Install
Cyber Press offers a dedicated & fast Cyber Security News Coverage, so you can keep track of Activities & stay Sture.
- 1,948articles · 365d
- 3+ day agolatest article
- Dec 22, 2025earliest in window
- 1%with images
- 338avg words
- security 1,747
- cybersecurity 1,688
- cyber security news 1,448
- cyber security 1,241
- malware 1,212
- vulnerability 916
- technology 523
- artificial intelligence 522
- cybercrime 508
- windows 475
- ai 450
- vulnerabilities 448
- computer security 383
- software 335
- microsoft 329
- phishing 320
- network security 314
- linux 304
- data breach 236
- infosec 225
- Science & Technology 1,239
- Computers & Electronics 1,209
- Software 1,104
- Conflict, War & Peace 600
- Software Dev. 416
- Internet & Telecom 357
- Crime & Law 278
- News 225
- cyber security news
- cyber attacks
- computer security
- data breach
- cyber news
- cyber security news today
- cyber security updates
- cyber updates
- hacker news
- hacking news
- software vulnerability
- ransomware malware
- how to hack
- network security
- information security
- the hacker news
- top cybersecurity threats
- ⚡ thn weekly recap
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Hackers Deploy Hundreds of AI Agents to Exploit PaperCut Flaws and Compromise 440 Servers
3+ day, 12+ hour ago (325+ words) A likely Russian-speaking threat actor used hundreds of AI agents to automate exploitation of PaperCut NG/MF vulnerabilities, compromising at least 440 servers linked to 395 organizations across 48 countries. GreyNoise said the actor moved from an empty operational workspace to remote code…...
Critical WordPress Pods Flaw Lets Unauthenticated Attackers Gain Admin Access
2+ week, 6+ day ago (419+ words) A critical security vulnerability in the Pods WordPress plugin could allow unauthenticated attackers to seize administrator-level control of affected websites. The flaw, tracked as CVE-2026-19598, impacts all Pods versions through 3.3.9 and has received a CVSS score of 9.8, making it critical....
Hackers Turn Thousands of WordPress Sites Into StopAndProtect Malware Infrastructure
3+ week, 4+ day ago (415+ words) Checkpoint first observed the campaign in mid-May 2026 and found that it blends ransomware activity with targeted data theft, enabling operators to decide whether to encrypt victims’ files, silently collect documents, or do both. The campaign begins with a ClickFix social-engineering…...
Metabase Zero-Day Attack Lets Hackers Gain Admin Access and Steal Database Credentials
1+ mon, 3+ day ago (395+ words) A maximum-severity, unauthenticated SQL injection zero-day in the popular open-source analytics platform Metabase has been actively exploited in the wild, letting attackers seize administrator privileges and steal credentials for every database connected to compromised instances. Metabase disclosed that its Cloud…...
Autonomous AI Agent Accidentally Exposes Hacker’s Entire Attack Infrastructure
1+ mon, 1+ week ago (347+ words) Researchers from Unit 42 uncovered the activity after the attacker’s AI agent mistakenly launched a public file server from its working directory, revealing sensitive assets including exploit scripts, API keys, configuration files, and attack logs. The exposure provides one of the…...
Critical WordPress Plugin Backdoor Exposes 20,000 Sites to Administrator Takeover
1+ mon, 2+ week ago (425+ words) A critical supply chain attack targeting the WordPress ecosystem has exposed approximately 20,000 websites to full administrative compromise after a widely used plugin was found to contain a deliberately injected backdoor. Chloe Chamberland at Wordfence disclosed that the vulnerability, tracked as…...
AI Helps Discover Linux Kernel Zero-Day Enabling Root Privilege Escalation
1+ mon, 2+ week ago (415+ words) A newly disclosed a Linux kernel zero-day, tracked as CVE-2026-53264, that can be exploited for local privilege escalation to root. The bug affects the net/sched packet scheduling subsystem and was reportedly discovered with assistance from AI during zero-day hunting…...
Cl0p Exploits PTC Windchill Zero-Day to Deploy Webshells and Steal Data
1+ mon, 2+ week ago (542+ words) Cl0p ransomware affiliates are actively exploiting a critical zero-day in PTC Windchill and FlexPLM (CVE-2026-12569) to gain unauthenticated remote code execution, drop JSP webshells, and exfiltrate sensitive engineering data for double‑extortion. Tracking a coordinated campaign in which Cl0p (aka Graceful Spider,…...
Ubuntu snap-confine Flaw Lets Any Local User Gain Full Root Access
1+ mon, 3+ week ago (337+ words) A newly disclosed local privilege escalation vulnerability in Ubuntu’s snap-confine component allows any unprivileged local user to obtain full root access on default installations of Ubuntu Desktop 24.04, 25.10, and 26.04. Tracked as CVE-2026-8933, the flaw was discovered by the Qualys Threat Research…...
Critical Check Point Flaw Lets Attackers Bypass SmartConsole Authentication
1+ mon, 3+ week ago (309+ words) Check Point Software Technologies has disclosed three security vulnerabilities affecting its Security Management and Multi-Domain Management products, including a critical authentication bypass flaw that has already been exploited in the wild. The disclosure came through a jumbo hotfix released as…...