Hedge fund cyberattacks tied to BlackFile-linked UNC6671 extortion group
Swiss government SharePoint breach compromised 200 accounts
New TONTOU CPU attack bypasses Spectre v2 fixes, leaks Linux password hashes
New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts
The flaw is tracked as CVE-2026-64561 and affects KVM/x86’s shadow memory management unit (MMU), which manages shadow page
Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs
The security issues affect Cisco Catalyst SD-WAN Software, regardless of device configuration, and Cisco IOS XE Software when it is running in autonomous or controller mode.
“These vulnerabilities were found
New Interrupt Injection Attack Can Bypass Spectre v2 Defenses on Intel and AMD CPUs
MIT CSAIL researchers Daniël Trujillo and Mengjia Yan named the technique INTERRUPT INJECTION. On an AMD Zen 2 machine running Linux 6.14 with every default Spectre v2 mitigation on,
Meta AI model hacked a company during misconfigured cyber test
ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories
This week runs on cheap leverage: exposed servers, recycled bugs, poisoned agent instructions, remote-access tools dressed as support software, and trusted defaults doing attackers a favor.
Nothing here is especially mystical.
Snowflake Hacker Pleads Guilty in US Court
Connor Riley Moucka was extradited to the United States in July 2025 after he was arrested in Canada.
The post Snowflake Hacker Pleads Guilty in US Court appeared first on SecurityWeek.
