryption code  – CyberScoop
Attack Feeds

Apple has released quantum-resistant cryptographic code and the mathematical verification tools it developed to prove the code’s correctness, making them publicly available for independent review and broader use across the industry. The release includes implementations of two quantum-secure algorithms, ML-KEM and ML-DSA, along with the formal verification libraries and tools Apple created to validate their … Read More “Apple open-sources quantum-resistant encryption code  – CyberScoop” »

Claude Mythos AI Identified 10,000+ Software Vulnerabilities in One Month  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 26, 2026 By Deeba Ahmed No Comments on Claude Mythos AI Identified 10,000+ Software Vulnerabilities in One Month  – Hackread – Cybersecurity News, Data Breaches, AI and More
Claude Mythos AI Identified 10,000+ Software Vulnerabilities in One Month  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Anthropic says its Claude Mythos AI identified more than 10,000 software vulnerabilities in one month, including critical flaws in open-source code.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 Countries  – The Hacker News

Posted on May 26, 2026 By [email protected] (The Hacker News) No Comments on MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 Countries  – The Hacker News
MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 Countries  – The Hacker News
Attack Feeds

The Iranian hacking group known as MuddyWater has been linked to a new campaign affecting at least nine organizations across nine countries on four continents in the first quarter of 2026. The activity targeted industrial and electronics manufacturing, education and public-sector bodies, financial services, and professional services, per the Threat Hunter Team from Symantec and … Read More “MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 Countries  – The Hacker News” »

FBI warns of Kali365 phishing kit that breaks into Microsoft 365 accounts – no password required  – GRAHAM CLULEY

Posted on May 26, 2026 By Graham Cluley No Comments on FBI warns of Kali365 phishing kit that breaks into Microsoft 365 accounts – no password required  – GRAHAM CLULEY
FBI warns of Kali365 phishing kit that breaks into Microsoft 365 accounts – no password required  – GRAHAM CLULEY
Attack Feeds

So, you’ve enabled multi-factor authentication. You’ve taught your staff never to type their passwords into dodgy-looking login pages. Surely your Microsoft 365 accounts are safe now? Well, think again. Read more in my article on the Hot for Security blog.  – Read More  – GRAHAM CLULEY 

Anthropic: Mythos finds more than 10,000 software flaws in first month  – CyberScoop

Posted on May 26, 2026 By Greg Otto No Comments on Anthropic: Mythos finds more than 10,000 software flaws in first month  – CyberScoop
Anthropic: Mythos finds more than 10,000 software flaws in first month  – CyberScoop
Attack Feeds

Anthropic said its month-old Project Glasswing initiative has uncovered more than 10,000 high- or critical-severity software vulnerabilities across systemically important code, a finding the company says has shifted the central problem in cybersecurity from discovering flaws to verifying and patching them. The findings, drawn from partner reports and independent evaluations, mark one of the first … Read More “Anthropic: Mythos finds more than 10,000 software flaws in first month  – CyberScoop” »

Chinese Threat Actors Ditch Static Phishing Pages for Live Credential Interception –

Posted on May 26, 2026 By Joe-W No Comments on Chinese Threat Actors Ditch Static Phishing Pages for Live Credential Interception –
Chinese Threat Actors Ditch Static Phishing Pages for Live Credential Interception –
Privacy/Governance Feed

Almost all organizations impersonated by Chinese phishing platforms are non-Chinese entities, suggesting operators deliberately avoid domestic targets – Read More  –  

BTMOB Android RAT Spreads Through No-Code Builder Tooling –

Posted on May 26, 2026 By Joe-W No Comments on BTMOB Android RAT Spreads Through No-Code Builder Tooling –
BTMOB Android RAT Spreads Through No-Code Builder Tooling –
Privacy/Governance Feed

BTMOB Android RAT sold as a service with a no-code builder for fast, regional phishing lures – Read More  –  

Microsoft Patches SharePoint RCE Flaw CVE-2026-45659 Across Server Versions  – The Hacker News

Posted on May 26, 2026 By [email protected] (The Hacker News) No Comments on Microsoft Patches SharePoint RCE Flaw CVE-2026-45659 Across Server Versions  – The Hacker News
Microsoft Patches SharePoint RCE Flaw CVE-2026-45659 Across Server Versions  – The Hacker News
Attack Feeds

