Stay Informed

Cybersecurity News

Home / News

Clear

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Kubernetes Security Fix Blocks Cross-Namespace Pod Creation

Kubernetes released fixes on Sep 23, 2026 for a control-plane flaw that could create a pod outside the namespace where a user's permissions applied. CVE-2026-2…

Kubernetes

The Hacker News
The Hacker News Vulnerabilities

17,000 URLs Reveal How ClickFix Turns Trusted Websites Into Malware Traps: Report by CTM360

ClickFix has become the most common way attackers get into enterprise networks, and it does it without an exploit, an attachment, or a file on disk. Our new gl…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

MCP Toolbox Flaw Could Expose Google Service Tokens

A September 23 advisory describes a flaw in the Python SDK used with MCP Toolbox: a shared cache could send a Google ID token to a service it was not meant for.

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Emacs Security Flaw Could Run Code From an Untrusted File

A September 22 advisory on an Emacs vulnerability says opening a crafted file could run code on the reader's computer, even with the editor's default settings.

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

GitHub Enterprise Server Flaw Could Let Attackers Run Code

A GitHub Enterprise Server security fix addresses a way to turn the appliance's notebook viewer into a route to its own internal services.

GitHub

The Hacker News
The Hacker News Vulnerabilities

Chinese Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy CLEANGULP Malware

A Chinese threat actor codenamed UTA0565 has been observed exploiting the recently disclosed Google Chrome-Microsoft Windows exploit chain as zero-days through…

Windows Chrome

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

How Container Restore Can Reopen Privilege Escalation Paths

Privilege escalation in a container does not always begin with a new exploit.

Docker

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

CRI-O Restore Flaw Can Bypass Kubernetes Security Policies

Kubernetes groups one or more containers into a pod, the basic unit it deploys.

Docker Kubernetes

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Linux Fix SELinux Overlays Important Security Contexts 401610

Linux developers have fixed an SELinux flaw that could allow a program to make a mapped file executable after SELinux had blocked direct execution.

Linux

The Hacker News
The Hacker News Vulnerabilities

CISA Flags Three Linux Kernel Vulnerabilities Exploited in the Wild

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added three security flaws impacting the Linux kernel to its Known Exploited Vulnera…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Linux Security Roundup: Patch BIND, Browsers, and Cloud Kernels First

Most administrators do not think about BIND, browser engines, or cloud kernels until one of them fails.

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Linux eBPF Security Flaw Could Approve an Out-of-Bounds Memory Access

A Linux eBPF security flaw could cause the kernel to approve a program using an incorrect understanding of the values it would process.

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Linux Security Researcher Uses AI to Find Four Python Code-Execution Flaws

Security researcher Sai Teja Erukude disclosed four alarming Python security flaws between June and August 2026 after combining specialized AI models with auto…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

CISA Warns of Active Attacks on a Critical Cisco ISE Flaw

Attackers are exploiting a critical Cisco ISE flaw that can open the product’s web management interface without a valid login. Cisco disclosed CVE-2026-76460 o…

Cisco

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Red Hat Quay Build Workflow Could Expose Registry Credentials

As of September 17, Red Hat had documented a flaw in a Red Hat Quay build workflow that could expose container registry credentials to code retrieved from a mu…

Linux Docker GitHub

The Hacker News
The Hacker News Vulnerabilities

Critical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host Files

Malicious code running inside a Docker Sandboxes virtual machine on macOS could escape the project directory shared into it and read or change files anywhere e…

Docker Apple

The Hacker News
The Hacker News Vulnerabilities

Critical Unbound DNSSEC Validator Flaw Could Allow RCE via a Malicious DNS Zone

Every release of the Unbound DNS resolver before 1.26.1 has a critical heap overflow in its DNSSEC validator, maintainer NLnet Labs said in an advisory on Wedn…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Docker Sandboxes Flaw Lets a Guest Reach Host Unix Sockets

Docker has fixed a high-severity Docker Sandboxes vulnerability that allowed a malicious guest to redirect a host-side relay toward Unix sockets outside its au…

Docker

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Acronis Backup Flaw Is Being Exploited on Linux Hosting Servers

Acronis has fixed a high-severity vulnerability in its Linux hosting backup integrations after detecting exploitation in limited, targeted attacks. The Acronis…

Linux

The Hacker News
The Hacker News Vulnerabilities

Acronis cPanel Backup Plugin Vulnerability Exploited in Targeted Attacks

Acronis has warned that a high-severity security flaw in its Backup plugin for cPanel and Web Host Manager (WHM) deployments has been exploited in the wild.The…

Linux

The Hacker News
The Hacker News Vulnerabilities

Mass-Scanning Campaign Exploits Vite Flaw to Extract Cloud Credentials From Exposed Dev Servers

Cybersecurity researchers have disclosed details of a mass-scanning campaign that has targeted Vite deployments siphon sensitive data.The first is an automated…

Azure AWS

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Attackers Chain Artifactory Vulnerabilities to Take Over Repositories

On September 10, 2026, Wiz Research reported that multiple attackers had chained two Artifactory vulnerabilities against self-hosted repositories. One flaw gav…

The Hacker News
The Hacker News Breaches & leaks

Your Critical Vulnerabilities Might Not Be Your Biggest Risk

Security teams have become exceptionally talented at finding vulnerabilities. Now, it’s time to turn our attention to optimizing the process for determining wh…

The Hacker News
The Hacker News Breaches & leaks

Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware

Cisco has revealed that three distinct threat clusters linked to ransomware and state-sponsored attacks have been exploiting two recently patched Secure Firewa…

Cisco