Hackers Use Free Spotify Premium Hacks on TikTok and Instagram to Spread Vidar Infostealer

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 12, 2026 Hackers are now turning popular social media platforms into malware delivery channels, using the promise of free software to trap unsuspecting users. Short-form video platforms like TikTok …

Solana FakeFix Campaign Uses 25 Malicious npm and PyPI Packages to Steal Developer Secrets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 12, 2026 A newly discovered supply chain campaign is putting Solana developers at serious risk, with attackers hiding malicious code inside fake developer packages on npm and PyPI. The …

Microsoft Teams for Android Vulnerability Allows Attackers to Disclose Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 12, 2026 Microsoft has disclosed a significant security vulnerability in Microsoft Teams for Android that could allow an authenticated attacker to expose sensitive information over a network. The flaw, …

CISA Requires Federal Agencies to Patch Critical Vulnerabilities Within 3 Days

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 11, 2026 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued Binding Operational Directive (BOD) 26-04, titled “Prioritizing Security Updates Based on Risk,” compelling all Federal Civilian Executive …

GitHub to Automate Disable npm Script Installs to Block Supply Chain Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 11, 2026 GitHub has announced a major security-focused update to the Node Package Manager (npm), introducing breaking changes in the upcoming npm v12 release to reduce software supply chain …

Claude Mythos Turning N-Days Into N-Hours With Rapid Working Exploit Creation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 11, 2026 A new study has revealed that advanced large language models (LLMs), particularly Anthropic’s Claude Mythos Preview, are dramatically accelerating the development of N-day exploits, reducing timelines from …

Cybercriminals Abuse Chinese-Language Guarantee Marketplaces to Trade Stolen Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 11, 2026 A network of Chinese-language online marketplaces operating on Telegram has quietly become one of the most powerful financial engines behind global cybercrime. These platforms, known as “guarantee” …

Ivanti Command Injection Vulnerability Exploited in Attacks Following PoC Release

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 11, 2026 Threat actors have begun actively exploiting a critical Ivanti Sentry command injection vulnerability just days after a proof-of-concept (PoC) exploit was made public, according to new internet …

PoC Exploit Released for Guest-to-Host Escape Linux Kernel Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 11, 2026 A proof-of-concept (PoC) exploit has been released for a critical Linux kernel vulnerability, CVE-2026-46316, that enables a guest-to-host escape in KVM environments on arm64 systems. The flaw, …

Oracle Emergency Security Update to Fix Critical RCE Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 11, 2026 Oracle has issued an emergency Security Alert to address a critical remote code execution vulnerability (CVE-2026-35273) affecting PeopleSoft Enterprise PeopleTools. The vulnerability carries a CVSS v3.1 score …