data-breach Maine disables data breach notification portal after fake disclosures Maine has taken its public data breach reporting portal offline after fraudulent breach disclosures were published on the state's website, prompting a review of procedures to prevent abuse in the future. BleepingComputer · Jun 12, 2026 High
phishing Google Sues Chinese Smishing Network Accused of Using Gemini AI in Phishing Google has filed a lawsuit against a Chinese cybercrime network, Outsider, for using its Gemini AI agent to conduct massive smishing attacks targeting Americans. The network operates a phishing-as-a-service (PhaaS) platf… The Hacker News · Jun 12, 2026 High CHUSaiphishingsmishing
ransomware Ukrainian national pleads guilty to role in Conti ransomware operation A Ukrainian national extradited from Ireland to the United States last year has pleaded guilty to conspiracy charges tied to the Conti ransomware operation. BleepingComputer · Jun 12, 2026 High
data-breach Bankruptcy admin approves settlement fund of $47 million for 23andMe data breach victims A bankruptcy court has approved a $46.8 million settlement for approximately 7 million 23andMe customers affected by a 2023 data breach. Hackers accessed sensitive genetic data, including DNA Relatives profiles and Famil… The Record · Jun 12, 2026 High USdata breachdnagenetic data
threat-intel Major US surveillance program poised to lapse after legislative deadlock This article reports on a looming lapse in the US surveillance program, Section 702 of the FISA, due to legislative deadlock in Congress. The program, which allows intelligence agencies to collect communications of forei… The Record · Jun 12, 2026 High USIRCHfisasurveillanceintelligence
malware Over 400 Arch Linux packages compromised to push rootkit, infostealer Over 400 Arch Linux packages within the AUR repository have been compromised, distributing a Linux rootkit and infostealer malware designed to steal developer credentials and access tokens. The attack involved a maliciou… BleepingComputer · Jun 12, 2026 High USrootkitinfostealeraur
threat-intel In Other News: Google Security Layoffs, AudiA6 Takedown, $400 Million Coupang Fine This week’s cybersecurity news includes allegations of cover-ups by IBM and AT&T regarding foreign government-linked hacks, a data breach impacting the University of Oxford’s CareerConnect platform, and layoffs within Go… SecurityWeek · Jun 12, 2026 High CVE-2026-42271SOUNEUdata breachcyberattackddos
data-breach South Korea hits Coupang with record $409 million fine over data breach South Korea’s data protection regulator, the PIPC, has levied a record $409 million fine against Coupang, the country’s largest online retailer, following a significant data breach impacting tens of millions of customers… The Record · Jun 12, 2026 High KRdata breachauthenticationcustomer data
supply-chain Early Warning Signs of Supply-Chain Attacks Live in the Dark Web This BleepingComputer article highlights the increasing threat of supply-chain attacks, which target the tools and vendors organizations rely on. The article details how early warning signs of these attacks often appear… BleepingComputer · Jun 12, 2026 High GEsupply chaingithubcredentials
threat-intel Claude Fable 5 Doesn't Change the Mythos Security Story This article discusses Anthropic's release of Claude Fable 5 and Mythos 5 AI models, highlighting concerns about their potential to exploit vulnerabilities in software. While Anthropic has implemented safeguards like saf… Dark Reading · Jun 12, 2026 High USaicybersecurityvulnerability
threat-intel Industry Reactions to Claude Fable 5: Feedback Friday The release of Anthropic’s Claude Fable 5 AI model has sparked industry discussion regarding its potential misuse in cybersecurity and other high-risk areas. The model incorporates safeguards that automatically downgrade… SecurityWeek · Jun 12, 2026 High aicybersecuritythreat intelligence
threat-intel Agentjacking Attack Tricks AI Coding Agents Into Running Malicious Code A new attack method, dubbed ‘Agentjacking,’ is exploiting vulnerabilities in AI coding agents like Claude Code and Cursor by tricking them into executing malicious code through crafted error reports sent via Sentry. This… The Hacker News · Jun 12, 2026 High aiagentjackingsentry
threat-intel Iranian Cyber Group Handala Claims Cal Water Hack The Iranian cyber threat actor Handala has claimed responsibility for a data breach targeting California Water Service (Cal Water), resulting in the theft of 5GB of data including customer information and credentials. Th… SecurityWeek · Jun 12, 2026 High USIRirandata breachcyber espionage
threat-intel Rethinking MDR as Attackers and Defenders Embrace AI This article highlights a critical flaw in the current Managed Detection and Response (MDR) model, arguing that it’s no longer sufficient to address the rapidly evolving threat landscape driven by AI. The analysis reveal… The Hacker News · Jun 12, 2026 High GLaithreat intelligencemrd
data-breach Pharma giant Novo Nordisk discloses breach of clinical trials data Danish pharmaceutical giant Novo Nordisk, the world's largest producer of insulin, disclosed a data breach affecting patient information from some clinical trials. BleepingComputer · Jun 12, 2026 High
vulnerability Ivanti Sentry Exploitation Attempts Hitting Honeypots A recently patched vulnerability in Ivanti Sentry, CVE-2026-10520, has been observed attempting exploitation on honeypots, according to Ivanti and CISA. The flaw allows for remote code execution with root privileges via… SecurityWeek · Jun 12, 2026 High CVE-2026-10520USvulnerabilitycommand injectionroot privilege
vulnerability Chrome 149 Update Patches 28 Vulnerabilities The browser refresh resolved critical and high-severity security defects, including a dozen use-after-free bugs. The post Chrome 149 Update Patches 28 Vulnerabilities appeared first on SecurityWeek . SecurityWeek · Jun 12, 2026 High
phishing INTERPOL Operation Takes Down Sniper Dz Phishing Platform, Arrests Administrator INTERPOL, in collaboration with authorities across 13 MENA countries, successfully dismantled the decade-long Sniper Dz phishing-as-a-service (PhaaS) platform, resulting in the arrest of its administrator, Guedz. The ope… The Hacker News · Jun 12, 2026 High ALAEDZphishing-as-a-servicecredential theftsocial engineering
data-breach Over 73,000 French govt employees affected in Tchap messenger breach A breach of the French government’s Tchap messaging platform has affected over 73,000 employees within the public sector. The attackers exploited a compromised user account to access public chat room data, including name… BleepingComputer · Jun 12, 2026 High FRmessagingdata breachencryption
ransomware Europol Disrupts AudiA6 Crypto Laundering Service Used by Ransomware Gangs Europol, in collaboration with international law enforcement, successfully disrupted AudiA6, a cryptocurrency laundering service used extensively by ransomware gangs and cybercriminals. The operation, resulting in the ar… The Hacker News · Jun 12, 2026 High UKRUGEcryptocurrencyransomwaremoney laundering