Information Security News Blog

A diagram illustrating the N-central CVE-2026-86218 vulnerability and unauthenticated remote code execution exploit pathways 0

Maximum Severity Flaw Strikes N-central

A clandestine pathway into the N-central server, bypassing all credential requirements, has once again been discovered, and this time, the vulnerability commands the absolute maximum severity rating. N-able has issued a dire warning regarding...

September 2026 Patch Tuesday Microsoft security update fixing 966 vulnerabilities and two zero-days 0

September 2026 Patch Tuesday: 966 Flaws, 2 Zero-Days

The September Patch Tuesday became the largest security update release in Microsoft’s history. The company closed 966 vulnerabilities, two of which attackers had already wielded in real-world attacks. Previous records proved short-lived: in July,...

Ted Backdoor HAProxy malware and CurlRAT cyberattack structure 0

Suspected North Korean Hackers Deploy Ted Backdoor

Suspected North Korean hackers may have spied on South Korean organizations for years using trojanized Linux system services and an HAProxy backdoor. Rapid7 researchers discovered a previously unknown set of malicious tools. These tools...

Rogue ScreenConnect worm malware targeting IT service providers 0

ScreenConnect Weaponized as a Self-Propagating Worm

Cybercriminals have transformed ScreenConnect into a weaponized mechanism capable of infecting other ScreenConnect systems during standard connections. The modified client automatically detects a new session, dispatches malicious scripts via the native file transfer feature,...