Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Zero-day flaw in Check Point SmartConsole is under exploitation
1+ day, 15+ hour ago (366+ words) Researchers warned the vulnerability offers an attacker the ability to make key changes to security configurations. A critical vulnerability in Check Point Software’s SmartConsole login process is being exploited, with a small number of customers already impacted, according to a…...
The most vulnerable AI products are also some of the most commonly exposed online
1+ day, 16+ hour ago (283+ words) It is becoming increasingly easy for hackers to target vulnerable AI tools on companies’ networks, even as those companies come to depend on them for more tasks. The number of internet-exposed instances of another common AI tool, LiteLLM, nearly doubled…...
GAO report details scope of cybersecurity regulation overlap
2+ day, 15+ hour ago (362+ words) A morass of rules is forcing companies to report the same information multiple times — and sometimes, those rules conflict. Thirty-seven agencies have issued 117 cybersecurity rules covering nine infrastructure sectors, GAO said in a report published on Wednesday, and 80 of those…...
CISA, FBI warn that Iran-linked hackers are expanding target set for water, energy
2+ day, 15+ hour ago (560+ words) The agencies said threat groups have disrupted critical infrastructure sites by exploiting vulnerable PLC devices. The Cybersecurity and Infrastructure Security Agency and the FBI warned that Iran-affiliated hackers are stepping up attacks targeting key industrial devices in an attempt to…...
Russia-backed threat actor targets Western organizations in phishing campaign
2+ day, 15+ hour ago (260+ words) The threat actor exploited a zero-day flaw in Zimbra to exfiltrate months of emails and other sensitive information. U.S. authorities warned in an advisory released Thursday that a state-sponsored threat actor has targeted government and private sector organizations since mid-2025 through a…...
Threat group claims credit for ransomware attack on Coca-Cola’s dairy unit
3+ day, 15+ hour ago (370+ words) A threat group called Anubis claimed credit for the ransomware attack against Fairlife, the dairy products unit of Coca-Cola. Coca-Cola was forced to suspend U.S. production at Fairlife while it launched an investigation into the attack. Coca-Cola officials noted there was…...
Microsoft SharePoint under attack via new exploit
4+ day, 15+ hour ago (278+ words) Security researchers warn the potential risk could rival the widespread ToolShell campaign of 2025. The flaw, tracked as CVE-2026-50522, has a severity rating of 9.8 out of 10 and could enable an attacker to execute remote code over a network. Hackers are targeting…...
Ransomware victims fail to fix flaws that exposed them
4+ day, 15+ hour ago (368+ words) Many organizations still aren’t securing their email or patching vulnerabilities after recovering from attacks, a new report found. But many organizations haven’t learned that lesson and continue to operate with serious cybersecurity weaknesses. Forty-three percent of victimized organizations still have…...
Researchers trace SonicWall SMA1000 exploitation to late June
5+ day, 15+ hour ago (429+ words) Two critical vulnerabilities in SonicWall SMA1000 appliances have been under exploitation as zero-days since late June, according to a report released Friday by Volexity, a Washington, D.C.–based cybersecurity firm. A threat actor tracked as UTA0533 is linked to the threat activity that…...
Hackers steal customer data from major hospital software vendor
5+ day, 16+ hour ago (273+ words) The breach is another reminder of how vulnerable the healthcare industry is to supply-chain attacks. Hackers breached a major healthcare industry software supplier and stole a large trove of files, the company announced on Monday. “The current assessment is that…...