LIVE FEED
Subscribe
//

Latest Briefings

Research North Korean PolinRider Campaign Poisons Open Source Packages Across Ecosystems
HIGH Research

North Korean PolinRider Campaign Poisons Open Source Packages Across Ecosystems

A North Korean supply chain operation active since December 2025 has compromised over 100 open source packages across NPM, Packagist, Go modules,…

by Robbie · 3 months ago
Exploits Max-Severity Adobe ColdFusion Flaw Exploited Within Hours of Disclosure
CRITICAL Exploits

Max-Severity Adobe ColdFusion Flaw Exploited Within Hours of Disclosure

A critical remote code execution vulnerability in Adobe ColdFusion is under active attack, with exploitation observed less than two hours after Adobe…

by Robbie · 3 months ago
Research Russian Hackers Make Ukrainian Media Outlets a Priority Target
HIGH Research

Russian Hackers Make Ukrainian Media Outlets a Priority Target

Ukraine's SBU warns that Russian cyber operations against broadcasters are intensifying, combining phishing, DDoS, and propaganda injection attempts alongside physical missile strikes…

by Robbie · 3 months ago
Research Armored Likho APT Hits Government and Power Sectors with Modular Malware
HIGH Research

Armored Likho APT Hits Government and Power Sectors with Modular Malware

Kaspersky has detailed a newly identified APT group targeting government and electric power organizations in Russia, Brazil, and Kazakhstan using spear-phishing campaigns…

by Robbie · 3 months ago
Vulnerabilities Exploit Attempts Hit Gitea Docker Flaw CVE-2026-20896 Within Two Weeks of Patch
CRITICAL Vulnerabilities

Exploit Attempts Hit Gitea Docker Flaw CVE-2026-20896 Within Two Weeks of Patch

Threat actors are actively probing a critical Gitea Docker vulnerability that allows unauthenticated clients to gain elevated access by spoofing a trusted…

by Robbie · 3 months ago
Exploits Japanese Teen Arrested for Cyberattack That Canceled 46,000 Anime Subscriptions
HIGH Exploits

Japanese Teen Arrested for Cyberattack That Canceled 46,000 Anime Subscriptions

A 15-year-old near Tokyo allegedly exploited a server vulnerability in Bandai Channel, using a ChatGPT-assisted tool to mass-cancel user accounts and force…

by Robbie · 3 months ago
Vulnerabilities 16-Year-Old Linux KVM Flaw Allows Guest VMs to Escape to Host
CRITICAL Vulnerabilities

16-Year-Old Linux KVM Flaw Allows Guest VMs to Escape to Host

A use-after-free vulnerability in Linux's KVM hypervisor, present in shared shadow MMU code for both Intel and AMD x86 systems, can be…

by Robbie · 3 months ago
Exploits Medtronic Notifies 3.8 Million Patients After ShinyHunters-Linked Breach
HIGH Exploits

Medtronic Notifies 3.8 Million Patients After ShinyHunters-Linked Breach

The world's largest medical device maker has begun notifying nearly 4 million people that hackers accessed sensitive personal and health-related data from…

by Robbie · 3 months ago
Research Vietnam Arrests Seven Suspects Behind HiAnime Anime Piracy Network
Research

Vietnam Arrests Seven Suspects Behind HiAnime Anime Piracy Network

Vietnamese authorities have charged seven individuals believed to operate HiAnime, once the world's largest anime piracy platform, with copyright infringement and money…

by Robbie · 3 months ago
AI Security Pixel 10 Embeds C2PA Content Credentials at Highest Assurance Level
AI Security

Pixel 10 Embeds C2PA Content Credentials at Highest Assurance Level

Google's Pixel 10 lineup becomes the first mobile platform to achieve C2PA Assurance Level 2, using hardware-backed security to attach verifiable provenance…

by Robbie · 3 months ago
AI Security SkillCloak Technique Lets Malicious AI Agent Skills Bypass Static Scanners
HIGH AI Security

SkillCloak Technique Lets Malicious AI Agent Skills Bypass Static Scanners

Researchers at Hong Kong University of Science and Technology have demonstrated a self-extracting packing technique that evades static security scanners for AI…

by Robbie · 3 months ago
Vulnerabilities Opera GX Flaw Allowed Malicious Sites to Silently Install Data-Stealing Mods
HIGH Vulnerabilities

Opera GX Flaw Allowed Malicious Sites to Silently Install Data-Stealing Mods

A vulnerability in the gaming-focused Opera GX browser let attacker-controlled websites auto-install a browser add-on and extract data from pages the victim…

by Robbie · 3 months ago
1 … 29 30 31 … 49

THE 0600 BRIEF

Every critical CVE and AI-security story, in your inbox each morning.