SecurityTicks

OpenSSH 10.3 patches five security bugs and drops legacy rekeying support

OpenSSH 10.3 patches five security bugs and drops legacy rekeying support 2026-04-02 at 18:58 By Anamarija Pogorelec OpenSSH 10.3 shipped carrying five security fixes alongside feature additions and a set of behavior changes that will break compatibility with older SSH implementations that do not support rekeying. Rekeying compatibility removed SSH clients and servers that lack […]

OpenSSH 10.3 patches five security bugs and drops legacy rekeying support Read More »

Software supply chain hacks trigger wave of intrusions, data theft

Software supply chain hacks trigger wave of intrusions, data theft 2026-04-02 at 18:58 By Zeljka Zorz After linking the Axios npm supply chain attack to North Korean hackers, Google researchers warned that “hundreds of thousands of stolen secrets could potentially be circulating” as a result of this and the Trivy, KICS, LiteLLM, and Telnyx supply

Software supply chain hacks trigger wave of intrusions, data theft Read More »

New Red Hat subscription simplifies long-term enterprise Linux support

New Red Hat subscription simplifies long-term enterprise Linux support 2026-04-02 at 18:58 By Industry News Red Hat has announced Red Hat Enterprise Linux Extended Life Cycle Premium, a new subscription that provides a predictable 14-year life cycle for major Red Hat Enterprise Linux releases. This stand-alone subscription consolidates extended support, simplifying the management of multiple

New Red Hat subscription simplifies long-term enterprise Linux support Read More »

Cybersecurity M&A Roundup: 38 Deals Announced in March 2026

Cybersecurity M&A Roundup: 38 Deals Announced in March 2026 2026-04-02 at 18:57 By Eduard Kovacs Significant cybersecurity M&A deals announced by Airbus, Cellebrite, Databricks, Quantum eMotion, Rapid7, and OpenAI. The post Cybersecurity M&A Roundup: 38 Deals Announced in March 2026 appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Cybersecurity M&A Roundup: 38 Deals Announced in March 2026 Read More »

ThreatsDay Bulletin: Pre-Auth Chains, Android Rootkits, CloudTrail Evasion & 10 More Stories

ThreatsDay Bulletin: Pre-Auth Chains, Android Rootkits, CloudTrail Evasion & 10 More Stories 2026-04-02 at 18:57 By The latest ThreatsDay Bulletin is basically a cheat sheet for everything breaking on the internet right now. No corporate fluff or boring lectures here, just a quick and honest look at the messy reality of keeping systems safe this week. Things are moving

ThreatsDay Bulletin: Pre-Auth Chains, Android Rootkits, CloudTrail Evasion & 10 More Stories Read More »

Cisco Patches Critical and High-Severity Vulnerabilities

Cisco Patches Critical and High-Severity Vulnerabilities 2026-04-02 at 15:36 By Ionut Arghire The bugs could lead to authentication bypass, remote code execution, information disclosure, and privilege escalation. The post Cisco Patches Critical and High-Severity Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Cisco Patches Critical and High-Severity Vulnerabilities Read More »

250,000 Affected by Data Breach at Nacogdoches Memorial Hospital

250,000 Affected by Data Breach at Nacogdoches Memorial Hospital 2026-04-02 at 15:10 By Ionut Arghire In January 2026, a threat actor hacked the hospital’s internal network and stole personal and health information. The post 250,000 Affected by Data Breach at Nacogdoches Memorial Hospital appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

250,000 Affected by Data Breach at Nacogdoches Memorial Hospital Read More »

Researchers Uncover Mining Operation Using ISO Lures to Spread RATs and Crypto Miners

Researchers Uncover Mining Operation Using ISO Lures to Spread RATs and Crypto Miners 2026-04-02 at 15:10 By A financially motivated operation codenamed REF1695 has been observed leveraging fake installers to deploy remote access trojans (RATs) and cryptocurrency miners since November 2023. “Beyond cryptomining, the threat actor monetizes infections through CPA (Cost Per Action) fraud, directing victims to content locker pages

Researchers Uncover Mining Operation Using ISO Lures to Spread RATs and Crypto Miners Read More »

Metaplanet buys 5,075 Bitcoin in Q1 to become 3rd-largest treasury

Metaplanet buys 5,075 Bitcoin in Q1 to become 3rd-largest treasury 2026-04-02 at 14:46 By Cointelegraph by Christina Comben Metaplanet lifted its Bitcoin holdings to 40,177 in Q1 after buying over $400 million of BTC to become the third-largest BTC treasury. This article is an excerpt from Cointelegraph.com News View Original Source

