May 2026

MuddyWater Uses Microsoft Teams to Steal Credentials in False Flag Ransomware Attack

MuddyWater Uses Microsoft Teams to Steal Credentials in False Flag Ransomware Attack 2026-05-06 at 18:36 By The Iranian state-sponsored hacking group known as MuddyWater (aka Mango Sandstorm, Seedworm, and Static Kitten) has been attributed to a ransomware attack in what has been described as a “false flag” operation. The attack, observed by Rapid7 in early […]

MuddyWater Uses Microsoft Teams to Steal Credentials in False Flag Ransomware Attack Read More »

Iranian APT Intrusion Masquerades as Chaos Ransomware Attack

Iranian APT Intrusion Masquerades as Chaos Ransomware Attack 2026-05-06 at 16:42 By Ionut Arghire Likely perpetrated by MuddyWater, the attack combined social engineering, persistence, credential harvesting, and data theft. The post Iranian APT Intrusion Masquerades as Chaos Ransomware Attack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Iranian APT Intrusion Masquerades as Chaos Ransomware Attack Read More »

Romanian Man Extradited to US for Role in Hacking Scheme 17 Years Ago

Romanian Man Extradited to US for Role in Hacking Scheme 17 Years Ago 2026-05-06 at 16:42 By Eduard Kovacs Gavril Sandu, 53, was indicted in 2017, but was arrested and extradited to the United States only in 2026. The post Romanian Man Extradited to US for Role in Hacking Scheme 17 Years Ago appeared first

Romanian Man Extradited to US for Role in Hacking Scheme 17 Years Ago Read More »

CISA: Critical Infrastructure Must Master Isolation, Recovery

CISA: Critical Infrastructure Must Master Isolation, Recovery 2026-05-06 at 16:42 By Eduard Kovacs The agency has issued guidance to help critical infrastructure operators prepare for cyberattacks by foreign threat actors. The post CISA: Critical Infrastructure Must Master Isolation, Recovery appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

CISA: Critical Infrastructure Must Master Isolation, Recovery Read More »

The Hacker News Launches ‘Cybersecurity Stars Awards 2026’ — Submissions Now Open

The Hacker News Launches ‘Cybersecurity Stars Awards 2026’ — Submissions Now Open 2026-05-06 at 16:42 By For nearly 20 years, we at The Hacker News have mostly told scary stories about cyberspace — big hacks, broken systems, and new threats. But behind every headline, there’s a quieter, better story. It’s the story of leaders making

The Hacker News Launches ‘Cybersecurity Stars Awards 2026’ — Submissions Now Open Read More »

Your AI Agents Are Already Inside the Perimeter. Do You Know What They’re Doing?

Your AI Agents Are Already Inside the Perimeter. Do You Know What They’re Doing? 2026-05-06 at 16:42 By Analysts recently confirmed what identity security teams have quietly feared: AI agents are being deployed faster than enterprises can govern them. In their inaugural Market Guide for Guardian Agents, Gartner states that “enterprise adoption of AI agents

Your AI Agents Are Already Inside the Perimeter. Do You Know What They’re Doing? Read More »

Herd Security Raises $3 Million for AI-Powered Training Platform

Herd Security Raises $3 Million for AI-Powered Training Platform 2026-05-06 at 16:30 By Ionut Arghire The startup will invest in expanding its training categories, optimizing video generation, and growing its partnership ecosystem. The post Herd Security Raises $3 Million for AI-Powered Training Platform appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Herd Security Raises $3 Million for AI-Powered Training Platform Read More »

Sophisticated Quasar Linux RAT Targets Software Developers

Sophisticated Quasar Linux RAT Targets Software Developers 2026-05-06 at 13:00 By Ionut Arghire The persistent, evasive implant provides remote access, surveillance, and credential exfiltration capabilities. The post Sophisticated Quasar Linux RAT Targets Software Developers appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Sophisticated Quasar Linux RAT Targets Software Developers Read More »

