Cisco warns of high-severity ClamAV flaws with public exploits

Cisco has issued a warning about two high-severity vulnerabilities affecting ClamAV, an open-source antivirus engine widely used to scan files for malware. The flaws allow unauthenticated attackers to crash the ClamAV scanning process in denial-of-service (DoS) attacks, and proof-of-concept exploit code is already publicly available. The security issues were discovered in the ZIP archive parser … Read more

Hackers Breach Polish Power Plant Controls via Private Cellular Network and Shut Turbine

A devastating cyberattack on a Polish power plant has left industry experts reeling, as hackers exploited a private cellular network to gain control of critical systems and shut down a turbine. The attack, which occurred in late July 2026, raises serious concerns about the vulnerability of industrial control systems (ICS) and highlights the need for … Read more

Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks

Gunra Ransomware Exploits Critical Flaws in Fortinet and Schneider Electric Devices, Breaching Networks Worldwide In a concerning wave of cyberattacks, Gunra ransomware has been linked to breaches across multiple industries, leveraging critical vulnerabilities in network security devices from Fortinet and Schneider Electric. The attacks have left organizations scrambling to contain the damage, with some still … Read more

Malicious MCP Servers Can Split Instructions to Make AI Coding Agents Exfiltrate Secrets

Malicious MCP Servers Can Hijack AI Coding Agents, Exfiltrate Sensitive Data A disturbing trend has emerged in the cybersecurity landscape, where malicious servers are exploiting vulnerabilities in machine learning (ML) and artificial intelligence (AI) coding agents to exfiltrate sensitive data. This sophisticated threat vector involves compromised Multi-Cloud Platform (MCP) servers that can split instructions to … Read more

OpenAI’s Upcoming Astra Model Raises Autonomous Cyberattack Concerns

OpenAI’s Astra Model Sparks Concerns Over Autonomous Cyberattacks A new AI model developed by OpenAI, called Astra, has been flagged as a potential cybersecurity risk due to its advanced capabilities in creating autonomous cyberattacks. The company has taken steps to mitigate this threat, but the incident highlights the growing concern of AI-powered attacks on real-world … Read more

Mozilla Issues New Firefox GPG Key Following Exposure

Mozilla has taken swift action to address a potential security vulnerability after accidentally exposing its GPG signing subkey in a GitHub repository. The exposed key could have allowed an attacker to create malicious versions of Firefox and Thunderbird software that appeared authentic, but several factors mitigate the impact. The GPG (GNU Privacy Guard) private signing … Read more