How Threat Intelligence Feeds Help Automate SOCs to Reduce MTTR 

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security operations center (SOC) automation has become one of the biggest trends in cybersecurity. Organizations are investing heavily in AI, orchestration, and automated response technologies in pursuit of faster detection and reduced operational costs. However, effective SOC automation requires a …

Fortinet FortiSandbox Vulnerability Allows Attackers to Execute Unauthorized Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Fortinet has disclosed a critical security vulnerability in its FortiSandbox product line that could allow unauthenticated remote attackers to execute arbitrary OS commands through the web interface. The flaw, tracked as CVE-2026-25089 and assigned a CVSSv3 score of 9.1 (Critical), …

New Weedhack Malware-as-a-Service Targets Minecraft Players to Steal Credentials, and Hijack Accounts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 9, 2026 A new and dangerous threat has emerged in the gaming world, one that turns a beloved pastime into a gateway for cybercrime. Weedhack, a Minecraft-focused Malware-as-a-Service (MaaS) operation, has been actively targeting players since at least January …

New NFCShare Android Malware Delivered via Weaponized Versions of Egitimate Banking Apps

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 9, 2026 A newly evolved strain of Android malware known as NFCShare is being spread through fake versions of legitimate banking apps, putting mobile users across Europe at serious risk. The malware is designed to secretly steal payment card …

Microsoft Defender Now Monitors RPC Protocol Abuse by Hackers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 9, 2026 Microsoft has expanded Microsoft Defender’s capabilities to monitor, detect, and disrupt attacks that abuse Remote Procedure Call (RPC), a core Windows protocol long exploited by threat actors for lateral movement, credential theft, and privilege escalation. Remote Procedure …

Hackers Exploiting LiteLLM RCE Vulnerability in the Wild to Run Arbitrary Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 9, 2026 Threat actors are actively exploiting a critical chained vulnerability in LiteLLM, a popular open-source AI gateway proxy, allowing unauthenticated remote code execution (RCE) on vulnerable deployments. Researchers at Horizon3.ai confirmed that combining two CVEs creates a CVSS …

Apache HTTP Server 2.4.68 Released With Fix For Use-After-Free, DoS, XSS, and Buffer Overflow Flaws

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 9, 2026 The Apache Software Foundation released Apache HTTP Server version 2.4.68 on June 8, 2026, addressing 13 security vulnerabilities spanning multiple modules. The patched flaws include use-after-free conditions, cross-site scripting, heap-based buffer overflows, denial-of-service, privilege escalation, and out-of-bounds …

21 0-Day Vulnerabilities in FFmpeg Enables Remote Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 9, 2026 An autonomous security agent uncovered 21 zero-day vulnerabilities in FFmpeg, the world’s most widely deployed media processing library, including a critical RCE-capable heap buffer overflow reachable with a single 183-byte network packet. FFmpeg quietly powers media processing …

New China-Linked Threat Cluster OP-512 Targets IIS Servers With Cryptographically Unique Web Shell Framework

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 8, 2026 A newly identified threat cluster with suspected ties to China has been caught targeting Internet Information Services (IIS) web servers using a purpose-built web shell framework. Tracked as OP-512, this group stands out for deploying tools designed …

Check Point VPN 0-day Vulnerability Exploited in the Wild to Deploy Ransomware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 8, 2026 Check Point Research has uncovered active exploitation of CVE-2026-50751, a critical authentication bypass vulnerability (CVSS 9.3) in Check Point Remote Access VPN and Mobile Access deployments, with confirmed post-compromise activity linked to the Qilin ransomware gang. CVE-2026-50751 …