Stay Informed

Cybersecurity News

Home / News

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

The Hacker News
The Hacker News Vulnerabilities
Forminator WordPress Flaw Can Enable Unauthenticated RCE via Malicious PHP Uploads

A critical security flaw has been disclosed in Forminator Forms, a WordPress plugin with more than 600,000 active installations, that could be exploited to ach…

WordPress PHP

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Fence2Pwn Technique Uses KFENCE to Bypass Linux Kernel Slab Hardening

Security researchers have disclosedFence2Pwn, a new Linux kernel exploitation technique that uses KFENCE’s alternate memory-allocation path to bypass protectio…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
OpenZFS Capability-Scoping Flaw Lets User Namespaces Reach Host Pool Operations

A disclosure posted to the oss-security mailing list on August 16, 2026, reports that OpenZFS on Linux accepts namespace-local CAP_SYS_ADMIN for several host-l…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles
LinuxSecurity HOWTO: The Modern Linux Security Operations Playbook

Linux security problems rarely stay in one place. An authentication issue can lead to unexpected privilege. A container problem can reach the host. Missing log…

Linux Docker

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles
Why LinuxSecurity Is Rebuilding the Linux Security HOWTO

Linux security no longer lives on one server.

Linux

The Hacker News
The Hacker News Breaches & leaks
Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware

Cybersecurity researchers have attributed the exploitation of a newly patched security flaw in Broadcom VMware vCenter to a suspected China-nexus advanced pers…

VMware

The Hacker News
The Hacker News Vulnerabilities
SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After Patch

A maximum-severity security vulnerability impacting SAP Commerce Cloud is witnessing active exploitation efforts.The vulnerability, tracked as CVE-2026-58231, …

The Hacker News
The Hacker News
Hackers Spend Nearly $7 Million on Expired Domains to Redirect Traffic to Scams and Malware

Threat actors are acquiring expired domains to inherit website traffic and reputation to redirect victims to scams and malware on a large scale.DNS threat inte…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Linux BPF Patches Fix Sparse CPU Bugs Causing Out-of-Bounds Read

Two fixes posted August 13 correct separate per-CPU map failures on Linux systems whose logical CPU IDs contain gaps.

Linux

The Hacker News
The Hacker News
Trump Memo Paves Way for U.S. Firms to Hack and Disrupt Foreign Crime Groups

A new White House memo signed by U.S. President Donald Trump has instructed the National Coordination Center (NCC) to establish a program that would allow priv…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles
Routing Security in Practice: Detecting BGP Hijacks and RPKI-Invalid Announcements

Border Gateway Protocol (BGP) is still trust-based. In the past, a router would announce it originated a block of address space, and its neighbors would take t…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Alerts
eBPF Security Logs May Show the Wrong File or Command, New Study Warns

A Linux security tool can catch a system call and still record the wrong thing.

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles
Linux Audit Can Log a Syscall but Miss the Flag That Explains It

Linux Audit can tell defenders that a system call ran while leaving out the setting that explains what the call did.

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Linux Security Roundup Privilege Escalation DoS Code Execution August 2026

This week’s Linux security updates cover several areas administrators cannot afford to overlook. Debian, Ubuntu, Fedora, SUSE, openSUSE, and other distribution…

Linux

The Hacker News
The Hacker News
WindRelay Android Malware Turns Victims' Phones Into NFC Relays for Payment Fraud

A previously unseen Android near field communication (NFC) relay malware family dubbed WindRelay is being deployed in conjunction with a known remote access tr…

Android

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Vulnerabilities
How to Test for CORS Misconfigurations Like a Bug Bounty Hunter

A step-by-step method for finding and proving CORS misconfiguration vulnerabilities: the header checks, the edge cases developers miss, and how to fix them.How…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
New Linux Private Futex Race Can Trigger Kernel Use-After-Free

A proposed Linux kernel patch addresses a private-futex race that a recent security fix left unresolved. Security researcher Hyunwoo Kim found that a rare sequ…

Linux

The Hacker News
The Hacker News Vulnerabilities
Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access

Threat actors have begun to actively exploit a recently patched critical security flaw in Broadcom VMware vCenter, according to new findings from QUIRSO.The vu…

VMware

The Hacker News
The Hacker News
Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations

Two malicious LiteLLM releases sat on PyPI for about 40 minutes in March carrying credential-stealing code capable of harvesting cloud keys, SSH keys, Kubernet…

Kubernetes

The Hacker News
The Hacker News Vulnerabilities
SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code

SAP has released patches to address a maximum-severity security flaw impacting Commerce Cloud (Data Hub Adapter) that could result in arbitrary code execution.…

The Hacker News
The Hacker News Vulnerabilities
Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack

Microsoft released its monthly security updates on Tuesday, and one of the flaws it closed is already being used in attacks.The bug sits in a core Windows kern…

Windows

The Hacker News
The Hacker News Breaches & leaks
DeadLock Ransomware Uses Polygon Smart Contracts to Make Extortion Infra Harder to Disrupt

The ransomware group known as DeadLock has been observed using decentralized infrastructure to facilitate victim communications and data leak operations in a b…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
Public SCTPhantom Exploit Tests Linux Container Security Defaults

Public exploit code is now available for SCTPhantom, a Linux kernel flaw that researchers used to escape an unprivileged container and take control of the unde…

Linux Docker

The Hacker News
The Hacker News Vulnerabilities
OpenAI Launches GPT-5.6-Cyber with Reduced Safeguards for Exploit Development

OpenAI on Monday unveiled a new cybersecurity-focused model called GPT‑5.6‑Cyber that it said is focused on vulnerability research, penetration testing, and in…