Showboat Linux Malware Hits Middle East Telecom with SOCKS5 Proxy Backdoor

21/05/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a new Linux malware dubbed Showboat that has been put to use in a campaign targeting a telecommunications provider in the Middle East since

ThreatsDay Bulletin: Linux Rootkits, Router 0-Day, AI Intrusions, Scam Kits and 25 New Stories

21/05/2026 0 Comments 0 tags

This week starts small. A token leaks. A bad package slips in. A login trick works. An old tool shows up again. At first, it feels like the usual mess.

Microsoft Warns of Two Actively Exploited Defender Vulnerabilities

21/05/2026 0 Comments 0 tags

Microsoft has disclosed that a privilege escalation and a denial-of-service flaw in Defender has come under active exploitation in the wild. The former, tracked as CVE-2026-41091, is rated 7.8 on

When Identity is the Attack Path

21/05/2026 0 Comments 0 tags

Consider a cached access key on a single Windows machine. It got there the way most cached credentials do – a user logged in, and the key stored itself automatically.

9-Year-Old Linux Kernel Flaw Enables Root Command Execution on Major Distros

21/05/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a vulnerability in the Linux kernel that remained undetected for nine years. The vulnerability, tracked as CVE-2026-46333 (CVSS score: 5.5), is a case of

Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites to RCE Attacks

21/05/2026 0 Comments 0 tags

Drupal has released security updates for a “highly critical” security vulnerability in Drupal Core that could be exploited by attackers to achieve remote code execution, privilege escalation, or information disclosure.

GitHub Internal Repositories Breached via Malicious Nx Console VS Code Extension

21/05/2026 0 Comments 0 tags

GitHub on Wednesday officially confirmed that the breach of its internal repositories was the result of a compromise of an employee device involving a poisoned version of the Nx Console

Microsoft Open-Sources RAMPART and Clarity to Secure AI Agents During Development

20/05/2026 0 Comments 0 tags

Microsoft has unveiled two new open-source tools called RAMPART and Clarity to assist developers in better testing the security of artificial intelligence (AI) agents. RAMPART, short for Risk Assessment and

Microsoft Takes Down Malware-Signing Service Behind Ransomware Attacks

20/05/2026 0 Comments 0 tags

Microsoft on Tuesday said it disrupted a malware-signing-as-a-service (MSaaS) operation that weaponized the company’s Artifact Signing system to deliver malicious code and conduct ransomware and other attacks, compromising thousands of

Agent AI is Coming. Are You Ready?

20/05/2026 0 Comments 0 tags

New Industry Data Just Released Suggests Not. On May 19th, 2026, Orchid Security released the results of our Identity Gap: Snapshot 2026. Among the findings, “identity dark matter” (the unseen,