General
High
21 May
(The Hacker News) /
The Hacker News:
GitHub on Tuesday said it's investigating unauthorized access to its internal repositories after the notorious threat actor known as TeamPCP listed the platform's source code and internal organizations for sale on a cybercrime forum. "While we currently have no evidence of impact to customer informa
General
High
21 May
(The Hacker News) /
The Hacker News:
New Industry Data Just Released Suggests Not. On May 19th, 2026, Orchid Security released the results of our Identity Gap: Snapshot 2026. Among the findings, "identity dark matter" (the unseen, unmanaged elements of identity) now overshadows the visible elements 57% vs. 43%. And it couldn't have occ
General
High
21 May
(The Hacker News) /
The Hacker News:
Microsoft has unveiled two new open-source tools called RAMPART and Clarity to assist developers in better testing the security of artificial intelligence (AI) agents. RAMPART, short for Risk Assessment and Measurement Platform for Agentic Red Teaming, functions as a Pytest-native safety and securit
General
High
21 May
AI helping India's engineering hubs generate IP faster, Daimler Truck executive says. Daimler Truck India Cybersecurity Intellectual Property Supply ...
General
High
20 May
Tushar Subhra Dutta /
Cybersecurity News:
A ransomware group called The Gentlemen has been quietly building one of the most aggressive cybercriminal operations seen in recent years. Emerging publicly in the second half of 2025, the group rapidly scaled its activity to become one of the top two most active ransomware threats globally by earl
General
High
20 May
Ionut Arghire /
Security Week:
The security defect can be exploited remotely, without authentication, to execute arbitrary code and leak sensitive information. The post Unpatched ChromaDB Vulnerability Can Lead to Server Takeover appeared first on SecurityWeek.
General
High
20 May
Kevin Townsend /
Security Week:
Attackers are increasingly abusing Microsoft’s decades-old MSHTA utility to stealthily deliver stealers, loaders, and persistent malware through phishing, fake software downloads, and LOLBIN-based attack chains. The post Legacy Windows Tool MSHTA Fuels Surge in Silent Malware Attacks appeared first
General
Critical
20 May
Eduard Kovacs /
Security Week:
Drupal says attackers may develop an exploit for the vulnerability within hours or days. The post Drupal to Patch Highly Critical Vulnerability at Risk of Quick Exploitation appeared first on SecurityWeek.
General
High
20 May
The company unsealed a legal case in U.S. District Court on Tuesday detailing the disruption of Fox Tempest — a popular service that has operated since May 2025 and provides cybercriminals with code signing tools.
General
High
20 May
There is no evidence that the incident has recurred, but the flaw remains unexplained and has not been publicly acknowledged by the company.
General
High
20 May
A new variant of the 'SHub' macOS infostealer uses AppleScript to show a fake security update message and installs a backdoor. [...]
General
High
20 May
More than 200 individuals were arrested for cybercrime activities during INTERPOL's Operation Ramz, which focused on the Middle East and North Africa. [...]
General
High
20 May
Sponsored by BeyondTrust /
BleepingComputer:
Microsoft's total vulnerability count stayed steady in 2025, but critical flaws surged year over year. BeyondTrust breaks down why attackers are increasingly focused on privilege escalation and identity abuse. [...]
General
Critical
20 May
(The Hacker News) /
The Hacker News:
In February 2026, a phishing-as-a-service (PhaaS) platform called EvilTokens went live. Within five weeks, it had compromised more than 340 Microsoft 365 organizations across five countries. The targets of the platform received a message asking them to enter a short code at microsoft.com/devicelogi
General
High
20 May
(The Hacker News) /
The Hacker News:
Proof-of-concept (PoC) exploit code has now been released for a recently patched security flaw in the Linux kernel that could allow for local privilege escalation (LPE). Dubbed DirtyDecrypt (aka DirtyCBC), the vulnerability was discovered and reported by the Zellic and V12 security team on May 9, 20
General
High
20 May
(The Hacker News) /
The Hacker News:
Cybersecurity researchers have disclosed details of a new ad fraud and malvertising operation dubbed Trapdoor targeting Android device users. The activity, per HUMAN's Satori Threat Intelligence and Research Team, encompassed 455 malicious Android apps and 183 threat actor-owned command-and-control
Government
Critical
20 May
NIC and CERT-In. These organisations offer stable jobs, good salary packages, and long-term career security, making GATE an important exam for many ...
Government
High
20 May
... CERT-In and MeiTY. Trending Stories. 'Half-tank rule': Does keeping your fuel ...
General
High
20 May
Tags. cybersecurity ESET France ESET Netherlands ESET India cybersecurity solutions European cybersecurity. Contact Data. Contact. close. Contact.
General
High
19 May
Ionut Arghire /
Security Week:
The researcher dropped the MiniPlasma exploit that uses the original proof-of-concept (PoC) code targeting the bug. The post Researcher Drops MiniPlasma Windows Exploit for Unpatched 2020 CVE appeared first on SecurityWeek.