CYBERSIXT
Signal Over Noise
Live threat intelligence
Latest Cybersecurity News
Breaking threat intelligence, CVE analysis, and incident coverage.
67
Articles · 24h
150
Open incidents
174
KEV CVEs tracked
Filters
All publications
Newest
Oldest
Favourites
This box filters the last 24h — search the full archive →
Live
UNIT42.PALOALTONETWORKS.COM — Hackers exploit trusted chat apps to steal enterprise identities
INFOSECURITY-MAGAZINE.COM — Android Trojan ToxicPanda 2.0 now hits 140 apps, 349 banks
STEPSECURITY.IO — Typosquatted dependency hijacks Rust crate arrayref
INFOSECURITY-MAGAZINE.COM — Def Con Attendees Targeted by Persistent Phishing Campaign
SECURITYAFFAIRS.COM — SSRF bug in MLflow (CVE-2026-64849) exposes cloud secrets
SECURITYAFFAIRS.COM — US Indicts 17 Iranian Hackers Over 31TB University Data Theft
SECURITYWEEK.COM — Citrix fixes NetScaler auth bypass flaw CVE-2026-19490
SECURITYONLINE.INFO — Jewelbug APT uses fake updates to spy on governments
SECURITYWEEK.COM — GitLab Flaw CVE-2026-19478 Exploited in Days, Urges Patch
SECURITYAFFAIRS.COM — StopAndProtect turns 2,000 hacked WordPress sites into malware hubs
SECURITYWEEK.COM — Hackers Using AI to Target Siemens PLCs in Critical US Sectors
SECURITYONLINE.INFO — Chinese linked JWR phishing kit targets Shopify, PayPal via SMS
SECURITYONLINE.INFO — Evooo1Bot Linux Botnet Hijacks Routers via SSH Brute Force
THEHACKERNEWS.COM — Critical Elementor Pro flaw lets hackers upload and run PHP code
UNIT42.PALOALTONETWORKS.COM — Hackers exploit trusted chat apps to steal enterprise identities
INFOSECURITY-MAGAZINE.COM — Android Trojan ToxicPanda 2.0 now hits 140 apps, 349 banks
STEPSECURITY.IO — Typosquatted dependency hijacks Rust crate arrayref
INFOSECURITY-MAGAZINE.COM — Def Con Attendees Targeted by Persistent Phishing Campaign
SECURITYAFFAIRS.COM — SSRF bug in MLflow (CVE-2026-64849) exposes cloud secrets
SECURITYAFFAIRS.COM — US Indicts 17 Iranian Hackers Over 31TB University Data Theft
SECURITYWEEK.COM — Citrix fixes NetScaler auth bypass flaw CVE-2026-19490
SECURITYONLINE.INFO — Jewelbug APT uses fake updates to spy on governments
SECURITYWEEK.COM — GitLab Flaw CVE-2026-19478 Exploited in Days, Urges Patch
SECURITYAFFAIRS.COM — StopAndProtect turns 2,000 hacked WordPress sites into malware hubs
SECURITYWEEK.COM — Hackers Using AI to Target Siemens PLCs in Critical US Sectors
SECURITYONLINE.INFO — Chinese linked JWR phishing kit targets Shopify, PayPal via SMS
SECURITYONLINE.INFO — Evooo1Bot Linux Botnet Hijacks Routers via SSH Brute Force
THEHACKERNEWS.COM — Critical Elementor Pro flaw lets hackers upload and run PHP code
Daily Briefing
loading…
Read the full briefing
→
Developing Stories
All incidents
→
vulnerability
38m ago
MLflow SSRF flaw (CVE-2026-64849) exploited in the wild
4 articles tracked
breach
1h ago
US indicts 17 Iranian hackers for 31TB university data theft
4 articles tracked
vulnerability
1h ago
Citrix NetScaler authentication bypass vulnerability (CVE-2026-19490)
3 articles tracked
malware
2h ago
StopAndProtect campaign hijacks 2,000 WordPress sites for malware distribution
4 articles tracked
vulnerability
2h ago
GitLab GraphQL injection flaw (CVE-2026-19478) allows unauthenticated project modification
6 articles tracked
vulnerability
23h ago
Chrome patches critical WebGL buffer overflow flaws (CVE-2026-76034, CVE-2026-76036)
2 articles tracked
campaign
1d ago
HoneyMyte (Mustang Panda) updates CoolClient backdoor with signed kernel driver
3 articles tracked
malware
1d ago
AmnesiaStealer macOS infostealer spreads via fake GitHub
3 articles tracked
Latest analysis
Hackers exploit trusted chat apps to steal enterprise identities
Android Trojan ToxicPanda 2.0 now hits 140 apps, 349 banks
Typosquatted dependency hijacks Rust crate arrayref
Def Con Attendees Targeted by Persistent Phishing Campaign
SSRF bug in MLflow (CVE-2026-64849) exposes cloud secrets
US Indicts 17 Iranian Hackers Over 31TB University Data Theft
Citrix fixes NetScaler auth bypass flaw CVE-2026-19490
