home.social

#cybernews — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #cybernews, aggregated by home.social.

  1. Tomorrow we continue the weekly bú shì one hour themed-discussion of Cyber Security news (from the same week). Hope to see you all there and wishing everyone a good weekend. youtube.com/live/Zox-N8pYAoE #cybersecurity #cyber #cybernews #infosec

  2. Tomorrow we continue the weekly one hour themed-discussion of Cyber Security news (from the same week). Hope to see you all there and wishing everyone a good weekend. youtube.com/live/FXucdva5D6k #cybersecurity #cybernews #cyber

  3. Tomorrow we continue the weekly one hour themed-discussion of Cyber Security news (from the same week). Hope to see you all there and wishing everyone a good weekend. youtube.com/live/FXucdva5D6k #cybersecurity #cybernews #cyber

  4. 🟡 THREAT INTELLIGENCE

    CISA Warns of FIRESTARTER Malware Targeting Cisco ASA including Firepower and Secure Firewall Products

    Vulnerability | MEDIUM

    Full analysis:
    yazoul.net/news/article/cisa-w

    #CyberSecurity #APT #CyberNews

  5. 🟡 THREAT INTELLIGENCE

    CISA Warns of FIRESTARTER Malware Targeting Cisco ASA including Firepower and Secure Firewall Products

    Vulnerability | MEDIUM

    Full analysis:
    yazoul.net/news/article/cisa-w

    #CyberSecurity #APT #CyberNews

  6. 🔹 THREAT INTELLIGENCE

    Russian State-Linked APT28 Exploits SOHO Routers in Global DNS Hijacking Campaign

    Threat Actor | HIGH

    An international operation from law enforcement authorities in partnership with private companies has disrupted FrostArmada, an APT28 campaign...

    Full analysis:
    yazoul.net/news/news/russian-s

    #InfoSec #Ransomware #CyberNews

  7. 🔹 THREAT INTELLIGENCE

    Russian State-Linked APT28 Exploits SOHO Routers in Global DNS Hijacking Campaign

    Threat Actor | HIGH

    An international operation from law enforcement authorities in partnership with private companies has disrupted FrostArmada, an APT28 campaign...

    Full analysis:
    yazoul.net/news/news/russian-s

    #InfoSec #Ransomware #CyberNews

  8. ⚡ THREAT INTELLIGENCE

    New GPUBreach Attack Enables Full CPU Privilege Escalation via GDDR6 Bit-Flips

    Vulnerability | MEDIUM

    A new attack, dubbed GPUBreach, can induce Rowhammer bit-flips on GPU GDDR6 memories to escalate privileges and lead to a full system compromise...

    Full analysis:
    yazoul.net/news/news/new-gpubr

    #InfoSec #Ransomware #CyberNews

  9. ⚡ THREAT INTELLIGENCE

    New GPUBreach Attack Enables Full CPU Privilege Escalation via GDDR6 Bit-Flips

    Vulnerability | MEDIUM

    A new attack, dubbed GPUBreach, can induce Rowhammer bit-flips on GPU GDDR6 memories to escalate privileges and lead to a full system compromise...

    Full analysis:
    yazoul.net/news/news/new-gpubr

    #InfoSec #Ransomware #CyberNews

  10. 📊 MORNING BRIEFING (AI-FREE EDITION)

    Last 24h: 257 stories detected (GrayZone: 191, Russia: 27, China: 16, FiveEyes: 15, Local: 8). 40 critical incidents flagged.

    ⏰ MISSING IN CZ:
    • North Korea’s Lazarus Group Behind the Axios npm Supply Chain Attack... (22.6h lag)
    #Cybersecurity #ITSecurity #InfoSec #CyberNews #Hacking #EthicalHackingNews Axio... (19.7h lag)
    • New Chrome Zero-Day CVE-2026-5281 Under Active Exploitation — Patch Released...

    Read more: index.deceiver.io/story/106130

  11. 📊 MORNING BRIEFING (AI-FREE EDITION)

    Last 24h: 257 stories detected (GrayZone: 191, Russia: 27, China: 16, FiveEyes: 15, Local: 8). 40 critical incidents flagged.

    ⏰ MISSING IN CZ:
    • North Korea’s Lazarus Group Behind the Axios npm Supply Chain Attack... (22.6h lag)
    #Cybersecurity #ITSecurity #InfoSec #CyberNews #Hacking #EthicalHackingNews Axio... (19.7h lag)
    • New Chrome Zero-Day CVE-2026-5281 Under Active Exploitation — Patch Released...

    Read more: index.deceiver.io/story/106130

  12. 🔵 THREAT INTELLIGENCE

    Critical Citrix NetScaler memory flaw actively exploited in attacks

    Vulnerability | CRITICAL
    CVEs: CVE-2026-3055

    Hackers are exploiting a critical severity vulnerability, tracked as CVE-2026-3055, in Citrix NetScaler ADC and NetScaler Gateway appliances to...

