July 2, 2026 Medical technology giant Medtronic Inc. has disclosed a cybersecurity incident involving unauthorized access to its corporate IT systems, potentially affecting sensitive personal and health-related information of patients …
Critical Flaws Double as Elevation of Privilege Dominates the Cyber Threats – Analysis of Microsoft Vulnerabilities Report 2026
Microsoft’s vulnerability landscape just sent a mixed signal that every security team needs to understand. According to the newly released Microsoft Vulnerabilities Report 2026 — the 13th annual edition published …
FortiBleed Password Stealing Attack Linked to INC and Lynx Ransomware Operations
July 2, 2026 FortiBleed credential-harvesting campaign, which has compromised more than 430,000 FortiGate firewalls worldwide, is directly feeding two active ransomware-as-a-service operations, INC Ransom and Lynx. SOCRadar’s Threat Research Unit …
Alleged Scattered Spider Member Extradited to the US for His Role in Hacking 100+ Networks
July 2, 2026 A dual U.S.-Estonian citizen accused of belonging to the notorious Scattered Spider hacking collective has been extradited from Finland to face federal charges in the Northern District …
WhatsApp Username Reservations Go Live – What Are the Security Concerns for 2 Billion Users
WhatsApp has begun allowing users to reserve usernames ahead of a broader feature launch planned for later this year, prompting a wave of questions about security, impersonation risk, and account …
CISA Warns of SimpleHelp Authentication Bypass Vulnerability Exploited in Attacks
July 2, 2026 CISA has issued a warning about a critical authentication bypass vulnerability in SimpleHelp that is actively being exploited in the wild, raising concerns among organizations relying on …
Indian Govt Halts Meta’s WhatsApp Usernames Rollout Over Fraud Concerns
July 1, 2026 The Indian government has issued a formal notice to WhatsApp LLC (Meta), directing the platform to justify why regulatory action should not be taken against its newly …
Critical Cursor IDE RCE Vulnerabilities Enable Prompt Injection in Zero-Click
July 1, 2026 Two critical remote code execution (RCE) vulnerabilities in Cursor IDE, the AI-powered development environment used by more than half of Fortune 500 companies. Cato AI Labs has …
Turning Indicators into Intelligence in OpenCTI with Criminal IP
July 1, 2026 Torrance, California, USA, July 1st, 2026, CyberNewswire Cyber threat intelligence becomes more valuable when indicators are enriched with context that supports investigation, correlation, and decision-making. Through the …
Massive Automated Password Spray Attack Targeting Microsoft’s Azure Command-Line Interface
July 1, 2026 A large-scale automated password spray campaign is actively abusing Microsoft’s Azure Command-Line Interface (CLI) and legacy OAuth flows to compromise Entra ID accounts, despite organizations having multi-factor …


