// 2 CRITICAL · 2 ZERO-DAY · 3 CVE · 2 EXPLOIT · 1 ADVISORY IN THE LAST 24H
CYBERSECZERO-DAY

Google Patches Chrome Zero-Day: Urgent Update for 3 Billion Users

Google released Chrome 152.0.7977.82 to fix CVE-2026-85046, an actively exploited zero-day in the V8 engine with a CVSS score of 8.8.…

Sep 04, 2026views - 1.2k

CYBERSEC

Dark Web: 153 Million Driver's Licenses for Sale, FBI Investigates IDScan.net

The Nexus dark web platform claims 153 million U.S. and Canadian driver's licenses. KrebsOnSecurity empirically verified records and t…

Sep 02, 2026views - 1.6k

CYBERSEC

DOJ Corrects Record: NASA and Senate Were QTFY Targets, Not Victims

The U.S. Department of Justice revised its August 26 statement on August 29, 2026, clarifying that NASA, the U.S. Senate, and the Fede…

Aug 30, 2026views - 1.1k

CYBERSEC

McKesson in ShinyHunters' Crosshairs: 284 Million Records and a $55 Million Ransom

McKesson disclosed a security incident involving unauthorized access to third-party applications. The ShinyHunters group claims to hav…

Aug 30, 2026views - 1.1k

ai

AI Kill Switch Act: The Red Button Is Law, But Does It Work?

The bipartisan AI Kill Switch Act requires developers to maintain the ability to shut down advanced AI systems. The distributed nature…

Aug 28, 2026views - 1.3k

CYBERSECEXPLOIT

ShinyHunters Inflates Carhartt Breach with Synthetic Data, but Real Count Is 12.9 Million

ShinyHunters published 50 GB of Carhartt data after the company refused a $3.3 million ransom. Troy Hunt's OpenClaw analysis exposed t…

Aug 27, 2026views - 1.2k

cybersec

DecryptAds Exposes the Invisible: The Ad Supply Chain Under the Microscope

DecryptAds parses ads.txt and sellers.json files, revealing hidden links between mainstream sites, data brokers, and geopolitical acto…

Aug 19, 2026views - 1.1k

CYBERSEC

RingCentral Breach Exposes 1.6 Million Records via Vishing Call

ShinyHunters compromised RingCentral with a single phone call, exposing 1.6 million records and leaking 280 GB of data. The real-time…

Aug 18, 2026views - 1.1k

CYBERSEC

Passkey Bypass: Three Attacks Demolish Phishing-Resistant Authentication

Three independent studies published in August 2026 demonstrate post-compromise attack chains that bypass passkey-based phishing-resist…

Aug 17, 2026views - 1.8k

CYBERSEC

Local Malware Bypasses Google Passkeys: The Flaw Is in Chrome, Not FIDO2

Palo Alto Networks Unit 42 research demonstrates that local malware can bypass FIDO2 passkeys in Chrome on Windows using three techniq…

Aug 11, 2026views - 1.2k

CYBERSEC

APT29 Hits Hotel Wi-Fi: Steals M365 Credentials with Malware

Microsoft attributes the CaptiveCrunch campaign to Storm-2945, a Midnight Blizzard sub-group, which compromises hotel captive portals…

Aug 10, 2026views - 1.2k

CYBERSECZERO-DAY

Chrome's Fifth 2026 Zero-Day: Google Issues Emergency Patch for Actively Exploited V8 Flaw

Google released an emergency update on June 8, 2026, for CVE-2026-11645, an out-of-bounds vulnerability in the V8 JavaScript engine al…

Aug 07, 2026views - 1.1k