For years, defense organizations have adapted commercially developed cyber threat intelligence platforms to fit military intelligence processes. This arrangement was often accepted as a practical...
On May 11, 2026, our research team investigated a customer infected with a brand-new ransomware family called Prinz Eugen. The encryptor is freshly built, written in Go, and more technically...
Officials in Acworth are investigating a cyberattack that compromised a selection of government computer networks on June 8. The city recently identified a cybersecurity incident that impacted...
The cryptographic keys that secure your computer's boot sequence will start to expire on June 24. Here's what that means for you.
Cisco security advisory (AV26-602)
Zyxel security advisory (AV26-603)
Mozilla security advisory (AV26-604)
Oracle security advisory – June 2026 quarterly rollup (AV26-605)
JetBrains security advisory (AV26-606)
Microsoft security advisory (AV26-607)
Atlassian security advisory (AV26-608)
Google Chrome security advisory (AV26-609)
[Control Systems] Moxa security advisory (AV26-610)
Mitel security advisory (AV26-611)
F5 security advisory (AV26-612)
Cisco security advisory (AV26-613)
Splunk security advisory (AV26-614)
AL26-014 – FortiBleed leak of thousands of compromised credentials impacting Fortinet devices
Drupal security advisory (AV26-615)
[Control systems] Mitsubishi Electric security advisory (AV26-616)
VP Eric Brandwine explains people aren't all that great, actually
Threat actors are exploiting a recently patched security flaw impacting Gravity SMTP, a WordPress plugin that's installed on about 100,000 sites. The vulnerability, tracked as CVE-2026-4020 (CVSS...
Plus: Gay bars in San Francisco using face scanners, France quits Palantir, Apple plans to change its private email and more.
In June 2026, retailer JCPenney and associated brands were targeted in a ShinyHunters "pay or leak" extortion campaign. Data allegedly obtained from JCPenney through the exploitation of a critical...
We provide guidance for preparing for and mitigating large-scale credential attacks, focusing on recent campaigns targeting security vendors' devices. The post Threat Brief: Mitigating Large-Scale...
Security researchers at Paradigm Shift have published a working exploit, dubbed usbliter8, that achieves arbitrary code execution inside the SecureROM of Apple's A12 and A13 chips. That code is...
The Gentlemen ransomware-as-a-service (RaaS) operation is actively developing and maintaining a suite of endpoint detection and response (EDR) killers that it hands out to affiliates for impairing...
Dolphins, sharks, turtles, and human workers are all victims of unregulated squid fishing fleets. Another news article. As usual, you can also use this squid post to talk about the security...
Microsoft researchers have detailed an exploit chain, named AutoJack, that turns an AI browsing agent into a delivery vehicle for remote code execution. Steer the agent to load an attacker's web...
Dutch law enforcement authorities, along with counterparts from Canada , Germany, and the U.S., have disrupted malicious infrastructure associated with SocGholish and cleaned up nearly 15,000...