phishing ISC Stormcast For Monday, June 15th, 2026 https://isc.sans.edu/podcastdetail/9972, (Mon, Jun 15th) The SANS Internet Storm Center's June 15th, 2026 Stormcast reported a heightened level of online threats, primarily focused on phishing campaigns and malicious email activity. The report highlighted an increase in observ… SANS Internet Storm Center · Jun 15, 2026 Medium phishingbotnetddos
vulnerability Multiples vulnérabilités dans les produits Mattermost (15 juin 2026) Multiple vulnerabilities have been discovered in Mattermost Server, potentially allowing an attacker to cause a security issue not specified by the vendor. These vulnerabilities could lead to data integrity and confident… CERT-FR · Jun 15, 2026 Medium CVE-2026-10085CVE-2026-10103CVE-2026-10106vulnerabilitymattermostsecurity
threat-intel US Gov asks Anthropic to ban 'foreign national' access to Fable, Mythos Anthropic has temporarily blocked access to its Fable 5 and Mythos 5 AI models following a directive from the US government citing national security concerns. The order restricts access to these models by foreign nationa… BleepingComputer · Jun 13, 2026 Medium USUKaijailbreaknational security
threat-intel U.S. Orders Anthropic to Suspend Fable 5 and Mythos 5 Access for Foreign Nationals Following a U.S. government order, Anthropic has been instructed to temporarily suspend access to its advanced AI models, Claude Fable 5 and Mythos 5, for all foreign nationals due to national security concerns. The orde… The Hacker News · Jun 13, 2026 Medium USaijailbreakcybersecurity
threat-intel Tracing Digital Intent: New MacOS Tahoe 26 Artifact Discovered Palo Alto Unit 42 has discovered a new Biome stream, ‘App.MenuItem,’ in macOS Tahoe 26 that logs specific menu selections made by users. This artifact provides a detailed record of user actions, offering valuable context… Palo Alto Unit 42 · Jun 12, 2026 Medium biomemacosforensics
malware Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF Rootkit Attackers took over more than 400 packages in the Arch User Repository (AUR) this week and rewrote their build scripts to install a credential stealer on any machine that built them. The malware is a Rust binary built to… The Hacker News · Jun 12, 2026 Medium
malware 400+ Arch Linux AUR Packages Hijacked to Install Rust Credential Stealer Attackers took over more than 400 packages in the Arch User Repository (AUR) this week and rewrote their build scripts to install a credential stealer on any machine that built them. The malware is a Rust binary built to… The Hacker News · Jun 12, 2026 Medium
data-breach Privacy own-goal: World Cup blunder leaks Lionel Messi’s passport details A significant security blunder occurred during the Argentina World Cup warm-up match, resulting in the public release of passport details for all players on the squad. This incident highlights a failure to properly redac… Graham Cluley · Jun 12, 2026 Medium USARpassportdata-leakredaction
vulnerability phpBB forum fixes auth bypass bug lurking for a decade A 10-year-old authentication bypass vulnerability discovered in the phpBB forum software allows an attacker to log in as any user, including administrators. BleepingComputer · Jun 12, 2026 Medium
threat-intel ISC Stormcast For Friday, June 12th, 2026 https://isc.sans.edu/podcastdetail/9970, (Fri, Jun 12th) The SANS Internet Storm Center's June 12th, 2026 Stormcast reported a heightened level of online threats and unusual network activity across various sectors. The broadcast highlighted several emerging trends, including i… SANS Internet Storm Center · Jun 12, 2026 Medium phishingdnsvulnerability
threat-intel Bernie Sanders’ AI Sovereign Wealth Fund Plan This article discusses Senator Bernie Sanders’ proposal for a US sovereign wealth fund to take a 50% stake in leading AI companies like Anthropic, OpenAI, and xAI. The author argues that while the goal of democratic cont… Schneier on Security · Jun 12, 2026 Medium ai governancewealth distributiontech oligarchy
threat-intel Maine breach portal abused to publish fake data breach disclosures A fraudulent data breach disclosure was falsely submitted to Maine’s official breach portal, attributed to VRChat, and subsequently published before verification. The fake notification detailed a supposed hack impacting… BleepingComputer · Jun 11, 2026 Medium USmisinformationdata breachfraudulent
threat-intel British high school sends students home following cyberattack Great Marlow School in Buckinghamshire, England, experienced a cybersecurity incident that forced the closure of the school for a second day, impacting students and staff. The incident, potentially linked to ransomware a… The Record · Jun 11, 2026 Medium UKUScyberattackschoolransomware
malware Siemens Says Desigo CC Files Flagged as Malware by Security Engines A PowerShell script included in patch files appears to be triggering false positives by multiple security engines. The post Siemens Says Desigo CC Files Flagged as Malware by Security Engines appeared first on SecurityWe… SecurityWeek · Jun 11, 2026 Medium
vulnerability Microsoft fixes BitLocker recovery bug on Windows Server 2025 Microsoft released updates (KB5094125 and KB5093998) to address a bug in Windows Server 2025 and Windows 11 that caused BitLocker recovery prompts after installing security updates. The issue stemmed from specific Group… BleepingComputer · Jun 11, 2026 Medium bitlockertpmgroup policy
vulnerability Max severity Ivanti Sentry vulnerability now exploited in attacks Attackers are now targeting a recently patched maximum-severity flaw in Ivanti Sentry, enabling them to execute code with root privileges on Internet-exposed secure mobile gateways. BleepingComputer · Jun 11, 2026 Medium CVE-2026-10520
threat-intel ISC Stormcast For Thursday, June 11th, 2026 https://isc.sans.edu/podcastdetail/9968, (Thu, Jun 11th) The SANS Internet Storm Center's June 11th, 2026 Stormcast reported a heightened level of online threats and unusual network activity. The broadcast highlighted several emerging risks, including increased phishing campai… SANS Internet Storm Center · Jun 11, 2026 Medium phishingvulnerabilitynetwork
vulnerability Vulnérabilité dans Traefik (11 juin 2026) A security vulnerability has been identified in Traefik, allowing attackers to bypass security policies. This issue affects older versions of the popular reverse proxy and load balancer, requiring immediate patching to p… CERT-FR · Jun 11, 2026 Medium CVE-2026-54761traefikvulnerabilitysecurity
threat-intel AI Risk Worries Insurers and Businesses Alike This article discusses the emerging need for insurance coverage related to the increasing adoption of Artificial Intelligence (AI) by businesses and the associated risks. Insurers are grappling with how to address potent… Dark Reading · Jun 10, 2026 Medium aiinsurancecybersecurity
threat-intel Microsoft: Some Windows PCs fail to install latest monthly updates Microsoft has identified an issue causing some Windows 11 devices upgraded to 24H2 or 25H2 to fail to install the latest monthly updates. The problem manifests as 0x80073712 or 0x800f0993 errors, linked to corrupted XSX… BleepingComputer · Jun 10, 2026 Medium windowsupdateserror