Metaplanet buys 5,075 Bitcoin in Q1 to become 3rd-largest treasury Read More »

Drift explains $280M exploit as critics question Circle over USDC freeze

Drift explains $280M exploit as critics question Circle over USDC freeze 2026-04-02 at 14:46 By Cointelegraph by Helen Partz Drift said a durable nonce attack helped drive its Solana exploit, as critics questioned why stolen USDC moved for hours without a freeze. This article is an excerpt from Cointelegraph.com News View Original Source

Drift explains $280M exploit as critics question Circle over USDC freeze Read More »

Polymarket fee expansion boosts revenue amid regulatory pressure

Polymarket fee expansion boosts revenue amid regulatory pressure 2026-04-02 at 14:46 By Cointelegraph by Ezra Reguerra Polymarket’s March 30 fee overhaul lifted daily fees and revenue, but how long the spike lasts is unclear as regulatory pressure builds. This article is an excerpt from Cointelegraph.com News View Original Source

Polymarket fee expansion boosts revenue amid regulatory pressure Read More »

AI search is atomizing our information, warns government digital designer

AI search is atomizing our information, warns government digital designer 2026-04-02 at 14:46 By SA Mathieson We must design expecting much of what we publish will be reinterpreted by ‘systems we don’t control’ Those who rely on artificial intelligence to summarize official material may get a misleadingly narrow or incomplete version of it, a senior

AI search is atomizing our information, warns government digital designer Read More »

DarkSword exploit forces Apple to loosen its patching policy

DarkSword exploit forces Apple to loosen its patching policy 2026-04-02 at 14:46 By Sinisa Markovic Apple has extended security updates to a wider range of devices still running iOS 18, aiming to protect users from the DarkSword exploit kit. This is not the first time Apple has backported fixes for older devices based on vulnerability

DarkSword exploit forces Apple to loosen its patching policy Read More »

Apple Expands iOS 18.7.7 Update to More Devices to Block DarkSword Exploit

Apple Expands iOS 18.7.7 Update to More Devices to Block DarkSword Exploit 2026-04-02 at 14:46 By Apple on Wednesday expanded the availability of iOS 18.7.7 and iPadOS 18.7.7 to a broader range of devices to protect users from the risk posed by a recently disclosed exploit kit known as DarkSword. “We enabled the availability of iOS 18.7.7 for more devices on

Apple Expands iOS 18.7.7 Update to More Devices to Block DarkSword Exploit Read More »

WhatsApp Alerts 200 Users After Fake iOS App Installed Spyware; Italian Firm Faces Action

WhatsApp Alerts 200 Users After Fake iOS App Installed Spyware; Italian Firm Faces Action 2026-04-02 at 14:46 By Meta-owned messaging platform WhatsApp said it alerted about 200 users who were tricked into installing a bogus version of its iOS app that was infected with spyware. According to reports from Italian newspaper La Repubblica and news agency ANSA, the

WhatsApp Alerts 200 Users After Fake iOS App Installed Spyware; Italian Firm Faces Action Read More »

CERT-UA Impersonation Campaign Spread AGEWHEEZE Malware to 1 Million Emails

CERT-UA Impersonation Campaign Spread AGEWHEEZE Malware to 1 Million Emails 2026-04-02 at 14:46 By The Computer Emergency Response Team of Ukraine (CERT-UA) has disclosed details of a new phishing campaign in which the cybersecurity agency itself was impersonated to distribute a remote administration tool known as AGEWHEEZE. As part of the attacks, the threat actors,

CERT-UA Impersonation Campaign Spread AGEWHEEZE Malware to 1 Million Emails Read More »

Microsoft Warns of WhatsApp-Delivered VBS Malware Hijacking Windows via UAC Bypass

Microsoft Warns of WhatsApp-Delivered VBS Malware Hijacking Windows via UAC Bypass 2026-04-02 at 14:46 By Microsoft is calling attention to a new campaign that has leveraged WhatsApp messages to distribute malicious Visual Basic Script (VBS) files. The activity, beginning in late February 2026, leverages these scripts to initiate a multi-stage infection chain for establishing persistence

Microsoft Warns of WhatsApp-Delivered VBS Malware Hijacking Windows via UAC Bypass Read More »

Scroll to Top