Cybersecurity news from across the internet
Cybersecurity news from across the internet
Ruby on Rails has released fixes for a critical Active Storage vulnerability that could let unauthenticated attackers read arbitrary files from application servers through crafted image uploads. Tracked as CVE-2026-6606…




VU#293714: Arbitrary File Overwrite in Develar app-builder (zipx.Unzip) via Symlink Following on macOS (APFS)
VU#305509: OPeNDAP Hyrax is vulnerable to SSRF and Credential Disclosure
CISA and Partners Unveil Updated Software Bill of Materials Resource That Improves Transparency, Security and Risk-Informed Decision Making
Apple Patches Everything (July 2026), (Wed, Jul 29th)
Buying TikTok views or followers? Here’s what you’re really getting
AI robocalls: Why caller ID is still lying to you
OpenAI explains how its AI agent breached Hugging Face
FTC and States Act Against Hims & Hers for Deceptive and Unlawful Privacy Practices