June 19, 2026 HazyBeacon, tracked as CL-STA-1020, is a stealthy cyber-espionage campaign targeting Southeast Asian government networks by abusing AWS Lambda Function URLs as covert command-and-control (C2) relays. Qualys Security …
Hackers Abuse Third-Party Okendo Reviews Script to Spread SmartApeSG Malware Campaign
A newly discovered supply chain attack has put thousands of e-commerce websites at risk after a popular third-party reviews widget was quietly turned into a malware delivery tool. Threat actors …
INC Ransomware Uses Rust-Based Windows and Linux/ESXi Encryptors in New Attacks
June 19, 2026 INC ransomware has grown from a newcomer threat into one of the most dangerous ransomware operations worldwide. What began as an emerging criminal group in mid-2023 has …
CISA Urges Hardening Fortinet Devices Following FortiBleed Attack
June 19, 2026 CISA has issued an urgent advisory warning organizations to secure their Fortinet devices following reports of a large-scale credential exposure campaign known as “FortiBleed.” The alert comes …
China-Linked Showboat Malware Uses Linux Persistence to Target Telecom Companies
June 19, 2026 A sophisticated China-linked malware framework has been quietly targeting telecom companies across the Middle East for nearly four years. Showboat is a Linux-based tool that stayed completely …
CISA Warns of Splunk Enterprise Critical Function Vulnerability Actively Exploited in Attacks
June 19, 2026 CISA has issued a high-priority alert warning organizations about a critical vulnerability in Splunk Enterprise that is actively being exploited in the wild. The flaw, tracked as …
Node.js Fixes 12 Vulnerabilities, Including 2 High-Severity Authentication Bypasses
June 19, 2026 Node.js has released a new round of security updates addressing 12 vulnerabilities across its supported release lines, including two high-severity flaws that could lead to authentication bypass …
Hackers Use Weaponized Windows Shortcuts to Spread Crypto Clipper Across USB Drives
June 19, 2026 A newly discovered cryptocurrency clipper malware has been quietly stealing digital assets from victims since February 2026, spreading through a trick that most users would never suspect: …
AI-Powered Public Surveillance and Biometric Data Collection Expand Government Monitoring
June 19, 2026 Governments are expanding their digital reach in ways unimaginable just a decade ago. A growing wave of AI-powered surveillance, biometric data collection, and commercial spyware is reshaping …
Authorities Dismantle SocGholish Malware Network — 106 Servers and 101 Domains Seized
June 18, 2026 Authorities have dismantled the criminal infrastructure behind SocGholish, one of the most persistent malware frameworks active since 2017, seizing 106 servers and 101 domains while remediating nearly …
