Multiple TP-Link Cameras Vulnerability Allows Hackers to Launch MitM Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 17, 2026 TP-Link has released security updates for two vulnerabilities in its Kasa EC70 v4 and EC71 v4 smart cameras. These flaws, tracked as CVE-2026-9770 and CVE-2026-13230, could allow an attacker on the same local network to obtain sensitive …

GPT-5.6 Codex is Reportedly Deleting Files From Home Directories

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 17, 2026 OpenAI is currently investigating a small number of reports indicating that the GPT-5.6 Codex unintentionally deleted files from users’ home directories. These incidents reportedly occurred when Codex was granted full filesystem access without the necessary sandbox protections …

CISA Warns of Fortinet FortiSandbox OS Injection Vulnerabilities Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 17, 2026 CISA has added two critical Fortinet FortiSandbox vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, warning that attackers are actively exploiting the flaws in real-world attacks. The vulnerabilities, identified as CVE-2026-39808 and CVE-2026-25089, allow unauthenticated attackers to …

Two Hackers Jailed for Hacking 148 TfL Systems, Forcing Password Reset for 27,000 staffs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 17, 2026 Two young members of the Scattered Spider cybercrime group have been jailed for a 2024 attack that knocked out 148 Transport for London (TfL) systems, forced all 27,000 staff to reset passwords in person, and cost the …

7-Zip Vulnerability Exposes Millions of Users to Remote Code Execution Risk

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 17, 2026 A newly disclosed vulnerability in 7-Zip, one of the most widely used open-source file archiving tools, could allow remote attackers to execute arbitrary code on affected systems. Tracked as CVE-2026-14266, the flaw stems from improper handling of …

Linus Torvalds Told Kernel Developers that Linux is Not Against AI projects

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Linux creator Linus Torvalds has told kernel developers that the Linux project is not anti-AI, arguing that artificial intelligence and large language models should be judged on whether they provide practical technical value. He emphasized that developers will not be …

AnyDesk 0-Day Vulnerability Lets Attackers Trigger Denial-of-Service

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 16, 2026 A newly disclosed zero-day flaw in AnyDesk, tracked as CVE-2026-15682, allows local attackers to crash affected installations by abusing a core support feature, raising fresh concerns for organizations relying on the remote desktop tool for IT support …

Top 10 Best Firewall as a Service (FWaaS) Providers – 2026 

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Best FWaaS Providers The firewall is leaving the rack: firewall-as-a-service delivers inspection, intrusion prevention, and policy from the cloud, so every user, branch, and cloud workload gets identical protection without appliances to size, patch, or refresh. Zscaler is our top FWaaS pick for 2026 …

AI Penetration Testing Expands to Retrieval Poisoning, Memory Attacks, and Sensor Manipulation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 16, 2026 AI systems are moving from chat windows into security operations, business workflows, and physical environments. That shift is changing what penetration testing must look for. An attacker may no longer need to breach a server or steal …

Dutch Police Disrupt €100 Million Investment Fraud Network Operating 20 Call Centers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 16, 2026 Dutch police have moved against a large investment-fraud operation that allegedly used a network of call centers to reach victims at scale. The case shows how organized fraud can borrow the speed, scripts, and customer-service appearance of …