threat-intel India's Telegram ban hit the UAE too. Here's how to get around it Following the ban of Telegram in India due to leaked exam materials from the NEET medical entrance exam, the platform experienced disruptions in access for users globally, notably in the UAE, attributed to a BGP hijackin… BleepingComputer · Jun 17, 2026 High INAEbgproutingexam fraud
1Password Acquires Apono in Reported $250M-$300M Deal Apono specializes in just-in-time access governance technology for humans, machines, and AI agents. The post 1Password Acquires Apono in Reported $250M-$300M Deal appeared first on SecurityWeek . SecurityWeek · Jun 17, 2026
threat-intel Tenet Security Emerges From Stealth With $6 Million Seed Funding Tenet Security, a new cybersecurity firm originating in Israel, has secured $6 million in seed funding to address the emerging threat of "agentic behavior" in AI agents. The company’s technology focuses on real-time dete… SecurityWeek · Jun 17, 2026 High ISUSaiautonomous agentsagentjacking
threat-intel Adversarial Exposure Validation Turns Security Visibility into Confident Prioritization This article discusses the shift in security priorities from simply identifying vulnerabilities to validating which risks pose a genuine threat to organizations. The challenge lies in effectively prioritizing findings am… The Hacker News · Jun 17, 2026 Medium risk prioritizationadversarial simulationcontinuous threat exposure management
other Microsoft confirms Office apps launch issues after June updates Microsoft is investigating a widespread issue affecting third-party applications after June 2026 updates to Windows, preventing them from launching or opening Microsoft Office applications. The problem stems from compati… BleepingComputer · Jun 17, 2026 Medium UScompatibilitywindows updateoffice apps
vulnerability Rockwell Automation Patches Vulnerabilities in ICS Controllers and Software The industrial automation giant has fixed security holes in Logix, CompactLogix, Flex, RSLinx, and FactoryTalk products. The post Rockwell Automation Patches Vulnerabilities in ICS Controllers and Software appeared first… SecurityWeek · Jun 17, 2026 CVE-2021-22681
threat-intel Sweeping Credential-Harvesting Heist Compromises +30K Fortinet Devices A large-scale cyber espionage campaign has compromised over 30,000 Fortinet firewalls and VPN gateways globally, harvesting credentials for devices across nearly 200 countries. The operation, believed to be conducted by… Dark Reading · Jun 17, 2026 Critical USINGBcredential-harvestingpassword-compromiseautomation
threat-intel AI Use by the US Government This article details the widespread and largely undocumented use of Artificial Intelligence (AI) by the US government under both the Trump and Biden administrations. The Office of Management and Budget (OMB) revealed a m… Schneier on Security · Jun 17, 2026 Medium USaigovernmentautomation
ransomware Microsoft Teams Relay Servers Abused in DragonForce Ransomware Attack The attackers deployed a new Go-based backdoor that uses Microsoft Teams servers for command-and-control. The post Microsoft Teams Relay Servers Abused in DragonForce Ransomware Attack appeared first on SecurityWeek . SecurityWeek · Jun 17, 2026 High
threat-intel Warner warns of CISA cuts, staffing gaps in letter to acting chief This article reports concerns from Senator Mark Warner regarding significant cuts to the Cybersecurity and Infrastructure Security Agency (CISA), including staff reductions, budget constraints, and a lack of permanent le… The Record · Jun 17, 2026 High UScisacybersecurityfunding
threat-intel The Top 10 Attack Surface Exposures in 2026 This article from The Hacker News details a study by Intruder analyzing 3,000 attack surfaces, revealing widespread vulnerabilities in organizations’ internet-facing services. A significant 60% of organizations had expos… The Hacker News · Jun 17, 2026 High attack-surfacevulnerabilitydatabase
CISA orders feds to patch max severity Joomla plugin flaw by Friday The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch a maximum-severity flaw in the Widget Factory Joomla Content Editor (JCE) plugin that is being actively exploited in… BleepingComputer · Jun 17, 2026 Critical CVE-2026-48907
vulnerability Microsoft Working on Patch for ‘RoguePlanet’ Zero-Day The public PoC code exploits a race condition in Microsoft Defender to spawn a command prompt with System privileges. The post Microsoft Working on Patch for ‘RoguePlanet’ Zero-Day appeared first on SecurityWeek . SecurityWeek · Jun 17, 2026 Critical CVE-2026-50656CVE-2026-33825CVE-2026-41091
threat-intel Malicious JetBrains Plugins Steal AI API Keys as Chrome Extensions Capture Chatbot Chats A coordinated malware campaign targeting JetBrains Marketplace plugins has emerged, with 15 malicious plugins designed to steal AI API keys from users. These plugins, posing as AI coding assistants, exfiltrate keys to a… The Hacker News · Jun 17, 2026 High USaiapimalware
vulnerability Oracle’s Second Monthly Security Updates Deliver 245 Patches Oracle has released its June 2026 Critical Security Patch Update to fix vulnerabilities in Communications, EBS, Enterprise Manager and other products. The post Oracle’s Second Monthly Security Updates Deliver 245 Patches… SecurityWeek · Jun 17, 2026 Medium CVE-2026-35273
threat-intel Protecting legacy OT systems against modern cyberthreats The article highlights a growing and increasingly serious cybersecurity threat to manufacturing operations, particularly due to the convergence of IT and OT systems. Despite a long history of neglecting OT security, rans… WeLiveSecurity · Jun 17, 2026 High UKot securitylegacy systemsransomware
vulnerability Microsoft working on Defender patch for RoguePlanet zero-day Microsoft confirmed that it's working on a security patch for a Defender zero-day vulnerability named "RoguePlanet," disclosed one week ago. BleepingComputer · Jun 17, 2026 Critical CVE-2026-50656
vulnerability Chrome and Firefox Updated to Patch Critical, High-Severity Vulnerabilities The browser updates address multiple memory safety bugs that could potentially lead to remote code execution. The post Chrome and Firefox Updated to Patch Critical, High-Severity Vulnerabilities appeared first on Securit… SecurityWeek · Jun 17, 2026 High
threat-intel UK Social Media Ban for Minors Has Privacy Experts Worried The UK is implementing a ban on user-to-user social media platforms for individuals under 16, following similar legislation in Canada and Australia, driven by concerns about the impact of social media on young people. Th… Dark Reading · Jun 17, 2026 Medium UKCAAUsocial mediaage verificationprivacy
supply-chain 144 Mastra npm Packages Compromised via Hijacked Contributor Account A software supply chain attack, dubbed ‘easy-day-js,’ compromised 144 npm packages within the Mastra namespace by hijacking a contributor account. The attack leveraged a malicious dependency, ‘easy-day-js,’ to deploy a c… The Hacker News · Jun 17, 2026 High supply chainnpmjavascript