Install
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
PaperCut AI Swarm Attack Breaches 395 Orgs [2026]
3+ hour, 39+ min ago (416+ words) Silverfort frames the incident as a warning specifically about identity security. Its analysis argues that automated, AI-driven credential harvesting and lateral movement can escalate to domain-admin control far faster than most organizations’ detection and response processes are built to handle,…...
iOS 18.7.10: About 120 Security Fixes for iPhone XS and Three Other Devices
10+ hour, 26+ min ago (276+ words) iOS 18.7.10 and iPadOS 18.7.10, released August 17, 2026, list on the order of 120 CVE entries across more than 30 components, according to Apple’s own support article at support.apple.com/en-us/148287. The release is available for exactly four devices: iPhone XS, iPhone XS Max,…...
The Chain That Opened the Crisis: How SonicWall SMA1000’s First Zero-Day Turned VPN Appliances Into MFA Harvesting Machines
2+ hour, 41+ min ago (129+ words) CVE-2026-15409 chained SSRF and code injection to achieve root on SMA1000 appliances, stealing TOTP MFA seeds and turning the VPN gateway into a persistent surveillance platform. CISA flagged it for ransomware exploitation. We covered the second chain but never the first…...
Check Point VPN CVE-2026-85102 and CVE-2026-85103: Early Warning for Pre-Authentication RCE
10+ hour, 5+ min ago (1541+ words) 1. Basic Information Original Title: Dutch NCSC: Critical Check Point VPN flaws exploitation is imminent Source: BleepingComputer, Dutch NCSC, Check Point Published Date: 2026-09-12 Severity: High Basis for Severity: Both CVSS 9.8 vulnerabilities allow unauthenticated remote code execution. Although the reference materials do…...
BlueMoon Exploit Kit Chains Recent Chrome, Windows Zero-Days
2+ day, 1+ hour ago (602+ words) Multiple espionage groups have been using a new exploit kit dubbed BlueMoon in seemingly opportunistic and rushed deployments, cybersecurity firm Proofpoint reports. The China-linked APT Violet Typhoon (also tracked as APT31, JungleBamboo, TA412, and Tide Castle) was the first to use it…...
More JFrog Artifactory bugs under attack, and all 3 have patches
1+ day, 14+ hour ago (603+ words) JFrog Artifactory instances continue to get hit hard. Multiple attackers are exploiting three JFrog Artifactory bugs to gain administrative control over vulnerable instances - in some cases, just days after the vendor published a patch - and then using this illicit access…...
Silicon Motion Earns ISO/SAE 21434 Automotive Cybersecurity Process Certification - AOL
3+ day, 19+ hour ago (590+ words) Silicon Motion Technology Corporation (NasdaqGS: SIMO), a global leader in designing and marketing NAND flash controllers for solid-state storage devices, today announced that it has earned ISO/SAE... TAIPEI, Taiwan & MILPITAS, Calif.--(BUSINESS WIRE)--Sep 9, 2026-- Silicon Motion Technology Corporation (NasdaqGS:…...
Attackers are weaponizing the gap between Chromium fixes and Chrome patches
2+ day, 11+ hour ago (642+ words) A new exploit kit is revealing the perils of the “patch later” mentality. According to the Proofpoint Threat Research team, espionage-motivated threat actors are using a new malicious toolkit to chain together four separate Chrome browser and Microsoft Windows vulnerabilities…...
Latest Switch firmware update fixes exploit that could cause remote attacks
2+ day, 15+ hour ago (229+ words) GoNintendo Latest Switch firmware update fixes exploit that could cause remote attacks Hit the road, hack Nintendo updated the Switch and Switch 2 firmware to Ver. 23.0.0 last night and it brought with it a ton of exciting features for Switch 2, and…...
U.S. CISA adds Cisco, Google Chromium V8, Fortinet, and Citrix NetScaler??flaws to its Known Exploited Vulnerabilities catalog
2+ day, 17+ hour ago (345+ words) U.S. CISA adds Cisco, Google Chromium V8, Fortinet, and Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog More Capable AI, Not Enough Guardrails A New Claude 's Sandbox Failure Shows How AI Can Rationalize Real-World Harm U.S. CISA adds Microsoft Windows, N-able…...