Microsoft has rolled out updates to fix a remote code execution vulnerability impacting SharePoint that could be exploited by bad actors in attacks without requiring any specialized conditions to be met. The vulnerability, tracked as CVE-2026-45659, carries a CVSS score of 8.8. It has been assigned an important severity. “Deserialization of untrusted data in Microsoft … Read More “Microsoft Patches SharePoint RCE Flaw CVE-2026-45659 Across Server Versions  – The Hacker News” »

New AI DDoS Attacks Are Smarter. Learn How to Fight Back in This Webinar  – The Hacker News

Posted on May 26, 2026 By [email protected] (The Hacker News) No Comments on New AI DDoS Attacks Are Smarter. Learn How to Fight Back in This Webinar  – The Hacker News
New AI DDoS Attacks Are Smarter. Learn How to Fight Back in This Webinar  – The Hacker News
Attack Feeds

Every single day, hackers are finding new ways to crash websites and steal data. But right now, something has changed. Hackers are no longer working alone. They are now using powerful Artificial Intelligence (AI) tools to make their attacks faster, stronger, and much harder to stop. According to recent updates from The Hacker News, bad … Read More “New AI DDoS Attacks Are Smarter. Learn How to Fight Back in This Webinar  – The Hacker News” »

MFA Prompt Bombing: Why Your Second Factor Isn’t Saving You  – The Hacker News

Posted on May 26, 2026 By [email protected] (The Hacker News) No Comments on MFA Prompt Bombing: Why Your Second Factor Isn’t Saving You  – The Hacker News
MFA Prompt Bombing: Why Your Second Factor Isn’t Saving You  – The Hacker News
Attack Feeds

Multi-factor authentication (MFA) was supposed to close a critical gap in identity security. It meant that, even if an attacker possessed the account credentials, they couldn’t log in without the second factor. While that logic was sound, attackers have now figured out that they don’t need to steal the second factor: they just need the … Read More “MFA Prompt Bombing: Why Your Second Factor Isn’t Saving You  – The Hacker News” »

India’s CERT-In Sets 12-Hour Patch Deadline for Exposed Flaws –

Posted on May 26, 2026 By Joe-W No Comments on India’s CERT-In Sets 12-Hour Patch Deadline for Exposed Flaws –
India’s CERT-In Sets 12-Hour Patch Deadline for Exposed Flaws –
Privacy/Governance Feed

CERT-In urges 12-hour patching of exposed flaws as AI compresses exploitation timelines – Read More  –  

CERT-In Mandates 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted Attacks  – The Hacker News

Posted on May 26, 2026 By [email protected] (The Hacker News) No Comments on CERT-In Mandates 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted Attacks  – The Hacker News
CERT-In Mandates 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted Attacks  – The Hacker News
Attack Feeds

The Indian Computer Emergency Response Team (CERT-In) has issued new guidelines requiring organizations to patch critical security vulnerabilities in internet-exposed systems within 12 hours of being flagged where “feasible” to safeguard against potential threats stemming from threat actors’ abuse of artificial intelligence (AI) tools and large language models (LLMs) to automate vulnerability  – Read More  … Read More “CERT-In Mandates 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted Attacks  – The Hacker News” »

Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO Poisoning  – The Hacker News

Posted on May 26, 2026 By [email protected] (The Hacker News) No Comments on Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO Poisoning  – The Hacker News
Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO Poisoning  – The Hacker News
Attack Feeds

The Iranian state-sponsored threat actor known as Nimbus Manticore (aka Screening Serpens and UNC1549) has been attributed to a fresh campaign using lures impersonating organizations in the aviation and software sectors across the U.S., Europe, and the Middle East following the joint U.S.-Israeli military campaign against the country in late February 2026. The activity, besides … Read More “Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO Poisoning  – The Hacker News” »

Iran-Linked Hackers Target US Aviation with Phishing and SEO Poisoning Campaign –

Posted on May 26, 2026 By Joe-W No Comments on Iran-Linked Hackers Target US Aviation with Phishing and SEO Poisoning Campaign –
Iran-Linked Hackers Target US Aviation with Phishing and SEO Poisoning Campaign –
Privacy/Governance Feed

Iran’s Nimbus Manticore pushes AI-built MiniFast backdoor via phishing and SEO poisoning – Read More  –  

KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike  – The Hacker News

Posted on May 26, 2026 By [email protected] (The Hacker News) No Comments on KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike  – The Hacker News
KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike  – The Hacker News
Attack Feeds

A now-patched high-severity security flaw affecting Digital Knowledge KnowledgeDeliver, a Learning Management System (LMS) popular in Japan, was exploited as a zero-day to deliver the Godzilla web shell and ultimately facilitate the deployment of Cobalt Strike Beacon. The vulnerability, tracked as CVE-2026-5426 (CVSS score: 7.5), stems from the use of hard-coded ASP.NET machine keys, leading … Read More “KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike  – The Hacker News” »

Re: Dovecot Security Advisory OXDC-2026-0002  – Full Disclosure

Posted on May 25, 2026 By Joe-W No Comments on Re: Dovecot Security Advisory OXDC-2026-0002  – Full Disclosure
Re: Dovecot Security Advisory OXDC-2026-0002  – Full Disclosure
Alert Feeds

  Posted by Noel Butler via Fulldisclosure on May 25 So when is the fix for dovecot 2.3 source code due to be released? Since by your wording by not including the first detected versions, it must be assumed 2.3 is affected, and as no EOL has been published or announced for 2.3.x, and as … Read More “Re: Dovecot Security Advisory OXDC-2026-0002  – Full Disclosure” »

Multiple vulnerabilities in Sparx Pro Cloud Server and Enterprise Architect  – Full Disclosure

Posted on May 25, 2026 By Joe-W No Comments on Multiple vulnerabilities in Sparx Pro Cloud Server and Enterprise Architect  – Full Disclosure
Multiple vulnerabilities in Sparx Pro Cloud Server and Enterprise Architect  – Full Disclosure
Alert Feeds

  Posted by Adamczyk Blazej on May 25 ━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━ Multiple vulnerabilities in Sparx Pro Cloud Server and Enterprise Architect ━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━ General… – Read More  – Full Disclosure 

[SECURITY ADVISORY] CVE-2026-34473 – Unauthenticated DoS in 17+ ZTE Router Models (140K+ Devices)  – Full Disclosure

Posted on May 25, 2026 By Joe-W No Comments on [SECURITY ADVISORY] CVE-2026-34473 – Unauthenticated DoS in 17+ ZTE Router Models (140K+ Devices)  – Full Disclosure
[SECURITY ADVISORY] CVE-2026-34473 – Unauthenticated DoS in 17+ ZTE Router Models (140K+ Devices)  – Full Disclosure
Alert Feeds

  Posted by m.nageh on May 25 —–BEGIN SECURITY ADVISORY—– Advisory ID: MONX-2026-001 CVE ID: CVE-2026-34473 Title: Unauthenticated Denial of Service via Oversized POST Body in ZTE Router CGILua Parser Affected: 17+ ZTE ZXHN router models (~140,000 publicly exposed devices) CVSS Score: 7.5 (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H) Date: 2026-05-20 Author: Mina Nageh Salalma (Monx Research) Contact: minanageh379 () … Read More “[SECURITY ADVISORY] CVE-2026-34473 – Unauthenticated DoS in 17+ ZTE Router Models (140K+ Devices)  – Full Disclosure” »

[SECURITY ADVISORY] CVE-2026-34472 – ZTE ZXHN H188A V6 Authentication Bypass via Pre-Login Wizard  – Full Disclosure

Posted on May 25, 2026 By Joe-W No Comments on [SECURITY ADVISORY] CVE-2026-34472 – ZTE ZXHN H188A V6 Authentication Bypass via Pre-Login Wizard  – Full Disclosure
[SECURITY ADVISORY] CVE-2026-34472 – ZTE ZXHN H188A V6 Authentication Bypass via Pre-Login Wizard  – Full Disclosure
Alert Feeds

  Posted by m.nageh on May 25 —–BEGIN SECURITY ADVISORY—– Advisory ID: MONX-2026-002 CVE ID: CVE-2026-34472 Title: ZTE ZXHN H188A V6 – Authentication Bypass via Pre-Login Wizard Credential Leakage Affected: ZTE ZXHN H188A V6.0.10P2_TE, V6.0.10P3N3_TE Date: 2026-05-20 Author: Mina Nageh Salalma (Monx Research) Contact: minanageh379 () gmail com Public URL:… – Read More  – Full Disclosure 

