June 2026

Gemini Voice Assistant Hijacked via Messaging Notifications

Gemini Voice Assistant Hijacked via Messaging Notifications 2026-06-04 at 16:06 By Eduard Kovacs Attackers could have triggered dangerous actions, including controlling smart home devices via Google Home and starting Zoom video calls. The post Gemini Voice Assistant Hijacked via Messaging Notifications appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Gemini Voice Assistant Hijacked via Messaging Notifications Read More »

Mirasvit Vulnerability Exploited to Execute Code on Magento Servers

Mirasvit Vulnerability Exploited to Execute Code on Magento Servers 2026-06-04 at 16:06 By Ionut Arghire A flaw in the Full Page Cache Warmer extension can be exploited without authentication via serialized PHP object payloads. The post Mirasvit Vulnerability Exploited to Execute Code on Magento Servers appeared first on SecurityWeek. This article is an excerpt from

Mirasvit Vulnerability Exploited to Execute Code on Magento Servers Read More »

Chinese Cybercrime Group in Spotlight for Record Campaign Pace

Chinese Cybercrime Group in Spotlight for Record Campaign Pace 2026-06-04 at 16:06 By Ionut Arghire Relying on social engineering, the hacking group engages in credential phishing, malware distribution, and fraud activities. The post Chinese Cybercrime Group in Spotlight for Record Campaign Pace appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Chinese Cybercrime Group in Spotlight for Record Campaign Pace Read More »

Over 1.4 Million Accounts Disrupted in Cybercrime Crackdown

Over 1.4 Million Accounts Disrupted in Cybercrime Crackdown 2026-06-04 at 16:06 By Ionut Arghire Law enforcement and tech companies disrupted infrastructure linked to scammers operating across Southeast Asia. The post Over 1.4 Million Accounts Disrupted in Cybercrime Crackdown appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Over 1.4 Million Accounts Disrupted in Cybercrime Crackdown Read More »

China-Linked TA4922 Expands Phishing Attacks to UK, Germany, Italy, and South Africa

China-Linked TA4922 Expands Phishing Attacks to UK, Germany, Italy, and South Africa 2026-06-04 at 16:06 By A new China-linked cybercrime group known as TA4922 has expanded its targeting focus to target European organizations in the U.K., Germany, Italy, and South Africa. These efforts have been complemented by a “rapid operational tempo” and a continually evolving

China-Linked TA4922 Expands Phishing Attacks to UK, Germany, Italy, and South Africa Read More »

FlutterShell Backdoor Spreads to macOS via Malicious Google and YouTube Ads

FlutterShell Backdoor Spreads to macOS via Malicious Google and YouTube Ads 2026-06-04 at 16:06 By Cybersecurity researchers have shed light on a macOS malvertising campaign codenamed Operation FlutterBridge that spreads a new backdoor called FlutterShell. According to Palo Alto Networks Unit 42, the campaign is said to be the next stage of a previously reported

FlutterShell Backdoor Spreads to macOS via Malicious Google and YouTube Ads Read More »

US House Democrats call for FTC probe into prediction markets

US House Democrats call for FTC probe into prediction markets 2026-06-04 at 13:17 By Cointelegraph by Stephen Katte The lawmakers are also asking the FTC for information on whether it has plans to take investigative or enforcement action against prediction markets for possible deceptive practices. This article is an excerpt from Cointelegraph.com News View Original

US House Democrats call for FTC probe into prediction markets Read More »

The modern-day business can learn a lot about risk from this year’s mega events

The modern-day business can learn a lot about risk from this year’s mega events 2026-06-04 at 13:17 By Help Net Security Every year brings its share of global events, but 2026 is proving to be a banner year for mega-scale entertainment. The year got off to a roaring start with the Winter Olympics, and now

The modern-day business can learn a lot about risk from this year’s mega events Read More »

Cisco Warns of Available PoC for Critical Unified CM Vulnerability

Cisco Warns of Available PoC for Critical Unified CM Vulnerability 2026-06-04 at 13:16 By Ionut Arghire The high-severity flaw can be exploited remotely, without authentication, in server-side request forgery (SSRF) attacks. The post Cisco Warns of Available PoC for Critical Unified CM Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Cisco Warns of Available PoC for Critical Unified CM Vulnerability Read More »

