June 30, 2026 A newly identified Windows backdoor called Mistic has been quietly making its way through enterprise networks since April 2026, giving attackers persistent, low-profile access that is extremely …
Kali Linux 2026.2 Released With 9 New Tools and VM Boot Tweaking
June 30, 2026 Kali Linux team officially released Kali Linux 2026.2 right on schedule at the close of Q2 2026, delivering a compelling mix of desktop environment upgrades, infrastructure modernization, …
Nissan Confirms Data Breach Following Oracle PeopleSoft 0-Day Attacks
June 30, 2026 Nissan Americas has officially confirmed a data breach affecting current and former employees across four countries after threat actors exploited a critical zero-day vulnerability in Oracle PeopleSoft …
WhatsApp Launches New Username Feature to Communicate Without Exposing Phone Numbers
June 29, 2026 WhatsApp introduces a new privacy update that lets users connect using unique handles, eliminating the need to share phone numbers with strangers or new group members. Earlier, …
EvilTokens Phishing Breaches Finance Firms Using “Ghost” Code Across U.S. and European Businesses
June 29, 2026 EvilTokens can keep serious account-takeover activity out of your SOC’s view by relying on “ghost” code that only surfaces after the browser decrypts it. Because of this, analysis …
U.S. Seizes Hundreds Domains Used to Stream World Cup Matches Illegally
June 29, 2026 The U.S. Department of Justice (DOJ) has announced the seizure of nearly 400 domains used to illegally stream FIFA World Cup 2026 matches, marking a significant crackdown …
Public PoC Released for Deserialization RCE Vulnerability in Splunk Secure Gateway
June 29, 2026 A public proof-of-concept (PoC) exploit has been released for CVE-2026-20251, a high-severity remote code execution (RCE) vulnerability affecting Splunk Secure Gateway (SSG). The flaw, carrying a CVSS …
Hackers Exploiting Critical Oracle E-Business Suite Vulnerability Actively in Attacks
June 29, 2026 Threat actors are actively exploiting CVE-2026-46817, a critical unauthenticated remote takeover vulnerability in Oracle E-Business Suite (EBS), with live attack activity captured across honeypot infrastructure over the …
Critical Dell Wyse Vulnerabilities Enable Remote Code Execution Attacks
June 29, 2026 Dell Technologies has released a critical security advisory addressing multiple vulnerabilities in its Wyse Management Suite (WMS), warning that attackers could exploit these flaws to execute arbitrary …
Microsoft 365 Apps RCE Vulnerability Exploited Using a Malicious Excel File
Microsoft has disclosed a critical remote code execution vulnerability in its Office ecosystem that can be exploited through a malicious Excel file. The vulnerability, tracked as CVE-2025-60727, affects multiple versions …
