US Treasury Sanctions First VPN Service that Helped Ransomware Actors Attack Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 14, 2026 The U.S. Department of the Treasury’s Office of Foreign Assets Control (OFAC) has imposed sanctions on First VPN Service (1VPNS), a VPN provider accused of supplying infrastructure to ransomware groups targeting American organizations. The action also targets …

Critical ServiceNow Vulnerability Allows Remote Attackers to Execute Malicious Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

ServiceNow has disclosed and fixed a critical security vulnerability in its AI Platform that could allow unauthenticated attackers to execute code within affected ServiceNow environments. The flaw, tracked as CVE-2026-6875, is described as a sandbox escape vulnerability and affects both …

Chrome Extension Used by 1.6 Million Users Silently Included Data Exfiltration Capabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 14, 2026 A widely used browser extension, ModHeader, has been removed from the Chrome Web Store after researchers found that its signed release contained a dormant capability to collect, encrypt, and potentially upload users’ browsing-domain data. The extension reportedly …

Telegram’s t.me Domain Suspended, ServerHold Status Breaks Links Worldwide

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Telegram’s core t[.]me domain has been placed on serverHold at the .me registry, a registry-level status that removes the domain from the global DNS and breaks every t[.]me short link worldwide. WHOIS records confirm the domain now carries eight status …

New macOS Stealer Mimics Apple’s Crash Report Framework to Steal Browser Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 13, 2026 CrashStealer, a native C++ macOS infostealer that disguises itself as Apple’s built-in crash-reporting utility to harvest browser credentials, cryptocurrency wallets, password manager data, and keychain contents before encrypting and exfiltrating everything to a remote command-and-control server. Jamf …

Torq and Criminal IP Partner to Deliver Decision-Ready Threat Intelligence for Autonomous SOC Operations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 13, 2026 Torrance, California, USA, July 13th, 2026, CyberNewswire Criminal IP, the cyber threat intelligence search engine and attack surface management platform, today announced a new partnership and integration with Torq, the established agentic security operations leader. The partnership …

Turla Hackers Exploit SharePoint Flaw to Access Thousands of French User Accounts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 13, 2026 Turla, a long-running cyber espionage operation linked by French authorities to Russia’s Federal Security Service, has again drawn attention after investigators detailed compromises affecting French organizations. The group has been active for more than two decades and …

Internet-Wide Scans Target MCP Servers, Claude Credentials, and Exposed AI Models

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 13, 2026 Internet-facing AI systems are becoming a new target for opportunistic attackers. Recent scanning activity shows that threat actors are actively searching for Model Context Protocol, or MCP, servers, AI assistant configuration files, and exposed local language-model services. …

Lessons Learned from CISA’s Recent GitHub Leak

Blog WriterCybersecurity News - Original News Source is krebsonsecurity.com

July 13, 2026 0 Comments The Cybersecurity and Infrastructure Security Agency (CISA) has issued a postmortem on a recent data leak in which a contractor published dozens of internal CISA credentials — including AWS Govcloud keys — in a public …

NSA Urges Organizations to Disable Cisco Smart Install as Russian Hackers Target Routers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 13, 2026 The National Security Agency, alongside 17 international partner agencies, released a joint Cybersecurity Advisory on July 9, 2026, warning that Russian state-sponsored actors continue to exploit vulnerable and poorly configured network infrastructure across critical sectors. The advisory, …