Latest Cybersecurity Threats

Real-time threat intelligence from trusted sources

A recent case involving a minor in Maine has resulted in jail time and is being viewed as a significant moment for federal law enforcement regarding violent extremist crime. This case, referred to as '764', marks a first-of-its-kind legal outcome and is expected to influence how similar cases are handled in the future. Researchers tracking the development believe it will create a ripple effect across the landscape of violent extremism, potentially leading to more stringent measures and responses from law enforcement agencies. The implications of this case extend beyond the individual involved, as it could set precedents for dealing with youth and extremism in the United States.

Read Original
Actively Exploited

Recent reports indicate that SonicWall's SMA 1000 series devices are vulnerable to multiple zero-day exploits, allowing unauthorized remote code execution (RCE). This follows a series of attacks earlier this summer that targeted two other zero-day vulnerabilities in SonicWall's edge devices. The implications of this vulnerability are significant, as it could allow attackers to gain control over affected systems without any authentication. Organizations using these devices need to take immediate action to safeguard their networks, as the vulnerabilities are being actively exploited. Users are advised to monitor for updates from SonicWall and apply patches as soon as they are released to mitigate potential risks.

Read Original

OpenLeash has introduced a new security feature that acts as a safeguard against risky actions taken by AI agents. This tool monitors the actions of AI systems and can block those that pose clear risks. In situations where the intent of the AI is ambiguous, OpenLeash will prompt a human for approval before proceeding. This approach is particularly important as AI becomes more integrated into various applications, potentially leading to unintended consequences. By adding this layer of human oversight, OpenLeash aims to reduce the likelihood of harmful actions while maintaining the efficiency of AI operations. The development underscores the growing need for responsible AI deployment and oversight in technology.

Read Original

The Federal Communications Commission (FCC) is taking steps to enhance consumer protection against robocalls. They are asking consumers to evaluate their telecom providers’ efforts in blocking these unwanted calls. This initiative aims to empower users while also holding providers accountable for their anti-robocall measures. Additionally, the FCC has removed 14 phone service providers from U.S. networks for failing to comply with existing robocalling regulations. This move underscores the FCC's commitment to reducing the prevalence of robocalls, which can often lead to scams and fraud, affecting millions of Americans.

Read Original

The Sality botnet, which has been operating for 23 years, has finally been dismantled by cybersecurity experts and authorities. This Russia-based botnet was notorious for its peer-to-peer infrastructure, which allowed it to evade detection and disruption efforts for an extended period. It has been linked to various cybercrimes, including the distribution of malware and the theft of sensitive information. The takedown of Sality is significant as it represents a major victory in the fight against long-standing cyber threats. Its removal is expected to reduce the incidence of malware infections and enhance overall internet security for users worldwide.

Read Original

The UK government is taking significant steps to enhance its cybersecurity by introducing amendments to the Cyber Security and Resilience Bill. These changes will empower ministers to restrict access to technology providers deemed high-risk for critical infrastructure. This move comes as supply chain attacks are becoming more frequent and sophisticated, posing serious risks to national security and public safety. By limiting the involvement of potentially dangerous tech suppliers, the UK aims to protect essential services and maintain the integrity of its digital infrastructure. This decision affects various sectors, including telecommunications, energy, and transportation, where secure and reliable technology is vital.

Read Original
Actively Exploited

A Russian man has been extradited to the United States in connection with a malware campaign that targeted around 80,000 freelance users. This malware was designed to steal personal information and payment details, impacting individuals who rely on freelance platforms for work. The case highlights ongoing concerns about cybercrime targeting vulnerable online communities. With the rise of remote work, freelancers often face unique risks, making them attractive targets for cybercriminals. This incident serves as a reminder for freelancers to be vigilant about their online security and to take steps to protect their personal information.

Read Original
Actively Exploited

A group known as Gambling Goblin has successfully compromised several Brazilian government websites to manipulate search engine optimization (SEO) and redirect traffic to gambling sites. This incident raises significant concerns about the security of government domains, as attackers are exploiting these trusted platforms to promote illegal gambling activities. The breach not only undermines the integrity of government websites but also puts users at risk of engaging with potentially unsafe gambling services. Authorities need to take immediate action to secure these websites and prevent further exploitation. This incident serves as a reminder of the vulnerabilities that even government entities face in the digital landscape.