[SECURITY ADVISORY] CVE-2026-34474 – ZTE H298A/H108N Unauthenticated Admin Credential Exposure  – Full Disclosure

Posted on May 25, 2026 By Joe-W No Comments on [SECURITY ADVISORY] CVE-2026-34474 – ZTE H298A/H108N Unauthenticated Admin Credential Exposure  – Full Disclosure
[SECURITY ADVISORY] CVE-2026-34474 – ZTE H298A/H108N Unauthenticated Admin Credential Exposure  – Full Disclosure
Alert Feeds

  Posted by m.nageh on May 25 —–BEGIN SECURITY ADVISORY—– Advisory ID: MONX-2026-003 CVE ID: CVE-2026-34474 Title: ZTE ZXHN H298A / H108N – Unauthenticated Admin Password & WLAN Credential Exposure Affected: ZTE ZXHN H298A 1.1, ZTE ZXHN H108N 2.6 (EOL; no patch planned) Date: 2026-05-20 Author: Mina Nageh Salalma (Monx Research) Contact: minanageh379 () gmail … Read More “[SECURITY ADVISORY] CVE-2026-34474 – ZTE H298A/H108N Unauthenticated Admin Credential Exposure  – Full Disclosure” »

[SECURITY ADVISORY] CVE-2021-21735 – ZTE ZXHN H168N V3.5 Unauthenticated Admin Credential Leak  – Full Disclosure

Posted on May 25, 2026 By Joe-W No Comments on [SECURITY ADVISORY] CVE-2021-21735 – ZTE ZXHN H168N V3.5 Unauthenticated Admin Credential Leak  – Full Disclosure
[SECURITY ADVISORY] CVE-2021-21735 – ZTE ZXHN H168N V3.5 Unauthenticated Admin Credential Leak  – Full Disclosure
Alert Feeds

  Posted by m.nageh on May 25 —–BEGIN SECURITY ADVISORY—– Advisory ID: MONX-2021-001 CVE ID: CVE-2021-21735 Title: ZTE ZXHN H168N V3.5 – Unauthenticated Wizard Credential Disclosure to Full Admin Compromise Affected: ZTE ZXHN H168N V3.5 Date: 2026-05-20 Author: Mina Nageh Salalma (Monx Research) Contact: minanageh379 () gmail com Public URL:… – Read More  – Full Disclosure 

SSRF in Anthropic mcp-server-fetch and Microsoft playwright-mcp — publicly disclosed via GitHub issues  – Full Disclosure

Posted on May 25, 2026 By Joe-W No Comments on SSRF in Anthropic mcp-server-fetch and Microsoft playwright-mcp — publicly disclosed via GitHub issues  – Full Disclosure
SSRF in Anthropic mcp-server-fetch and Microsoft playwright-mcp — publicly disclosed via GitHub issues  – Full Disclosure
Alert Feeds

  Posted by outreach on May 25 —–BEGIN SECURITY ADVISORY—– Title: Server-Side Request Forgery (SSRF) in Anthropic mcp-server-fetch and Microsoft playwright-mcp Author: Syed Anas Mohiuddin <anasmohiuddinsyed () gmail com> Date: May 25, 2026 CVSS: 7.5 (HIGH) — AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N References: Already public via GitHub issues (see below) == AFFECTED PRODUCTS == 1. Anthropic mcp-server-fetch (modelcontextprotocol/servers) All … Read More “SSRF in Anthropic mcp-server-fetch and Microsoft playwright-mcp — publicly disclosed via GitHub issues  – Full Disclosure” »

FBI Chief Kash Patel’s Clothing Store Hacked in ClickFix Infostealer Attack  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 25, 2026 By Deeba Ahmed No Comments on FBI Chief Kash Patel’s Clothing Store Hacked in ClickFix Infostealer Attack  – Hackread – Cybersecurity News, Data Breaches, AI and More
FBI Chief Kash Patel’s Clothing Store Hacked in ClickFix Infostealer Attack  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Hackers compromised FBI Chief Kash Patel’s clothing store in a ClickFix attack that tricked macOS users into installing infostealer malware.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain Chaos  – The Hacker News

Posted on May 25, 2026 By [email protected] (The Hacker News) No Comments on ⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain Chaos  – The Hacker News
⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain Chaos  – The Hacker News
Attack Feeds

