Nightmare Eclipse Drops Windows Zero-Day Exploit ‘ShieldBreak’

Nightmare Eclipse Strikes Again with Windows Zero-Day Exploit ‘ShieldBreak’ Cybersecurity researcher Nightmare Eclipse has dropped another zero-day exploit targeting Microsoft products, just in time for this month’s Patch Tuesday. The new proof-of-concept (PoC) exploit, dubbed ShieldBreak, allows any user to gain System privileges on affected systems. The exploit targets a vulnerability in Microsoft Defender, specifically … Read more

Critical VMware vCenter Vulnerability in Attackers’ Crosshairs

A critical vulnerability in VMware vCenter has been exploited by threat actors, with over 360 victim IP addresses identified across 47 countries. The bug, tracked as CVE-2026-59310 (CVSS score of 9.8), is a directory traversal issue in the Syslog server that leads to remote code execution. This means a malicious actor can execute arbitrary code … Read more

Global Threat Campaign Hits Critical VMware vCenter Flaw

A critical vulnerability in VMware’s vCenter software has been exploited by a single threat actor on a global scale, just days after public disclosure. The flaw, known as CVE-2026–59310, allows an attacker with network access to remotely execute arbitrary code within a virtual environment, putting thousands of organizations at risk. The attack, which was discovered … Read more

Akira hackers disable EDR with Safe Mode, steal data but fail to encrypt

A recent Akira ransomware attack has highlighted a concerning tactic used by hackers to disable endpoint detection and response (EDR) solutions, allowing them to steal sensitive data without even attempting to encrypt it. The attackers exploited an exposed SonicWall VPN device without multi-factor authentication (MFA) to gain initial access to the compromised system. Within just … Read more

Ukraine shuts down 94 fraudulent call centers, seize millions in cash

Ukraine Cracks Down on Widespread Call Center Scams, Seizing Millions in Cash and Assets In a major crackdown on cybercrime, Ukrainian authorities have shut down 94 fraudulent call centers across the country that had been swindling people out of their hard-earned money through various investment scams. The operation, which involved multiple law enforcement agencies, resulted … Read more

Nightmare Eclipse Drops Windows Zero-Day Exploit ‘ShieldBreak’

A New Zero-Day Exploit Hits Windows: ShieldBreak Targets Microsoft Defender Cybersecurity researcher Nightmare Eclipse has released another zero-day exploit targeting Microsoft products, this time with a proof-of-concept (PoC) code dubbed “ShieldBreak”. This latest vulnerability affects Microsoft Defender and allows any user to gain System privileges on affected systems. The exploit was published just in time … Read more

Critical VMware vCenter Vulnerability in Attackers’ Crosshairs

Critical VMware vCenter Vulnerability Exploited by Attackers, Widespread Impact Reported A critical vulnerability in VMware’s vCenter product has been exploited by attackers, with over 360 victim IP addresses identified across 47 countries. The bug, tracked as CVE-2026-59310, allows malicious actors to execute arbitrary code on affected systems, highlighting the need for swift action to mitigate … Read more

Global Threat Campaign Hits Critical VMware vCenter Flaw

A Global Threat Campaign Exploits Critical VMware vCenter Flaw, Leaving Victims Vulnerable Despite Patching In a disturbing example of how quickly attackers can move on newly disclosed vulnerabilities, a single threat actor has been exploiting a critical flaw in VMware’s vCenter software since just days after its public disclosure. The vulnerability, CVE-2026–59310, allows an attacker … Read more

Akira hackers disable EDR with Safe Mode, steal data but fail to encrypt

A recently uncovered Akira ransomware attack highlights a clever tactic employed by hackers to disable endpoint detection and response (EDR) solutions, allowing them to steal data without encryption. The attackers obtained initial access through an exposed SonicWall VPN device without multi-factor authentication (MFA), before disabling the EDR solution on a compromised system by restarting it … Read more