Stay Informed

Cybersecurity News

Home / News

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Red Hat Quay Build Workflow Could Expose Registry Credentials

As of September 17, Red Hat had documented a flaw in a Red Hat Quay build workflow that could expose container registry credentials to code retrieved from a mu…

Linux Docker GitHub

The Hacker News
The Hacker News Vulnerabilities
Critical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host Files

Malicious code running inside a Docker Sandboxes virtual machine on macOS could escape the project directory shared into it and read or change files anywhere e…

Docker Apple

The Hacker News
The Hacker News Breaches & leaks
Iran-Linked Handala Hack Tied to HEAVYGRAM Telegram Backdoor That Can Steal Passwords

The Iran-linked "hacktivist" persona known as Handala Hack has been attributed to a Telegram-based surveillance backdoor called HEAVYGRAM and a Delphi-based ut…

The Hacker News
The Hacker News Vulnerabilities
Critical Unbound DNSSEC Validator Flaw Could Allow RCE via a Malicious DNS Zone

Every release of the Unbound DNS resolver before 1.26.1 has a critical heap overflow in its DNSSEC validator, maintainer NLnet Labs said in an advisory on Wedn…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Docker Sandboxes Flaw Lets a Guest Reach Host Unix Sockets

Docker has fixed a high-severity Docker Sandboxes vulnerability that allowed a malicious guest to redirect a host-side relay toward Unix sockets outside its au…

Docker

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Acronis Backup Flaw Is Being Exploited on Linux Hosting Servers

Acronis has fixed a high-severity vulnerability in its Linux hosting backup integrations after detecting exploitation in limited, targeted attacks. The Acronis…

Linux

The Hacker News
The Hacker News Breaches & leaks
Three Threat Groups Target Russian Enterprises With Backdoors, Ransomware, and Wipers

Enterprises in Russia have emerged as the target of three threat activity clusters tracked as NightEagle, Hacking Cat, and Toy Ghouls, according to multiple re…

The Hacker News
The Hacker News Breaches & leaks
N0va Phishkit Targets US and EU Businesses: A New Challenge for Identity Security

N0va is targeting organizations across North America and Europe with phishing campaigns that impersonate trusted services and abuse legitimate authentication f…

The Hacker News
The Hacker News Vulnerabilities
Acronis cPanel Backup Plugin Vulnerability Exploited in Targeted Attacks

Acronis has warned that a high-severity security flaw in its Backup plugin for cPanel and Web Host Manager (WHM) deployments has been exploited in the wild.The…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles
Container Security Failure Could Let a Malicious Image Reach the Linux Host

Container security can fail before a workload fully enters its root filesystem, the private file tree the container is meant to see.

Linux Docker

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles
Linux SMB Security Fixes Restore Ownership and Input-Trust Boundaries

SMB, or Server Message Block, lets Linux systems access files shared over a network.

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles
Why eBPF Security Depends on Matching Metadata Lifetimes

eBPF lets verified programs run inside the Linux kernel. Linux eBPF security depends on supporting data remaining available for as long as those programs can u…

Linux

The Hacker News
The Hacker News
KREMLIN Banking Malware Hijacks Chrome and Edge to Steal Credentials and Session Tokens

Cybersecurity researchers have shed light on a previously undocumented Brazilian banking malware operation that delivers a toolkit called KREMLIN.Elastic Secur…

Chrome

The Hacker News
The Hacker News
Iranian Hackers Use Telegram-Controlled Malware to Spy on Dissidents and Journalists

Cybersecurity agencies in the United States, the United Kingdom, and the Netherlands have detailed a Windows malware that they say Iran's intelligence service …

Windows

The Hacker News
The Hacker News
BambooToken Malware Uses MQTT to Control Windows and Linux Systems

Cybersecurity researchers have disclosed details of a multi-platform campaign that uses the Message Queueing Telemetry Transport (MQTT) protocol as a communica…

Linux Windows

The Hacker News
The Hacker News
Attack Chains, Not Just Attack Surfaces: Why Testing Individual Techniques Misses the Point

IntroductionSecurity teams have gotten pretty good at testing against what can hurt them. Can this EDR agent catch this payload? Will my organization fail the …

The Hacker News
The Hacker News Vulnerabilities
Mass-Scanning Campaign Exploits Vite Flaw to Extract Cloud Credentials From Exposed Dev Servers

Cybersecurity researchers have disclosed details of a mass-scanning campaign that has targeted Vite deployments siphon sensitive data.The first is an automated…

Azure AWS

The Hacker News
The Hacker News
New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computing

Researchers have disclosed a new hardware attack, called DDRop, that breaks the memory protection in Intel and AMD confidential computing by silently dropping …

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Attackers Chain Artifactory Vulnerabilities to Take Over Repositories

On September 10, 2026, Wiz Research reported that multiple attackers had chained two Artifactory vulnerabilities against self-hosted repositories. One flaw gav…

The Hacker News
The Hacker News Breaches & leaks
Malicious Twitch Browser Extension Leaks OAuth Tokens From Nearly 31,000 Users

A malicious cross-store Twitch browser extension has leaked OAuth tokens associated with nearly 31,000 users to proxy servers operated by a Russian commercial …

Chrome

The Hacker News
The Hacker News Breaches & leaks
Twitch Browser Extension Leaks OAuth Tokens From Nearly 31,000 Users

A malicious cross-store Twitch browser extension has leaked OAuth tokens associated with nearly 31,000 users to proxy servers operated by a Russian commercial …

Chrome

The Hacker News
The Hacker News Breaches & leaks
Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data

Microsoft has disclosed details of two campaigns in which threat actors are abusing third-party email delivery infrastructure to blast financial fraud scam mes…

The Hacker News
The Hacker News
Russian State-Sponsored Hackers Use Claude to Rebuild Malware After Detection

Anthropic on Thursday revealed it disrupted a campaign mounted by a Russian state-sponsored threat actor that abused Claude for developing an AI-assisted workf…

The Hacker News
The Hacker News Breaches & leaks
Your Critical Vulnerabilities Might Not Be Your Biggest Risk

Security teams have become exceptionally talented at finding vulnerabilities. Now, it’s time to turn our attention to optimizing the process for determining wh…