INTERPOL Operation Ramz Disrupts MENA Cybercrime Networks with 201 Arrests

18/05/2026 0 Comments 0 tags

INTERPOL has coordinated a first-of-its-kind cybercrime crackdown across the Middle East and North Africa (MENA) that led to 201 arrests and the identification of an additional 382 suspects. The initiative

⚡ Weekly Recap: Exchange 0-Day, npm Worm, Fake AI Repo, Cisco Exploit and More

18/05/2026 0 Comments 0 tags

Monday opens with a trust problem. A mail server flaw is under active use. A network control system was targeted. Trusted packages were poisoned. A fake model page pushed a

How to Reduce Phishing Exposure Before It Turns into Business Disruption

18/05/2026 0 Comments 0 tags

What happens when a phishing email looks clean enough to pass through security, but dangerous enough to expose the business after one click? That is the gap many SOCs still

Ivanti, Fortinet, SAP, VMware, n8n Patch RCE, SQL Injection, Privilege Escalation Flaws

18/05/2026 0 Comments 0 tags

Ivanti, Fortinet, n8n, SAP, and VMware have released security fixes for various vulnerabilities that could be exploited by bad actors to bypass authentication and execute arbitrary code. Topping the list

Developer Workstations Are Now Part of the Software Supply Chain

18/05/2026 0 Comments 0 tags

Supply chain attackers are not only trying to slip malicious code into trusted software. They are trying to steal the access that makes trusted software possible. Recently, three separate campaigns

Four Malicious npm Packages Deliver Infostealers and Phantom Bot DDoS Malware

18/05/2026 0 Comments 0 tags

Cybersecurity researchers have discovered four new npm packages containing information-stealing malware, one of which is a clone of the Shai-Hulud worm open-sourced by TeamPCP. The list of identified packages is

MiniPlasma Windows 0-Day Enables SYSTEM Privilege Escalation on Fully Patched Systems

18/05/2026 0 Comments 0 tags

Chaotic Eclipse, the security researcher behind the recently disclosed Windows flaws, YellowKey and GreenPlasma, has released a proof-of-concept (PoC) for a Windows privilege escalation zero-day flaw that grants attackers SYSTEM

Pre-Stuxnet Fast16 Malware Tampered with Nuclear Weapons Simulations

18/05/2026 0 Comments 0 tags

A new analysis of the Lua-based fast16 malware has confirmed that it was a cyber sabotage tool designed to tamper with nuclear weapons testing simulations. According to Broadcom-owned Symantec and

NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCE

17/05/2026 0 Comments 0 tags

A newly disclosed security flaw impacting NGINX Plus and NGINX Open has come under active exploitation in the wild, days after its public disclosure, according to VulnCheck. The vulnerability, tracked

Grafana GitHub Token Breach Led to Codebase Download and Extortion Attempt

17/05/2026 0 Comments 0 tags

Grafana has disclosed that an “unauthorized party” obtained a token that granted them the ability to access the company’s GitHub environment and download its codebase. “Our investigation has determined that