Featured

Iran-Linked Hackers Disrupt US Critical Infrastructure via PLC Attacks

Iran-Linked Hackers Disrupt US Critical Infrastructure via PLC Attacks 2026-04-08 at 06:17 By Mike Lennon Federal agencies warn attackers are manipulating PLC and SCADA systems across multiple sectors, triggering operational disruptions and raising concerns over broader OT targeting. The post Iran-Linked Hackers Disrupt US Critical Infrastructure via PLC Attacks appeared first on SecurityWeek. This article […]

Iran-Linked Hackers Disrupt US Critical Infrastructure via PLC Attacks Read More »

Anthropic Unveils ‘Claude Mythos’ – A Cybersecurity Breakthrough That Could Also Supercharge Attacks

Anthropic Unveils ‘Claude Mythos’ – A Cybersecurity Breakthrough That Could Also Supercharge Attacks 2026-04-07 at 21:53 By Kevin Townsend New AI model drives Project Glasswing, a effort to secure critical software before advanced capabilities fall into the wrong hands. The post Anthropic Unveils ‘Claude Mythos’ – A Cybersecurity Breakthrough That Could Also Supercharge Attacks appeared first on

Anthropic Unveils ‘Claude Mythos’ – A Cybersecurity Breakthrough That Could Also Supercharge Attacks Read More »

Wynn Resorts Says 21,000 Employees Affected by ShinyHunters Hack

Wynn Resorts Says 21,000 Employees Affected by ShinyHunters Hack 2026-04-07 at 09:24 By Eduard Kovacs The high-end casino and hotel operator has likely paid a ransom to avoid a data leak. The post Wynn Resorts Says 21,000 Employees Affected by ShinyHunters Hack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Wynn Resorts Says 21,000 Employees Affected by ShinyHunters Hack Read More »

Fortinet Rushes Emergency Fixes for Exploited Zero-Day

Fortinet Rushes Emergency Fixes for Exploited Zero-Day 2026-04-06 at 12:42 By Ionut Arghire The improper access control bug in FortiClient EMS allows unauthenticated attackers to execute arbitrary code remotely. The post Fortinet Rushes Emergency Fixes for Exploited Zero-Day appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Fortinet Rushes Emergency Fixes for Exploited Zero-Day Read More »

European Commission Confirms Data Breach Linked to Trivy Supply Chain Attack

European Commission Confirms Data Breach Linked to Trivy Supply Chain Attack 2026-04-04 at 13:31 By Ionut Arghire Hackers stole over 300GB of data from the Commission’s AWS environment, including personal information. The post European Commission Confirms Data Breach Linked to Trivy Supply Chain Attack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

European Commission Confirms Data Breach Linked to Trivy Supply Chain Attack Read More »

North Korean Hackers Drain $285 Million From Drift in 10 Seconds

North Korean Hackers Drain $285 Million From Drift in 10 Seconds 2026-04-03 at 14:30 By Ionut Arghire The attackers prepared infrastructure and multiple nonce-based transactions, took over an admin key, and drained five vaults. The post North Korean Hackers Drain $285 Million From Drift in 10 Seconds appeared first on SecurityWeek. This article is an

North Korean Hackers Drain $285 Million From Drift in 10 Seconds Read More »

Critical Vulnerability in Claude Code Emerges Days After Source Leak

Critical Vulnerability in Claude Code Emerges Days After Source Leak 2026-04-02 at 21:45 By Kevin Townsend Within days of each other, Anthropic first leaked the source code to Claude Code, and then a critical vulnerability was found by Adversa AI. The post Critical Vulnerability in Claude Code Emerges Days After Source Leak appeared first on

Critical Vulnerability in Claude Code Emerges Days After Source Leak Read More »

Mercor Hit by LiteLLM Supply Chain Attack

Mercor Hit by LiteLLM Supply Chain Attack 2026-04-02 at 13:45 By Ionut Arghire The AI recruiting firm is investigating the incident as Lapsus$ claimed the theft of 4TB of Mercor data. The post Mercor Hit by LiteLLM Supply Chain Attack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Mercor Hit by LiteLLM Supply Chain Attack Read More »

Exploited Zero-Day Among 21 Vulnerabilities Patched in Chrome

Exploited Zero-Day Among 21 Vulnerabilities Patched in Chrome 2026-04-01 at 18:46 By Eduard Kovacs Google has announced fixes for CVE-2026-5281, a zero-day affecting Chrome’s Dawn component.  The post Exploited Zero-Day Among 21 Vulnerabilities Patched in Chrome appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Exploited Zero-Day Among 21 Vulnerabilities Patched in Chrome Read More »

Axios NPM Package Breached in North Korean Supply Chain Attack

Axios NPM Package Breached in North Korean Supply Chain Attack 2026-04-01 at 11:46 By Ionut Arghire A long-lived NPM access token was used to bypass the GitHub Actions OIDC-based CI/CD publishing workflow and push backdoored package versions. The post Axios NPM Package Breached in North Korean Supply Chain Attack appeared first on SecurityWeek. This article

Axios NPM Package Breached in North Korean Supply Chain Attack Read More »

Google Slashes Quantum Resource Requirements for Breaking Cryptocurrency Encryption

