Cybersecurity
Cybersecurity collects analysis on vulnerabilities, exploits, patch management, ransomware, supply chain, AI security and threat intelligence. These articles help IT professionals, developers and security analysts follow operational threats, vendor updates and technical trends.

FalconFlank PoC: Zero-Day Privilege Escalation in CrowdStrike Falcon Sensor
A researcher has publicly released a proof-of-concept exploiting the Office macro remediation feature to escalate privileges in the ED…

Autonomous AI Delivers Full Ransomware Attack in 10 Hours — and an 80-Page Audit for the Victim
Palo Alto Networks' Unit 42 has documented the first ransomware attack entirely managed by AI agents, completed in under 10 hours. The…

Silver Fox Pushes Fake Installers That Kill Windows Update and Weaken Defender
Microsoft exposes a campaign by the Chinese Silver Fox cluster using pixel-perfect clone sites of popular software to deliver installe…

VantaCore: Pro-Ukraine Group Relaunches with Custom Ransomware Targeting Russia
VantaCore, a rebrand of the pro-Ukraine Thor group, is hitting Russian organizations with a proprietary arsenal of ransomware and remo…

Dark Web: 153 Million Driver's Licenses for Sale, FBI Investigates IDScan.net
The Nexus dark web platform claims 153 million U.S. and Canadian driver's licenses. KrebsOnSecurity empirically verified records and t…

Public Exploit for CVE-2026-84115 Puts Cleo Harmony at Immediate Risk
A public exploit for the authentication-bypass vulnerability CVE-2026-84115 in Cleo Harmony has been released. Versions 5.8.1.0 throug…

OpenAI's Astra Crosses the Critical Threshold: AI That Finds Zero-Days Without Guidance
OpenAI has designated Astra as the first model to reach the Critical threshold of its Preparedness Framework. The system discovers zer…

FulcrumSec Steals 86 GB of MAG Data: API Keys Were Hardcoded in Client-Side JavaScript
The FulcrumSec data extortion group claimed responsibility for the Manchester Airports Group breach, publishing ~86 GB of data. Access…

Russian Extradited from Cyprus: Charged in Malware Campaign Targeting 80,000 Freelancers
Searzhudin Aktulaev was extradited to the U.S. for a 2016–2017 campaign that used malicious Excel files to infect freelancers. The mac…

Sality Disrupted: The Takedown That Turned Its P2P Network Into a Trap
On August 31, 2026, international authorities disrupted the Sality botnet by weaponizing its own peer-to-peer protocol. The malware re…

Guildma's Brazilian Geofencing: Malware That Only Shows Up for Real Targets
A SANS researcher documented Guildma (Astaroth), a Latin American banking trojan active since 2017, delivering its payload exclusively…

SonicWall SMA1000: Active Zero-Days Enable Lateral Movement Without VPN
Two zero-day vulnerabilities in SonicWall SMA1000 allow unauthenticated RCE and lateral movement to Active Directory without VPN tunne…