Skip to content
Thursday, Aug 13, 2026

Cyber News Reports

Concise articles to keep you updated, without the fluff

Subscribe
Critical InfrastructureCybersecurity

Coordinated Cyberattacks Target U.S. Water Systems

Beginning July 26th, coordinated cyberattacks targeting U.S. water systems—attributed to Iranian hackers and other nation-state actors—have disrupted service in multiple states, exploiting weak.

byZaranAugust 11, 2026August 11, 2026
CISA Flags Langflow RCE, Tomcat Encryption Bypass, and N-central Flaw as Actively Exploited
Cybersecurity ThreatsVulnerability Management

CISA Flags Langflow RCE, Tomcat Encryption Bypass, and N-central Flaw as Actively Exploited

CISA has added three vulnerabilities – Langflow RCE, Apache Tomcat encryption bypass, and N-able N-central authentication bypass – to its KEV catalog due to active exploitation. Federal agencies must.

byZaranAugust 6, 2026August 7, 2026
Cyberattacks Target U.S. Water Systems, Suspected Iran Involvement Prompts Federal Response
Critical InfrastructureCybersecurity

Cyberattacks Target U.S. Water Systems, Suspected Iran Involvement Prompts Federal Response

Coordinated cyberattacks targeting municipal water systems in at least seven U.S. states have prompted federal warnings and boil-water notices, with suspected Iranian involvement highlighting the.

byZaranAugust 3, 2026August 3, 2026
Public Exploit Released for Patched vBulletin RCE Vulnerability (CVE-2026-61511)
vulnerability disclosureWeb Security

Public Exploit Released for Patched vBulletin RCE Vulnerability (CVE-2026-61511)

A public exploit has been released for a pre-authentication remote code execution (RCE) vulnerability in vBulletin. Unauthenticated attackers can now execute arbitrary PHP code on vulnerable forums,.

byZaranJuly 29, 2026July 29, 2026
Unpatched Fastjson Vulnerability Actively Exploited with No Fix Available
Java SecurityVulnerability Exploitation

Unpatched Fastjson Vulnerability Actively Exploited with No Fix Available

Attackers are actively exploiting a critical remote code execution (RCE) vulnerability in Alibaba’s Fastjson 1.x library, CVE-2026-16723. The unpatched flaw affects versions 1.2.68 through 1.2.83 and.

byZaranJuly 27, 2026July 29, 2026
Malware Campaign Hijacks Chrome via Enterprise Policy Keys and DLL Side-Loading
Browser SecurityMalware Analysis

Malware Campaign Hijacks Chrome via Enterprise Policy Keys and DLL Side-Loading

A sophisticated malware campaign has been discovered abusing legitimate Google Chrome enterprise policy keys to hijack user browsers, bypassing security measures with DLL side-loading techniques.

byZaranJune 29, 2026June 29, 2026
Klue Hack Impacts Salesforce, Gong Integrations via Icarus Threat Actor
Data BreachesSupply Chain Attacks

Klue Hack Impacts Salesforce, Gong Integrations via Icarus Threat Actor

A supply chain attack targeting Klue has exposed sensitive customer data and disrupted integrations with Salesforce and other platforms. The ‘Icarus’ threat actor exploited a compromised legacy.

byZaranJune 29, 2026June 29, 2026
Cisco Unified CM Flaw (CVE-2026-20230) Actively Exploited for Webshell Deployment and Root Access
Exploitation in the Wildvulnerability disclosure

Cisco Unified CM Flaw (CVE-2026-20230) Actively Exploited for Webshell Deployment and Root Access

A critical server-side request forgery (SSRF) vulnerability (CVE-2026-20230) in Cisco Unified Communications Manager is being actively exploited to deploy webshells and achieve root access. Patches.

byZaranJune 28, 2026June 28, 2026
One Medical Faces Data Breach Claim: ShinyHunters Alleges Theft of 8.8TB of Healthcare Data
Data BreachesHealthcare Security

One Medical Faces Data Breach Claim: ShinyHunters Alleges Theft of 8.8TB of Healthcare Data

ShinyHunters claims to have stolen a massive 8.8TB of data from One Medical, Amazon’s healthcare provider, threatening release unless negotiations begin by June 22nd. The breach reportedly involves.

byZaranJune 22, 2026June 22, 2026
WhatsApp Malware Campaign Delivers VBS Files, Enabling Remote Access on Windows Systems
malwareWindows Security

WhatsApp Malware Campaign Delivers VBS Files, Enabling Remote Access on Windows Systems

A sophisticated malware campaign is using WhatsApp to distribute malicious Visual Basic Script (VBS) files targeting Windows users across multiple countries. The attack, which began in late February.

byZaranJune 22, 2026June 22, 2026

Posts navigation

Older posts

Categories

  • Browser Security
  • Critical Infrastructure
  • cybercrime
  • Cybersecurity
  • Cybersecurity Incident
  • Cybersecurity News
  • Cybersecurity Policy
  • Cybersecurity Threats
  • Data Breach
  • Data Breaches
  • Exploitation in the Wild
  • Government Security
  • Healthcare Security
  • incident response
  • Java Security
  • malware
  • Malware Analysis
  • Mobile Security
  • Supply Chain Attacks
  • Vulnerabilities
  • vulnerability disclosure
  • Vulnerability Exploitation
  • Vulnerability Management
  • Vulnerability Response
  • Web Security
  • Windows Security

Copyright © 2026 Cyber News Reports | Premier News by Ascendoor | Powered by WordPress.