Stay Informed

Cybersecurity News

Home / News

Clear

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

The Hacker News
The Hacker News Vulnerabilities

Attackers Exploit MLflow SSRF Flaw to Steal Cloud Credentials and Secrets

Two critical vulnerabilities impacting MLflow, an open-source artificial intelligence (AI) platform, and FUXA, an open-source, web-based SCADA / HMI software b…

The Hacker News
The Hacker News Vulnerabilities

Forminator WordPress Flaw Can Enable Unauthenticated RCE via Malicious PHP Uploads

A critical security flaw has been disclosed in Forminator Forms, a WordPress plugin with more than 600,000 active installations, that could be exploited to ach…

WordPress PHP

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Fence2Pwn Technique Uses KFENCE to Bypass Linux Kernel Slab Hardening

Security researchers have disclosedFence2Pwn, a new Linux kernel exploitation technique that uses KFENCE’s alternate memory-allocation path to bypass protectio…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

OpenZFS Capability-Scoping Flaw Lets User Namespaces Reach Host Pool Operations

A disclosure posted to the oss-security mailing list on August 16, 2026, reports that OpenZFS on Linux accepts namespace-local CAP_SYS_ADMIN for several host-l…

Linux

The Hacker News
The Hacker News Breaches & leaks

Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware

Cybersecurity researchers have attributed the exploitation of a newly patched security flaw in Broadcom VMware vCenter to a suspected China-nexus advanced pers…

VMware

The Hacker News
The Hacker News Vulnerabilities

SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After Patch

A maximum-severity security vulnerability impacting SAP Commerce Cloud is witnessing active exploitation efforts.The vulnerability, tracked as CVE-2026-58231, …

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Linux BPF Patches Fix Sparse CPU Bugs Causing Out-of-Bounds Read

Two fixes posted August 13 correct separate per-CPU map failures on Linux systems whose logical CPU IDs contain gaps.

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Linux Security Roundup Privilege Escalation DoS Code Execution August 2026

This week’s Linux security updates cover several areas administrators cannot afford to overlook. Debian, Ubuntu, Fedora, SUSE, openSUSE, and other distribution…

Linux

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Vulnerabilities

How to Test for CORS Misconfigurations Like a Bug Bounty Hunter

A step-by-step method for finding and proving CORS misconfiguration vulnerabilities: the header checks, the edge cases developers miss, and how to fix them.How…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

New Linux Private Futex Race Can Trigger Kernel Use-After-Free

A proposed Linux kernel patch addresses a private-futex race that a recent security fix left unresolved. Security researcher Hyunwoo Kim found that a rare sequ…

Linux

The Hacker News
The Hacker News Vulnerabilities

Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access

Threat actors have begun to actively exploit a recently patched critical security flaw in Broadcom VMware vCenter, according to new findings from QUIRSO.The vu…

VMware

The Hacker News
The Hacker News Vulnerabilities

SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code

SAP has released patches to address a maximum-severity security flaw impacting Commerce Cloud (Data Hub Adapter) that could result in arbitrary code execution.…

The Hacker News
The Hacker News Vulnerabilities

Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack

Microsoft released its monthly security updates on Tuesday, and one of the flaws it closed is already being used in attacks.The bug sits in a core Windows kern…

Windows

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Public SCTPhantom Exploit Tests Linux Container Security Defaults

Public exploit code is now available for SCTPhantom, a Linux kernel flaw that researchers used to escape an unprivileged container and take control of the unde…

Linux Docker

The Hacker News
The Hacker News Vulnerabilities

OpenAI Launches GPT-5.6-Cyber with Reduced Safeguards for Exploit Development

OpenAI on Monday unveiled a new cybersecurity-focused model called GPT‑5.6‑Cyber that it said is focused on vulnerability research, penetration testing, and in…

The Hacker News
The Hacker News Breaches & leaks

Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks

Cybersecurity and intelligence agencies from South Korea and the U.S. warned of Gunra ransomware attacks targeting critical infrastructure sectors and organiza…

Fortinet

The Hacker News
The Hacker News Breaches & leaks

Gunra Ransomware Exploits Fortinet FortiOS, FortiProxy Flaws to Breach Networks

Cybersecurity and intelligence agencies from South Korea and the U.S. warned of Gunra ransomware attacks targeting critical infrastructure sectors and organiza…

Fortinet

The Hacker News
The Hacker News Breaches & leaks

China-Linked Hackers Deploy New StormEncryptor Ransomware, Likely via N-central Flaw

Microsoft has disclosed that Storm-1175, a financially motivated threat actor linked to China, has deployed a previously undocumented ransomware strain called …

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Linux Vulnerability Prioritization with Threat Intelligence Insight

A Linux vulnerability scan can create almost as many questions as it answers. The scan may identify dozens of affected packages, several CVEs marked High or Cr…

Linux

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Kubernetes Maintainers Expand CSI Path Traversal Fixes Beyond Original Vulnerabilities

Kubernetes maintainers patched two path-traversal vulnerabilities in the NFS and SMB CSI drivers earlier this year. But repository histories show that the secu…

Kubernetes

The Hacker News
The Hacker News Vulnerabilities

Paperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent Imports

Two security flaws in Paperclip could let attackers execute commands on a network server or a developer's computer. Paperclip is an open-source control plane f…

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

OpenStack IPA Flaws Highlight a Hidden Bare-Metal Security Risk

OpenStack disclosed a flaw in its bare-metal management tool, the Ironic Python Agent (IPA), showing that it could accidentally fall back to local network disc…

The Hacker News
The Hacker News Breaches & leaks

INC Ransomware Emerges as Dominant Actor Exploiting SonicWall SMA 1000 Flaws

The INC Ransomware operation has emerged as the "dominant threat actor" exploiting the recently disclosed security flaws in SonicWall Secure Mobile Access (SMA…

VPN

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Vulnerabilities

Check Point SmartConsole Authentication Bypass Is Under Active Attack, and a PoC Is Now Public

CVE-2026-16232 lets an unauthenticated attacker seize full admin control of Check Point's management console. Check Point confirms in-the-wild attacks, and a R…