Aggregator
ShinyHunters Claims Ernst & Young Data Breach, Threatens to Leak Stolen Data
Hackers Can Hijack Tor Browser Users Through a Single Malicious Web Page
A single malicious webpage is enough to compromise Tor Browser users running an unpatched build, following newly disclosed research into CVE-2026-10702. The flaw, a high-severity Firefox JavaScript engine bug, was successfully exploited against Tor Browser by researchers at Nebula Security. Mozilla resolved the vulnerability in Firefox 151.0.3 on June 2, 2026, and the Tor Project […]
The post Hackers Can Hijack Tor Browser Users Through a Single Malicious Web Page appeared first on Cyber Security News.
Critical VMware vCenter Flaws Let Remote Attackers Bypass Authentication and Execute Code
Broadcom has released important security updates addressing critical vulnerabilities in VMware that could allow remote attackers to bypass vCenter authentication or execute arbitrary code. These vulnerabilities, outlined in advisory VMSA-2026-0006, affect a range of products including vCenter, ESX, Workstation, Fusion, VMware Cloud Foundation, vSphere Foundation, and selected Telco Cloud products. The advisory, published on July […]
The post Critical VMware vCenter Flaws Let Remote Attackers Bypass Authentication and Execute Code appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Уязвимости с 2013 года и алгоритм RC4. Хакеры годами держат под контролем 200000 устройств
Revolut Alleged Data Breach – Hackers Claiming to Access Over 75 Million Users’ Records
Revolut is currently under scrutiny after hackers claimed to be selling a database containing records of more than 75 million users. However, the company asserts that it has found no evidence of a new breach at this time. A threat actor has advertised what they describe as a Revolut customer database on a cybercrime forum, […]
The post Revolut Alleged Data Breach – Hackers Claiming to Access Over 75 Million Users’ Records appeared first on Cyber Security News.
Broadcom Patches Critical VMware ESXi Vulnerability Enabling Host Code Execution
Stairwell launches Backstory, pioneering agentic investigation for malware blast radius
Stairwell, the AI SOC that stops breaches no one else can, today announced the availability of Backstory, an agentic investigation platform that traces related malware variants, identifies affected systems, and maps the full blast radius of an incident in seconds, so enterprises know what happened, where it spread, and what needs to be contained before precious time is lost. AI-generated malware is making it easier for attackers to create new variants, and legacy alert-based tools … More →
The post Stairwell launches Backstory, pioneering agentic investigation for malware blast radius appeared first on Help Net Security.
Sweet Security Brings Autonomous Protection to the AI Enterprise with New Blocking Capabilities
ShutterGap: Aryon Security finds 3.7M AWS cloud resources exposed beyond CSPM/CNAPP visibility
Research from Aryon reveals that each year, 3,731,699 short-lived cloud resources containing highly sensitive information are publicly exposed. This impacts any organization using AWS services that support public sharing. These exposures often last only minutes or hours, too briefly for periodically scanning CSPM and CNAPP platforms to detect, yet long enough for attackers to discover and copy them.  The findings expose a fundamental limitation of the reactive CSPM/CNAPP model: some cloud misconfigurations can be exploited … More →
The post ShutterGap: Aryon Security finds 3.7M AWS cloud resources exposed beyond CSPM/CNAPP visibility appeared first on Help Net Security.
Post-quantum authentication to origins is now supported
The Future of Telecom Operations Is Powered by Autonomy at Scale
TrendAI™ Reports Nation-State Activity in H1 2026 APT Activity Roundup
Ваш ИИ-агент может перевести деньги не туда, и это не баг, а фича протокола
Russia accuses Telegram founder of aiding terrorism, seeks international arrest
macOS ClickFix Attacks Use Fake CAPTCHAs to Deploy Atomic Stealer and Hijack Crypto Wallets
macOS users are facing a new, highly polished ClickFix campaign that abuses fake CAPTCHAs to execute Terminal commands, silently deploy Atomic macOS Stealer (AMOS), and systematically loot crypto wallets and browser‑stored credentials. This evolution of ClickFix underscores how social engineering, not exploits, remains one of the most effective paths to full compromise on Apple devices. […]
The post macOS ClickFix Attacks Use Fake CAPTCHAs to Deploy Atomic Stealer and Hijack Crypto Wallets appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Russia Charges Telegram CEO Pavel Durov With Aiding Terrorism, Issues Arrest Warrant
Russia’s Federal Security Service (FSB) has formally charged Telegram founder and CEO Pavel Durov with aiding terrorism and issued a warrant for his arrest, escalating a long-running clash between the Kremlin and one of the world’s most widely used encrypted messaging platforms. The move, announced on July 29, 2026, centers on allegations that Telegram failed […]
The post Russia Charges Telegram CEO Pavel Durov With Aiding Terrorism, Issues Arrest Warrant appeared first on Cyber Security News.