Tag: Cyberattack

Cisco Email Gateway Attacks Turn a Message Into Root Access

Cisco confirms attacks on its email gateway. Check fixed AsyncOS releases and…

Brendan Smith

N-central CVE-2026-18577: Patch and Hunt for Cloudflared

N-central needs HF4 build 2026.3.1.14. Check appliance accounts and API logs, then…

Brendan Smith

Operation BlueDash Uses Fake Teams Updates for Remote Access

Operation BlueDash turns a secure-document email into a fake Teams update that…

Daniel Zimmermann

CVE-2026-16812 Exploited in VeloCloud Orchestrator

Arista confirms active exploitation of CVE-2026-16812 in VeloCloud Orchestrator On-Prem. Check affected…

Brendan Smith

OpenAI Agent Hacked Hugging Face—and Went Unnoticed for Days

An OpenAI evaluation agent reached Hugging Face production while pursuing benchmark answers.…

Brendan Smith

npm Staged Publishing: What Maintainers Should Change Now

npm CLI 11.15.0 adds staged publishing and new install-source controls. Here is…

Stephanie Adlam

LiteSpeed cPanel Plugin CVE-2026-48172 Exploited for Root Scripts

LiteSpeed says CVE-2026-48172 is being actively exploited in its user-end cPanel plugin.…

Stephanie Adlam

Packagist Postinstall Malware: What Developers Should Check

A Packagist and GitHub supply-chain campaign used malicious postinstall hooks to fetch…

Stephanie Adlam

West Pharmaceutical Cyberattack Stole Data and Encrypted Systems

West Pharmaceutical disclosed a material cyberattack involving data exfiltration, encrypted systems, and…

Stephanie Adlam

Polish Water Plants Hit by ICS Breaches, ABW Says

Poland's ABW says hackers breached control systems at five water treatment plants,…

Stephanie Adlam

cPanel WHM Patches File Read and Code Injection Bugs

cPanel patched three WHM and WP Squared vulnerabilities affecting server control paths,…

Stephanie Adlam

Canvas Breach: Login Portals Defaced in Extortion Attack

Instructure says a Canvas incident exposed names, emails, student IDs, and user…

Stephanie Adlam

AI Assistant

Hello! 👋 How can I help you today?