IT Security News

Cybersecurity news and articles about information security, vulnerabilities, exploits, hacks, laws, spam, viruses, malware, breaches.

Main menu

Skip to content
  • Advertising
  • Contact
  • Legal and Contact information
  • Opt-out preferences
  • Privacy Policy
  • Social Media
    • Telegram Channel
EN, Security Affairs

FamousSparrow targets Azerbaijani energy sector in multi-wave espionage campaign

2026-05-14 11:05

Chinese-linked FamousSparrow repeatedly targeted an Azerbaijani oil and gas company, reusing the same entry point in three intrusions from Dec 2025 to Feb 2026. Chinese-linked threat actor FamousSparrow has conducted a sustained intrusion campaign against an Azerbaijani oil and gas…

Read more →

Cyber Security News, EN

Critical 18-Year-Old NGINX Vulnerability Enables Remote Code Execution Attacks

2026-05-14 11:05

A critical heap buffer overflow vulnerability has been discovered in the source code of NGINX, present since 2008. This vulnerability has been publicly disclosed, along with a working proof-of-concept exploit that can enable unauthenticated remote code execution (RCE) against one…

Read more →

Cyber Security News, EN

Windows DNS Client Vulnerability Enables Remote Code Execution Attacks

2026-05-14 11:05

A newly disclosed vulnerability in the Microsoft Windows DNS Client could let attackers silently execute malicious code across enterprise networks, exposing a massive attack surface. Officially designated as CVE-2026-41096, this critical security flaw carries a severe CVSS score of 9.8…

Read more →

Cyber Security News, EN

Seedworm APT Abuses Signed Fortemedia and SentinelOne Binaries for DLL Sideloading

2026-05-14 11:05

Iran-linked hackers have been quietly breaking into networks around the world, and their latest campaign is more calculated than anything we have seen from them before. The group known as Seedworm, also tracked as MuddyWater, spent the first quarter of…

Read more →

Cyber Security News, EN

Packagist Urges Immediate Composer Update After GitHub Actions Token Leak

2026-05-14 11:05

Packagist is sounding the alarm for PHP developers everywhere. A flaw in Composer, the widely used PHP dependency manager, briefly caused GitHub authentication tokens to leak into publicly visible CI logs, raising urgent concerns about credential exposure across thousands of…

Read more →

Cyber Security News, EN

Langflow CVE-2026-33017 Exploited to Steal AWS Keys and Deploy NATS Worker

2026-05-14 11:05

Attackers are now abusing a fresh Langflow vulnerability to quietly steal cloud keys and turn victim systems into workers for a new NATS based botnet. This campaign shows how a single exposed AI workflow tool can become the start of…

Read more →

EN, Malwarebytes

Deepfake sextortion forces schools to remove student photos from websites

2026-05-14 11:05

Experts are urging schools to take down identifiable photos of students, after AI deepfakes have led to sextortion cases at UK schools. This article has been indexed from Malwarebytes Read the original article: Deepfake sextortion forces schools to remove student…

Read more →

EN, www.infosecurity-magazine.com

Most Organizations Now Use AI Agents for Sensitive Security Tasks

2026-05-14 11:05

Semperis study finds 74% of organizations believe AI will increase attacks on identity infrastructure This article has been indexed from www.infosecurity-magazine.com Read the original article: Most Organizations Now Use AI Agents for Sensitive Security Tasks

Read more →

EN, Silicon UK

Mistral Pitches Security-Focused AI As Mythos Alternative

2026-05-14 11:05

French start-up reportedly in talks with European banks to use upcoming model to review security of their systems This article has been indexed from Silicon UK Read the original article: Mistral Pitches Security-Focused AI As Mythos Alternative

Read more →

EN, securityweek

High-Severity Vulnerability Patched in VMware Fusion

2026-05-14 11:05

The patch was announced as Broadcom is attending the Pwn2Own hacking competition in Berlin this week. The post High-Severity Vulnerability Patched in VMware Fusion appeared first on SecurityWeek. This article has been indexed from SecurityWeek Read the original article: High-Severity…

