cybernews

Cyber Incidents Digest — 2026-05-11

Daily Cyber Incidents Digest — 2026-05-11 Ollama Out-of-Bounds Read Vulnerability Allows Remote Process Memory Leak Published: 2026-05-11 00:00 UTC Source: https://thehackernews.com/2026/05/ollama-out-of-bounds-read-vulnerability.html Cybersecurity researchers have disclosed a critical security vulnerability in Ollama that, if successfully exploited, could allow a remote, unauthenticated attacker to leak its entire process memory. The out-of-bounds read flaw, which likely impacts over […]

Cyber Incidents Digest — 2026-05-11 Read More »

Cyber Incidents Digest — 2026-05-10

Daily Cyber Incidents Digest — 2026-05-10 cPanel, WHM Release Fixes for Three New Vulnerabilities — Patch Now Published: 2026-05-10 00:00 UTC Source: https://thehackernews.com/2026/05/cpanel-whm-patch-3-new-vulnerabilities.html cPanel has released updates to address three vulnerabilities in cPanel and Web Host Manager (WHM) that could be exploited to achieve privilege escalation, code execution, and denial-of-service. The list of vulnerabilities is

Cyber Incidents Digest — 2026-05-10 Read More »

Cyber Incidents Digest — 2026-05-09

Daily Cyber Incidents Digest — 2026-05-09 Yet another ex-ransomware negotiator admits turning rogue after payoff from crimelords Published: 2026-05-09 00:00 UTC Source: https://www.theregister.com/security/2026/04/21/third-ransomware-pro-pleads-guilty-to-cybercrime-u-turn/5222277 Plus: Court papers reveal nonprofit paid a ransom worth nearly $26.8 million Tags: ransomware TCLBANKER Banking Trojan Targets Financial Platforms via WhatsApp and Outlook Worms Published: 2026-05-09 00:00 UTC Source: https://thehackernews.com/2026/05/tclbanker-banking-trojan-targets.html Threat

Cyber Incidents Digest — 2026-05-09 Read More »

Cyber Incidents Digest — 2026-05-08

Daily Cyber Incidents Digest — 2026-05-08 Attackers are cashing in on fresh ‘CopyFail’ Linux flaw Published: 2026-05-08 04:11 UTC Source: https://www.theregister.com/security/2026/05/05/copyfail-attackers-start-cashing-in-on-linux-flaw/5226930 Researchers dropped a reliable root exploit and it didn’t sit idle for long Tags: vulnerability Real estate giant confirms vishing incident as ShinyHunters and Qilin both come knocking Published: 2026-05-08 04:11 UTC Source: https://www.theregister.com/security/2026/05/05/cushman-wakefield-confirms-vishing-cyberattack/5228718

Cyber Incidents Digest — 2026-05-08 Read More »

Cyber Incidents Digest — 2026-05-01

Daily Cyber Incidents Digest — 2026-05-01 French prosecutors link 15-year-old to mega-breach at state’s secure document agency Published: 2026-05-01 00:00 UTC Source: https://go.theregister.com/feed/www.theregister.com/2026/04/30/french_gov_mega_breach_suspect/ Two computer crime allegations follow up to 18M lines of data surfacing online French prosecutors say police detained a 15-year-old on April 25 over the alleged theft of millions of records from

Cyber Incidents Digest — 2026-05-01 Read More »

Cyber Incidents Digest — 2026-04-30

Daily Cyber Incidents Digest — 2026-04-30 SAP-Related npm Packages Compromised in Credential-Stealing Supply Chain Attack Published: 2026-04-30 00:00 UTC Source: https://thehackernews.com/2026/04/sap-npm-packages-compromised-by-mini.html Cybersecurity researchers are sounding the alarm about a new supply chain attack campaign targeting SAP-related npm Packages with credential-stealing malware. According to reports from Aikido Security, SafeDep, Socket, StepSecurity, and Google-owned Wiz, the campaign

Cyber Incidents Digest — 2026-04-30 Read More »

Cyber Incidents Digest — 2026-04-29

Daily Cyber Incidents Digest — 2026-04-29 Don’t pay Vect a ransom – your data’s likely already wiped out Published: 2026-04-29 00:00 UTC Source: https://go.theregister.com/feed/www.theregister.com/2026/04/28/dont_pay_vect_a_ransom/ ‘Full recovery is impossible for anyone, including the attacker’ Organizations hit by the wave of Trivy and LiteLLM supply-chain compromises that paid Vect in hopes of recovering their data likely did

Cyber Incidents Digest — 2026-04-29 Read More »

Cyber Incidents Digest — 2026-04-28

Daily Cyber Incidents Digest — 2026-04-28 Ongoing supply-chain attack ‘explicitly targeting’ security, dev tools Published: 2026-04-28 00:00 UTC Source: https://go.theregister.com/feed/www.theregister.com/2026/04/27/supply_chain_campaign_targets_security/ Vendor confirms repo data exposure after Lapsus$ claims source code, secrets dump Software security testing outfit Checkmarx has become the latest organization caught up in an ongoing attack on security-tool providers. The biz said data

Cyber Incidents Digest — 2026-04-28 Read More »

Cyber Incidents Digest — 2026-04-27

Daily Cyber Incidents Digest — 2026-04-27 American utility firm Itron discloses breach of internal IT network Published: 2026-04-27 00:00 UTC Source: https://www.bleepingcomputer.com/news/security/american-utility-firm-itron-discloses-breach-of-internal-it-network/ Itron, Inc. has disclosed, via an 8-K filing with the U.S. Securities and Exchange Commission (SEC), a cybersecurity incident in which an unauthorized third party accessed certain internal systems. […] Tags: cybersecurity Helping

Cyber Incidents Digest — 2026-04-27 Read More »

Cyber Incidents Digest — 2026-04-26

Daily Cyber Incidents Digest — 2026-04-26 Crime crew impersonates help desk, abuses Microsoft Teams to steal your data Published: 2026-04-26 00:00 UTC Source: https://go.theregister.com/feed/www.theregister.com/2026/04/25/new_crime_crew_impersonates_help_desks/ Coming in cold with custom Snow malware A previously unknown threat group using tried-and-tested social engineering tactics – Microsoft Teams chat invitations and helpdesk staff impersonation – is also using custom

Cyber Incidents Digest — 2026-04-26 Read More »

Scroll to Top