Jewelbug APT uses fake updates to spy on governments
GitLab Flaw CVE-2026-19478 Exploited in Days, Urges Patch
StopAndProtect turns 2,000 hacked WordPress sites into malware hubs
Hackers Using AI to Target Siemens PLCs in Critical US Sectors
Chinese linked JWR phishing kit targets Shopify, PayPal via SMS
Evooo1Bot Linux Botnet Hijacks Routers via SSH Brute Force
Critical Elementor Pro flaw lets hackers upload and run PHP code
Splunk patches critical RCE flaw in MCP Server app, urges updates
Google gives US college students a free year of AI Pro access
Microsoft Defender update flaw halts scans at 99%
Splunk patches 60 flaws, three critical CVSS 9.4 bugs expose data
CVE-2026-70496 & CVE-2026-66794: Privilege Escalation in Red Hat ACM Hits CVSS 9.9
Zimbra flaw (CVE-2026-73570) lets attackers run arbitrary code
CVE-2026-20030: Cisco Crosswork SQL Command Injection Scores CVSS 10.0
Splunk patches AI Toolkit OS command injection flaw CVE-2026-20266
CVE-2026-20315 & CVE-2026-20317: Cisco Secure Workload Auth Bypass, Privilege Escalation Hit CVSS 10
ISC Daily Update: Green Threat Level, New Podcast and SANS Tips
CVE-2026-47627: CVSS 9.8 Denial of Service Hits NVIDIA Triton
Airlock Digital Secures IRAP Endorsement for Government Apps
Kriminal AI raises alarms over cybercrime enabled hacking tools
CISA Adds CVE-2026-64849 to Known Exploited Vulnerabilities Catalogue
Spectre flaw lets attackers steal JWTs from Cloudflare Workers
Fake game sites push Download Studio via deceptive links
OpenAI Halts Frontier RL Training to Bolster AI Safety Defences
Inside Operation CameraSwarm: How One Actor Took Over 14,000 Dahua Cameras
Microsoft tops Frost Radar 2026 as CWPP visionary leader
SilkParasite APT deploys AI crafted RATs in Central Asia
CVE-2026-19490: Critical Vulnerability Affecting Citrix NetScaler ADC and NetScaler Gateway
Cloudflare Strengthens Workers Defence Against Remote Spectre Leak
Linux Foundation launches Akrites to shield open source from AI threats
Citrix patches critical NetScaler auth bypass flaw CVE-2026-19490
How Android sideloading works and why you should stay cautious
MaaS Campaign Uses ClickFix ErrTraffic Cruciferra to Steal Data
US agencies warn AI crafted exploits target Siemens S7 PLCs
Amazon tightens cloud metadata defence after widespread SSRF scan
Prison for data analyst who tried to extort $2.5 million from his employer
CVE-2026-8715 in HashiCorp Vault enables file reads on Kubernetes
Grandoreiro Trojan Returns in Mexico via DLL Sideloading Trick
Red Hat fixes Kubernetes bug that gives cluster-admin rights
CodeSecCon Draws 1,500 Experts to Strengthen Software Security
Google patches Android ContactsProvider2 SQLi high severity bug
DOJ indicts 17 Iranians over Mabna Institute campus hack spree
Urgent Patches Address Flaws in Microsoft, Apple, IBM Db2
New SilkParasite RATs Threaten Central Asian Government Networks
Former Ping Identity and CyberArk Executives Join AppViewX to Scale Machine and Agent Identity Security
Commvault fixes critical bugs allowing remote server takeover
GuidePoint GRIT Exposes Ransom Busters as Ransomware Affiliate
StopAndProtect malware hits 2,000 hacked WordPress sites worldwide
Prevalent AI Raises $22M to Expand Data Fabric Security Platform
OpenAI Boosts AI Safeguards After Hugging Face Security Incident
Telegram seeks .gram domain as critical zero day exploits surge
14,500 Dahua Devices Compromised in Credential and P2P Attacks
US indicts Iran's Mabna Institute for massive academic data theft
AI Powered Phishing 3.0 Fuels Agent Versus Agent Arms Race
StopAndProtect Campaign Hijacks 2,000 WordPress Sites for Malware
Cl0p Ransomware Group Names Over 40 Victims of PTC Windchill Campaign
Patches Needed for macOS, SharePoint, vCenter and IKE Flaws
Scammers Use Fake Crypto Wallet Checkers to Steal Funds
FBI Warns Medusa Ransomware Hits 500+ Critical Targets
GitHub outage caused by traffic surge and autoscaling flaws
The Feed
Last 24 hours
Load more
X