// 1 CRITICAL · 11 ZERO-DAY · 9 CVE · 10 EXPLOIT IN THE LAST 24H
CYBERSEC

PoC Zealot: Autonomous AI Executes End-to-End GCP Cloud Attack

Unit 42’s Zealot project demonstrates how multi-agent AI systems can autonomously chain SSRF, credential theft, and BigQuery exfiltrat…

May 21, 2026views - 228

CYBERSEC

First VPN Seized: 'No-Log' Service Revealed as Law Enforcement Trap for Cybercriminals

Europol and Dutch police have dismantled First VPN, a specialized infrastructure hub for ransomware and data theft. The operation seiz…

May 21, 2026views - 3.8k

CYBERSEC

Chrome Internal Bug Reports Surge to 200+ as Google Leans on AI

Google addressed more than 200 internally discovered vulnerabilities in Chrome between March and May 2026. The spike aligns with the c…

May 21, 2026views - 247

CYBERSECCRITICAL

Drupal Fixes 'Highly Critical' SQL Injection Vulnerability Impacting PostgreSQL

Drupal has released urgent security patches for CVE-2026-9082, an unauthenticated SQL injection flaw. The vulnerability specifically t…

May 21, 2026views - 206

CYBERSECZERO-DAY

Microsoft Defender Zero-Days Under Active Attack; CISA Mandates Patching by June 3

Microsoft has confirmed that two vulnerabilities in Microsoft Defender are being actively exploited in the wild. CISA has added both f…

May 21, 2026views - 296

CYBERSEC

GitHub: 3,800 Internal Repos Exfiltrated via Trojanized VS Code Extension

GitHub has confirmed the theft of approximately 3,800 internal repositories after an employee installed a trojanized version of the Nx…

May 21, 2026views - 231

CYBERSECEXPLOIT

Mirai Variant Targets EOL TP-Link Routers via Flawed Exploit for Valid Vulnerability

Unit 42 has identified active exploitation attempts targeting CVE-2023-33538 on end-of-life TP-Link routers. While current in-the-wild…

May 21, 2026views - 184

CYBERSECEXPLOIT

Frontier AI: The Shift from Coding Assistant to Autonomous Threat Agent

Research from Unit 42 reveals that frontier AI models now possess the autonomous reasoning capabilities of full-spectrum security rese…

May 21, 2026views - 198

CYBERSEC

AI-Driven Mobile Attacks Hit New Record: Apps Compromised Within Two Hours of Release

The Digital.ai 2026 App Security Threat Report reveals that 87% of client-facing applications are now under systematic attack, with th…

May 20, 2026views - 220

CYBERSEC

1Password and OpenAI Partner to Provide Just-in-Time Credentials for AI Agents

1Password integrates its Environments MCP Server into OpenAI's Codex, enabling just-in-time credentialing for AI coding agents to prev…

May 20, 2026views - 272

CYBERSEC

CISA Faces Congressional Scrutiny After Months-Long AWS GovCloud Credential Leak on GitHub

Senator Maggie Hassan has demanded a classified briefing from CISA following the discovery of a public GitHub repository that exposed…

May 20, 2026views - 258

CYBERSEC

GitHub Breach: 3,800 Internal Repositories Stolen via Malicious VS Code Extension

GitHub has confirmed a security breach affecting approximately 3,800 internal repositories after an employee device was compromised by…

May 20, 2026views - 610