LIVE FEED
Subscribe
//

Latest Briefings

Vulnerabilities Trezor Discloses Data Breach at Shipping Partner ShipMonk, 14,000 Customers Affected
MEDIUM Vulnerabilities

Trezor Discloses Data Breach at Shipping Partner ShipMonk, 14,000 Customers Affected

A breach at third-party fulfillment provider ShipMonk exposed names, addresses, and contact details of nearly 14,000 Trezor customers, though Trezor says its…

by Robbie · 2 minutes ago
Vulnerabilities Beacon CRM Breach Traces Back to Leaked AWS Key, Over 1,000 Charities Affected
HIGH Vulnerabilities

Beacon CRM Breach Traces Back to Leaked AWS Key, Over 1,000 Charities Affected

UK nonprofit CRM provider Beacon says attackers used a compromised AWS access key found in public JavaScript build files to exfiltrate its…

by Robbie · 2 minutes ago
Exploits Akira Affiliate Rebooted a Victim Into Safe Mode to Kill EDR, Ransomware Still Failed
HIGH Exploits

Akira Affiliate Rebooted a Victim Into Safe Mode to Kill EDR, Ransomware Still Failed

An Akira ransomware operator disabled endpoint defenses by forcing a compromised host into Safe Mode with Networking, but the encryption payload crashed…

by Robbie · 12 hours ago
Research Ukraine Takes Down 94 Fraudulent Call Centers in Nationwide Sweep
Research

Ukraine Takes Down 94 Fraudulent Call Centers in Nationwide Sweep

A joint operation by Ukrainian police, security services, and German law enforcement dismantled dozens of scam call centers running fake investment platforms…

by Robbie · 12 hours ago
Vulnerabilities Attackers Exploit Critical VMware vCenter Flaw CVE-2026-59310 Within Days of Patch
CRITICAL Vulnerabilities

Attackers Exploit Critical VMware vCenter Flaw CVE-2026-59310 Within Days of Patch

An APT actor is exploiting a critical directory traversal and RCE bug in VMware vCenter's Syslog server, hitting over 360 IP addresses…

by Robbie · 1 day ago
Research ‘Jewelbug’ Hackers-for-Hire Mix State Espionage With Crypto Theft
MEDIUM Research

‘Jewelbug’ Hackers-for-Hire Mix State Espionage With Crypto Theft

Researchers say a threat group tracked as Jewelbug ran both nation-state espionage operations and financially motivated cryptocurrency heists through the same web-based…

by Robbie · 1 day ago
Research City-Forum Campaign Targets Salesforce, ServiceNow in Long-Running Data Theft Operation
MEDIUM Research

City-Forum Campaign Targets Salesforce, ServiceNow in Long-Running Data Theft Operation

A data theft campaign dubbed City-Forum has been quietly targeting Salesforce and ServiceNow environments across multiple industries since at least March 2025,…

by Robbie · 2 days ago
Vulnerabilities ShieldBreak Zero-Day Bypasses Microsoft Defender Patch, Grants SYSTEM Access
HIGH Vulnerabilities

ShieldBreak Zero-Day Bypasses Microsoft Defender Patch, Grants SYSTEM Access

A new PoC dubbed ShieldBreak sidesteps Microsoft's fix for the RoguePlanet Defender flaw, letting attackers escalate to SYSTEM on fully patched Windows…

by Robbie · 2 days ago
Exploits US and South Korea Warn of Gunra Ransomware Hitting Government Networks
HIGH Exploits

US and South Korea Warn of Gunra Ransomware Hitting Government Networks

A joint advisory details how the Conti-derived Gunra ransomware group is exploiting Fortinet flaws and VPN weaknesses to breach critical infrastructure, now…

by Robbie · 2 days ago
Vulnerabilities Cisco Warns of Actively Exploited ASA/FTD VPN Flaw Causing Device Crashes
HIGH Vulnerabilities

Cisco Warns of Actively Exploited ASA/FTD VPN Flaw Causing Device Crashes

A high-severity vulnerability in Cisco Secure Firewall ASA and FTD software is being exploited to remotely crash devices via crafted HTTP requests…

by Robbie · 2 days ago
Vulnerabilities Microsoft Fixes 398 Flaws, Patches Actively Exploited Windows Kernel Driver Zero-Day
HIGH Vulnerabilities

Microsoft Fixes 398 Flaws, Patches Actively Exploited Windows Kernel Driver Zero-Day

August's Patch Tuesday closes 398 vulnerabilities, including a zero-day in a core Windows networking driver that attackers are already using to gain…

by Robbie · 3 days ago
Vulnerabilities Microsoft’s August Patch Tuesday Fixes Nearly 400 Flaws, One Under Active Attack
CRITICAL Vulnerabilities

Microsoft’s August Patch Tuesday Fixes Nearly 400 Flaws, One Under Active Attack

Microsoft's latest security update addresses 398 vulnerabilities, including an actively exploited Windows privilege escalation bug, as AI-assisted discovery continues to drive record…

by Robbie · 3 days ago
1 2 38

THE 0600 BRIEF

Every critical CVE and AI-security story, in your inbox each morning.