Global Threat Campaign Hits Critical VMware vCenter Flaw

A critical vulnerability in VMware’s vCenter software has been exploited by a single threat actor on a global scale, just days after public disclosure. The flaw, known as CVE-2026–59310, allows an attacker with network access to remotely execute arbitrary code within a virtual environment, putting thousands of organizations at risk. The attack, which was discovered … Read more

Akira hackers disable EDR with Safe Mode, steal data but fail to encrypt

A recent Akira ransomware attack has highlighted a concerning tactic used by hackers to disable endpoint detection and response (EDR) solutions, allowing them to steal sensitive data without even attempting to encrypt it. The attackers exploited an exposed SonicWall VPN device without multi-factor authentication (MFA) to gain initial access to the compromised system. Within just … Read more

Ukraine shuts down 94 fraudulent call centers, seize millions in cash

Ukraine Cracks Down on Widespread Call Center Scams, Seizing Millions in Cash and Assets In a major crackdown on cybercrime, Ukrainian authorities have shut down 94 fraudulent call centers across the country that had been swindling people out of their hard-earned money through various investment scams. The operation, which involved multiple law enforcement agencies, resulted … Read more

Nightmare Eclipse Drops Windows Zero-Day Exploit ‘ShieldBreak’

A New Zero-Day Exploit Hits Windows: ShieldBreak Targets Microsoft Defender Cybersecurity researcher Nightmare Eclipse has released another zero-day exploit targeting Microsoft products, this time with a proof-of-concept (PoC) code dubbed “ShieldBreak”. This latest vulnerability affects Microsoft Defender and allows any user to gain System privileges on affected systems. The exploit was published just in time … Read more

Critical VMware vCenter Vulnerability in Attackers’ Crosshairs

Critical VMware vCenter Vulnerability Exploited by Attackers, Widespread Impact Reported A critical vulnerability in VMware’s vCenter product has been exploited by attackers, with over 360 victim IP addresses identified across 47 countries. The bug, tracked as CVE-2026-59310, allows malicious actors to execute arbitrary code on affected systems, highlighting the need for swift action to mitigate … Read more

Global Threat Campaign Hits Critical VMware vCenter Flaw

A Global Threat Campaign Exploits Critical VMware vCenter Flaw, Leaving Victims Vulnerable Despite Patching In a disturbing example of how quickly attackers can move on newly disclosed vulnerabilities, a single threat actor has been exploiting a critical flaw in VMware’s vCenter software since just days after its public disclosure. The vulnerability, CVE-2026–59310, allows an attacker … Read more

Akira hackers disable EDR with Safe Mode, steal data but fail to encrypt

A recently uncovered Akira ransomware attack highlights a clever tactic employed by hackers to disable endpoint detection and response (EDR) solutions, allowing them to steal data without encryption. The attackers obtained initial access through an exposed SonicWall VPN device without multi-factor authentication (MFA), before disabling the EDR solution on a compromised system by restarting it … Read more

Ukraine shuts down 94 fraudulent call centers, seize millions in cash

Ukrainian Authorities Shut Down 94 Large-Scale Fraudulent Call Centers in Major Operation In a significant crackdown on organized crime, authorities in Ukraine have shut down an impressive 94 fraudulent call centers across the country. The operation, which involved multiple law enforcement agencies and resulted in millions of dollars being seized, is a major blow to … Read more

WordPress 7.0.4 Patches Remote Code Execution Vulnerability

A Critical Vulnerability in WordPress Allows Attackers to Execute Code Remotely WordPress, one of the most widely used content management systems (CMS) online, has just patched a high-severity vulnerability that enables authenticated attackers to execute arbitrary code on affected sites. The issue, tracked as CVE-2026-65640 with a CVSS score of 8.8, affects only installations that … Read more

Critical VMware vCenter RCE flaw exploited for reverse SSH access

VMware vCenter Users Warned of Critical Flaw Exploitation for Reverse SSH Access A critical vulnerability (CVE-2026-59310) in VMware vCenter’s Syslog Server has been actively exploited by attackers to gain persistence and remote access to compromised systems. The issue, patched on July 29, is being used to deploy a reverse SSH tool, which allows the threat … Read more