Monday, July 27 2026

NEWS ROUNDUP – 23rd February 2026

admin

Ransomware disrupted University of Mississippi Medical Center clinics while Japan’s Advantest investigated a network intrusion. CISA warned BeyondTrust CVE-2026-1731 is exploited in ransomware, and a critical Grandstream VoIP flaw enables root RCE. PayPal reported customer-data exposure from an application error, and an Android AI media editor leaked millions of files, alongside indictments for ATM jackpotting.

Read More

NEWS ROUNDUP – 13th February 2026

admin

Over the past 48 hours, CISA added four exploited vulnerabilities to the KEV catalog and issued an ICS advisory on Siemens SINEC NMS. Odido confirmed a customer data leak, while SmarterTools disclosed ransomware after an auth-bypass on an unpatched VM. Researchers flagged active exploitation of a critical BeyondTrust RCE and reported nation-state use of Google Gemini for campaigns this week.

Read More

NEWS ROUNDUP – 11th February 2026

admin

Active exploitation of SolarWinds Web Help Desk led to Velociraptor deployment, while the European Commission investigated a breach in its mobile device management environment. Singapore detailed a coordinated telco response to UNC3886. CISA added six known-exploited vulnerabilities, and Microsoft patched six exploited zero-days. BeyondTrust disclosed an unauthenticated RCE. Courts sentenced a fugitive tied to a $73M pig-butchering scheme in absentia.

Read More

NEWS ROUNDUP – 4th February 2026

admin

CISA warned on Avation Light Engine Pro OT risk as CERT-FR prioritised weekly patches. Investigators tracked Notepad++ updater hijacking and coercive Scattered Lapsus ShinyHunters tactics. Major incidents included Coinbase contractor misuse, NationStates breach downtime, and an Iron Mountain data-theft claim. CISA added SolarWinds Web Help Desk RCE to KEV while Metro and Office exploits circulated across Europe, Americas, and APAC.

Read More

NEWS ROUNDUP – 14th January 2026

admin

Under rapid patch pressure, defenders are juggling exploited flaws in common enterprise and developer services while real-world disruption hits hospitals, utilities, and large consumer platforms. The practical priority is sequencing: isolate exposed edge systems, validate logs and backups, then patch and hunt for pre-fix exploitation artifacts. Intelligence signals also show more “trusted channel” lures via messaging apps, expanding monitoring beyond email.

Read More
1 2 3 5