vulnerability Data Exposure Flaws Threaten Dify AI Platform Used by 1 Million Apps A significant vulnerability has been identified in the Dify AI platform, a widely used LLMOps solution powering over one million applications across numerous industries. The flaws, detailed as CVE-2026-41947 through CVE-… SecurityWeek · Jun 23, 2026 Critical CVE-2026-41947CVE-2026-41948CVE-2026-41949aillmopsdata-exposure
threat-intel Scattered Spider members plead guilty to hacking Transport for London Two members of the Scattered Spider cybercrime group, Thalha Jubair and Owen Flowers, have pleaded guilty to hacking the Transport for London (TfL) systems in 2024, resulting in significant operational disruptions and fi… BleepingComputer · Jun 23, 2026 High UKcyberattackcritical infrastructuredata breach
threat-intel Compromise kids online safety bill unveiled by House leaders, with key omission A revised version of the Kids Online Safety Act (KOSA) has been unveiled by the House Energy and Commerce Committee, aiming for bipartisan support. However, a key element – a ‘duty of care’ provision requiring platforms… The Record · Jun 23, 2026 Medium USonline safetychildren's privacyai regulation
threat-intel Fake AI Agent Skill Passed Security Scans and Reportedly Reached 26,000 Agents This article details an experiment conducted by AIR Security to demonstrate the vulnerabilities within current skill-scanning methods for AI agent skills within popular marketplaces. The firm created a seemingly harmless… The Hacker News · Jun 23, 2026 Medium USaiagentskills
threat-intel Trump Order Sets 2030 Deadline for Federal Post-Quantum Crypto Migration This article reports on a new executive order issued by President Trump setting deadlines for federal agencies to migrate to post-quantum cryptography. The order prioritizes protecting U.S. data from future decryption by… The Hacker News · Jun 23, 2026 High USpost-quantumcryptographyquantum computing
supply-chain GitHub Updates actions/checkout to Block Common Pwn Request Attack Patterns GitHub is implementing a security update to its "actions/checkout" action to mitigate a common supply chain attack vector. The update, effective June 18, 2026, will block the execution of malicious code from untrusted fo… The Hacker News · Jun 23, 2026 High supply-chaingithubactions
threat-intel The Exploit Doesn't Exist. You Can Still Prove It Works Against You This BleepingComputer article discusses the rapidly decreasing timeframes for vulnerabilities to be exploited, driven by advancements in AI like Anthropic’s Mythos model. Traditional patching strategies are becoming inef… BleepingComputer · Jun 23, 2026 High CVE-2025-29824USaivulnerabilityexploitation
data-breach LastPass confirms data breach in Klue supply chain attack LastPass announced that hackers accessed customer data from its Salesforce environment after stealing the company's OAuth tokens in the Klue supply chain attack earlier this month. BleepingComputer · Jun 23, 2026 High
threat-intel SocGholish Takedown Highlights Malicious TDS Threats A coordinated international law enforcement operation, part of Operation Endgame, successfully disrupted SocGholish, a decade-old malware framework used as an initial-access broker by cybercriminal groups like Evil Corp.… Dark Reading · Jun 23, 2026 High NLtdssmalwareaffiliate
vulnerability Eight-Year-Old Samsung KNOX Flaw Exposed Millions of Galaxy Devices to Kernel Attacks Researchers discovered a long-standing vulnerability (CVE-2026-20971) in Samsung’s KNOX kernel across numerous Galaxy devices, from S9 to S25. The flaw, a race-condition use-after-free (UAF), allowed for potential kernel… SecurityWeek · Jun 23, 2026 High uafkernelrace condition
threat-intel Two Scattered Spider members plead guilty over cyberattack that crippled London transit Two members of the Scattered Spider cybercrime gang have pleaded guilty to a prolonged cyberattack against London's transport authority, resulting in significant disruption and data exposure. The attack, which occurred i… The Record · Jun 23, 2026 High UKUScyberattacklondondata breach
threat-intel CISO Conversations: Carl Froggett – Combining CISO and CIO at Deep Instinct This SecurityWeek article details Carl Froggett’s career transition from a technology engineering background at Citi to becoming a CISO, highlighting his combined CISO and CIO role. Froggett emphasizes the interconnected… SecurityWeek · Jun 23, 2026 Medium cisociocybersecurity
threat-intel FortiBleed Attackers Turn Firewalls Into Credentials Stealers as Heist Persists The FortiBleed campaign, spearheaded by threat actors likely originating from Russia, has compromised over 430,000 FortiGate firewalls globally, resulting in the theft of more than 110 million credentials. Attackers util… Dark Reading · Jun 23, 2026 High USRUINcredential theftfirewallauthentication
Hacker hijacks Brazil’s national alert system, sending “misanthropy” to millions of phones Emergency alert systems work because people believe them. Every time one of these systems issues a false alert - whether through negligence or a deliberate attack - trust erodes. Read more in my article on the Hot for Se… Graham Cluley · Jun 23, 2026
phishing Webinar: Why email security teams are drowning in alerts Phishing, BEC, and account takeover attacks continue to overwhelm security teams with alerts and investigations. This webinar explores how behavioral AI can help automate detection and response workflows, reducing alert… BleepingComputer · Jun 23, 2026 Medium
Algerian Man Extradited to US for Running Cybercrime Marketplaces 26-year-old Abdellah Belmili faces up to 30 years in prison for allegedly operating the marketplaces Market0Day and Spoxy. The post Algerian Man Extradited to US for Running Cybercrime Marketplaces appeared first on Secu… SecurityWeek · Jun 23, 2026
vulnerability Siemens Products using OpenSSL A stack-based buffer overflow vulnerability (CVE-2025-15467) has been identified in various Siemens products utilizing OpenSSL. This vulnerability allows a remote attacker to potentially cause a denial-of-service or exec… CISA Advisories · Jun 23, 2026 High CVE-2025-15467DEUSCNopensslbuffer overflowdenial of service
vulnerability Impact of Linux Kernel vulnerabilities on B&R products View CSAF Summary B&R is aware of publicly reported vulnerabilities affecting the Linux kernel versions shipped with the products listed as affected in the advisory. Successful local exploitation of these vulnerabilities… CISA Advisories · Jun 23, 2026 High CVE-2026-31431CVE-2026-43284CVE-2026-46333
vulnerability Siemens WinCC Certificate Manager A vulnerability has been identified in Siemens WinCC Certificate Manager, specifically versions V16 through V21, that allows an attacker to potentially extract sensitive information due to insufficient protection of key… CISA Advisories · Jun 23, 2026 High CVE-2026-24349GEcertificatekey managementindustrial control systems
vulnerability ABB Freelance Security Lock This report details a critical vulnerability in ABB’s Freelance Security Lock software, allowing attackers to bypass security measures and potentially gain access to underlying operating system functions. The vulnerabili… CISA Advisories · Jun 23, 2026 Critical CVE-2025-7064WOkeyboardsecuritybypass