home / cybersecurity
🛡️

Cybersecurity

CVEs, exploits, pentesting & threat intel

73 posts // cybersecurity updated daily
FBI warning FIFA World Cup 2026 fake sites cyber fraud scams

FBI Warning: 4,300+ Fake FIFA Sites Target World Cup 2026 Fans — Billions at Risk

FBI warns 4,300+ fake FIFA domains target World Cup 2026 fans with ticket scams, banking malware, and identity theft. Group-IB…

Cisco CVE-2026-20230 critical root exploit IOS XE vulnerability

Cisco CVE-2026-20230: Unauthenticated Root Exploit in UCM — PoC Code Already Public

Cisco patches critical CVE-2026-20230 SSRF in Unified Communications Manager WebDialer. Unauthenticated attacker can escalate to root. PoC exploit code is…

OnlyFans 340 million user data leak fake Frankenstein database privacy danger 2026

The OnlyFans ‘340 Million User Leak’ Is Fake — But the Privacy Nightmare It Created Is Very Real

A hacker claims to sell 340M OnlyFans user records for $76K. OnlyFans denies a breach. The data was stitched from…

Carnival cruise line data breach 6 million passengers 2026

Carnival Cruise Data Breach: 6 Million Passengers’ Passports and IDs Stolen by ShinyHunters in 2026

Carnival confirms data breach hitting 6 million passengers. ShinyHunters stole passport numbers, driver's licenses, and personal data via social engineering…

FortiClient EMS CVE-2026-35616 critical RCE vulnerability exploit

Hackers Are Exploiting FortiClient EMS Right Now — CVE-2026-35616 Delivers a Brand New Infostealer

CVE-2026-35616 (CVSS 9.1) in FortiClient EMS is being actively exploited. Attackers deliver EKZ Infostealer disguised as a Fortinet patch. Patch…

Gitea CVE-2026-27771 private container images exposed 30000 servers

Gitea CVE-2026-27771: 30,000 Servers Exposed Private Container Images for 4 Years

A critical vulnerability in Gitea (CVE-2026-27771) allowed unauthenticated attackers to pull private container images from 30,000+ deployments across 30 countries…

npm malware Claude AI users GitHub token leaked 2026

An npm Package Just Tried to Steal Your Claude AI Files — Then the Attacker Leaked His Own GitHub Token by Accident

A malicious npm package 'mouse5212-super-formatter' targeted Claude AI users, stealing files from Anthropic's data directory. The attacker used AI to…

FBI warning Silent Ransom Group law firms physical hacking 2026

FBI Warning: Hackers Are Physically Walking Into Law Firms and Stealing Data With USB Drives — 38 Firms Already Leaked

FBI issues FLASH alert: the Silent Ransom Group is physically entering US law firms posing as IT staff, stealing data…

ECB AI cyber threat warning for European banks 2026

The ECB Just Told Europe’s Banks That AI Is Their Biggest Threat — And Most of Them Aren’t Ready

The European Central Bank summoned banks to warn that AI is now their biggest cybersecurity threat. With 94% of organizations…