Install
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Weekly Cybersecurity Newsletter Bulletin – Microsoft 0-day, FortiOS, PAN-OS Flaw, Revolut Data Breach, and 20+ Stories
11+ hour, 19+ min ago (997+ words) This week’s roundup covers a massive Microsoft Patch Tuesday with two exploited zero-days, active FortiGate exploitation, a critical PAN-OS root-level RCE flaw, the Revolut KYC data breach, and more than 20 other stories spanning AI-driven cyberattacks, browser and firewall zero-days, and…...
SOC138 — Detected Suspicious Xls File: LetsDefend Alert
16+ hour, 29+ min ago (1420+ words) Context An alert has been triggered! On March 13, 2021 at 8:20PM our systems detected a suspicious Xls file (Spreadsheet file). Let’s dive …...
Three Patches, Zero Progress: ShieldCrash Exposes the Endpoint-Protection Plane as Microsoft’s Latest Attack Surface
1+ day, 5+ hour ago (591+ words) Nightmare Eclipse published a proof-of-concept on GitHub on September 9, 2026. The exploit reads arbitrary files as SYSTEM on fully patched Windows 10, Windows 11, and Windows Server systems running the September 2026 security updates. It is the third consecutive bypass of the same component…...
Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data
19+ hour, 30+ min ago (25+ words) An engineering breakdown of AitM authentication relays, Device Code phishing, post-compromise MFA registration …...
FudModule Rootkit Hides 5 Weeks via CVE-2026-68820
1+ day, 10+ hour ago (300+ words) Lazarus has steadily upgraded FudModule’s delivery mechanism over four years, and the trajectory tells its own story about how APT groups adapt to defender countermeasures. FudModule is the most documented example of an “EDR-killer” rootkit, but it sits inside a…...
Fool’s guide to Worms and viruses
1+ day, 20+ hour ago (221+ words) Hello, welcome to a fool’s guide to cybersecurity: Today we’re talking about worms and viruses. A computer virus is a type of malware that attaches itself to another file or program known as a host file and then spreads when…...
BlueMoon Exploit Kit Chains Recent Chrome, Windows Zero-Days
3+ day, 3+ hour ago (602+ words) Multiple espionage groups have been using a new exploit kit dubbed BlueMoon in seemingly opportunistic and rushed deployments, cybersecurity firm Proofpoint reports. The China-linked APT Violet Typhoon (also tracked as APT31, JungleBamboo, TA412, and Tide Castle) was the first to use it…...
How to disable secure boot on Windows to install Linux
2+ day, 14+ hour ago (947+ words) Secure boot is a UEFI firmware feature that checks every bootloader against a signature database before it runs. If the signature is missing or untrusted, firmware refuses to hand off control. The boot process stops right there instead of loading…...
BlueMoon Exploit Kit Can Escape Chrome and Elevate Windows Privileges
3+ day, 5+ hour ago (355+ words) Published on September 11, 2026 BlueMoon exploit kit chains Windows and Chrome zero-days in targeted attacks, giving cyber-espionage groups a way to execute code, escape Chrome’s sandbox, and gain elevated Windows privileges. Proofpoint observed attacks involving BlueMoon starting on August 28, 2026, while Volexity…...
StyleSmuggler Turns Adobe Commerce’s Own Template Engine Into an Unauthenticated RCE Chain
3+ day, 11+ hour ago (117+ words) CVE-2026-75650 lets attackers inject PHP through Magento's email template system, then triggers execution automatically. Multiple threat groups are already inside. The authentication gap has reached the payment layer. Simultaneously, a separate attacker group has been observed dropping a 485-byte PHP…...