Police dismantles fake ID marketplace used by migrant smugglers French and Spanish authorities took down an online marketplace selling fake identity documents to migrant smuggling rings operating within the European Union. BleepingComputer · Jun 4, 2026
threat-intel China-Linked TA4922 Expands Phishing Attacks to UK, Germany, Italy, and South Africa A China-linked cybercrime group, TA4922, has broadened its phishing attacks to include organizations in the UK, Germany, Italy, and South Africa. The group utilizes a constantly evolving arsenal of malware, including Val… The Hacker News · Jun 4, 2026 Medium UKGEITphishingratcredential theft
vulnerability Mirasvit Vulnerability Exploited to Execute Code on Magento Servers A flaw in the Full Page Cache Warmer extension can be exploited without authentication via serialized PHP object payloads. The post Mirasvit Vulnerability Exploited to Execute Code on Magento Servers appeared first on Se… SecurityWeek · Jun 4, 2026 Medium CVE-2026-45247
threat-intel Winning the cyber marathon with Tony Giandomenico This article discusses Cisco Talos Senior Director of Product Management, Tony Giandomenico’s perspective on the evolving cybersecurity landscape, particularly the increasing capabilities of AI and frontier models. He hi… Cisco Talos · Jun 4, 2026 Medium aithreat huntingcybersecurity
threat-intel Hypotheses, telemetry, and human judgment: Inside Cisco Talos Threat Hunting This article details Cisco Talos' approach to threat hunting, which differs from traditional alert-based detection. Instead of waiting for alerts, Talos analysts formulate hypotheses about adversary behavior based on tel… Cisco Talos · Jun 4, 2026 High USthreat huntingaicorrelation
vulnerability Hitachi Energy MACH HiDraw A buffer overflow vulnerability has been identified in Hitachi Energy’s MACH HiDraw product versions up to 9.22. Exploitation of this flaw could lead to denial-of-service attacks and potential arbitrary code execution, i… CISA Advisories · Jun 4, 2026 High CVE-2026-7310USbuffer overflowxml parserindustrial control systems
vulnerability NAVTOR NavBox A critical vulnerability (CVE-2026-21404) has been identified in NAVTOR NavBox versions 4.16.1.20, allowing local attackers to gain unauthorized access due to hard-coded credentials within the Windows Communication Found… CISA Advisories · Jun 4, 2026 Critical CVE-2026-21404NOsoapcredentialswcf
vulnerability Hitachi Energy RTU500 This advisory details vulnerabilities within Hitachi Energy’s RTU500 product, specifically CMU Firmware versions 12.7.1 through 13.8.1. These vulnerabilities, primarily CWE-476 (NULL Pointer Dereference) and CWE-190 (Int… CISA Advisories · Jun 4, 2026 Medium CVE-2025-69421CVE-2026-24515CVE-2026-25210WOcwe-476cwe-190denial-of-service
vulnerability Hitachi Energy ITT600 Explorer Hitachi Energy has identified vulnerabilities in its ITT600 Explorer product, specifically versions prior to 2.1 SP6, which could lead to Denial of Service (DoS) attacks. The vulnerabilities stem from a stack overflow in… CISA Advisories · Jun 4, 2026 High CVE-2024-8176CVE-2025-59375SWiec61850denial of servicelibexpat
vulnerability B&R PPT30 Operating System A vulnerability, CVE-2025-11482, has been identified in B&R PPT30 Operating System versions prior to 1.8.0, specifically within the OPC-UA Server. An unauthenticated network-based attacker could exploit this flaw to perm… CISA Advisories · Jun 4, 2026 High CVE-2025-11482WOopcuafirmwarenetwork-based
threat-intel Chinese Cybercrime Group in Spotlight for Record Campaign Pace A Chinese cybercrime group, TA4922, is experiencing a record surge in campaign activity, utilizing sophisticated social engineering tactics to target organizations globally. The group’s primary objectives involve data th… SecurityWeek · Jun 4, 2026 High GBDEITsocial engineeringcredential phishingremote access
malware FlutterShell Backdoor Spreads to macOS via Malicious Google and YouTube Ads A new macOS malvertising campaign, dubbed Operation FlutterBridge, is utilizing FlutterShell, a backdoor that spreads adware via malicious Google and YouTube ads. The campaign, traced back to the CL-CRI-1089 threat actor… The Hacker News · Jun 4, 2026 High USCAAUmalvertisingmacoswebview
vulnerability Cisco warns of critical Unified CM flaw with PoC exploit code Cisco has issued a critical security update addressing a vulnerability (CVE-2026-20230) in its Unified Communications Manager (Unified CM) software. This flaw allows attackers to gain root privileges through SSRF attacks… BleepingComputer · Jun 4, 2026 Critical CVE-2026-20230CVE-2026-20045CVE-2024-20253ssrfprivilege escalationroot access
phishing Hacking Meta’s AI Chatbot Meta's AI chatbot, the Meta AI Support Assistant, was exploited by hackers to gain unauthorized access to Instagram accounts. The attackers leveraged the chatbot's ability to generate verification codes and reset passwor… Schneier on Security · Jun 4, 2026 High aichatbotphishing
Over 1.4 Million Accounts Disrupted in Cybercrime Crackdown Law enforcement and tech companies disrupted infrastructure linked to scammers operating across Southeast Asia. The post Over 1.4 Million Accounts Disrupted in Cybercrime Crackdown appeared first on SecurityWeek . SecurityWeek · Jun 4, 2026 High
malware Fake Sites Mimicking Open-Source Tools Rank High on Google to Deliver Malware via TDS A sophisticated operation is impersonating popular open-source and freeware tools like Ghidra and dnSpy to lure users to malicious websites via a Traffic Distribution System (TDS). This TDS then delivers malware, includi… The Hacker News · Jun 4, 2026 High TRPLBRtdsmalware-as-a-serviceclick interception
threat-intel Hackers Spied on a Stock Exchange Executive's Outlook Mailbox for Five Months An unknown attacker gained unauthorized access to the Outlook mailbox of a senior executive at a major stock exchange for over five months, copying the inbox in small batches and utilizing cloud services like Dropbox and… The Hacker News · Jun 4, 2026 High USespionagemailboxcloud
vulnerability Cisco Warns of Available PoC for Critical Unified CM Vulnerability The high-severity flaw can be exploited remotely, without authentication, in server-side request forgery (SSRF) attacks. The post Cisco Warns of Available PoC for Critical Unified CM Vulnerability appeared first on Secur… SecurityWeek · Jun 4, 2026 High CVE-2026-20230
vulnerability VS Code Vulnerability Allows One-Click GitHub Token Theft A researcher has disclosed the full details of the vulnerability and released a PoC without notifying Microsoft in advance. The post VS Code Vulnerability Allows One-Click GitHub Token Theft appeared first on SecurityWee… SecurityWeek · Jun 4, 2026 Medium
vulnerability CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV Catalog The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability, CVE-2026-45247, affecting the Mirasvit Cache Warmer Magento extension to its KEV catalog. This flaw allows for remote c… The Hacker News · Jun 4, 2026 Critical CVE-2026-45247USUKFRphpobjectdeserialization