phishing eBanking Phishing Delivered Through IPv4-Mapped IPv6 Address, (Fri, Jun 19th) I detected an interesting phishing email this morning. It targets a major Belgian bank: SANS Internet Storm Center · Jun 19, 2026 Medium
malware USB worm spreads crypto-stealing malware via Windows shortcut files Threat actors targeting cryptocurrency wallets have been distributing clipboard-stealing malware with self-spreading capabilities and using the Tor network to conceal communication. BleepingComputer · Jun 18, 2026 Medium
data-breach [Virtual Event] Anatomy of a Data Breach: What to Do if it Happens to You This article discusses the preparation needed for organizations to respond effectively to data breaches. It highlights the vulnerabilities and exploits commonly used in attacks, alongside the latest incident response too… Dark Reading · Jun 18, 2026 Medium data breachincident responsesecops
threat-intel No Exploits Required This article discusses the limitations of relying solely on exploiting vulnerabilities in cybersecurity, arguing that defenders often struggle due to the inherent complexity and interconnectedness of modern networks. The… SecurityWeek · Jun 18, 2026 Medium network securitycybersecurityzero-trust
threat-intel Telegram admits it couldn't police exam-leak channels, India tells court India's government blocked Telegram access following reports of leaked exam materials for the NEET-UG 2026 medical entrance exam, leading to disruptions for users globally. Telegram initially admitted limitations in proa… BleepingComputer · Jun 18, 2026 Medium INAEexamleakregulatory
vulnerability Rockwell Automation FactoryTalk Historian Site Edition This advisory from CISA details vulnerabilities in Rockwell Automation’s FactoryTalk Historian Site Edition software, specifically versions through 11.00. Exploitation could lead to denial-of-service attacks or authentic… CISA Advisories · Jun 18, 2026 Medium CVE-2025-13036CVE-2025-44019CVE-2025-36539USfactorytalkhistorianrockwellautomation
malware Embedding Forbidden Text in Spyware to Discourage AI Analysis At least one malware developer is adding text about nuclear and biological weapons to their spyware, in an effort to stop automatic AI analysis. Details : The _index.js payload begins with a large JavaScript block commen… Schneier on Security · Jun 18, 2026 Medium
malware Rokarolla Banking Trojan Targets 200 Applications The Android malware allows its operators to take control of infected devices and harvest sensitive information. The post Rokarolla Banking Trojan Targets 200 Applications appeared first on SecurityWeek . SecurityWeek · Jun 18, 2026 Medium
vulnerability Critical Command Execution Vulnerability Patched in Cisco ISE Insufficient validation of user input allows an attacker to gain access to the underlying OS and elevate their privileges to root. The post Critical Command Execution Vulnerability Patched in Cisco ISE appeared first on… SecurityWeek · Jun 18, 2026 Medium CVE-2026-20181CVE-2026-20190
threat-intel Scripting the disassembler: Local agentic reverse engineering through vbdec’s live COM object model This article details a technique developed by Cisco Talos for automating reverse engineering of VB6 binaries using AI agents. The approach leverages the COM object model of VBdec, allowing external scripting tools like C… Cisco Talos · Jun 18, 2026 Medium reverse-engineeringaicom
threat-intel EU Gets a Head Start in Developing 6G Network Security The EU is launching the "Shield-6G" project, a collaborative initiative funded by the EU, to proactively develop cybersecurity measures for the upcoming 6G network. This project, involving 19 organizations, aims to addre… Dark Reading · Jun 18, 2026 Medium EU6gaicybersecurity
threat-intel ISC Stormcast For Thursday, June 18th, 2026 https://isc.sans.edu/podcastdetail/9978, (Thu, Jun 18th) The SANS Internet Storm Center's June 18th, 2026 Stormcast reported a heightened level of online threats and unusual network activity across various sectors. The broadcast highlighted several emerging trends, including i… SANS Internet Storm Center · Jun 18, 2026 Medium phishingdnsthreat-monitoring
vulnerability Multiples vulnérabilités dans Mattermost Desktop App (18 juin 2026) Multiple vulnerabilities have been discovered in the Mattermost Desktop App, potentially allowing for remote denial-of-service attacks and an unspecified security issue. These vulnerabilities affect older versions of the… CERT-FR · Jun 18, 2026 Medium CVE-2026-8075CVE-2026-9602vulnerabilitymattermostdesktop app
threat-intel Google to use UK and EU user IP addresses for ad personalization Google plans to begin using IP addresses from August 3, 2026, across the EEA, UK, and Switzerland for ad measurement and personalization. This shift is driven by regulatory changes regarding personal data, particularly u… BleepingComputer · Jun 17, 2026 Medium GBEUCHprivacygdprconsent
threat-intel Junior Hacker Used Tailscale and OpenSSH to Keep Access After His C2 Went Offline A junior hacker, identified as ‘Poisson,’ infiltrated a French automotive business by exploiting vulnerabilities and establishing persistent access after his command-and-control server was taken down. He utilized OpenSSH… The Hacker News · Jun 17, 2026 Medium FRDEpersistenceremote-accessssh
threat-intel Adversarial Exposure Validation Turns Security Visibility into Confident Prioritization This article discusses the shift in security priorities from simply identifying vulnerabilities to validating which risks pose a genuine threat to organizations. The challenge lies in effectively prioritizing findings am… The Hacker News · Jun 17, 2026 Medium risk prioritizationadversarial simulationcontinuous threat exposure management
other Microsoft confirms Office apps launch issues after June updates Microsoft is investigating a widespread issue affecting third-party applications after June 2026 updates to Windows, preventing them from launching or opening Microsoft Office applications. The problem stems from compati… BleepingComputer · Jun 17, 2026 Medium UScompatibilitywindows updateoffice apps
threat-intel AI Use by the US Government This article details the widespread and largely undocumented use of Artificial Intelligence (AI) by the US government under both the Trump and Biden administrations. The Office of Management and Budget (OMB) revealed a m… Schneier on Security · Jun 17, 2026 Medium USaigovernmentautomation
vulnerability Oracle’s Second Monthly Security Updates Deliver 245 Patches Oracle has released its June 2026 Critical Security Patch Update to fix vulnerabilities in Communications, EBS, Enterprise Manager and other products. The post Oracle’s Second Monthly Security Updates Deliver 245 Patches… SecurityWeek · Jun 17, 2026 Medium CVE-2026-35273
threat-intel UK Social Media Ban for Minors Has Privacy Experts Worried The UK is implementing a ban on user-to-user social media platforms for individuals under 16, following similar legislation in Canada and Australia, driven by concerns about the impact of social media on young people. Th… Dark Reading · Jun 17, 2026 Medium UKCAAUsocial mediaage verificationprivacy