Google’s Android Apps Get Public Verification to Stop Supply Chain Attacks

Google’s Android Apps Get Public Verification to Stop Supply Chain Attacks 2026-05-06 at 13:00 By Google has announced expanded Binary Transparency for Android as a way to safeguard the ecosystem from supply chain attacks. “This new public ledger ensures the Google apps on your device are exactly what we intended to build and distribute,” Google’s

Google’s Android Apps Get Public Verification to Stop Supply Chain Attacks Read More »

Windows Phone Link Exploited by CloudZ RAT to Steal Credentials and OTPs

Windows Phone Link Exploited by CloudZ RAT to Steal Credentials and OTPs 2026-05-06 at 13:00 By Cybersecurity researchers have disclosed details of an intrusion that involved the use of a CloudZ remote access tool (RAT) and a previous undocumented plugin dubbed Pheno with the aim of facilitating credential theft. “According to the functionalities of the

Windows Phone Link Exploited by CloudZ RAT to Steal Credentials and OTPs Read More »

Government, Scientific Entities Hit via Daemon Tools Supply Chain Attack

Government, Scientific Entities Hit via Daemon Tools Supply Chain Attack 2026-05-06 at 12:03 By Ionut Arghire While trojanized Daemon Tools versions were installed worldwide, a sophisticated backdoor was dropped only on a dozen systems. The post Government, Scientific Entities Hit via Daemon Tools Supply Chain Attack appeared first on SecurityWeek. This article is an excerpt

Government, Scientific Entities Hit via Daemon Tools Supply Chain Attack Read More »

Palo Alto PAN-OS Flaw Under Active Exploitation Enables Remote Code Execution

Palo Alto PAN-OS Flaw Under Active Exploitation Enables Remote Code Execution 2026-05-06 at 12:03 By Palo Alto Networks has released an advisory warning that a critical buffer overflow vulnerability in its PAN-OS software has been exploited in the wild. The vulnerability, tracked as CVE-2026-0300, has been described as a case of unauthenticated remote code execution.

Palo Alto PAN-OS Flaw Under Active Exploitation Enables Remote Code Execution Read More »

Oracle Debuts Monthly Critical Security Patch Updates

Oracle Debuts Monthly Critical Security Patch Updates 2026-05-06 at 09:35 By Ionut Arghire Containing fixes for critical-severity vulnerabilities, the monthly rollouts will focus on addressing priority issues faster. The post Oracle Debuts Monthly Critical Security Patch Updates appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Oracle Debuts Monthly Critical Security Patch Updates Read More »

AWS lets agents drive its virtual cloudy desktops – which could cost 500,00 tokens per click

AWS lets agents drive its virtual cloudy desktops – which could cost 500,00 tokens per click 2026-05-06 at 09:25 By Simon Sharwood Vendor benchmark finds APIs let you do the job faster and cheaper Amazon Web Services has let AI agents loose in its cloudy WorkSpaces virtual PCs.… This article is an excerpt from The

AWS lets agents drive its virtual cloudy desktops – which could cost 500,00 tokens per click Read More »

Palo Alto Networks to Patch Zero-Day Exploited to Hack Firewalls

Palo Alto Networks to Patch Zero-Day Exploited to Hack Firewalls 2026-05-06 at 09:24 By Eduard Kovacs CVE-2026-0300 affects the Captive Portal service of PAN-OS software on PA and VM series firewalls. The post Palo Alto Networks to Patch Zero-Day Exploited to Hack Firewalls appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Palo Alto Networks to Patch Zero-Day Exploited to Hack Firewalls Read More »

India orders infosec red alert in case Mythos sparks crime spree

India orders infosec red alert in case Mythos sparks crime spree 2026-05-06 at 06:34 By Simon Sharwood Securities regulator urges market players to develop new strategies and nail cyber-basics before AI models fuel mass attacks India’s Securities and Exchange Board has advised participants in the nation’s equities industry to immediately revisit their information security systems

India orders infosec red alert in case Mythos sparks crime spree Read More »

Scroll to Top