Security news
Latest security news
Tue, 25 Aug 2026
- Australia Warns of Active Exploitation of Critical TeamCity Server Flaw
Australian officials are urging TeamCity customers to patch an actively exploited critical flaw, which follows a similar warning from the US government
Infosecurity Magazine
Mon, 24 Aug 2026
- Exploited Zimbra Flaw Highlights Shrinking Window to Patch
CISA issued a three-day deadline for agencies to patch a Zimbra security vulnerability, CVE-2026-73570, which allows full takeover of a user's communications.
CriticalUsed in attacksDark ReadingSynacor - Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)Rapid7 BlogMicrosoft, SharePoint
- Gunra ransomware: what you need to know
The ransomware gang Gunra has been creating havoc - exploiting unpatched VPNs and firewalls to steal data, encrypt systems, and extort victims across healthcare, finance, manufacturing, and more. Read more in my article on the Fortra blog.
Graham Cluley
Sun, 23 Aug 2026
- Microsoft Entra ID Remote Code Execution VulnerabilityHacker NewsMicrosoft
Fri, 21 Aug 2026
- Cybersecurity Job Ads Requiring AI Skills Double
An analysis by the AI Workforce Consortium found that technical cybersecurity jobs are becoming more strategic due to the influence of AI
Infosecurity Magazine
Thu, 20 Aug 2026
- BTR Reforged: Weaponizing Defender’s Remediation Driver as a Kernel Operation Primitive
Research by: Jiří Vinopal (@vinopaljiri) Abstract What if a trusted security component could be repurposed into an attacker-controlled kernel primitive? What if a signed Microsoft remediation driver could be instructed to execute arbitrary file and registry operations from Ring 0 – without exploits, vulnerabilities, or memory corruption? In this publication, we present the first full
Check Point ResearchMicrosoft - ICS Operators Warned of AI-Driven Attacks on Siemens PLCs
A US government advisory warned that attackers are deploying AI-generated exploitation scripts against exposed Siemens S7 Series PLCs
Infosecurity Magazine - Identity Abuse Through Trusted Communication Channels
Unit 42 details how attackers exploit enterprise collaboration tools for identity phishing and credential theft. Discover key defense strategies.
Unit 42
About this news
- 1,264
- Stories
- 36
- Added in the last 24 hours
- 16
- Critical in the last 7 days
- 4
- Reported by several outlets