CISA Chief Uploaded Sensitive Documents into Public ChatGPT

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The acting director of the Cybersecurity and Infrastructure Security Agency (CISA) uploaded sensitive contracting documents marked “for official use only” into the public version of ChatGPT last summer, triggering multiple …

Threat Actors Leverage Real Enterprise Email Threads to Deliver Phishing Links

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a sophisticated supply chain phishing attack, threat actors hijacked an ongoing email thread among C-suite executives discussing a document awaiting final approval. The intruder, posing as a legitimate participant, …

TP-Link Archer Vulnerability Let Attackers Take Control Over the Router

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security advisory has been released for a command injection vulnerability affecting the Archer MR600 v5 router. The flaw, tracked as CVE-2025-14756, enables authenticated attackers to execute arbitrary system …

Gemini MCP Tool 0-day Vulnerability Allows Remote Attackers to Execute Arbitrary Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical zero‑day vulnerability in Gemini MCP Tool exposes users to remote code execution (RCE) attacks without any authentication. Tracked as ZDI‑26‑021 / ZDI‑CAN‑27783 and assigned CVE‑2026‑0755, the flaw carries …

Check Point Harmony SASE Windows Client Vulnerability Enables Privilege Escalation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical privilege-escalation vulnerability has been discovered in Check Point’s Harmony SASE (Secure Access Service Edge) Windows client software, affecting versions prior to 12.2. Tracked as CVE-2025-9142, the flaw allows local attackers …

SoundCloud Data Breach Exposes 29.8 Million Personal users Details

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In December 2025, music streaming platform SoundCloud disclosed a significant data breach affecting approximately 29.8 million user accounts. The unauthorized access compromised personally identifiable information (PII), including email addresses, usernames, …

Chrome Security Update Patches Background Fetch API Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Chrome versions 144.0.7559.109 and 144.0.7559.110 have been released to the stable channel, addressing a critical security vulnerability in the Background Fetch API. The update is rolling out across Windows, Mac, …

Fortinet Confirms Critical FortiCloud SSO Vulnerability(CVE-2026-24858) Actively Exploited in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Fortinet has confirmed a critical authentication bypass vulnerability in its FortiCloud SSO feature, actively exploited in the wild under CVE-2026-24858. According to an advisory published on January 27, 2026, the …

Nike Investigating Data Breach Following WorldLeaks Ransomware Group Claim

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Sportswear giant Nike is actively investigating a potential cybersecurity incident after WorldLeaks, a financially motivated ransomware group, claimed responsibility for a significant data breach affecting the company. The group announced …