GoldenEyeDog Hackers Group Behind DigiCert Breach that Hijacks Code-Signing Certificates

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 20, 2026 GoldenEyeDog, a Chinese cybercrime group linked to the Golden Gh0st malware family, is back in focus after an intrusion at DigiCert exposed the risks around code-signing certificates. The attackers used the access to intercept customer certificate activation …

U.S. Prosecutors Charge Russian Trio in Cybercrimes Causing More Than $62 Million in Losses

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 20, 2026 Federal prosecutors have charged three Russian nationals over infrastructure that allegedly enabled ransomware, malware, phishing, and other cyberattacks against organizations in the United States and abroad. The seven-year investigation links the activity to more than $62 million …

North Korean Hackers Hide OTTERCOOKIE Malware in SVG Images to Backdoor Developers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 20, 2026 North Korean-linked hackers are hiding OTTERCOOKIE-aligned malware inside ordinary SVG flag images, turning a familiar part of a web project into a concealed delivery channel. The operation targets software developers who believe they are completing a coding …

15-Year-Old NGINX Vulnerability Lets Attackers Crash Workers and Achieve Remote Code Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 20, 2026 A newly disclosed flaw tracked as CVE-2026-42533 affects nginx’s script engine and has been silently exploitable since March 2011, when the map directive gained regex support. Security researcher Stan Shaw reported the bug to F5 SIRT, which …

Weekly Cyber Security Newsletter Bulletin – EY Breach, Wpzshell Exploit, Notepad++ Flaws +20 Stories

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 19, 2026 This week’s cybersecurity situation shows a clear reality: every part of technology, from identity systems to common productivity tools, can be hacked or compromised. Microsoft’s July Patch Tuesday alone addressed roughly 570 vulnerabilities, including two zero-days already …

NadMesh Uses Shodan to Find and Hijack Exposed AI and MCP Infrastructure

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 19, 2026 A sharp structural shift has been identified in the botnet landscape. Security researchers at XLab have uncovered NadMesh, a Go-based botnet that has been spreading rapidly since early July 2026. This malware marks a distinct evolution from …

Hugging Face Confirms AI-Driven Breach: Attackers used Autonomous Agents, defenders countered with AI

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 18, 2026 Hugging Face disclosed this week that it detected and contained a production infrastructure intrusion, driven end-to-end by an autonomous AI agent system, and defended against it using its own AI-based forensic analysis. The attackers exploited two code-execution …

New Spirals Ransomware Uses IIS Web Shell and PsExec to Encrypt IT Firm in Under 24 Hours

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 18, 2026 New Spirals Ransomware Uses IIS Web Shell and PsExec to Encrypt IT Firm in Under 24 Hours A previously unseen ransomware family dubbed “Spirals” struck an IT services company in South Asia in June 2026. Symantec’s Threat …

Citrix Secure Access and Endpoint Client for Windows Vulnerability Enables Privilege Escalation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 18, 2026 Cloud Software Group has disclosed two security vulnerabilities affecting Citrix Secure Access Client for Windows and Citrix Endpoint Analysis Client for Windows, with one flaw allowing low-privileged attackers to gain full SYSTEM access on affected machines. The …

New wp2shell RCE Vulnerability Hits Millions of WordPress Sites, Emergency Patch Released

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 18, 2026 A critical pre-authentication remote code execution (RCE) vulnerability dubbed “wp2shell” has been discovered in WordPress Core, putting an estimated 500 million+ websites at risk of full takeover by unauthenticated attackers. Security researcher Adam Kues of Searchlight Cyber’s …