Apple sends new ‘Threat Notification’ alerts over mercenary spyware attacks

Apple has been sending out “Threat Notification” alerts to iPhone users over the past few days, warning them of potential mercenary spyware attacks. These notifications are not new, but they’re certainly alarming, especially for those who have received them. The alerts are part of a feature Apple introduced in 2021, which detects highly targeted mercenary … Read more

AI’s ‘middle class’ has gotten dramatically better at hacking

As AI models continue to push the boundaries of what is possible in hacking and exploitation, a growing class of mid-tier models has emerged as a significant threat. Researchers at XBOW have found that these smaller models, often proprietary or open-source, are becoming increasingly capable of performing complex tasks, rivaling even the most advanced frontier … Read more

Tech contractor for Brightly Software sentenced to 2 years in prison for insider attack

A Tech Contractor’s Elaborate Scheme Unravels: Insider Attack Exposes Dangers of Data Access and Extortion In a brazen insider attack, Cameron Nicholas Curry, a 27-year-old data analyst contractor for Brightly Software, was sentenced to two years in prison after stealing sensitive corporate data and extorting the company for $7,540.92. The case highlights the risks companies … Read more

A bold new strategy or a dangerous precedent? Experts are divided on Trump’s memo.

A Presidential Memo’s Dubious Future in Cyber Warfare The recent signing of a presidential memorandum by Donald Trump has sparked intense debate among cybersecurity experts. The memo authorizes private sector companies to participate in federal law enforcement hacking operations against transnational criminal organizations, but its implications are far from clear-cut. For some, the move represents … Read more

Nightmare Eclipse Drops Windows Zero-Day Exploit ‘ShieldBreak’

Nightmare Eclipse Strikes Again with Windows Zero-Day Exploit ‘ShieldBreak’ Cybersecurity researcher Nightmare Eclipse has dropped another zero-day exploit targeting Microsoft products, just in time for this month’s Patch Tuesday. The new proof-of-concept (PoC) exploit, dubbed ShieldBreak, allows any user to gain System privileges on affected systems. The exploit targets a vulnerability in Microsoft Defender, specifically … Read more

Critical VMware vCenter Vulnerability in Attackers’ Crosshairs

A critical vulnerability in VMware vCenter has been exploited by threat actors, with over 360 victim IP addresses identified across 47 countries. The bug, tracked as CVE-2026-59310 (CVSS score of 9.8), is a directory traversal issue in the Syslog server that leads to remote code execution. This means a malicious actor can execute arbitrary code … Read more

Global Threat Campaign Hits Critical VMware vCenter Flaw

A critical vulnerability in VMware’s vCenter software has been exploited by a single threat actor on a global scale, just days after public disclosure. The flaw, known as CVE-2026–59310, allows an attacker with network access to remotely execute arbitrary code within a virtual environment, putting thousands of organizations at risk. The attack, which was discovered … Read more

Akira hackers disable EDR with Safe Mode, steal data but fail to encrypt

A recent Akira ransomware attack has highlighted a concerning tactic used by hackers to disable endpoint detection and response (EDR) solutions, allowing them to steal sensitive data without even attempting to encrypt it. The attackers exploited an exposed SonicWall VPN device without multi-factor authentication (MFA) to gain initial access to the compromised system. Within just … Read more