Latest security news
- China-Linked Threat Actors Weaponize New Vulnerabilities in Under a Day
- Attackers exploit N-able N-central flaw to reach managed endpoints (CVE-2026-18577)
- Midnight Blizzard Targets Travelers via Captive Portals
- Chinese hacker used DeepSeek to launch autonomous cyberattacks on vulnerable servers
- CISA lays out new guidance for using open-source software
- KindaRails2Shell threatens Ruby on Rails apps (CVE-2026-66066)
- HollowFrame Loader Uses Fake Python DLL to Evade Defender
- Qodana 2026.2 adds post-quantum crypto checks for JVM code
- Korea’s Largest Telco KT Fined $38m After Femtocell Campaign
- OpenAI reveals how criminals used ChatGPT to run scams
- Coldcard Users Lose $89m After Bitcoin Wallet Is Hacked
- Chinese Hacker Uses DeepSeek AI to Orchestrate Vulnerability Exploits
- AWS Blames North Korean Group for Axios and Other npm Supply Chain Attacks
- Anthropic Reveals Claude Escaped Testing, Breaching Three Companies
- Cryptominer Abuses Linux PAM to Hide From SOC Analysts
- AiTM Phishing Becomes Top Initial Access Threat to Law Firms
- AI and Automation Fall Short of Sysadmin Expectations
- Teams-Themed Phishing Campaign Abused Legitimate Microsoft Login Pages
- Google Releases Patches for 370 Vulnerabilities in Chrome 151
- NCSC Calls on Vendors to Embed ‘Forensic Observability’ in Network Devices
- LogoKit Phishing Kit Screenshots Victim Sites in Real Time
Chinese actors exploited the critical React2Shell exploit inside a day, while 88% of exploited vulnerabilities in H1 2026 were compromised within 48 hours of disclosure
(C) Do-Know.com (http://do-know.com/). Do not copy without permission from info at do-know.com.