News desk

Security News

Security incidents, exploited vulnerabilities, breach reports, malware campaigns, and urgent patch notes arranged for fast daily scanning.

June 24, 2026
Editorial image showing a malicious Minecraft mod JAR trap for WeedHack malware.

Lead story · Jun 3, 2026

WeedHack Minecraft Malware

WeedHack spreads through fake Minecraft mods and clients, stealing session tokens, passwords, wallets, and adding remote-access risk.

Latest reports

Report · Jun 17, 2026

WP Maps Pro CVE-2026-8732

WP Maps Pro CVE-2026-8732 lets unauthenticated attackers create WordPress administrator accounts. Update to 6.1.1 and audit admins/logs.

Report · Jun 1, 2026

Flowise Chatflow RCE

Flowise CVE-2026-40933 can turn a malicious chatflow import into server-side command execution. Check self-hosted instances, MCP stdio use, and stored secrets.

Report · May 31, 2026

ChatGPhish AI Summary Phish

ChatGPhish shows how a web page summarized by ChatGPT can surface phishing links, fake alerts, and QR codes inside a trusted AI answer.

Report · May 31, 2026

EMS Patch Trap

FortiClient EMS CVE-2026-35616 was abused to push EKZ Infostealer as a fake patch. Check EMS logs, managed endpoints, browser credentials, and hotfixes.

Report · May 30, 2026

PAN-OS CVE-2026-0257 Patch

CISA added PAN-OS CVE-2026-0257 to KEV after exploitation. Check GlobalProtect portals and gateways, patch PAN-OS, and disable unsafe authentication override cookies.

Report · Jun 18, 2026

sysupdate.jpeg Malware

sysupdate.jpeg malware is a fake image loader tied to Operation SilentCanvas. Learn what to check, how ScreenConnect is abused, and how to clean Windows…

AI Assistant

Hello! 👋 How can I help you today?