Nike Investigates Alleged Data Breach After WorldLeaks Claims Release of 1.4TB of Internal Files
A cybercrime group known as WorldLeaks—believed to be a rebrand of the Hunters International ransomware operation—has claimed…
continue reading..
PeckBirdy: Newly Discovered Script-Based C2 Framework Tied to Cyber Operations Targeting Gambling Firms and Asian Governments
Since early 2023, multiple targeted intrusion campaigns have been observed leveraging a previously undocumented script-based command-and-control (C2)…
continue reading..
ShinyHunters Claims Theft of 2 Million Crunchbase Records as Company Confirms Data Breach
ShinyHunters, a well-known cybercrime and extortion group, says it has stolen more than 2 million records from…
continue reading..
Fake CAPTCHA Campaign Abuses Signed Microsoft App-V Script to Quietly Deliver Amatera Stealer
This campaign revolves around a Fake CAPTCHA lure, but what makes it notable is not the social…
continue reading..
Cloudflare Routing Misconfiguration Triggers Brief Global BGP Route Leak, Disrupting Internet Traffic
On January 22, 2026, Cloudflare publicly disclosed a routing incident caused by an automated configuration error within…
continue reading..
Microsoft Office Zero-Day CVE-2026-21509 Actively Exploited, Allows Attackers to Bypass Built-In Security Protections
CVE-2026-21509 is a security feature bypass vulnerability in Microsoft Office that allows an attacker to circumvent Office…
continue reading..
New Linux Kernel Flaws Allow Remote System Crashes and Guest-Triggered Host Denial-of-Service
Product: Linux KernelAffected Scope: Core kernel subsystems, networking, virtualization, storage, and device driversAttack Surface: Local, guest-to-host, network…
continue reading..
WordPress Privilege Escalation Flaw Exposes Sites to Full Admin Takeover (CVE-2025-14866)
CVE-2025-14866 is a high-impact privilege escalation vulnerability affecting the Melapress Role Editor WordPress plugin (versions ≤ 1.1.1).The…
continue reading..
CVE-2026-1364: Missing Authentication Bug Enables Unrestricted Admin Access in JNC Industrial Systems
CVE-2026-1364 is a critical authentication bypass vulnerability affecting JNC IAQS and I6 systems.The core issue is that…
continue reading..
