Microsoft's Coreutils for Windows, (Thu, Jun 4th) I&#;x26;#;39;ve been using the GnuWin32 CoreUtils for Windows for many years now (it gives you many *nix core commands on Windows). SANS Internet Storm Center · Jun 4, 2026
threat-intel DoJ Disrupts Southeast Asia Crypto Fraud Networks, Freezes $3.8 Million in Assets The U.S. Department of Justice, in collaboration with numerous international law enforcement agencies and private sector companies, disrupted a network of cybercrime groups operating out of Southeast Asia that were defra… The Hacker News · Jun 4, 2026 High USTHAUcryptocurrencyfraudscam
apt Pakistan Spies on Afghan Finance Ministry With Xeno RAT A Pakistani advanced persistent threat (APT) group, identified as SideCopy and linked to the Transparent Tribe (APT 36), has been conducting espionage against Afghanistan's finance ministry since at least May 2025. The g… Dark Reading · Jun 4, 2026 High AFPKspear-phishingremote-accesspashto
phishing ISC Stormcast For Thursday, June 4th, 2026 https://isc.sans.edu/podcastdetail/9958, (Thu, Jun 4th) The SANS Internet Storm Center's June 4th, 2026 Stormcast reported a heightened level of online threats, primarily focused on phishing and malicious email campaigns. The broadcast highlighted several emerging trends and… SANS Internet Storm Center · Jun 4, 2026 Medium phishingcredential stuffingemail security
threat-intel Smashing Security podcast #470: This AI security flaw might be impossible to fix This Smashing Security podcast episode focuses on the potential for persistent security vulnerabilities, particularly related to large language models (LLMs) and prompt injection. The discussion highlights the risk of in… Graham Cluley · Jun 3, 2026 Medium llmprompt injectioncode security
threat-intel Chinese hackers use new Atlas RAT malware in European cyberattacks A Chinese cybercrime group, tracked as TA4922, is expanding its operations with the deployment of new malware, including the Atlas RAT and RomulusLoader, targeting organizations across Europe and Southeast Asia. The grou… BleepingComputer · Jun 3, 2026 High CHGEITphishingremote access trojanmalware loader
threat-intel Attackers Use AI to Automate EDR Evasion Testing Attackers are leveraging artificial intelligence to automate the process of testing and developing malware designed to evade endpoint detection and response (EDR) systems. Sophos researchers discovered a sophisticated re… Dark Reading · Jun 3, 2026 High aiedrred teaming
ransomware The U.S. sanctions Nobitex crypto exchange used by ransomware The U.S. Treasury's Office of Foreign Assets Control (OFAC) has announced sanctions against Nobitex, Iran's largest cryptocurrency exchange, for facilitating payments related to terrorist activities. BleepingComputer · Jun 3, 2026 High
CISA warns of cyberattacks targeting fuel tank monitoring systems CISA, the FBI, the NSA, the Department of Energy, and other US government partners are warning that hackers are targeting internet-exposed automatic tank gauge (ATG) systems used to monitor fuel and liquid storage tanks… BleepingComputer · Jun 3, 2026
threat-intel Tropical Blend: Cyber & Politics Ramp Up Across Latin America This report details a surge in cyber espionage activities targeting Latin American nations, primarily driven by China-linked Advanced Persistent Threat (APT) groups. These groups, including FamousSparrow and NegativeGlim… Dark Reading · Jun 3, 2026 High CHVEPAaptcyber espionagelatin america
threat-intel WhatsApp, Slack Notifications Could Hijack Google Gemini on Android This article details a vulnerability in Google Gemini on Android that allows malicious notifications from apps like WhatsApp, Slack, or SMS to hijack the voice assistant and perform actions such as opening windows, launc… The Hacker News · Jun 3, 2026 High voice assistantprompt injectionandroid
threat-intel Cyber Insurance Rates Are Dropping, but Exclusions Widen Cyber insurance premiums are decreasing, driven by insurers refining their risk models and offering discounts for robust security practices. However, this positive trend is counterbalanced by a significant increase in co… Dark Reading · Jun 3, 2026 Medium UKcyber insurancesocial engineeringexclusions
ddos New 'HTTP/2 Bomb' DoS attack crashes web servers in under a minute A new denial-of-service (DoS) attack, dubbed ‘HTTP/2 Bomb,’ has been identified that can cripple web servers within seconds by exploiting vulnerabilities in default HTTP/2 configurations of popular web servers like Nginx… BleepingComputer · Jun 3, 2026 High CVE-2026-49975doshttp2compression
threat-intel DHS chief signals efforts to reshape CISA The Department of Homeland Security (DHS) is undertaking efforts to revitalize the Cybersecurity and Infrastructure Security Agency (CISA), which has faced significant challenges including workforce reductions and budget… The Record · Jun 3, 2026 Medium cisadhsbudget cuts
threat-intel Coding Gaffe Exposes Microsoft 365 Accounts to Widespread Takeover A coding error in several Microsoft 365 Android applications, specifically Excel, Word, PowerPoint, OneNote, Loop, and Microsoft 365 Copilot, exposed user accounts to potential compromise. The issue stemmed from a disabl… Dark Reading · Jun 3, 2026 High CVE-2026-41100CVE-2026-41101CVE-2026-41102authenticationtokensandroid
Coralogix Raises $200M at $1.6B Valuation to Scale AI Observability Platform Coralogix offers a full-stack observability platform that unifies logs, metrics, traces, security, and AI observability. The post Coralogix Raises $200M at $1.6B Valuation to Scale AI Observability Platform appeared firs… SecurityWeek · Jun 3, 2026
malware Google DoubleClick Abused in New Malspam Campaign to Deliver DesckVB RAT A new malspam campaign is leveraging Google's DoubleClick domain to deliver the DesckVB RAT, a .NET-based remote access trojan. The campaign’s scalability and cost-effectiveness stem from its ability to dynamically perso… The Hacker News · Jun 3, 2026 High USmalspamratdoubleclick
vulnerability CISA warns of active attacks exploiting Android, Linux bugs The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning that hackers are exploiting vulnerabilities in the Linux kernel and Android operating system. BleepingComputer · Jun 3, 2026 CVE-2025-48595CVE-2022-0492
vulnerability Microsoft 365 Android Apps Let Any App Steal Account Tokens via Leftover Debug Flag A vulnerability in Microsoft 365 Android apps allowed unauthorized apps to steal user account tokens, potentially granting access to sensitive data like emails and calendar information. The flaw, discovered by Enclave, s… The Hacker News · Jun 3, 2026 High CVE-2026-41100CVE-2026-41101CVE-2026-41102androidtokenspoofing
threat-intel What 345 Days of Untested Exposure Looks Like at a Bank This article details a significant security vulnerability stemming from a bank’s reliance on an annual penetration testing schedule, highlighting the risks associated with infrequent assessments. A VPN vulnerability, exp… BleepingComputer · Jun 3, 2026 High USvulnerabilityapitenant_id