Read Original

A cybercrime group known as Gambling Goblin has been targeting Brazilian government and educational websites by installing malicious Apache modules on their servers. This operation, which Check Point Research has been tracking since mid-2025, redirects users from these sites to pages promoting online gambling and sports betting. The attackers are likely Chinese-speaking, and their activities raise concerns about the security of public web infrastructure in Brazil. This incident not only affects the integrity of government and educational institutions but also poses risks to users who may unknowingly interact with these compromised sites. The situation highlights the ongoing challenges in cybersecurity for public entities and the need for robust security measures.

Read Original

Hackers have executed a Border Gateway Protocol (BGP) hijack to redirect traffic meant for Softaculous, allowing them to deliver a malicious update for Virtualizor. This incident has compromised at least five out of thirty-four Virtualizor hypervisors at a hosting provider, granting the attackers root access to these systems. The attack window is reported to have occurred on August 28. This breach raises concerns for users relying on Virtualizor for virtualization management, as the malicious update could lead to unauthorized control over their servers. Organizations using this software should take immediate steps to assess their systems for vulnerabilities and potential intrusions.

Read Original

Rockwell Automation has issued patches for over a dozen vulnerabilities affecting several of its products, including RSLinx Classic, ArmorStart, ControlFLASH, and FactoryTalk. This move comes after security researchers identified weaknesses that could potentially be exploited by attackers, putting users at risk. The vulnerabilities could allow unauthorized access or manipulation of industrial control systems, which could lead to serious operational disruptions. Companies using these products are urged to apply the patches promptly to safeguard their systems. The updates are essential to maintaining the security and integrity of industrial operations, especially as cyber threats continue to evolve.

Read Original

Dropbox has alerted some of its users that their accounts were compromised due to a vulnerability in Lenovo's email verification system. Attackers exploited this flaw to create fake Lenovo IDs, allowing them to gain unauthorized access to Dropbox accounts. This breach impacts users who may have linked their Dropbox accounts to Lenovo services, raising concerns about the security of personal information and files stored on the platform. The incident underscores the need for both companies to enhance their security measures and for users to remain vigilant about their account security. Affected users should consider changing their passwords and enabling two-factor authentication to mitigate future risks.

Read Original

Anthropic has introduced a new security system called Enterprise Frontier Safeguards (EFS) aimed at protecting its enterprise clients from potential misuse of its technology. This system features zero data retention, meaning that user data is not stored, which could help mitigate risks related to data breaches. Additionally, EFS includes automated monitoring to quickly identify and respond to any misuse of the platform. This move comes in response to past security incidents and aims to bolster the company's commitment to safe AI use. By implementing these safeguards, Anthropic seeks to reassure clients that their data and usage are protected, which is increasingly important in today’s digital landscape.

Read Original

SonicWall has issued security updates to fix two serious vulnerabilities affecting its Secure Mobile Access (SMA) 1000 series VPN appliances. These flaws, identified as CVE-2026-83548 and another not specified in the article, have already been exploited in zero-day attacks. The first vulnerability, CVE-2026-83548, has a maximum severity score of 10.0 and allows attackers to execute server-side request forgery (SSRF) attacks before authentication. This means that unauthorized users could potentially access sensitive internal resources. Organizations using these VPN appliances are urged to apply the updates immediately to protect their systems from potential exploitation.

Read Original

OpenAI's Astra has reached a significant milestone by demonstrating the ability to independently identify and exploit zero-day vulnerabilities in various well-protected systems. This capability raises serious concerns as it could enable attackers to breach security measures that are typically considered strong. The implications of this development are profound, as it suggests that advanced AI models can now autonomously discover weaknesses in critical software and systems, potentially leading to widespread security issues. Companies and organizations that rely on such defenses need to reassess their security protocols to guard against these newly identified risks. The situation emphasizes the need for continuous monitoring and updating of security systems to stay ahead of potential exploitation.

Read Original
Page 1 of 381Next