    Full analysis:
    yazoul.net/news/news/critical-

    #CyberSecurity #APT #CyberNews

  13. 🔵 THREAT INTELLIGENCE

    Critical Citrix NetScaler memory flaw actively exploited in attacks

    Vulnerability | CRITICAL
    CVEs: CVE-2026-3055

    Hackers are exploiting a critical severity vulnerability, tracked as CVE-2026-3055, in Citrix NetScaler ADC and NetScaler Gateway appliances to...

    Full analysis:
    yazoul.net/news/news/critical-

    #CyberSecurity #APT #CyberNews

  14. 🔵 THREAT INTELLIGENCE

    LangChain, LangGraph Flaws Expose Files, Secrets, Databases in Widely Used AI Frameworks

    Vulnerability | CRITICAL
    CVEs: CVE-2026-33017

    The Cybersecurity and Infrastructure Security Agency (CISA) is warning that hackers are actively exploiting a critical vulnerability identified as...

    Full analysis:
    yazoul.net/news/news/langchain

    #InfoSec #Ransomware #CyberNews

  15. 🔵 THREAT INTELLIGENCE

    LangChain, LangGraph Flaws Expose Files, Secrets, Databases in Widely Used AI Frameworks

    Vulnerability | CRITICAL
    CVEs: CVE-2026-33017

    The Cybersecurity and Infrastructure Security Agency (CISA) is warning that hackers are actively exploiting a critical vulnerability identified as...

    Full analysis:
    yazoul.net/news/news/langchain

    #InfoSec #Ransomware #CyberNews

  16. ⚡ THREAT INTELLIGENCE

    PolyShell attacks target 56% of all vulnerable Magento stores

    Vulnerability | MEDIUM

    Attacks leveraging the 'PolyShell' vulnerability in version 2 of Magento Open Source and Adobe Commerce installations are underway, targeting more...

    Full analysis:
    yazoul.net/news/news/polyshell

    #InfoSec #Ransomware #CyberNews

  17. ⚡ THREAT INTELLIGENCE

    PolyShell attacks target 56% of all vulnerable Magento stores

    Vulnerability | MEDIUM

    Attacks leveraging the 'PolyShell' vulnerability in version 2 of Magento Open Source and Adobe Commerce installations are underway, targeting more...

    Full analysis:
    yazoul.net/news/news/polyshell

    #InfoSec #Ransomware #CyberNews

  18. 💠 THREAT INTELLIGENCE

    The Importance of Behavioral Analytics in AI-Enabled Cyber Attacks

    Vulnerability | MEDIUM

    Geopolitical tensions are driving destructive cyberattacks designed to disrupt operations, not demand ransom. CISOs must limit lateral movement and...

    Full analysis:
    yazoul.net/news/news/the-impor

    #ThreatIntel #SecurityNews #CyberNews

  19. 🔵 THREAT INTELLIGENCE

    CISA Warns of Zimbra, SharePoint Flaw Exploits; Cisco Zero-Day Hit in Ransomware Attacks

    Vulnerability | CRITICAL
    CVEs: CVE-2025-66376

    A critical Microsoft SharePoint vulnerability patched in January is now being exploited in attacks, the Cybersecurity and Infrastructure Security...

    Full analysis:
    yazoul.net/news/news/cisa-warn

    #CyberSecurity #APT #CyberNews

  20. 🔵 THREAT INTELLIGENCE

    CISA Warns of Zimbra, SharePoint Flaw Exploits; Cisco Zero-Day Hit in Ransomware Attacks

    Vulnerability | CRITICAL
    CVEs: CVE-2025-66376

    A critical Microsoft SharePoint vulnerability patched in January is now being exploited in attacks, the Cybersecurity and Infrastructure Security...

    Full analysis:
    yazoul.net/news/news/cisa-warn

    #CyberSecurity #APT #CyberNews

  21. ⚡ THREAT INTELLIGENCE

    Apple Fixes WebKit Vulnerability Enabling Same-Origin Policy Bypass on iOS and macOS

    Vulnerability | MEDIUM
    CVEs: CVE-2026-20643

    Apple has released its first Background Security Improvements update to fix a WebKit flaw tracked as CVE-2026-20643 on iPhones, iPads, and Macs...

    Full analysis:
    yazoul.net/news/news/apple-fix

    #CyberSecurity #APT #CyberNews

  22. ⚡ THREAT INTELLIGENCE

    Apple Fixes WebKit Vulnerability Enabling Same-Origin Policy Bypass on iOS and macOS

    Vulnerability | MEDIUM
    CVEs: CVE-2026-20643

    Apple has released its first Background Security Improvements update to fix a WebKit flaw tracked as CVE-2026-20643 on iPhones, iPads, and Macs...

