threat-intel Microsoft releases Windows 10 KB5094127 extended security update Microsoft released extended security update KB5094127 for Windows 10, addressing 200 vulnerabilities, including several zero-day flaws, as part of its ongoing Patch Tuesday program. The update also incorporates improveme… BleepingComputer · Jun 9, 2026 High security updatezero-daybitlocker
vulnerability Adobe Patches 123 Vulnerabilities Nearly half of the security holes, most allowing arbitrary code execution, have been fixed in Adobe’s Experience Manager product. The post Adobe Patches 123 Vulnerabilities appeared first on SecurityWeek . SecurityWeek · Jun 9, 2026
vulnerability Microsoft June 2026 Patch Tuesday fixes 6 zero-days, 200 flaws Microsoft released its June 2026 Patch Tuesday updates, addressing a significant number of vulnerabilities across its product suite. The updates include five publicly disclosed zero-day vulnerabilities, one of which is c… BleepingComputer · Jun 9, 2026 High zero-daypatchvulnerability
vulnerability Microsoft June 2026 Patch Tuesday fixes 3 zero-day, 200 flaws Microsoft released its June 2026 Patch Tuesday updates, addressing a significant number of vulnerabilities across its product suite. The updates included three previously unknown zero-day exploits and a total of 200 othe… BleepingComputer · Jun 9, 2026 High zero-daypatchmicrosoft
vulnerability Microsoft June 2026 Patch Tuesday, (Tue, Jun 9th) Microsoft today released patches for 204 vulnerabilities. 38 of these vulnerabilities are considered critical, and three have been disclosed before today. Six of the vulnerabilities affect Microsoft cloud solutions and d… SANS Internet Storm Center · Jun 9, 2026 High CVE-2026-49160CVE-2026-47291CVE-2026-45648
threat-intel Windows 11 KB5094126 & KB5093998 cumulative updates released This article reports on the release of Windows 11 cumulative updates KB5094126 and KB5093998, part of the June 2026 Patch Tuesday security releases. These updates address several vulnerabilities discovered in previous mo… BleepingComputer · Jun 9, 2026 Medium securityupdatespatches
Meta to Use Off-Site Business Data for Feed and AI Personalization Meta on Tuesday announced that it will use information shared by other businesses to personalize users' feed and responses from its artificial intelligence (AI) chatbot, expanding its scope beyond targeted ads. "Business… The Hacker News · Jun 9, 2026
Anthropic Launches Claude Fable 5: Mythos-Class AI With Cybersecurity Guardrails The AI giant also announced that Project Glasswing partners are being given access to the upgraded Mythos 5. The post Anthropic Launches Claude Fable 5: Mythos-Class AI With Cybersecurity Guardrails appeared first on Sec… SecurityWeek · Jun 9, 2026
vulnerability OpenSSL Patches High-Severity Vulnerability Found With AI A total of 18 vulnerabilities have been patched in the latest OpenSSL releases, including many that were potentially discovered by AI. The post OpenSSL Patches High-Severity Vulnerability Found With AI appeared first on… SecurityWeek · Jun 9, 2026 High CVE-2026-45447
vulnerability Veeam Backup & Replication RCE Flaw Lets Domain Users Run Remote Code Veeam has released security patches to address a critical flaw in its Backup & Replication software that could result in remote code execution. Tracked as CVE-2026-44963, the vulnerability carries a CVSS score of 9.4 out… The Hacker News · Jun 9, 2026 Critical CVE-2026-44963
supply-chain Microsoft Restores Some GitHub Repos, Keeps Others Offline as Miasma Probe Continues Microsoft is investigating a recent security incident involving the compromise of 73 open-source GitHub repositories as part of the ongoing "Miasma" supply chain attack. The attackers, utilizing a technique involving inf… The Hacker News · Jun 9, 2026 High supply chainopen sourceinformation stealer
threat-intel XBOW tests Anthropic's Mythos Preview for offensive security BleepingComputer reports on XBOW’s testing of Anthropic’s Mythos Preview, a new AI model designed for offensive security. The testing revealed that Mythos Preview demonstrates significant advancements in vulnerability de… BleepingComputer · Jun 9, 2026 Medium aivulnerabilitysource code
supply-chain GitHub disables Microsoft repos pushing password-stealing malware Microsoft repositories on GitHub were temporarily disabled on June 5th due to concerns about distributing malware, specifically linked to the ongoing Miasma/Shai-Hulud supply-chain campaign. The incident involved the com… BleepingComputer · Jun 9, 2026 High USsupply-chain attackgithubmalware
threat-intel Russian Attackers Weaponize WinRAR Flaw Against Ukrainian Orgs Russian threat actors, including Shadow-Earth-066 (UAC-0226) and Earth Dahu (Primitive Bear, Shuckworm), are continuing to exploit a long-standing vulnerability (CVE-2025-8088) in WinRAR to conduct data theft and cyber e… Dark Reading · Jun 9, 2026 High CVE-2025-8088CVE-2023-38831RUUAwinrarvulnerabilitycyberespionage
GPS As a Key Distribution Platform This is interesting: The U.S. military has likely been quietly broadcasting codes for its global encryption network using public GPS for nearly 20 years, turning each satellite into a hidden “numbers station,” according… Schneier on Security · Jun 9, 2026
threat-intel Claude Mythos Turns N-Days Into N-Hours With Rapid Exploit Creation Anthropic’s Claude Mythos AI model has demonstrated the ability to rapidly generate working exploits for known vulnerabilities in software like Firefox and Windows, significantly accelerating the attack process. The mode… SecurityWeek · Jun 9, 2026 High USaiexploitationn-day
vulnerability New Veeam vulnerability exposes backup servers to RCE attacks Veeam has released security updates to patch a critical Backup & Replication security flaw that can be exploited to gain remote code execution (RCE) on domain-joined backup servers. BleepingComputer · Jun 9, 2026 High CVE-2026-44963CVE-2024-40711
threat-intel Hackers pose as women seeking romance to spy on Russian soldiers A previously unknown cyber espionage group, SiribClone, has been targeting Russian military personnel by impersonating women seeking romantic relationships. The group’s primary goal is to gather battlefield intelligence… The Record · Jun 9, 2026 High RUespionagesocial-engineeringmobile-malware
threat-intel New Platform Uses Cryptographic Invisibility to Protect AI-Built Applications This article discusses a new AI-powered coding tool, AI Architect, developed by Atsign to address security concerns in AI-generated applications. The tool utilizes cryptographic invisibility to secure identities, making… SecurityWeek · Jun 9, 2026 Medium aicryptographyidentity
threat-intel WinRAR Flaw Exploited by Russia-Aligned Groups to Deploy Stealers in Ukraine A vulnerability in WinRAR, first identified in July 2025, is being exploited by Russia-aligned cyber groups to deploy malware targeting Ukrainian organizations. The attackers, including Earth Dahu and SHADOW-EARTH-066, a… The Hacker News · Jun 9, 2026 High CVE-2025-8088RUUAwinrarexploitukraine