Cybersecurity
Cybersecurity collects analysis on vulnerabilities, exploits, patch management, ransomware, supply chain, AI security and threat intelligence. These articles help IT professionals, developers and security analysts follow operational threats, vendor updates and technical trends.

GhostLock: The Exploit That Unlocks Linux in 5 Seconds — 15 Years in the Shadows
On July 7, 2026, Nebula Security disclosed GhostLock, a working exploit for CVE-2026-43499, a use-after-free in the Linux kernel's fut…

7-Zip XZ Decoder RCE: Silent Patch Leaves Users Exposed
CVE-2026-14266 enables code execution via a crafted XZ archive. The fix landed in 7-Zip 26.02 on June 25, but the lack of automatic up…

CRPx0 Lists Hyundai Turkey: The Credibility Gap in Dark Web Claims
Ransomware group CRPx0 has listed Hyundai Turkey on its dark web leak site. With no official confirmation and no independent verificat…

Intel and AMD Patch 70 Flaws: Two Critical CVSS 9.3 and 9.2 Bugs in GPU Drivers
On May 13, 2026, Intel and AMD released 28 advisories covering 69 vulnerabilities. Two critical flaws hit chip software drivers, not t…

PNLD Data Breach: UK Police Contacts Published on Dark Web July 26
The Police National Legal Database confirms the exfiltration of names, organizations, and work emails of officers, government staff, a…

Pass-ta-key Exposes the Gap Between FIDO2 Cryptography and Windows Implementation
Unit 42 reveals three post-compromise techniques that bypass PIN and biometrics on Chrome for Windows. Passkeys resist phishing, not m…

Data-Theft Campaign Targets Windchill and FlexPLM via CVE-2026-12569 RCE
A data-theft extortion campaign is exploiting CVE-2026-12569, a critical unauthenticated RCE in PTC Windchill and FlexPLM, to deploy h…

Notepad++ Compromised: Lotus Blossom Hijacked Updates for Months
Chinese threat actors compromised Notepad++'s shared hosting infrastructure to selectively deliver malware to telecom and financial or…

INC Ransomware Dominates SonicWall Zero-Day Chain: When the VPN Appliance Becomes an Unmonitored Bridge
INC Ransomware has emerged as the dominant threat actor actively weaponizing a chain of two zero-day vulnerabilities in SonicWall SMA…

TokenLover and YaksaLover: The PhaaS Kits That Measure Persistence With a 'Password Change Survival Rate'
Italy's ACN details two Phishing-as-a-Service toolkits that abuse the Device Code Flow and NGC keys to achieve persistence that surviv…

Iranian APTs Hit Rockwell PLCs: Over 30 Minnesota Water Systems Compromised
Iran-affiliated APT actors are exploiting CVE-2021-22681 in Rockwell, Schneider, and Siemens PLCs. The joint CISA-FBI advisory updated…

APT28 FrostArmada: The SOHO Router Is the New Invisible Perimeter of State-Sponsored Espionage
The GRU compromised 18,000 home routers to steal Microsoft 365 credentials without deploying malware. No EDR can detect this attack: t…