Stay Informed

Cybersecurity News

Home / News

Clear

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

The End of Patch and Pray: How Rust Is Reshaping Memory Safety in Linux

Most information security best practices are built on a single, comfortable assumption: that if we find a bug, we can patch it, and once it's patched, the syst…

Linux

The Hacker News
The Hacker News Vulnerabilities

Critical cPanel Authentication Vulnerability Identified — Update Your Server Immediately

cPanel has released security updates to address a security issue impacting various authentication paths that could allow an attacker to obtain access to the co…

The Hacker News
The Hacker News Breaches & leaks

VECT 2.0 Ransomware Irreversibly Destroys Files Over 131KB on Windows, Linux, ESXi

Threat hunters are warning that the cybercriminal operation known as VECT 2.0 acts more like a wiper than a ransomware due to a critical flaw in its encryption…

Linux Windows VMware

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Ubuntu PackageKit Critical Local Privilege Escalation CVE-2026-41651

Most information security best practices are built on a single, comfortable assumption: that the "root" gate is locked and only the administrator holds the key…

Linux

The Hacker News
The Hacker News Vulnerabilities

Mythos Changed the Math on Vulnerability Discovery. Most Teams Aren't Ready for the Remediation Side

Anthropic’s Claude Mythos Preview has dominated security discussions since its April 7 announcement. Early reporting describes a powerful cybersecurity-focused…

The Hacker News
The Hacker News Breaches & leaks

PhantomCore Exploits TrueConf Vulnerabilities to Breach Russian Networks

A pro-Ukrainian hacktivist group called PhantomCore has been attributed to attacks actively targeting servers running TrueConf video conferencing software in R…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

How Linux Pentesting Improves Network Security

When setting up network security systems, it is critical to ensure they work correctly and do not have flaws waiting to be exploited.

Linux

The Hacker News
The Hacker News Breaches & leaks

FIRESTARTER Backdoor Hit Federal Cisco Firepower Device, Survives Security Patches

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has revealed that an unnamed federal civilian agency's Cisco Firepower device running Adaptive…

Cisco

The Hacker News
The Hacker News Vulnerabilities

ThreatsDay Bulletin: $290M DeFi Hack, macOS LotL Abuse, ProxySmart SIM Farms +25 New Stories

You scroll past one incident and see another that feels familiar, like it should have been fixed years ago, but it still works with small changes. Same bugs. S…

Apple

The Hacker News
The Hacker News Vulnerabilities

SGLang CVE-2026-5760 (CVSS 9.8) Enables RCE via Malicious GGUF Model Files

A critical security vulnerability has been disclosed in SGLang that, if successfully exploited, could result in remote code execution on susceptible systems.Th…

The Hacker News
The Hacker News Vulnerabilities

Anthropic MCP Design Vulnerability Enables RCE, Threatening AI Supply Chain

Cybersecurity researchers have discovered a critical "by design" weakness in the Model Context Protocol's (MCP) architecture that could pave the way for remote…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Zero Trust for Email: Implementing Advanced Protections on Linux

Email threats have long outgrown spamming and obvious phishing. Attackers now exploit trust itself. They impersonate internal users, hijack legitimate threads,…

Linux

The Hacker News
The Hacker News Vulnerabilities

NIST Limits CVE Enrichment After 263% Surge in Vulnerability Submissions

The National Institute of Standards and Technology (NIST) has announced changes to the way it handles cybersecurity vulnerabilities and exposures (CVEs) listed…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

When LKML Patches Signal Exploitation Risk Before CVE Assignment

Think about Linux security like a product recall. A manufacturer starts fixing the issue before the public notice goes out. If you catch those early signals, y…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Kubernetes Container Security Misconfigurations Leading to Threats

Container security failures rarely come from zero-days. They come from the configuration. Misconfigurations don't trigger alerts. They don456't crash systems. …

Docker Kubernetes

The Hacker News
The Hacker News Vulnerabilities

Actively Exploited nginx-ui Flaw (CVE-2026-33032) Enables Full Nginx Server Takeover

A recently disclosed critical security flaw impacting nginx-ui, an open-source, web-based Nginx management tool, has come under active exploitation in the wild…

Nginx

The Hacker News
The Hacker News Vulnerabilities

Microsoft Issues Patches for SharePoint Zero-Day and 168 Other New Vulnerabilities

Microsoft on Tuesday released updates to address a record 169 security flaws across its product portfolio, including one vulnerability that has been actively e…

Microsoft 365

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Top Linux Vulnerability Scanners in 2026: A Guide to Open-Source Security Tools

Computer systems, software, applications, and Linux servers are all vulnerable to network security threats.Failure to identify these cybersecurity vulnerabilit…

Linux

The Hacker News
The Hacker News Vulnerabilities

Google Adds Rust-Based DNS Parser into Pixel 10 Modem to Enhance Security

Google has announced the integration of a Rust-based Domain Name System (DNS) parser into the modem firmware as part of its ongoing efforts to beef up the secu…

The Hacker News
The Hacker News Vulnerabilities

Analysis of 216M Security Findings Shows a 4x Increase In Critical Risk (2026 Report)

OX Security recently analyzed 216 million security findings across 250 organizations over a 90-day period. The primary takeaway: while raw alert volume grew by…

The Hacker News
The Hacker News Vulnerabilities

⚡ Weekly Recap: Fiber Optic Spying, Windows Rootkit, AI Vulnerability Hunting and More

Monday is back, and the weekend’s backlog of chaos is officially hitting the fan. We are tracking a critical zero-day that has been quietly living in your PDFs…

Windows

The Hacker News
The Hacker News Vulnerabilities

Adobe Reader Zero-Day Exploited via Malicious PDFs Since December 2025

Threat actors have been exploiting a previously unknown zero-day vulnerability in Adobe Reader using maliciously crafted PDF documents since at least December …

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Microsoft Blocks Open Source Dev Accounts, Disrupting Security Pipelines

When developer accounts are blocked, the impact is felt far beyond a single login screen. For many projects, these accounts are the access points for the entir…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Critical Docker AuthZ Bypass Flaw Allows Silent Root Access on Linux Systems

People often think of containers as locked boxes that keep software separate from the rest of the computer. In reality, that safety depends on a chain of digit…

Linux Docker