Kali Linux 2026.2 Released With 9 New Tools and VM Boot Tweaking

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 30, 2026 Kali Linux team officially released Kali Linux 2026.2 right on schedule at the close of Q2 2026, delivering a compelling mix of desktop environment upgrades, infrastructure modernization, VM performance enhancements, and nine brand-new tools for penetration testers …

Nissan Confirms Data Breach Following Oracle PeopleSoft 0-Day Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 30, 2026 Nissan Americas has officially confirmed a data breach affecting current and former employees across four countries after threat actors exploited a critical zero-day vulnerability in Oracle PeopleSoft software, a campaign attributed to the ShinyHunters extortion group. The …

WhatsApp Launches New Username Feature to Communicate Without Exposing Phone Numbers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 WhatsApp introduces a new privacy update that lets users connect using unique handles, eliminating the need to share phone numbers with strangers or new group members. Earlier, we detailed that WhatsApp is preparing to roll out a …

EvilTokens Phishing Breaches Finance Firms Using “Ghost” Code Across U.S. and European Businesses

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 EvilTokens can keep serious account-takeover activity out of your SOC’s view by relying on “ghost” code that only surfaces after the browser decrypts it. Because of this, analysis that looks only at the static URL can overlook the …

U.S. Seizes Hundreds Domains Used to Stream World Cup Matches Illegally

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 The U.S. Department of Justice (DOJ) has announced the seizure of nearly 400 domains used to illegally stream FIFA World Cup 2026 matches, marking a significant crackdown on global digital piracy networks. The operation, conducted under “Operation …

Public PoC Released for Deserialization RCE Vulnerability in Splunk Secure Gateway

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 A public proof-of-concept (PoC) exploit has been released for CVE-2026-20251, a high-severity remote code execution (RCE) vulnerability affecting Splunk Secure Gateway (SSG). The flaw, carrying a CVSS score of 8.8, allows a low-privileged authenticated attacker to execute …

Hackers Exploiting Critical Oracle E-Business Suite Vulnerability Actively in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 Threat actors are actively exploiting CVE-2026-46817, a critical unauthenticated remote takeover vulnerability in Oracle E-Business Suite (EBS), with live attack activity captured across honeypot infrastructure over the weekend of June 27–28, 2026. CVE-2026-46817 is a critical-severity flaw …

Critical Dell Wyse Vulnerabilities Enable Remote Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 Dell Technologies has released a critical security advisory addressing multiple vulnerabilities in its Wyse Management Suite (WMS), warning that attackers could exploit these flaws to execute arbitrary code on affected systems. The vulnerabilities affect Dell Wyse Management …

Microsoft 365 Apps RCE Vulnerability Exploited Using a Malicious Excel File

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has disclosed a critical remote code execution vulnerability in its Office ecosystem that can be exploited through a malicious Excel file. The vulnerability, tracked as CVE-2025-60727, affects multiple versions of Microsoft Office and underscores the continued risk posed by …

Critical Gemini CLI Vulnerability Lets Attackers Execute Arbitrary Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 A critical security vulnerability in Google’s Gemini CLI has been disclosed, allowing attackers to execute arbitrary code in certain CI/CD environments, particularly GitHub Actions workflows. The issue, tracked as CVE-2026-12537, impacts multiple versions of the Gemini CLI …