-
Cloudflare has mitigated 23.2 million network-layer DDoS attacks and stopped 29.64 trillion HTTP DDoS requests during the first half of 2026. This underscores a significant increase in both the frequency and intensity of Internet-scale attacks. The com…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
A newly published internet-exposure analysis has identified more than 6,300 high-confidence industrial control system and building automation devices accessible near 1,063 U.S. data centers. Exposing a largely overlooked attack surface around infrastru…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Adobe has released security updates for Adobe Commerce, Adobe Commerce B2B, and Magento Open Source to address multiple critical vulnerabilities. One of the most serious issues is a high-impact privilege-escalation flaw, tracked as CVE-2026-71362, whic…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
WhatsApp has initiated a limited beta rollout of a feature called Scam Alert, which utilises an on-device machine learning model to identify potentially scam messages from non-contacts while maintaining end-to-end encryption. Meta has provided a detail…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Adobe has released critical security updates for ColdFusion 2025 and ColdFusion 2023, addressing 17 vulnerabilities that could enable arbitrary code execution, privilege escalation, bypass of security features, denial-of-service attacks, and memory exp…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
An Akira ransomware affiliate has been observed rebooting a compromised Windows host into Safe Mode with Networking to disable endpoint protection an anti-EDR tactic linked to the operation. The intrusion failed to encrypt files after the stripped-down…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Gunra ransomware has added a Linux encryptor to its arsenal, giving affiliates control over how they lock enterprise data. The command-line payload can launch up to 100 encryption threads, a design that compresses the time defenders have to detect and …
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
A newly identified Kimwolf v7 build shows the Android and IoT botnet shifting from an all-in-one compromise toolkit into a more specialized DDoS and proxy-relay payload. The latest variant removes embedded scanning, exploitation and brute-force logic, …
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
A China-linked threat actor has reportedly utilized a multi-agent artificial intelligence framework to conduct a nearly autonomous intrusion campaign targeting government entities in Taiwan and across Asia. This operation demonstrates how agentic AI ca…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Phantom Stealer is a .NET-based credential-harvesting malware that combines PNG-backed payload concealment, PowerShell-driven process injection, and telemetry suppression to steal passwords, browser data, cryptocurrency wallets, and sensitive local fil…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶


