Software developers are being targeted with fake job offers that turn routine coding tests into a path for remote access malware. The campaign uses recruiter personas on LinkedIn and other …
MapLibre Vulnerability Exposes 2.7M Users to Zero-Click Attacks
A critical cross-site scripting vulnerability in the widely used MapLibre GL JS library could expose applications and an estimated 2.7 million users to zero-click attacks. The flaw, tracked as CVE-2026-85061 …
Microsoft Expands Windows Family Safety With Built-In Age Verification and Parental Controls
Microsoft is expanding Windows Family Safety with account-based age verification, privacy-focused age signals, and improved parental controls. The company said the updates are designed to help Windows apps, games, services, …
Critical ArangoDB Flaws Allow Authentication Bypass and Remote Code Execution as Root
Two critical flaws in ArangoDB can let an outsider bypass login controls, read or alter database data, and then gain root-level code execution on the underlying host. The issues affect …
Android Security Update September 2026 – Fix for Critical Flaws that Enable RCE Attacks
Google released the Android Security Bulletin for September 2026, addressing several critical vulnerabilities that could let attackers execute code remotely on affected devices. The update, published on September 8, includes …
CISA Warns of N-able N-central RCE Vulnerability Exploited in the Wild
The Cybersecurity and Infrastructure Security Agency has added a maximum-severity flaw in N-able’s N-central remote monitoring and management platform to its Known Exploited Vulnerabilities catalog, confirming that attackers are actively …
Microsoft Teams for Android Vulnerability Exposes Sensitive Information
Microsoft has released a security update for CVE-2026-65812, a vulnerability in Microsoft Teams for Android that could allow an authorized attacker to disclose sensitive information, including user credentials. Microsoft published …
Hackers Clone Banking Apps Into Hidden Android Work Profiles to Evade Fraud Detection
Android banking fraud is entering a deceptive phase. Attackers are using malware that copies targeted banking apps into a concealed Android work profile, separating a fraudulent session from warning signs …
SpyCloud 2026 Identity Threat Report Finds Non-Human Identities Are Now the Leading Path into the Enterprise
Austin, Texas / USA, September 9th, 2026, CyberNewswire Ninety-five percent of organizations believe they have visibility into their AI and machine identity exposures, yet only 36% are actually monitoring them. …
Hackers Use Autonomous AI Agents to Launch Mass Credential Theft Attacks in Under 6 Hours
Cybercriminals are using autonomous AI agents to turn compromised cloud systems into fast-moving credential theft platforms. In one recent case, attackers planned, built, and launched a large-scale campaign in less …