Monday recap. Same mess, new week. A sketchy dev tool got people pwned, old bugs came back from the dead, and security products somehow needed protecting from themselves. A bunch of companies spent the week checking old boxes and forgotten servers they should’ve patched years ago. Good times. Phishing crews are getting smarter too – … Read More “⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain Chaos  – The Hacker News” »

Nigel Farage’s Russian hack claim ‘without any merit’, former NCSC chief says  – Data and computer security | The Guardian

Posted on May 25, 2026 By Daniel Boffey Chief reporter No Comments on Nigel Farage’s Russian hack claim ‘without any merit’, former NCSC chief says  – Data and computer security | The Guardian
Nigel Farage’s Russian hack claim ‘without any merit’, former NCSC chief says  – Data and computer security | The Guardian
Attack Feeds

Ciaran Martin says Reform UK leader’s allegation over Guardian report on £5m gift ‘entirely unsubstantiated’ Nigel Farage’s claim that a Russian hack was behind a Guardian report on the £5m gift he received from a crypto billionaire has been described as “without any merit” by a former head of the National Cyber Security Centre. Ciaran … Read More “Nigel Farage’s Russian hack claim ‘without any merit’, former NCSC chief says  – Data and computer security | The Guardian” »

Netherlands Seizes 800 Servers, Arrests 2 for Aiding Cyberattacks  – Krebs on Security

Posted on May 25, 2026 By BrianKrebs No Comments on Netherlands Seizes 800 Servers, Arrests 2 for Aiding Cyberattacks  – Krebs on Security
Netherlands Seizes 800 Servers, Arrests 2 for Aiding Cyberattacks  – Krebs on Security
Attack Feeds

Authorities in the Netherlands have arrested the co-owners of two related Internet hosting companies for operating IT infrastructure used by Russia to carry out cyberattacks, influence operations and disinformation campaigns inside the European Union. The two men were the focus of a 2025 KrebsOnSecurity story about how their hosting companies had assumed control over the … Read More “Netherlands Seizes 800 Servers, Arrests 2 for Aiding Cyberattacks  – Krebs on Security” »

Netherlands Busts Bulletproof Hosting Network Linked to Disinformation and Cybercrime  – Hackread – Cybersecurity News, Data Breaches, AI and More

Posted on May 25, 2026 By Waqas No Comments on Netherlands Busts Bulletproof Hosting Network Linked to Disinformation and Cybercrime  – Hackread – Cybersecurity News, Data Breaches, AI and More
Netherlands Busts Bulletproof Hosting Network Linked to Disinformation and Cybercrime  – Hackread – Cybersecurity News, Data Breaches, AI and More
Attack Feeds

Dutch authorities arrested two suspects after dismantling a bulletproof hosting network linked to cybercrime, disinfo, and Russian sanctions evasion.  – Read More  – Hackread – Cybersecurity News, Data Breaches, AI and More 

The Alert Firehose Finally Meets Its Match  – The Hacker News

Posted on May 25, 2026 By [email protected] (The Hacker News) No Comments on The Alert Firehose Finally Meets Its Match  – The Hacker News
The Alert Firehose Finally Meets Its Match  – The Hacker News
Attack Feeds

Ask a cybersecurity pro about Network Detection and Response (NDR) and you might still hear “Noisy,” “Too much data.” But ask the teams running NDR that includes agentic AI capabilities and you’ll hear they’re actually using it to catch threats earlier, triage faster, and chase fewer false positives. The old complaint lingers in part because … Read More “The Alert Firehose Finally Meets Its Match  – The Hacker News” »

Posts pagination

1 2 … 41 Next
  • Attack Feeds
  • Privacy/Governance Feed
  • Gov/ISAC Feeds
  • Alert Feeds
  • Privacy Policy
  • Wagner Cybersecurity

Copyright © 2026 AttackFeed by Joe Wagner.

Theme: Oceanly News Dark by ScriptsTown

We are using cookies for analytics purposes only.  We do not store, track or sell user information.

You can find out more about which cookies we are using or switch them off in .

AttackFeed by Joe Wagner
Powered by  GDPR Cookie Compliance
Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.

Strictly Necessary Cookies

Strictly Necessary Cookie should be enabled at all times so that we can save your preferences for cookie settings.