Palo Alto Warns of GlobalProtect VPN Vulnerability Actively Exploited in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 15, 2026 Palo Alto Networks Unit 42 has issued an urgent warning about active exploitation of CVE-2026-0257, a critical authentication bypass vulnerability affecting the GlobalProtect portal and gateway components …

Criminal IP at Infosecurity Europe 2026: Introducing AITEM, the Next Chapter of Attack Surface Management

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Torrance, United States / California, June 11th, 2026, CyberNewswire Criminal IP by AI SPERA, a cyber threat intelligence platform delivering decision-ready intelligence and attack surface visibility to security teams worldwide, …

Maine Takes Data Breach Reporting Portal Offline After Fake VRChat and Discord Filings

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 14, 2026 The Office of the Maine Attorney General has temporarily taken its public-facing data breach reporting database offline after discovering that an unknown entity submitted fabricated breach notifications …

152 Chrome Extensions Hide Ad Tracking and Fake Google Search Traffic

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 14, 2026 152 Chrome “live wallpaper” extensions on the Chrome Web Store have been caught secretly logging user data and faking Google “organic search” traffic to inflate ad revenue, …

New Agentjacking Attack Hijacks Your AI Coding Agent to Run Code From a Hacker’s Server

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 13, 2026 New “Agentjacking” attack that hijacks AI coding agents and silently executes attacker-controlled code on developer machines using nothing more than a single injected Sentry error. The technique …

Splunk Enterprise Pre-Auth RCE Chain Exposes Database With Zero Authentication

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability chain in Splunk Enterprise has been disclosed, enabling unauthenticated attackers to achieve remote code execution (RCE) through a misconfigured PostgreSQL sidecar service. Tracked as CVE-2026-20253, the flaw …

Hackers Abuse Legitimate NinjaOne RMM Software to Bypass Traditional Malware Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 12, 2026 A newly documented phishing campaign is using a legitimate remote management tool to silently take over victims’ computers, without deploying a single line of traditional malware. Researchers …