April 2026

AI-assisted intruders pwned Vercel via OAuth abuse and a pilfered employee account

AI-assisted intruders pwned Vercel via OAuth abuse and a pilfered employee account 2026-04-21 at 15:29 By Carly Page CEO suspects silicon sidekick behind ‘surprising velocity’ breach – cyber crims shop stolen data for $2M Vercel’s CEO reckons the crooks behind its recent breach likely had a helping hand from AI, saying the attackers moved with […]

AI-assisted intruders pwned Vercel via OAuth abuse and a pilfered employee account Read More »

Crook claims to leak ‘video surveillance footage’ of companies

Crook claims to leak ‘video surveillance footage’ of companies 2026-04-21 at 15:29 By Connor Jones Mexican IT services firm admits it was hacked, but says client operations weren’t affected A Mexican IT infrastructure and digital transformation biz is on clean-up duty after a criminal posted screenshots of what they claimed was company video surveillance footage

Crook claims to leak ‘video surveillance footage’ of companies Read More »

OpenAI’s Chronicle feature lets Codex read your screen, raising privacy concerns

OpenAI’s Chronicle feature lets Codex read your screen, raising privacy concerns 2026-04-21 at 15:29 By Anamarija Pogorelec OpenAI’s Chronicle is a feature designed to help Codex, an AI-powered coding assistant, better understand what users are working on by capturing context directly from their screens. It uses recent screen activity to build memories, allowing Codex to

OpenAI’s Chronicle feature lets Codex read your screen, raising privacy concerns Read More »

CISA flags another Cisco Catalyst SD-WAN Manager bug as exploited (CVE-2026-20133)

CISA flags another Cisco Catalyst SD-WAN Manager bug as exploited (CVE-2026-20133) 2026-04-21 at 15:29 By Zeljka Zorz CISA added eight new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, including a Cisco Catalyst SD-WAN Manager vulnerability (CVE-2026-20133) that Cisco has yet to flag as exploited. Three Cisco Catalyst SD-WAN Manager vulnerabilities Alongside CVE-2026-20133, CISA has

CISA flags another Cisco Catalyst SD-WAN Manager bug as exploited (CVE-2026-20133) Read More »

Progress Patches Multiple Vulnerabilities in MOVEit WAF, LoadMaster

Progress Patches Multiple Vulnerabilities in MOVEit WAF, LoadMaster 2026-04-21 at 15:29 By Ionut Arghire The security defects could be exploited for remote code execution, OS command injection, and WAF detection bypass. The post Progress Patches Multiple Vulnerabilities in MOVEit WAF, LoadMaster appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Progress Patches Multiple Vulnerabilities in MOVEit WAF, LoadMaster Read More »

Organizations Warned of Exploited Cisco, Kentico, Zimbra Vulnerabilities

Organizations Warned of Exploited Cisco, Kentico, Zimbra Vulnerabilities 2026-04-21 at 15:29 By Ionut Arghire CISA expanded the KEV catalog with eight flaws, but five of them have been flagged as exploited before. The post Organizations Warned of Exploited Cisco, Kentico, Zimbra Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Organizations Warned of Exploited Cisco, Kentico, Zimbra Vulnerabilities Read More »

No Exploit Needed: How Attackers Walk Through the Front Door via Identity-Based Attacks

No Exploit Needed: How Attackers Walk Through the Front Door via Identity-Based Attacks 2026-04-21 at 15:29 By The cybersecurity industry has spent the last several years chasing sophisticated threats like zero-days, supply chain compromises, and AI-generated exploits. However, the most reliable entry point for attackers still hasn’t changed: stolen credentials. Identity-based attacks remain a dominant

No Exploit Needed: How Attackers Walk Through the Front Door via Identity-Based Attacks Read More »

NGate Campaign Targets Brazil, Trojanizes HandyPay to Steal NFC Data and PINs

NGate Campaign Targets Brazil, Trojanizes HandyPay to Steal NFC Data and PINs 2026-04-21 at 15:29 By Cybersecurity researchers have discovered a new iteration of an Android malware family calledNGate that has been found to abuse a legitimate application called HandyPay instead of NFCGate. “The threat actors took the app, which is used to relay NFC data,

NGate Campaign Targets Brazil, Trojanizes HandyPay to Steal NFC Data and PINs Read More »

Google Patches Antigravity IDE Flaw Enabling Prompt Injection Code Execution

Google Patches Antigravity IDE Flaw Enabling Prompt Injection Code Execution 2026-04-21 at 15:29 By Cybersecurity researchers have discovered a vulnerability in Google’s agentic integrated development environment (IDE), Antigravity, that could be exploited to achieve code execution. The flaw, since patched, combines Antigravity’s permitted file-creation capabilities with an insufficient input sanitization in Antigravity’s native file-searching tool,