    Full analysis:
    yazoul.net/news/news/apple-fix

    #CyberSecurity #APT #CyberNews

  23. 🟡 THREAT INTELLIGENCE

    Storm-2561 Spreads Trojan VPN Clients via SEO Poisoning to Steal Credentials

    Vulnerability | MEDIUM

    Microsoft is investigating a new issue affecting some Samsung laptops running Windows 11 after installing the February 2026 security updates, in...

    Full analysis:
    yazoul.net/news/news/storm-256

    #InfoSec #Ransomware #CyberNews

  24. 🟡 THREAT INTELLIGENCE

    Storm-2561 Spreads Trojan VPN Clients via SEO Poisoning to Steal Credentials

    Vulnerability | MEDIUM

    Microsoft is investigating a new issue affecting some Samsung laptops running Windows 11 after installing the February 2026 security updates, in...

    Full analysis:
    yazoul.net/news/news/storm-256

    #InfoSec #Ransomware #CyberNews

  25. ⚡ THREAT INTELLIGENCE

    Google Fixes Two Chrome Zero-Days Exploited in the Wild Affecting Skia and V8

    Vulnerability | MEDIUM
    CVEs: CVE-2026-3909

    Google has released emergency security updates to patch two high-severity Chrome vulnerabilities exploited in zero-day attacks. [...]

    Full analysis:
    yazoul.net/news/news/google-fi

    #InfoSec #Ransomware #CyberNews

  26. ⚡ THREAT INTELLIGENCE

    Google Fixes Two Chrome Zero-Days Exploited in the Wild Affecting Skia and V8

    Vulnerability | MEDIUM
    CVEs: CVE-2026-3909

    Google has released emergency security updates to patch two high-severity Chrome vulnerabilities exploited in zero-day attacks. [...]

    Full analysis:
    yazoul.net/news/news/google-fi

    #InfoSec #Ransomware #CyberNews

  27. 💠 THREAT INTELLIGENCE

    Nine CrackArmor Flaws in Linux AppArmor Enable Root Escalation, Bypass Container Isolation

    Vulnerability | MEDIUM

    Law enforcement agencies in the U.S. and Europe along with private partners have disrupted the SocksEscort cybercrime proxy network that used only...

    Full analysis:
    yazoul.net/news/news/nine-crac

    #InfoSec #Ransomware #CyberNews

  28. 🔹 THREAT INTELLIGENCE

    Microsoft Patches 84 Flaws in March Patch Tuesday, Including Two Public Zero-Days

    Vulnerability | HIGH

    Microsoft has released the Windows 10 KB5078885 extended security update to fix the March 2026 Patch Tuesday vulnerabilities, including 2 zero-days...

    Full analysis:
    yazoul.net/news/news/microsoft

    #ThreatIntel #SecurityNews #CyberNews

  29. 🔹 THREAT INTELLIGENCE

    Microsoft Patches 84 Flaws in March Patch Tuesday, Including Two Public Zero-Days

    Vulnerability | HIGH

    Microsoft has released the Windows 10 KB5078885 extended security update to fix the March 2026 Patch Tuesday vulnerabilities, including 2 zero-days...

    Full analysis:
    yazoul.net/news/news/microsoft

    #ThreatIntel #SecurityNews #CyberNews

  30. 🔹 THREAT INTELLIGENCE

    Microsoft Patches 84 Flaws in March Patch Tuesday, Including Two Public Zero-Days

    Vulnerability | HIGH

    Microsoft has released the Windows 10 KB5078885 extended security update to fix the March 2026 Patch Tuesday vulnerabilities, including 2 zero-days...

    Full analysis:
    yazoul.net/news/news/microsoft

    #ThreatIntel #SecurityNews #CyberNews

  31. ⚠️ THREAT INTELLIGENCE

    Threat Actors Mass-Scan Salesforce Experience Cloud via Modified AuraInspector Tool

    Threat Actor | HIGH

    The Russian state-sponsored APT28 threat group is using a custom variant of the open-source Covenant post-exploitation framework for long-term...

    Full analysis:
    yazoul.net/news/news/threat-ac

    #ThreatIntel #SecurityNews #CyberNews

  32. ⚠️ THREAT INTELLIGENCE

    China-Linked Hackers Use TernDoor, PeerTime, BruteEntry in South American Telecom Attacks

    Malware | HIGH

    A China-linked advanced persistent threat actor tracked as UAT-9244 has been targeting telecommunication service providers in South America since...

    Full analysis:
    yazoul.net/news/news/china-lin

    #CyberSecurity #APT #CyberNews

  33. 🔵 THREAT INTELLIGENCE

    APT28 Tied to CVE-2026-21513 MSHTML 0-Day Exploited Before Feb 2026 Patch Tuesday

    Vulnerability | CRITICAL
    CVEs: CVE-2026-21513

    A Florida woman was sentenced to 22 months in prison for running a massive years-long scheme to traffic thousands of stolen Microsoft Certificate of...

    Full analysis:
    yazoul.net/news/news/apt28-tie

    #InfoSec #Ransomware #CyberNews