VS Code Vulnerability Allows One-Click GitHub Token Theft

VS Code Vulnerability Allows One-Click GitHub Token Theft 2026-06-04 at 13:16 By Eduard Kovacs A researcher has disclosed the full details of the vulnerability and released a PoC without notifying Microsoft in advance. The post VS Code Vulnerability Allows One-Click GitHub Token Theft appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

VS Code Vulnerability Allows One-Click GitHub Token Theft Read More »

CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV Catalog

CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV Catalog 2026-06-04 at 13:16 By The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a critical flaw impacting Mirasvit Cache Warmer, a popular Magento full-page cache extension, to its Known Exploited Vulnerabilities (KEV) catalog, following reports of active exploitation in the wild. The vulnerability,

CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV Catalog Read More »

DoJ Disrupts Southeast Asia Crypto Fraud Networks, Freezes $3.8 Million in Assets

DoJ Disrupts Southeast Asia Crypto Fraud Networks, Freezes $3.8 Million in Assets 2026-06-04 at 13:16 By The U.S. Department of Justice (DoJ) on Wednesday announced the results of a sweeping action undertaken by government authorities and private sector companies to combat cyber-enabled and cryptocurrency fraud targeting Americans. The “Disruption Week” operation began May 18, 2026,

DoJ Disrupts Southeast Asia Crypto Fraud Networks, Freezes $3.8 Million in Assets Read More »

Fake Sites Mimicking Open-Source Tools Rank High on Google to Deliver Malware via TDS

Fake Sites Mimicking Open-Source Tools Rank High on Google to Deliver Malware via TDS 2026-06-04 at 12:51 By Cybersecurity researchers have flagged a large-scale operation that impersonates open-source and freeware projects to funnel unsuspecting users through a Traffic Distribution System (TDS) and deliver malware families like Remus Stealer, AnimateClipper, and the SessionGate framework. “The sites

Fake Sites Mimicking Open-Source Tools Rank High on Google to Deliver Malware via TDS Read More »

Hackers Spied on a Stock Exchange Executive’s Outlook Mailbox for Five Months

Hackers Spied on a Stock Exchange Executive’s Outlook Mailbox for Five Months 2026-06-04 at 12:33 By Unknown attackers spent at least five months inside the Outlook mailbox of a senior executive at a major global stock exchange, copying the inbox out in small, repeated batches and routing it through Dropbox and OneDrive so the traffic

Hackers Spied on a Stock Exchange Executive’s Outlook Mailbox for Five Months Read More »

Coinbase freezes $3M tied to Southeast Asia crypto fraud networks

Coinbase freezes $3M tied to Southeast Asia crypto fraud networks 2026-06-04 at 09:27 By Cointelegraph by Stephen Katte Authorities around the world have been heavily targeting scam infrastructure this year, with joint actions involving the US, UAE, China, Austria and Albania. This article is an excerpt from Cointelegraph.com News View Original Source

Coinbase freezes $3M tied to Southeast Asia crypto fraud networks Read More »

CFTC follows SEC in scrapping ‘no-deny’ policy for settlements

CFTC follows SEC in scrapping ‘no-deny’ policy for settlements 2026-06-04 at 09:27 By Cointelegraph by Jesse Coghlan CFTC Chairman Mike Selig says the rescission of its “no-deny” policy means it now has more flexibility when settling enforcement actions. This article is an excerpt from Cointelegraph.com News View Original Source

CFTC follows SEC in scrapping ‘no-deny’ policy for settlements Read More »

Spotless compliance evidence can still hide a broken control

Spotless compliance evidence can still hide a broken control 2026-06-04 at 09:26 By Mirko Zorz In this interview with Help Net Security, Marc Rubbinaccio, Head of Cybersecurity and Compliance at Secureframe, explains where security teams go wrong when preparing for CMMC and FedRAMP 20x. The conversation covers how organizations check the 110 requirements but miss

Spotless compliance evidence can still hide a broken control Read More »

Scroll to Top