CyberLabRSS

πŸ”’
❌ About FreshRSS
There are new available articles, click to refresh the page.
Today β€” June 19th 2026SecurityWeek

Cisco to Acquire WideField Security to Boost Splunk’s Agentic SOC

WideField will accelerate Agentic SOC capabilities by expanding the lens on threat investigation to include identity, credentials, sessions, and blast radius.

The post Cisco to Acquire WideField Security to Boost Splunk’s Agentic SOC appeared first on SecurityWeek.

Splunk Enterprise Vulnerability Exploited in Attacks Days After Disclosure

CISA has given federal agencies only three days to patch CVE-2026-20253, which can be exploited for unauthenticated remote code execution.

The post Splunk Enterprise Vulnerability Exploited in Attacks Days After Disclosure appeared first on SecurityWeek.

Yesterday β€” June 18th 2026SecurityWeek

Majority of Internet-Accessible REDCap Servers Outdated

These servers are regularly targeted by China-linked UNC6508 for initial access and backdoor deployment.

The post Majority of Internet-Accessible REDCap Servers Outdated appeared first on SecurityWeek.

No Exploits Required

Four decades of incident response experience suggest that exploits are often the symptom, not the root cause, of today’s cybersecurity failures.

The post No Exploits Required appeared first on SecurityWeek.

Dream Raises $260 Million at $3 Billion Valuation

The Israeli startup provides sovereign AI and cyber defenses for governments and critical infrastructure.

The post Dream Raises $260 Million at $3 Billion Valuation appeared first on SecurityWeek.

Atlassian, Splunk Patch Critical Vulnerabilities

Splunk patched an OS command injection in AI Toolkit, while Atlassian fixed dozens of flaws in third-party dependencies.

The post Atlassian, Splunk Patch Critical Vulnerabilities appeared first on SecurityWeek.

Rokarolla Banking Trojan Targets 200 Applications

The Android malware allows its operators to take control of infected devices and harvest sensitive information.

The post Rokarolla Banking Trojan Targets 200 Applications appeared first on SecurityWeek.

Critical Command Execution Vulnerability Patched in Cisco ISE

Insufficient validation of user input allows an attacker to gain access to the underlying OS and elevate their privileges to root.

The post Critical Command Execution Vulnerability Patched in Cisco ISE appeared first on SecurityWeek.

F5 Patches Critical, High-Severity NGINX Vulnerabilities

Critical flaws in NGINX could allow remote, unauthenticated attackers to cause a restart and potentially execute arbitrary code.

The post F5 Patches Critical, High-Severity NGINX Vulnerabilities appeared first on SecurityWeek.

SailPoint to Acquire Entro in Reported $200 Million Deal

Israel-based Entro specializes in non-human identity and credential security solutions, and it will enable SailPoint to enhance its products.

The post SailPoint to Acquire Entro in Reported $200 Million Deal appeared first on SecurityWeek.

Kodak Admits Data Breach After ShinyHunters Hack Claims

Kodak told SecurityWeek it believes there is no threat to its systems or operations as a result of the cybersecurity incident.

The post Kodak Admits Data Breach After ShinyHunters Hack Claims appeared first on SecurityWeek.

Before yesterdaySecurityWeek

Webinar Today: How Modern Breaches Bypass MFA and Evade Detection

Attendees will learn how attackers evade conventional detection methods, why legacy MFA alone is no longer sufficient, and how organizations can strengthen their defenses.

The post Webinar Today: How Modern Breaches Bypass MFA and Evade Detection appeared first on SecurityWeek.

1Password Acquires Apono in Reported $250M-$300M Deal

Apono specializes in just-in-time access governance technology for humans, machines, and AI agents.

The post 1Password Acquires Apono in Reported $250M-$300M Deal appeared first on SecurityWeek.

Oracle’s Second Monthly Security Updates Deliver 245 PatchesΒ 

Oracle has released its June 2026 Critical Security Patch Update to fix vulnerabilities in Communications, EBS, Enterprise Manager and other products.

The post Oracle’s Second Monthly Security Updates Deliver 245 PatchesΒ  appeared first on SecurityWeek.

Joomla, LiteSpeed Vulnerabilities Exploited in Attacks

The flaws allow attackers to execute arbitrary PHP code and gain root privileges on shared hosting servers.

The post Joomla, LiteSpeed Vulnerabilities Exploited in Attacks appeared first on SecurityWeek.

iRhythm Confirms Data Stolen in Hack

The digital health company said it learned of the breach on June 8 and the attackers demanded a ransom.

The post iRhythm Confirms Data Stolen in Hack appeared first on SecurityWeek.

AI and Cybersecurity – Everything You Wanted to Know, But Were Afraid to Ask

From defending networks to enabling attacks, artificial intelligence is changing every aspect of cybersecurity. Here's what dozens of experts say security leaders need to understand now.

