RedAmon AI Tool that Chains Reconnaissance, Exploitation, and Post-exploitation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 A new open-source offensive security platform called RedAmon is redefining automated penetration testing by chaining reconnaissance, exploitation, post-exploitation, AI-driven triage, and automated code remediation all into a single end-to-end pipeline that culminates in a GitHub pull request …

OpenAI Released GPT-5.6 Sol With Limited Access and Strong Cyberattack Protections

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenAI has officially begun a limited preview of the GPT‑5.6 model series Sol, Terra, and Luna, positioning its flagship Sol as the company’s most capable and security-hardened AI model to date, available initially only to a small group of trusted …

Anthropic Confirms Claude Mythos 5 Redeployment for US Critical Infrastructure Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 27, 2026 Anthropic has confirmed that Claude Mythos 5, its most powerful AI cybersecurity model, will be redeployed to a select set of U.S. organizations responsible for operating and defending critical infrastructure, following a government-led review process that began …

New Bucket Hijacking Attack Allows Hackers to Reroute Cloud Data Streams to External Storage

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 27, 2026 A critical cloud storage attack technique dubbed “bucket hijacking” a method that enables threat actors to silently redirect an organization’s active cloud data streams, including audit logs and telemetry, into attacker-controlled external storage buckets across major cloud …

New DirtyClone Linux Vulnerability Allows Attackers to Gain Root Access Via Cloned Packets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 26, 2026 A new Linux kernel local privilege escalation vulnerability, dubbed “DirtyClone” (CVE-2026-43503), that allows unprivileged local users to gain full root access by manipulating cloned network packets through the XFRM/IPsec subsystem, all without leaving a trace in kernel …

Amazon Q Vulnerability Let Attackers Execute Code and Access Sensitive Cloud Environments

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 26, 2026 A high-severity vulnerability in the Amazon Q Developer Extension for Visual Studio Code (VS Code), Amazon’s AI-powered coding assistant. Tracked as CVE-2026-12957 and CVE-2026-12958 and disclosed by Wiz Research, the flaws allowed attackers to achieve arbitrary code …

New Linux pedit COW Exploit Allows Attackers to Gain System Root Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly disclosed Linux kernel vulnerability combining a Copy-on-Write (COW) page-cache corruption flaw with the net/sched subsystem’s act_pedit component is enabling unprivileged local attackers to escalate privileges to full root access on several major Linux distributions. The exploit, dubbed packet_edit_meme, …

New Bluekit Phishing-as-a-Service Bypasses MFA to Steal Microsoft Login Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated Phishing-as-a-Service (PhaaS) platform called Bluekit has been confirmed operational at scale, with cybersecurity firm Netcraft detecting approximately 70 live hostnames in a single week. First documented by Varonis Threat Labs as an emerging tool still in development, Bluekit …

Hackers Exploit Weak Credentials and Internet-Facing PLCs to Breach Water Utilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 26, 2026 Water utilities across the United States and Europe are under growing pressure as hackers continue to find easy ways in. Nation-state actors and affiliated groups have been quietly exploiting internet-facing control systems and weak login credentials to …

New GIFTEDCROOK Chain Abuses WinRAR ADS and Reflective Loading to Steal Browser Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 26, 2026 A newly documented attack chain tied to threat actor group UAC-0226 is putting Windows users at serious risk. The campaign uses booby-trapped WinRAR archives, hidden file streams, and a sophisticated memory-loading technique to deliver GIFTEDCROOK, a stealer …