ransomware Amadey, StealC malware operations disrupted in Operation Endgame action Operation Endgame, a coordinated law enforcement effort involving Microsoft, Europol, and international partners, successfully disrupted infrastructure used by the Amadey and StealC malware operations. The operation resu… BleepingComputer · Jun 24, 2026 High USCADKmalware-as-a-servicecredential theftransomware
threat-intel Exclusive: Meet AIVEX, a New Triage Model Built to Reduce Supply Chain Threat and Risk This article discusses the limitations of current vulnerability triage methods (SBOMs, VEX, and CVSS) in addressing supply chain attacks, particularly in the context of increasingly complex AI-driven systems. The author,… SecurityWeek · Jun 24, 2026 High supply chainaiautonomous robots
German rail services resume after wireless communications outage Deutsche Bahn said a nationwide disruption of railway services was tied to a malfunction in its 2G-based GSM-R communications system. The Record · Jun 24, 2026
threat-intel Securing the service desk: Why social engineering attacks keep succeeding This article highlights the ongoing success of social engineering attacks against corporate service desks, particularly by groups like Scattered Spider and the Silent Ransom Group. Attackers exploit the trust and helpful… BleepingComputer · Jun 24, 2026 High UKsocial engineeringservice deskcredential theft
vulnerability macOS Weaknesses Chained to Silently Disable Endpoint Security Agents A standard non-admin account is sufficient to conduct an attack that exploits legitimate OS behavior rather than software vulnerabilities. The post macOS Weaknesses Chained to Silently Disable Endpoint Security Agents ap… SecurityWeek · Jun 24, 2026 CVE-2026-39118
ransomware Indian auto giant Bajaj Auto hit by ransomware incident The company said in a regulatory filing that it became aware of the incident on Tuesday morning and had taken precautionary measures to contain its impact. The Record · Jun 24, 2026 High
data-breach Third DraftKings Hacker Sentenced to 18 Months in Prison A third individual, Nathan Austad, has been sentenced to 18 months in prison for his involvement in a 2022 hacking attack against DraftKings. The attack, utilizing credential stuffing, compromised over 60,000 DraftKings… SecurityWeek · Jun 24, 2026 High USALUAcredential stuffingonline gamblingcybercrime
supply-chain Cordyceps CI/CD Flaws Expose 300+ GitHub Repositories to Supply-Chain Attacks A new vulnerability, dubbed 'Cordyceps,' has been discovered in CI/CD workflows, allowing unauthorized access and control over hundreds of GitHub repositories across major tech companies. The flaw stems from overly permi… The Hacker News · Jun 24, 2026 Critical cicdsupply chaingithub
threat-intel ESET takes part in Operation Endgame to disrupt Amadey and Stealc ESET, in collaboration with Microsoft DCU and other partners, successfully disrupted the Amadey and Stealc botnets as part of Operation Endgame. These botnets, sold as a service on darknet forums, utilize a MaaS model wh… WeLiveSecurity · Jun 24, 2026 High maasbotnetdarknet
vulnerability Critical Ubiquiti Vulnerabilities in Attackers’ Crosshairs Critical vulnerabilities were discovered in Ubiquiti UniFi devices, specifically CVE-2026-34908, CVE-2026-34909, and CVE-2026-34910, allowing for unauthorized access and command injection. While patches were released in… SecurityWeek · Jun 24, 2026 Critical CVE-2026-34908CVE-2026-34909CVE-2026-34910USvulnerabilitycommand injectionauthentication
threat-intel Apple's MacOS Gap Lets Users Disable Security Tools This article details a macOS security vulnerability discovered by XM Cyber that allows standard users to disable enterprise security tools like CrowdStrike Falcon EDR and Kandji MDM without administrator privileges. The… Dark Reading · Jun 24, 2026 High CVE-2026-39118USmacosxpccdhash
vulnerability Using SASE in a Modern TIC 3.0 Solution Using SASE in a Modern TIC 3.0 Solution CISA’s guidance, The Journey to Zero Trust – Using Secure Access Service Edge in a Modern TIC 3.0 Solution, details how the Trusted Internet Connections (TIC) 3.0 initiative is hel… CISA Advisories · Jun 24, 2026
threat-intel Agentic AI Security: Wrong Context, Wrong Decisions at Machine Speed This SecurityWeek article highlights the critical importance of accurate context for agentic AI systems, particularly in security applications. The piece explains that agentic AI, relying on speed and automation, can mak… SecurityWeek · Jun 24, 2026 High USGBagentic aillmcontext
ransomware New ‘Mistic’ RAT Opens Door to Several Ransomware Families Mistic is used by Woodgnat, an initial access broker working with Qilin, Interlock, Rhysida, Akira, 8Base, and Black Basta. The post New ‘Mistic’ RAT Opens Door to Several Ransomware Families appeared first on SecurityWe… SecurityWeek · Jun 24, 2026 High
threat-intel Dawn of the Apex Agentic Adversary This article discusses a significant shift in cybersecurity driven by the emergence of "agentic" AI models capable of rapidly discovering and exploiting vulnerabilities at speeds far exceeding human capabilities. The ris… The Hacker News · Jun 24, 2026 Critical aiautomationcybersecurity
supply-chain Exploitable CI/CD Vulnerabilities Expose Millions of Repositories to Hijacking A new vulnerability, dubbed ‘Cordyceps,’ has been identified within CI/CD workflows across numerous open-source projects, allowing unauthorized access and control over developer repositories. The flaws, primarily found i… SecurityWeek · Jun 24, 2026 High ci/cdsupply chaingithub actions
threat-intel Stealthy Mistic backdoor linked to ransomware access broker KongTuke A new stealthy backdoor, dubbed Mistic, has been identified as a tool used by the initial access broker KongTuke to facilitate ransomware attacks against organizations in the insurance, education, IT, and professional se… BleepingComputer · Jun 24, 2026 High USbackdoorinitial accessransomware
BeyondTrust, LastPass Impacted by Klue-Salesforce Incident Over a dozen Klue customers have confirmed that hackers stole data from their Salesforce instances. The post BeyondTrust, LastPass Impacted by Klue-Salesforce Incident appeared first on SecurityWeek . SecurityWeek · Jun 24, 2026 High
threat-intel StrikeShark: investigating a new campaign delivering Cobalt Strike through SharkLoader A new malware family, named SharkLoader, has been identified as part of a broader campaign targeting organizations globally, including diplomatic entities, government organizations, and software development companies. Th… Securelist · Jun 24, 2026 Medium CVE-2021-26855CVE-2023-32315CVE-2024-36401IDTWHKcobalt strikeexploitloader
threat-intel DoJ Seizes Huione Cloud Account Tied to Cyber Scam Money Laundering The U.S. Department of Justice seized a cloud computing account belonging to HuiOne Group subsidiaries, following an investigation into their role in facilitating cryptocurrency-based cyber scams and money laundering ope… The Hacker News · Jun 24, 2026 Critical CACHUScryptocurrencyfraudmoney laundering