Stay Informed

Cybersecurity News

Home / News

Clear

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

The Hacker News
The Hacker News Vulnerabilities
ThreatsDay Bulletin: $290M DeFi Hack, macOS LotL Abuse, ProxySmart SIM Farms +25 New Stories

You scroll past one incident and see another that feels familiar, like it should have been fixed years ago, but it still works with small changes. Same bugs. S…

Apple

The Hacker News
The Hacker News Vulnerabilities
SGLang CVE-2026-5760 (CVSS 9.8) Enables RCE via Malicious GGUF Model Files

A critical security vulnerability has been disclosed in SGLang that, if successfully exploited, could result in remote code execution on susceptible systems.Th…

The Hacker News
The Hacker News Vulnerabilities
Anthropic MCP Design Vulnerability Enables RCE, Threatening AI Supply Chain

Cybersecurity researchers have discovered a critical "by design" weakness in the Model Context Protocol's (MCP) architecture that could pave the way for remote…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Zero Trust for Email: Implementing Advanced Protections on Linux

Email threats have long outgrown spamming and obvious phishing. Attackers now exploit trust itself. They impersonate internal users, hijack legitimate threads,…

Linux

The Hacker News
The Hacker News Vulnerabilities
NIST Limits CVE Enrichment After 263% Surge in Vulnerability Submissions

The National Institute of Standards and Technology (NIST) has announced changes to the way it handles cybersecurity vulnerabilities and exposures (CVEs) listed…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
When LKML Patches Signal Exploitation Risk Before CVE Assignment

Think about Linux security like a product recall. A manufacturer starts fixing the issue before the public notice goes out. If you catch those early signals, y…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Kubernetes Container Security Misconfigurations Leading to Threats

Container security failures rarely come from zero-days. They come from the configuration. Misconfigurations don't trigger alerts. They don456't crash systems. …

Docker Kubernetes

The Hacker News
The Hacker News Vulnerabilities
Actively Exploited nginx-ui Flaw (CVE-2026-33032) Enables Full Nginx Server Takeover

A recently disclosed critical security flaw impacting nginx-ui, an open-source, web-based Nginx management tool, has come under active exploitation in the wild…

Nginx

The Hacker News
The Hacker News Vulnerabilities
Microsoft Issues Patches for SharePoint Zero-Day and 168 Other New Vulnerabilities

Microsoft on Tuesday released updates to address a record 169 security flaws across its product portfolio, including one vulnerability that has been actively e…

Microsoft 365

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Top Linux Vulnerability Scanners in 2026: A Guide to Open-Source Security Tools

Computer systems, software, applications, and Linux servers are all vulnerable to network security threats.Failure to identify these cybersecurity vulnerabilit…

Linux

The Hacker News
The Hacker News Vulnerabilities
Google Adds Rust-Based DNS Parser into Pixel 10 Modem to Enhance Security

Google has announced the integration of a Rust-based Domain Name System (DNS) parser into the modem firmware as part of its ongoing efforts to beef up the secu…

The Hacker News
The Hacker News Vulnerabilities
Analysis of 216M Security Findings Shows a 4x Increase In Critical Risk (2026 Report)

OX Security recently analyzed 216 million security findings across 250 organizations over a 90-day period. The primary takeaway: while raw alert volume grew by…

The Hacker News
The Hacker News Vulnerabilities
⚡ Weekly Recap: Fiber Optic Spying, Windows Rootkit, AI Vulnerability Hunting and More

Monday is back, and the weekend’s backlog of chaos is officially hitting the fan. We are tracking a critical zero-day that has been quietly living in your PDFs…

Windows

The Hacker News
The Hacker News Vulnerabilities
Adobe Reader Zero-Day Exploited via Malicious PDFs Since December 2025

Threat actors have been exploiting a previously unknown zero-day vulnerability in Adobe Reader using maliciously crafted PDF documents since at least December …

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Microsoft Blocks Open Source Dev Accounts, Disrupting Security Pipelines

When developer accounts are blocked, the impact is felt far beyond a single login screen. For many projects, these accounts are the access points for the entir…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Critical Docker AuthZ Bypass Flaw Allows Silent Root Access on Linux Systems

People often think of containers as locked boxes that keep software separate from the rest of the computer. In reality, that safety depends on a chain of digit…

Linux Docker

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
CUPS Exploit Chain Still Reaches Root Access, Despite 2024 Fixes

The Common Unix Printing System (CUPS) still sits on millions of Linux systems, usually in the background, rarely monitored, and often trusted more than it sho…

Linux

The Hacker News
The Hacker News Breaches & leaks
New GPUBreach Attack Enables Full CPU Privilege Escalation via GDDR6 Bit-Flips

New academic research has identified multiple RowHammer attacks against high-performance graphics processing units (GPUs) that could be exploited to escalate p…

The Hacker News
The Hacker News Breaches & leaks
China-Linked Storm-1175 Exploits Zero-Days to Rapidly Deploy Medusa Ransomware

A China-based threat actor known for deploying Medusa ransomware has been linked to the weaponization of a combination of zero-day and N-day vulnerabilities to…

The Hacker News
The Hacker News Vulnerabilities
⚡ Weekly Recap: Axios Hack, Chrome 0-Day, Fortinet Exploits, Paragon Spyware and More

This week had real hits. The key software got tampered with. Active bugs showed up in the tools people use every day. Some attacks didn’t even need much effort…

Fortinet Chrome

The Hacker News
The Hacker News Breaches & leaks
Qilin and Warlock Ransomware Use Vulnerable Drivers to Disable 300+ EDR Tools

Threat actors associated with Qilin and Warlock ransomware operations have been observed using the bring your own vulnerable driver (BYOVD) technique to silenc…

Cisco

The Hacker News
The Hacker News Vulnerabilities
36 Malicious npm Packages Exploited Redis, PostgreSQL to Deploy Persistent Implants

Cybersecurity researchers have discovered 36 malicious packages in the npm registry that are disguised as Strapi CMS plugins but come with different payloads t…

Databases

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
The npm Supply Chain Problem: Why Installing Packages Executes Untrusted Code

Running npm install is a reflex at this point. You see a progress bar, a few hundred dependencies fly by, and the lockfile updates. You move on to the next tas…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
CI/CD Pipelines Vulnerabilities in Trusted Execution Paths March 2026

Time and time again, Linux systems execute attacker-controlled code during normal operation, and nothing in the system reports it as a failure.Security models …

Linux