Read more →

EN, Silicon UK

UK AI Chip Start-Up Fractile Raises $220m

2026-05-14 10:05

Fractile completes Series B round valuing it at $1bn as it seeks to ease inference bottleneck for cutting-edge AI models This article has been indexed from Silicon UK Read the original article: UK AI Chip Start-Up Fractile Raises $220m

Read more →

EN, Silicon UK

Met Police Arrest 173 In Live Facial Recognition Trial

2026-05-14 10:05

Six-month live facial recognition trial results in an arrest every 35 minutes, including a woman wanted for more than 20 years This article has been indexed from Silicon UK Read the original article: Met Police Arrest 173 In Live Facial…

Read more →

EN, GBHackers Security | #1 Globally Trusted Cyber Security News Platform

PoC Released for 18-Year-Old NGINX Flaw Allowing Remote Code Execution

2026-05-14 10:05

A critical vulnerability in NGINX’s source code, hidden since 2008, has finally been exposed, and a working exploit is already in the wild. Security researchers at depthfirst have publicly released a proof-of-concept (PoC) exploit demonstrating unauthenticated remote code execution (RCE)…

Read more →

EN, GBHackers Security | #1 Globally Trusted Cyber Security News Platform

Langflow CVE-2026-33017 Exploited to Steal AWS Keys, Deploy NATS Worker

2026-05-14 10:05

Langflow instances left unpatched against CVE-2026-33017 are now being actively abused not just for remote code execution, but as launchpads to steal AWS keys and join a NATS-backed botnet-style worker pool dubbed “KeyHunter.” The vulnerability, now listed in CISA’s Known…

Read more →

EN, Help Net Security

CERN’s open source KiCad library gives the world 17,000 circuit board components

2026-05-14 10:05

CERN has released its complete KiCad component library under an open source license, making it available to hardware designers anywhere in the world. The library, maintained by CERN’s Design Office, contains more than 17,000 electronic components in the form of…

Read more →

EN, The Hacker News

New Fragnesia Linux Kernel LPE Grants Root Access via Page Cache Corruption

2026-05-14 10:05

Details have emerged about a new variant of the recent Dirty Frag Linux local privilege escalation (LPE) vulnerability that allows local attackers to gain root access, making it the third such bug to be identified in the kernel within a…

Read more →

EN, Silicon UK

Waymo Issues Recall After Car Drives Into Flooded Road

2026-05-14 09:05

Google sister company issues ‘voluntary’ software update after empty vehicle swept away in flooded road in San Antonio, Texas This article has been indexed from Silicon UK Read the original article: Waymo Issues Recall After Car Drives Into Flooded Road

Read more →

EN, GBHackers Security | #1 Globally Trusted Cyber Security News Platform

Packagist Warns: Update Composer Now After GitHub Actions Token Leak

2026-05-14 09:05

A sudden change in GitHub’s token format has triggered an unexpected security vulnerability in Composer, exposing sensitive authentication tokens in CI/CD logs and forcing Packagist to issue an urgent warning to PHP developers worldwide. The issue stems from a mismatch…

Read more →

EN, Security Affairs

Nitrogen Ransomware claims massive data theft from Foxconn

2026-05-14 09:05

Foxconn confirmed a cyberattack on some North American factories. The Nitrogen ransomware group claims it stole 8TB of data from the firm. Foxconn confirmed that several of its North American factories were affected by a cyberattack. The manufacturer confirmed it…

Read more →

Cyber Security News, EN

The Gentlemen RaaS Leverages Fortinet and Cisco Edge Devices for Initial Access

2026-05-14 09:05

A ransomware group that only surfaced in mid-2025 has already made a significant mark on the threat landscape. The Gentlemen, a ransomware-as-a-service (RaaS) operation, has quickly risen to become one of the most active ransomware programs in the world, with…

