// 2 CRITICAL · 5 ZERO-DAY · 10 CVE · 8 EXPLOIT · 1 ADVISORY IN THE LAST 24H
CYBERSEC

Shadow AI: The Real Threat Is Access Control, Not Data Leakage

The shadow AI problem has shifted from browser-based chatbots to enterprise systems: autonomous agents running with live credentials,…

Jun 19, 2026views - 963

phishing

Banking Phishing: Evasion via IPv4-Mapped IPv6

A phishing campaign targeting Belgian e-banking exploits compressed IPv4-mapped IPv6 syntax to bypass regex-based security checks and…

Jun 19, 2026views - 920

CYBERSEC

Interpol: $40 Billion Scam Economy in Asia, Cybercrime Tops 30% of All Crime

Interpol's 2025/2026 assessment documents a nearly $40 billion organized scam economy in Asia-Pacific, with cybercrime exceeding 30% o…

Jun 19, 2026views - 1.2k

CYBERSEC

Klue Breach: Dormant OAuth Credential Opens Multi-Victim Door to Salesforce

The Icarus extortion group exfiltrated CRM data from Klue customers by abusing stolen OAuth tokens. Cybersecurity vendor Huntress conf…

Jun 18, 2026views - 1.1k

malwareCRITICAL

CryptoBandits: The USB Clipper-Worm That Adds RCE via Tor

Microsoft disclosed an active Windows clipper malware campaign running since February 2026 that uses malicious LNK files distributed v…

Jun 18, 2026views - 847

ransomwareZERO-DAY

INC Ransomware: 800 Victims, Not a Single Zero-Day

INC ranks among the world's most active ransomware groups despite relying exclusively on known techniques. The Acronis report reveals…

Jun 17, 2026views - 762

malware

Rokarolla: The Android Trojan That Turns Your Phone Into a Digital Prison

Discovered by Zimperium zLabs, the Rokarolla trojan deploys 137 commands and fake overlays to isolate victims, steal banking credentia…

Jun 16, 2026views - 1.3k

malware

Lorem Ipsum Pivots to ClickFix After Fox Tempest Takedown

BlueVoyant reports the Lorem Ipsum malware abandoned signed Microsoft Teams installers for ClickFix tactics on compromised WordPress s…

Jun 16, 2026views - 785

CYBERSEC

Chinese APT UNC6508: A Year of Espionage on REDCap Servers

Google exposes UNC6508: over a year of REDCap server compromise at U.S. and Canadian medical and military institutions using InfiniteR…

Jun 15, 2026views - 753

CYBERSECCRITICAL

Europol and DOJ Dismantle AudiA6: A Critical Hub for Ransomware Money Laundering Smashed

In a major operation on June 10, 2026, authorities arrested two administrators in Georgia and seized 25 domains and 30+ servers. The A…

Jun 11, 2026views - 985

CYBERSECCVE

CVE-2026-50751: Check Point VPN Zero-Day Exploited by Qilin Affiliate; Patch Released June 8

A Qilin ransomware affiliate exploited a critical zero-day in Check Point VPN’s IKEv1 protocol for over a month. The flaw (CVSS 9.3) a…

Jun 08, 2026views - 1k

cybersec

DockSec: The Open-Source AI Healing Containers, Not Just Scanning Them

DockSec, an OWASP Incubator project, leverages LLMs to correlate data from three Docker scanners and generate line-specific fixes. Its…

Jun 08, 2026views - 1.4k