Google Slashes Quantum Resource Requirements for Breaking Cryptocurrency Encryption 2026-03-31 at 15:43 By Eduard Kovacs Google researchers have shown that breaking the encryption of Bitcoin and Ethereum requires 20x fewer qubits.  The post Google Slashes Quantum Resource Requirements for Breaking Cryptocurrency Encryption appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Google Slashes Quantum Resource Requirements for Breaking Cryptocurrency Encryption Read More »

F5 BIG-IP DoS Flaw Upgraded to Critical RCE, Now Exploited in the Wild

F5 BIG-IP DoS Flaw Upgraded to Critical RCE, Now Exploited in the Wild 2026-03-30 at 10:37 By Ionut Arghire Initially disclosed as a high-severity denial-of-service (DoS), the bug was reclassified as a critical RCE issue. The post F5 BIG-IP DoS Flaw Upgraded to Critical RCE, Now Exploited in the Wild appeared first on SecurityWeek. This

F5 BIG-IP DoS Flaw Upgraded to Critical RCE, Now Exploited in the Wild Read More »

Pro-Iranian Hacking Group Claims Credit for Hack of FBI Director Kash Patel’s Personal Account

Pro-Iranian Hacking Group Claims Credit for Hack of FBI Director Kash Patel’s Personal Account 2026-03-27 at 18:42 By Associated Press The group that it was making available for download emails and other documents from Patel’s account. The post Pro-Iranian Hacking Group Claims Credit for Hack of FBI Director Kash Patel’s Personal Account appeared first on

Pro-Iranian Hacking Group Claims Credit for Hack of FBI Director Kash Patel’s Personal Account Read More »

RSAC 2026 Conference Announcements Summary (Days 3-4)

RSAC 2026 Conference Announcements Summary (Days 3-4) 2026-03-27 at 12:48 By SecurityWeek News A summary of the announcements made by vendors on the third and fourth days of the RSAC 2026 Conference. The post RSAC 2026 Conference Announcements Summary (Days 3-4) appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

RSAC 2026 Conference Announcements Summary (Days 3-4) Read More »

From Trivy to Broad OSS Compromise: TeamPCP Hits Docker Hub, VS Code, PyPI

From Trivy to Broad OSS Compromise: TeamPCP Hits Docker Hub, VS Code, PyPI 2026-03-25 at 14:00 By Ionut Arghire The hackers compromised GitHub Action tags, then shifted to NPM, Docker Hub, VS Code, and PyPI, and teamed with Lapsus$. The post From Trivy to Broad OSS Compromise: TeamPCP Hits Docker Hub, VS Code, PyPI appeared

From Trivy to Broad OSS Compromise: TeamPCP Hits Docker Hub, VS Code, PyPI Read More »

Stryker Says Malicious File Found During Probe Into Iran-Linked Attack

Stryker Says Malicious File Found During Probe Into Iran-Linked Attack 2026-03-24 at 11:30 By Eduard Kovacs The FBI has published an alert describing the malware used by Iranian government hackers. The post Stryker Says Malicious File Found During Probe Into Iran-Linked Attack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Stryker Says Malicious File Found During Probe Into Iran-Linked Attack Read More »

M-Trends 2026: Initial Access Handoff Shrinks From Hours to 22 Seconds

M-Trends 2026: Initial Access Handoff Shrinks From Hours to 22 Seconds 2026-03-23 at 17:17 By Eduard Kovacs The latest M-Trends report is based on insights from over 500,000 hours of Mandiant incident response investigations in 2025. The post M-Trends 2026: Initial Access Handoff Shrinks From Hours to 22 Seconds appeared first on SecurityWeek. This article

M-Trends 2026: Initial Access Handoff Shrinks From Hours to 22 Seconds Read More »

Tycoon 2FA Fully Operational Despite Law Enforcement Takedown

Tycoon 2FA Fully Operational Despite Law Enforcement Takedown 2026-03-23 at 12:32 By Ionut Arghire Attack volumes are back to pre-disruption levels, and the adversary tactics have remained unchanged. The post Tycoon 2FA Fully Operational Despite Law Enforcement Takedown appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Tycoon 2FA Fully Operational Despite Law Enforcement Takedown Read More »

Oracle Releases Emergency Patch for Critical Identity Manager Vulnerability

Oracle Releases Emergency Patch for Critical Identity Manager Vulnerability 2026-03-23 at 09:18 By Eduard Kovacs CVE-2026-21992 can be used without authentication for remote code execution and it may have been exploited in the wild.  The post Oracle Releases Emergency Patch for Critical Identity Manager Vulnerability appeared first on SecurityWeek. This article is an excerpt from

Oracle Releases Emergency Patch for Critical Identity Manager Vulnerability Read More »

Critical Quest KACE Vulnerability Potentially Exploited in Attacks

Critical Quest KACE Vulnerability Potentially Exploited in Attacks 2026-03-21 at 13:00 By Eduard Kovacs The vulnerability is tracked as CVE-2025-32975 and it may have been exploited in attacks against the education sector. The post Critical Quest KACE Vulnerability Potentially Exploited in Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Critical Quest KACE Vulnerability Potentially Exploited in Attacks Read More »

Scroll to Top