Chinese-Speaking APT Deploys New TinyRCT Backdoor in Southeast Asia Campaign

26/06/2026 0 Comments 0 tags

A Chinese-speaking advanced persistent threat (APT) actor has been linked to a new custom backdoor called TinyRCT as part of cyber attacks aimed at government entities and critical infrastructure in

Amazon Q Developer Flaw Could Let Malicious Repos Run Code via MCP Configs

26/06/2026 0 Comments 0 tags

A high-severity flaw in Amazon Q Developer let a malicious repository run commands and steal a developer’s cloud credentials. The path was short: a developer opens the repo, trusts the

CISA Adds Exploited PTC Windchill RCE Flaw to KEV as Web Shell Attacks Continue

26/06/2026 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical remote code execution vulnerability impacting PTC Windchill PDMlink and PTC FlexPLM enterprise Product Data Management (PDM) and

New Linux pedit COW Exploit Enables Root Access by Poisoning Cached Binaries

26/06/2026 0 Comments 0 tags

A flaw in the Linux kernel’s traffic-control subsystem can let a local unprivileged user gain root on affected systems. CVE-2026-46331, nicknamed “pedit COW,” is an out-of-bounds write in the packet-editing

Guardian Agents: The Next Layer of Identity Governance

26/06/2026 0 Comments 0 tags

AI agents are moving through enterprise environments, inheriting permissions, traversing systems, and executing decisions at machine speed with minimal oversight. The identity infrastructure built to govern human access wasn’t designed

New DirtyClone Linux Kernel Flaw Lets Local Users Gain Root via Cloned Packets

26/06/2026 0 Comments 0 tags

DirtyClone is a new Linux kernel privilege escalation in the DirtyFrag family. JFrog Security Research published a working exploit walkthrough for the flaw on June 25, the first public demonstration for this

Miasma Malware Targets npm Packages and GitHub Actions in Supply Chain Attack

26/06/2026 0 Comments 0 tags

Cybersecurity researchers have flagged yet another evolution of the supply chain attack linked to the Mini Shai-Hulud, Miasma, and Hades malware family that has compromised a new set of npm

Microsoft Warns of Photo ZIP Phishing Campaign Targeting Hotels with Node.js Implant

26/06/2026 0 Comments 0 tags

An active phishing campaign has been targeting hotel and other hospitality organizations across Europe and Asia since April 2026, using photo-themed ZIP files to drop a Node.js implant and dig

Russia Used Cellebrite on Jailed Activist’s iPhone Months After Sales Cutoff

26/06/2026 0 Comments 0 tags

Russian authorities used Cellebrite’s UFED forensic tools to break into the iPhone of detained opposition activist Andrey Pivovarov in June 2021, three months after Cellebrite said it would stop selling

Google Details Turla’s New STOCKSTAY Backdoor Used in Ukraine Espionage Attacks

26/06/2026 0 Comments 0 tags

The Russian state-sponsored threat actor known as Turla has been attributed to a previously undocumented .NET backdoor called STOCKSTAY that has been deployed against government and military organizations in Ukraine,