The post AI and Cybersecurity – Everything You Wanted to Know, But Were Afraid to Ask appeared first on SecurityWeek.

Cybercrime Group Claims Novo Nordisk Hack

The hack-and-leak group FulcrumSec claims to have stolen 1.3TB of data from the pharmaceutical giant.

The post Cybercrime Group Claims Novo Nordisk Hack appeared first on SecurityWeek.

Can CISOs Trust Their Applications? TrustCloud Wants to Replace the Questionnaire

By continuously analyzing security, infrastructure, and governance data, TrustCloud aims to give CISOs a real-time view of application risk and board-ready assurance.

The post Can CISOs Trust Their Applications? TrustCloud Wants to Replace the Questionnaire appeared first on SecurityWeek.

Cal Water Investigating Iranian Hackers’ Claims

California Water Service says there is no indication of operational disruptions to its water and wastewater systems.Β 

The post Cal Water Investigating Iranian Hackers’ Claims appeared first on SecurityWeek.

White House Issues Memo to Bolster NSS Cybersecurity

NSPM-12 establishes a clear structure for NSS cybersecurity governance and accountability and reestablishes CNSS.

The post White House Issues Memo to Bolster NSS Cybersecurity appeared first on SecurityWeek.

Atomic Arch Supply Chain Attack Hits 1,500 AUR Packages

Arch Linux suspended account registrations in response to the wave of malicious packages being uploaded to AUR.

The post Atomic Arch Supply Chain Attack Hits 1,500 AUR Packages appeared first on SecurityWeek.

Cybersecurity Executives Urge the Trump Administration to Ease Restrictions on Anthropic AI Models

A group of cybersecurity executives and experts is asking the Trump administration to lift its directive preventing the use of Anthropic’s latest artificial intelligence models by foreign nationals.

The post Cybersecurity Executives Urge the Trump Administration to Ease Restrictions on Anthropic AI Models appeared first on SecurityWeek.

Cisco Patches Another SD-WAN Zero-Day Exploited in Attacks

Cisco recently became aware of the exploitation of CVE-2026-20262, a Catalyst SD-WAN Manager zero-day that allows arbitrary file write.

The post Cisco Patches Another SD-WAN Zero-Day Exploited in Attacks appeared first on SecurityWeek.

Ukrainian Man Pleads Guilty in US to Conti Ransomware Charges

Oleksii Oleksiyovych Lytvynenko admitted to working on the development of a loader for the Conti gang.

The post Ukrainian Man Pleads Guilty in US to Conti Ransomware Charges appeared first on SecurityWeek.

Ozempic Maker Novo Nordisk Says Hackers Breached IT Systems

The pharmaceutical giant says the attackers gained access to personal data stored on the compromised systems.Β 

The post Ozempic Maker Novo Nordisk Says Hackers Breached IT Systems appeared first on SecurityWeek.

French Government Messaging Platform Breached by Mysterious β€˜Misere’ Hacker

French officials say roughly 73,000 government accounts were affected, while the threat actor claims to have stolen messages and user data from the sovereign Tchap platform.

The post French Government Messaging Platform Breached by Mysterious β€˜Misere’ Hacker appeared first on SecurityWeek.

ShinyHunters Claims Council of Europe Hack

The extortion group threatens to leak 297 GB of data allegedly stolen from the Council of Europe, including employee personal information.

The post ShinyHunters Claims Council of Europe Hack appeared first on SecurityWeek.

FBI, Google Dismantle β€˜Outsider Enterprise’ Phishing Service

The platform used more than 9,000 phishing sites, stealing nearly 4 million credit cards and causing roughly $1.9 billion in losses.

The post FBI, Google Dismantle β€˜Outsider Enterprise’ Phishing Service appeared first on SecurityWeek.

Maine Disables Data Breach Portal Due to Fake SubmissionsΒ 

Someone posted fake VRChat and Discord data breach reports on the system, prompting the Maine AG to take action.

The post Maine Disables Data Breach Portal Due to Fake SubmissionsΒ  appeared first on SecurityWeek.

In Other News: Google Security Layoffs, AudiA6 Takedown, $400 Million Coupang Fine

Other noteworthy stories that might have slipped under the radar: ICS device exposure remains flat as attack surface widens, Microsoft issues incident response playbook for AI, IBM and AT&T accused of hack cover-ups.

The post In Other News: Google Security Layoffs, AudiA6 Takedown, $400 Million Coupang Fine appeared first on SecurityWeek.

Industry Reactions to Claude Fable 5: Feedback Friday

Industry professionals comment on various aspects of Fable 5, including dual-use capabilities, safeguards, and tiered access.

The post Industry Reactions to Claude Fable 5: Feedback Friday appeared first on SecurityWeek.

❌