Latest Threat Feed

SHINYHUNTERS CLAIMS FBI BREACH THROUGH ORACLE PEOPLESOFT ZERO-DAY

The ShinyHunters cyber extortion group claims it breached FBI systems by exploiting a previously unknown vulnerability in Oracle PeopleSoft, potentially exposing sensitive information belonging to employees and job applicants. The FBI has acknowledged reports of unauthorized activity affecting FBIJobs.gov and says it is investigating, but it has not confirmed the broader breach claims or the […]

SHINYHUNTERS CLAIMS FBI BREACH THROUGH ORACLE PEOPLESOFT ZERO-DAY Read More »

Latest Threat Feed

BLUE MOON EXPLOITATION ATTACK TARGETS GOOGLE CHROME AND WINDOWS USERS THROUGH MALICIOUS LINKS

sophisticated cyberattack tool known as Blue Moon is being used by state-aligned espionage groups to target Google Chrome and Microsoft Windows vulnerabilities through malicious links. The campaign is designed to compromise targeted devices by directing victims to attacker-controlled content that can exploit security weaknesses in their browsers or operating systems. Unlike traditional phishing scams that

BLUE MOON EXPLOITATION ATTACK TARGETS GOOGLE CHROME AND WINDOWS USERS THROUGH MALICIOUS LINKS Read More »

Latest Threat Feed

CRITICAL LITESPEED FLAW COULD GIVE ATTACKERS ROOT ACCESS ON SHARED HOSTING SERVERS

A critical security vulnerability in LiteSpeed Web Server Enterprise could allow a low-privilege website user to escalate privileges and potentially gain root-level access to an entire shared-hosting server. The flaw affects LiteSpeed Web Server Enterprise versions prior to 6.3.7, according to cPanel’s September 14 security advisory. The vulnerability is particularly dangerous for shared-hosting environments because

CRITICAL LITESPEED FLAW COULD GIVE ATTACKERS ROOT ACCESS ON SHARED HOSTING SERVERS Read More »

Latest Threat Feed

RANSOMWARE GANG CLAIMS ATTACK ON LA METRO

The Gentlemen ransomware group has listed the Los Angeles County Metropolitan Transportation Authority (LA Metro) on its dark web leak site, suggesting the public transit agency may have suffered a cyberattack. The notice appeared on September 7, 2026, and reportedly gave LA Metro nine days to respond. The attackers have not published any data samples,

RANSOMWARE GANG CLAIMS ATTACK ON LA METRO Read More »

Latest Threat Feed

PLEX URGES USERS TO INSTALL EMERGENCY SECURITY UPDATES

Plex is urging users to immediately update their desktop applications and media servers after releasing patches for multiple security vulnerabilities. The undisclosed flaws affect Plex Media Server version 1.43.2 and earlier, although CVE identification numbers and technical details have not yet been published. The company released Plex Media Server 1.43.3 and Plex Desktop 1.115.0 to

PLEX URGES USERS TO INSTALL EMERGENCY SECURITY UPDATES Read More »

Latest Threat Feed

DROPBOX DATA BREACH EXPOSES ACCOUNTS THROUGH LENOVO LOGIN FLAW

Dropbox has begun notifying users after hackers exploited a vulnerability involving Lenovo’s third-party authentication system. The attackers reportedly created Lenovo IDs using only victims’ email addresses and then connected those identities to existing Dropbox accounts, allowing them to gain unauthorized access without obtaining the users’ passwords directly. The incident occurred between August 4 and August

DROPBOX DATA BREACH EXPOSES ACCOUNTS THROUGH LENOVO LOGIN FLAW Read More »

Latest Threat Feed

PAPERCUT ZERO-DAY VULNERABILITY ACTIVELY EXPLOITED IN CYBERATTACKS

PaperCut is warning customers about a critical security vulnerability that attackers are actively exploiting in zero-day attacks targeting its PaperCut NG and PaperCut MF print management software. The vulnerability affects all versions of the products, according to the company. PaperCut says it has confirmed incidents affecting customers and is treating the threat as a high

PAPERCUT ZERO-DAY VULNERABILITY ACTIVELY EXPLOITED IN CYBERATTACKS Read More »

Latest Threat Feed

MCKESSON CYBERATTACK: SHINYHUNTERS CLAIMS 284 MILLION PATIENT RECORDS STOLEN

Healthcare and pharmaceutical distribution giant McKesson has disclosed a cybersecurity incident involving unauthorized access to third-party applications and the theft of company data. The incident was discovered on August 25, 2026, and remains under investigation. According to McKesson, the company activated its incident response procedures and brought in cybersecurity experts after discovering the breach. Some

MCKESSON CYBERATTACK: SHINYHUNTERS CLAIMS 284 MILLION PATIENT RECORDS STOLEN Read More »

Latest Threat Feed

CYRUSONE FACES ALLEGED $13 MILLION EXTORTION DEMAND FROM SHINYHUNTERS

Major U.S. data center operator CyrusOne is reportedly facing a $13 million extortion demand from the ShinyHunters cybercrime group, which claims to have stolen a massive collection of sensitive corporate data. The hackers posted the allegations on their dark web leak site, claiming CyrusOne had refused to meet the $13 million demand. ShinyHunters also alleged

CYRUSONE FACES ALLEGED $13 MILLION EXTORTION DEMAND FROM SHINYHUNTERS Read More »

Latest Threat Feed

NEW TOOL COULD HELP 3D-PRINTED GUN FILES EVADE PRINTER SAFEGUARDS

A newly developed software tool is raising concerns about whether security measures intended to prevent 3D printers from producing firearms can keep pace with attempts to circumvent them. The tool, called “Hochulization,” was developed by Defense Distributed founder Cody Wilson, whose organization distributes digital firearm designs through its DEFCAD platform. Its emergence follows a New

NEW TOOL COULD HELP 3D-PRINTED GUN FILES EVADE PRINTER SAFEGUARDS Read More »

Latest Threat Feed