Information Security News Blog
-
A Backdoor That Blends Into Calls and Video The ClingSTUN Linux backdoor has learned to hide its command activity where network defenses expect ordinary calls and video chats. The malware uses public STUN servers....
-
NetScaler administrators, having barely concluded the rigorous remediation of two distinct, critical zero-day vulnerabilities, are now confronted with a fresh, urgent mandate to upgrade. Citrix has officially disclosed CVE-2026-88779, a profound vulnerability already observed...
-
Malicious actors successfully compromised the propulsion system of the VL Prosperity, a massive supertanker actively transiting toward the United States coastline laden with a full cargo of crude oil. The Federal Bureau of Investigation...
A $2 Ad Blocker Grows Up The $2 ad blocker that fits on an ESP32-C3 board the size of a USB stick has matured noticeably. This summer’s version of the esp32-c3-adblock project could already...
A Flaw in the ChatGPT Mac App A vulnerability in the ChatGPT app for macOS let an ordinary program on the computer run commands through a trusted OpenAI process. Security researcher Patrick Wardle needed...
An advanced artificial intelligence designed specifically for vulnerability research has successfully identified a profound architectural flaw within the Rejetto HFS file server. This devastating vulnerability effectively transmutes several seemingly innocuous random number leaks into...
Windows 11 version 26H2 introduced an unexpected enhancement that Microsoft surprisingly elected not to advertise. Following the installation of this update, numerous users have observed a precipitous decline in RAM consumption—often between 2 and...
Altman Says Society Must Accept Some AI Harm Zero harm sounds safe. Yet Sam Altman believes the price of such a promise is too high. In an interview with Decoded, the OpenAI chief said...
Malware Found in a Weather Services Network Malware has entered the operational technology (OT) network of Air Traffic and Navigation Services (ATNS), the South African operator. That network supports weather services for air traffic...
A Chinese Spy Group Targets Trust, Not Bugs A Chinese cyber-espionage group has chosen a new way into the circle of American AI experts. It does not use a vulnerability. It uses trust. The...
The very email gateway explicitly designed to filter and protect corporate correspondence inexplicably transformed into a direct avenue for total device compromise. Kiteworks recently disclosed a critical vulnerability chain residing within its Email Protection...
NEAR Intents has announced the successful identification of the individual responsible for exfiltrating approximately $3.8 million from its infrastructure. The suspected perpetrator has been granted a 48-hour window to restitute the funds, though their...
A malfunction within the DTLS retransmission mechanism transformed the routine recovery of a lost message into a critical memory leak. The architects of OpenSSL have formally disclosed vulnerability CVE-2026-84782, assigning it a severe CVSS...
Ukrainian cybersecurity specialists have issued a stark warning regarding a severe, escalating wave of cyberattacks specifically targeting the smartphones of military personnel and government officials. According to the comprehensive CERT-UA report for the first...
A Ransomware Gang With a Teenage Boss Even the extortion business turns out to have surprisingly young leadership. The international Operation KillSwitch has crippled the infrastructure of KillSec. Investigators believe the group’s main operator...