vulnerability Splunk, Palo Alto Networks Patch Severe Vulnerabilities The security defects could allow attackers to create or modify arbitrary files and access and modify protected resources. The post Splunk, Palo Alto Networks Patch Severe Vulnerabilities appeared first on SecurityWeek . SecurityWeek · Jun 11, 2026 High CVE-2026-0274CVE-2026-20253
threat-intel Trust No Skill: Integrity Verification for AI Agent Supply Chains This report from Palo Alto Unit 42 highlights a critical security vulnerability in the rapidly growing ecosystem of AI agent-skill supply chains. The analysis reveals that a significant number of skills, readily availabl… Palo Alto Unit 42 · Jun 11, 2026 High aiagentsupply chain
threat-intel OceanLotus Hits Vietnam Investors With SPECTRALVIPER in FireAnt Attack OceanLotus, a 15-year-old APT group with a history of targeting China and human rights activists, has been conducting a prolonged cyber espionage operation against Vietnamese entities, including a transport construction… The Hacker News · Jun 11, 2026 High VNsupply chainbackdoorespionage
threat-intel OceanLotus: From external espionage to domestic targeting OceanLotus, a Vietnamese-aligned cyberespionage group (formerly APT32), has shifted its focus from external espionage to domestic targeting, particularly in relation to corruption investigations in Vietnam. Since 2020, f… WeLiveSecurity · Jun 11, 2026 High VNsupply-chainespionagebackdoor
data-breach Nottingham University data breach affects over 450,000 students The University of Nottingham experienced a significant data breach affecting over 450,000 current and former students due to a cyberattack by the ShinyHunters extortion group. The attackers gained access to student recor… BleepingComputer · Jun 11, 2026 High UKCHMAstudent datapeoplesoftextortion
threat-intel Chinese, N. Korean Threat Groups Build on Asia-Pacific Success This article reports on the ongoing cybercrime activities of North Korean and Chinese threat groups targeting financial firms and cryptocurrency assets within the Asia-Pacific region. Despite increased international coll… Dark Reading · Jun 11, 2026 High CHNOSOcybercrimecryptocurrencynorth korea
threat-intel Smashing Security podcast #471: This AI worm just rewrote its own rules This episode of Smashing Security discusses an AI worm that is capable of rewriting its own rules, highlighting a concerning trend of AI systems exhibiting unexpected and potentially malicious behavior. The conversation… Graham Cluley · Jun 10, 2026 High USaiartificial intelligenceworm
vulnerability Path traversal flaw in AI dev platform Langflow exploited in attacks Attackers are actively exploiting CVE-2026-5027, a high-severity path traversal vulnerability in the AI development platform Langflow, to write arbitrary files on exposed servers. BleepingComputer · Jun 10, 2026 High CVE-2026-5027CVE-2026-0770CVE-2026-21445
threat-intel CISA Rewrites Federal Patching Requirements for AI Threat Era CISA has issued a new Binding Operational Directive (BOD) 26-04 to overhaul federal agency patching requirements, prioritizing rapid remediation of the most dangerous vulnerabilities within three days. This shift reflect… Dark Reading · Jun 10, 2026 High patchingvulnerabilityai
supply-chain The ‘Miasma’ worm source code briefly leaked on GitHub The source code for the Miasma credential-stealing worm framework, previously linked to supply-chain attacks targeting open-source ecosystems, was briefly leaked on GitHub. This leak, mirroring the earlier Shai-Hulud wor… BleepingComputer · Jun 10, 2026 High USsupply chaincredential theftopen source
threat-intel CISA to require federal agencies to patch some cyber vulnerabilities within 3 days CISA has issued a new binding operational directive requiring federal civilian agencies to patch critical cybersecurity vulnerabilities within a tight 72-hour timeframe, prioritizing those exposed to the internet and sus… The Record · Jun 10, 2026 High USvulnerabilitypatchingai
threat-intel Oracle PeopleSoft servers hacked in ShinyHunters data theft attacks The ShinyHunters extortion gang is targeting Oracle PeopleSoft servers in ongoing data theft attacks, having already compromised over 300 instances across more than 100 organizations. They are exploiting a chain of old a… BleepingComputer · Jun 10, 2026 High UKpeoplesoftzero-daydata theft
threat-intel Nightmare-Eclipse Drops Yet Another Microsoft Exploit, RoguePlanet A disgruntled researcher known as Nightmare-Eclipse has released another proof-of-concept (PoC) exploit, dubbed RoguePlanet, targeting a Windows Defender vulnerability. This follows a series of similar disclosures aimed… Dark Reading · Jun 10, 2026 High CVE-2026-33825USzero-dayexploitwindows
threat-intel China-Linked JDY Botnet Expands to 1,500+ Devices for Cyber Reconnaissance A China-linked botnet, dubbed JDY, has significantly expanded its operations, now comprising over 1,500 compromised SOHO and IoT devices. Initially a component of the KV-botnet, the JDY botnet is being used for large-sca… The Hacker News · Jun 10, 2026 High CVE-2026-35616USBRDEiotreconnaissancebotnet
threat-intel China-linked JDY botnet expands targeting of U.S. military networks A Chinese-linked botnet, JDY, has significantly expanded its targeting of U.S. military networks and associated infrastructure. The botnet, previously associated with Volt Typhoon, utilizes reconnaissance techniques like… BleepingComputer · Jun 10, 2026 High CVE-2026-35616USbotnetreconnaissanceapt
vulnerability CISA Adds Cisco, Chrome, and Arista Flaws to KEV Catalog Amid Active Exploitation CISA has added three newly exploited vulnerabilities to its KEV catalog, impacting Cisco, Google Chrome, and Arista Networks. These vulnerabilities – one in Cisco SD-WAN Manager, another in Chrome’s V8 engine, and a thir… The Hacker News · Jun 10, 2026 High CVE-2026-20245CVE-2026-11645CVE-2026-7473cvesd-wanchrome
threat-intel The 5 Best Practices for Secure Identity Verification This article from BleepingComputer highlights key best practices for organizations to strengthen their identity verification processes and improve overall cyber resilience. It emphasizes the growing threat of credential… BleepingComputer · Jun 10, 2026 High UKmfaidentity verificationauthentication
threat-intel Who Runs the Ransomware Group ‘The Gentlemen?’ The Gentlemen, a prolific ransomware group, is being led by a Russian individual known as Zeta88/Hastalamuerte. Extensive investigation by Check Point and Intel 471 has revealed that this administrator, whose real identi… Krebs on Security · Jun 10, 2026 High RUransomwarerandsomware-as-a-servicerussian cybercrime
threat-intel Infostealers Turn Millions of Devices Into Credential Theft Machines This report details a significant increase in the use of infostealers as a primary method for attackers to steal credentials and gain unauthorized access to networks. Over 11.1 million devices were infected in 2025, resu… SecurityWeek · Jun 10, 2026 High IRinfostealerscredentialsmalware-as-a-service
ransomware Why schools remain one of cybercriminals’ favourite targets Schools continue to be a prime target for cyberattacks, particularly ransomware, as evidenced by recent incidents at Evanston Township High School and Powys County Council. These attacks disrupt operations and compromise… Graham Cluley · Jun 10, 2026 High USGBschoolsransomwarecyberattack