Read more →

Cyber Security News, EN

Critical MongoDB Vulnerability Allow Attackers to Execute Arbitrary Code

2026-05-14 09:05

A newly disclosed critical vulnerability in MongoDB could allow threat actors to execute arbitrary code, potentially handing them complete control over affected servers and exposing millions of records to theft. The vulnerability, officially tracked as CVE-2026-8053, directly impacts MongoDB Server…

Read more →

Cyber Security News, EN

Critical 18-Year-Old NGINX Vulnerability Enables Remote Code Execution Attacks – PoC Released

2026-05-14 09:05

A critical heap buffer overflow vulnerability, lurking in NGINX’s source code since 2008, has been publicly disclosed. Complete with a working proof-of-concept exploit capable of delivering unauthenticated remote code execution (RCE) against one of the world’s most widely deployed web…

Read more →

EN, securityweek

Researcher Drops YellowKey, GreenPlasma Windows Zero-Days

2026-05-14 09:05

YellowKey is a BitLocker bypass that requires physical access. GreenPlasma enables elevation of privileges to System. The post Researcher Drops YellowKey, GreenPlasma Windows Zero-Days appeared first on SecurityWeek. This article has been indexed from SecurityWeek Read the original article: Researcher…

Read more →

hourly summary

IT Security News Hourly Summary 2026-05-14 09h : 6 posts

2026-05-14 09:05

6 posts were published in the last hour 7:2 : Foxconn US Plant Hit By Data-Theft Hack 7:2 : To gain root access at this company, all an intruder had to do was ask nicely 7:2 : 18-Year-Old NGINX Rewrite…

Read more →

Page 67 of 5468
« 1 … 65 66 67 68 69 … 5,468 »

Pages

  • Advertising
  • Contact
  • Legal and Contact information
  • Opt-out preferences
  • Privacy Policy
  • Social Media
    • Telegram Channel

Recent Posts

  • ShinyHunters Alleges 42M Records Stolen from Charter Communications May 28, 2026
  • Romanian Hacker Gets Nearly 5 Years in US Prison Over Network Intrusion May 28, 2026
  • Out of the Crypt: The Evolving Cyber Extortion Economy May 28, 2026
  • IT Security News Hourly Summary 2026-05-28 00h : 4 posts May 28, 2026
  • IT Security News Daily Summary 2026-05-27 May 27, 2026
  • Reconstructing an Akira Ransomware Kill Chain from Perimeter and Endpoint Logs, (Wed, May 27th) May 27, 2026
  • Distributed AI Inference: Why Placement Is the New Bottleneck May 27, 2026
  • For CISOs, dawn of OpenAI Daybreak brings good and bad news May 27, 2026
  • Can Big Data Predict Market Movements Accurately? May 27, 2026
  • The AI Phishing Revolution: From Spray-and-Pray to Autonomous Operations May 27, 2026
  • Iran’s Nimbus Manticore Used Trojanized Zoom Installers Against US Firms May 27, 2026
  • Stateless JWT Auth Microservice Architecture With Spring Boot 3 and Redis Sentinel May 27, 2026
  • Gartner Security & Risk Management Summit 2026: Adapting for AI May 27, 2026
  • ECB Urges Banks to Tackle AI Security Threats May 27, 2026
  • Hackers Push 22 Versions of npm RAT With Wallet Theft and Persistent Backdoor May 27, 2026
  • Hackers Use Fake ChatGPT and Claude Installers to Deploy DinDoor Backdoor May 27, 2026
  • Tycoon 2FA AiTM Kit Bypasses MFA on Entra ID and Google Workspace Accounts May 27, 2026
  • Hackers Use Grandoreiro Malware to Target Portuguese Banks and Latin American Companies May 27, 2026
  • GHOST STADIUM Phishing Campaign Targets FIFA World Cup Fans With 300+ Fake Domains May 27, 2026
  • IT Security News Hourly Summary 2026-05-27 21h : 11 posts May 27, 2026

Copyright © 2026 IT Security News. All Rights Reserved. The Magazine Basic Theme by bavotasan.com.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}