June 23, 2026 A critical security vulnerability has been identified in the widely used libssh2 library, allowing remote attackers to execute arbitrary code through specially crafted SSH packets. The flaw, …
Critical FFmpeg Vulnerability Allows Attackers to Weaponize Media Files
June 23, 2026 A critical vulnerability has been disclosed in FFmpeg’s MagicYUV decoder that allows attackers to weaponize seemingly harmless media files and, in some scenarios, achieve remote code execution …
Hackers Using FortigateSniffer Tool That Turns Compromised Firewalls Into Password Collectors
June 23, 2026 A financially motivated threat actor has deployed a custom Golang-based tool called FortigateSniffer across more than 430,000 FortiGate firewalls globally, silently harvesting over 110 million credentials since …
OpenAI Releases GPT‑5.5‑Cyber With Full Automation for Vulnerability Detection and Patching
June 23, 2026 OpenAI has officially launched the full version of GPT‑5.5‑Cyber, a specialized AI model engineered for advanced vulnerability detection, patch generation, and automated remediation at machine speed. The …
23 ClawHub Plugins Abuse Official Org Scopes to Impersonate Trusted AI Agent Tools
June 22, 2026 A new supply chain threat has surfaced in the AI agent ecosystem that is both subtle and serious. Researchers uncovered 23 plugins on the ClawHub registry published …
Windows RAT Uses Encrypted HTTP C2 and Registry Persistence After npm Infection
June 22, 2026 A newly discovered malware campaign is targeting Windows systems through a deceptive package on the npm registry. Disguised as a legitimate CSS build tool, the malicious package …
AryStinger Botnet Hijacks 4,300+ Routers to Build Global Attack Proxy Network
June 22, 2026 A newly discovered botnet called AryStinger has quietly hijacked more than 4,300 routers across the globe, turning them into a silent army of attack proxies. The threat …
Microsoft Entra Conditional Access Policies Can Be Bypassed Via Nested App Authentication
June 22, 2026 Microsoft Entra Conditional Access Policies (CAPs), a core security control for Azure and Microsoft 365 tenants, were recently found vulnerable to a bypass technique involving Nested App …
AI-Powered iOS Apps Leaking LLM API Credentials Through Network Traffic
AI-powered iOS applications are increasingly leaking large language model (LLM) API credentials through network traffic, exposing developers to large-scale abuse of their LLM accounts and cloud resources. A recent empirical …
Hackers Use RemotePC RMM and PowerShell Stagers to Deploy Prinz Eugen Ransomware
June 22, 2026 A newly identified ransomware group is using remote management software and scripted attack tools to compromise organizations and deploy a sophisticated encryption threat called Prinz Eugen. The …
