Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

SecurityWeek
securityweek.com > for-some-so-called-skynet-day-came-too-close-to-sci-fi-after-a-rogue-agent-hacked-into-a-startup

For Some, So-Called ‘Skynet Day’ Came too Close to Sci-Fi After a Rogue Agent Hacked Into a Startup

1+ mon, 2+ week ago   (1195+ words) Decades after it appeared in “The Terminator,” Skynet looks more like a forecast of the cyber incident in which a rogue AI system hacked into another AI company on its own. To be fair, James Cameron did warn us. Long…...

SecurityWeek
securityweek.com > 15-year-old-linux-vulnerability-ghostlock-earns-researchers-92k-from-google

15-Year-Old Linux Vulnerability ‘GhostLock’ Earns Researchers $92k From Google

2+ mon, 3+ day ago   (538+ words) Affecting every major distribution since 2011, the Linux kernel vulnerability allows attackers to gain root access. Nebula Security has published technical information and exploit code targeting a Linux kernel vulnerability that affects all major distributions since 2011. Tracked as CVE-2026-43499 and referred…...

SecurityWeek
securityweek.com > proof-of-concept-exploit-released-for-linux-bad-epoll-root-access-vulnerability

Proof-of-Concept Exploit Released for Linux ‘Bad Epoll’ Root Access Vulnerability

2+ mon, 6+ day ago   (600+ words) Organizations are urged to patch after proof-of-concept code makes the Linux root escalation flaw easier to exploit. Technical details and proof-of-concept (PoC) code targeting a recent Linux kernel vulnerability that could allow unprivileged processes to gain root privileges on desktops,…...

SecurityWeek
securityweek.com > new-citrixbleed-vulnerability-exploited-immediately-after-public-disclosure

New CitrixBleed Vulnerability Exploited Immediately After Public Disclosure

2+ mon, 1+ week ago   (598+ words) Hackers are targeting NetScaler appliances using public PoC code to retrieve arbitrary memory content in the HTTP response. Threat actors began exploiting the latest CitrixBleed-like vulnerability in NetScaler ADC and NetScaler Gateways less than 24 hours after public disclosure, Scottish cybersecurity…...

SecurityWeek
securityweek.com > hacker-conversations-chris-thompson-former-head-of-ibm-x-force-red-co-founder-of-remotethreat

Hacker Conversations: Chris Thompson, Former Head of IBM X-Force Red, Co-Founder of RemoteThreat

2+ mon, 2+ week ago   (1411+ words) Chris Thompson’s journey took him from hacking game controls as a teenager to founding IBM’s X-Force Red team. From bad game hacker to an elite good red team hacker. Chris Thompson is a hacker. His journey took him from hacking…...

SecurityWeek
securityweek.com > critical-simplehelp-vulnerability-exploited-for-malware-delivery

Critical SimpleHelp Vulnerability Exploited for Malware Delivery

2+ mon, 1+ week ago   (545+ words) The threat actor is focused on collecting credentials, SSH keys, cryptocurrency wallets, and development tooling. A recent authentication bypass vulnerability in the SimpleHelp remote monitoring and management (RMM) software has been exploited for malware delivery. Tracked as CVE-2026-48558 (CVSS score…...

SecurityWeek
securityweek.com > microsoft-and-allies-smash-shared-infrastructure-of-amadey-and-stealc-malware

Microsoft and Allies Smash Shared Infrastructure of Amadey and StealC Malware

2+ mon, 2+ week ago   (695+ words) Hundreds of C&C servers were disrupted in an operation involving law enforcement and several cybersecurity companies. Microsoft, law enforcement, and several cybersecurity companies have collaborated to take down infrastructure shared by two widely used malware families: Amadey and StealC....

SecurityWeek
securityweek.com > north-korean-hackers-blamed-for-mastra-npm-supply-chain-attack

North Korean Hackers Blamed for Mastra NPM Supply Chain Attack

2+ mon, 2+ week ago   (749+ words) A malicious dependency the attackers added to over 140 Mastra packages fetches a payload targeting cryptocurrency extensions. The North Korean state-sponsored threat actor Sapphire Sleet is behind the Mastra supply chain attack that hit over 140 NPM packages last week, Microsoft reports....

SecurityWeek
securityweek.com > splunk-enterprise-vulnerability-exploited-in-attacks-days-after-disclosure

Splunk Enterprise Vulnerability Exploited in Attacks Days After Disclosure

2+ mon, 3+ week ago   (538+ words) CISA has given federal agencies only three days to patch CVE-2026-20253, which can be exploited for unauthenticated remote code execution. A critical Splunk Enterprise vulnerability is being exploited in attacks only days after its public disclosure, and organizations have been…...

SecurityWeek
securityweek.com > google-confirms-exploitation-of-oracle-peoplesoft-zero-day-by-shinyhunters

Google Confirms Exploitation of Oracle PeopleSoft Zero-Day by ShinyHunters

3+ mon, 1+ day ago   (550+ words) Google has confirmed that a PeopleSoft vulnerability mitigated by Oracle this week has been exploited by ShinyHunters as a zero-day to steal data from organizations. The software giant has released mitigations, but patches do not appear to be available. PeopleSoft…...