CISA Warns of SolarWinds Serv-U Vulnerability Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 6, 2026 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical SolarWinds Serv-U vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, warning that threat actors are actively exploiting the flaw in the wild. Tracked as CVE-2026-28318, …

Top 5 Best Tools for Simulated DDoS Attacks in 2026

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Last year, a botnet hurled 31.4 Tbps of junk traffic at a single target—enough data to stream every Netflix movie at once. The record-shattering flood forced boards, regulators, and cloud teams to ask one question: are we sure our defenses …

OWASP CVE Lite CLI – New Tool to Scan for Vulnerabilities in Your Projects

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 6, 2026 CVE Lite CLI is a free, open-source vulnerability scanner officially recognized as an OWASP Incubator Project, designed to bring dependency security directly into developers’ terminals rather than leaving it buried in CI pipelines. Maintained by Sonu Kapoor …

Anthropic’s Claude Services Down — claude.ai, Claude Code, and Cowork Affected [Updated]

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 6, 2026 Anthropic’s Claude platform suffered a significant service disruption on June 5, 2026, with elevated error rates impacting multiple frontier AI models and key services, including claude.ai, Claude API, Claude Code, and Claude Cowork, raising concerns not just …

Hackers Publish Malicious Python Package Mimicking Legitimate Parsimonious Parser

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 5, 2026 A deceptive Python package quietly made its way into the PyPI repository, putting thousands of developers at risk before it was caught and removed. The package, named “parsimonius,” was crafted to look almost identical to the widely …

Hackers are Increasingly Weaponizing Trusted Tools to Deploy Notorious Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 5, 2026 Cybercriminals have found a clever and dangerous new way to slip past defenses. Instead of building custom attack tools that security software can flag, they are turning everyday system utilities into weapons. This shift is reshaping how …

Hola Browser for Windows Delivery Pipeline Compromised to Deliver Cryptominer

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 5, 2026 A trusted browser application has landed at the center of a supply chain security incident after researchers discovered that its official delivery pipeline had been quietly compromised. Hola Browser for Windows, used by millions of users around …

New Gafgyt Variant Targets Multiple Linux Architectures With Modular Propagation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 5, 2026 A newly discovered variant of the Gafgyt botnet malware, named C0XMO, has been quietly spreading across Linux-based devices by targeting a known vulnerability in DD-WRT router firmware. The malware exploits a stack buffer overflow flaw in the …

Microsoft 365 Service Degradation Bypassed Windows Driver Auto-Update Controls

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 5, 2026 Microsoft has resolved a Microsoft 365 service degradation issue that temporarily bypassed Windows driver auto-update controls, leading to unintended driver installations on managed devices. The issue affected Windows devices configured with policies designed to prevent automatic updates, …

New SHub Stealer Variant Malware Targets Chrome, Firefox, Brave, Edge, Opera, and Crypto Wallets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 5, 2026 A dangerous new variant of the SHub Stealer malware has emerged, targeting Mac users in ways that are smarter and harder to detect than before. The updated build, now called Reaper, spreads through fake websites that impersonate …