Google Patches Antigravity IDE Flaw Enabling Prompt Injection Code Execution Read More »

Scammers demand crypto from stranded ships in Strait of Hormuz: Report

Scammers demand crypto from stranded ships in Strait of Hormuz: Report 2026-04-21 at 14:08 By Cointelegraph by Amin Haqshanas Shipping companies stranded near the Strait of Hormuz are reportedly being targeted by scammers posing as Iranian authorities, demanding Bitcoin or USDt for “safe passage.” This article is an excerpt from Cointelegraph.com News View Original Source

Scammers demand crypto from stranded ships in Strait of Hormuz: Report Read More »

Philippines SEC warns on dYdX, six other unauthorized crypto platforms

Philippines SEC warns on dYdX, six other unauthorized crypto platforms 2026-04-21 at 14:08 By Cointelegraph by Ezra Reguerra Promoters of flagged platforms may face fines of up to 5 million Philippine pesos ($89,000) or up to 21 years in prison under Philippine securities law. This article is an excerpt from Cointelegraph.com News View Original Source

Philippines SEC warns on dYdX, six other unauthorized crypto platforms Read More »

Met police trials snoop tech platform in push to cuff more London shoplifters

Met police trials snoop tech platform in push to cuff more London shoplifters 2026-04-21 at 14:08 By Connor Jones No facial recognition privacy intrusions either! Well, maybe a little London’s Metropolitan Police is trialing new retail technology to help curtail the city’s pervasive shoplifting problem… and it doesn’t rely on live facial recognition (LFR).… This

Met police trials snoop tech platform in push to cuff more London shoplifters Read More »

England’s school phone ban gets teeth, just in time to bite no one

England’s school phone ban gets teeth, just in time to bite no one 2026-04-21 at 14:08 By Carly Page 90% of schools already compliant, but at least now there’s paperwork Ministers are moving to turn England’s patchwork of school phone bans into law, after peers backed fresh changes to the Children’s Wellbeing and Schools Bill

England’s school phone ban gets teeth, just in time to bite no one Read More »

Data Breaches at Healthcare Organizations in Illinois and Texas Affect 600,000

Data Breaches at Healthcare Organizations in Illinois and Texas Affect 600,000 2026-04-21 at 14:08 By Eduard Kovacs Data breaches were disclosed by Southern Illinois Dermatology, Saint Anthony Hospital, and North Texas Behavioral Health Authority. The post Data Breaches at Healthcare Organizations in Illinois and Texas Affect 600,000 appeared first on SecurityWeek. This article is an

Data Breaches at Healthcare Organizations in Illinois and Texas Affect 600,000 Read More »

$290 Million Kelp DAO Crypto Heist Blamed on North Korea

$290 Million Kelp DAO Crypto Heist Blamed on North Korea 2026-04-21 at 14:08 By Ionut Arghire The hackers targeted LayerZero’s DVN, compromising certain RPCs and DDoSing others to trigger failover to the poisoned infrastructure.   The post $290 Million Kelp DAO Crypto Heist Blamed on North Korea appeared first on SecurityWeek. This article is an excerpt

$290 Million Kelp DAO Crypto Heist Blamed on North Korea Read More »

European banks tap Fireblocks for MiCA-compliant euro stablecoin

European banks tap Fireblocks for MiCA-compliant euro stablecoin 2026-04-21 at 12:56 By Cointelegraph by Christina Comben A 12-bank European consortium led by Qivalis is partnering with Fireblocks to develop a regulated euro stablecoin under MiCA, targeting launch in the second half of 2026. This article is an excerpt from Cointelegraph.com News View Original Source

European banks tap Fireblocks for MiCA-compliant euro stablecoin Read More »

Panasonic creates device-locked QR codes to speed facial biometric capture

Panasonic creates device-locked QR codes to speed facial biometric capture 2026-04-21 at 12:56 By Simon Sharwood Admins are tired of taking photos, so this enables secure on-site unattended enrolment Japanese industrial giant Panasonic has created a new form of QR code it says will only work on designated devices and environments.… This article is an

Panasonic creates device-locked QR codes to speed facial biometric capture Read More »

Iran claims US used backdoors to knock out networking equipment during war

Iran claims US used backdoors to knock out networking equipment during war 2026-04-21 at 12:56 By Simon Sharwood And China is loving it Iranian media is claiming that the US used backdoors and/or botnets to disable networking equipment during the current war, and Chinese state media is dining out on the allegations.… This article is

Iran claims US used backdoors to knock out networking equipment during war Read More »

Scroll to Top