Latest stories — Page 2

Illustration: a vast server room aisle with cool blue indicator lights reflecting on polished floor
AI Security

Microsoft's AI bug-hunters logged 140 Windows CVEs in four months. The queue is now the problem.

FORGE Lab's agentic scanner is finding flaws faster than humans can validate and patch them, and the open-source world is feeling it too.

4 min read
Illustration: a dark server rack with a single blade pulled halfway out, cooling fans still spinning
Vulnerabilities

A single bad character can crash a vLLM server, and the fix is still pending

A moderate-severity flaw in the popular AI serving engine lets any logged-in user kill the whole process with one malformed request.

3 min read
Illustration: a dim airline operations room at dusk, rows of empty flight-planning monitors glowing faintly blue
Threat Intelligence

A teenage hacker, a Boeing spin-off, and the Oracle flaw tying them together

Jordanian authorities have detained the alleged leader of ShinyHunters as the group tried to extort a former Boeing aviation unit, using a critical Oracle PeopleSoft bug now on CISA's must-patch list.

3 min read
Illustration for the story: CISA's Updated Software Ingredient List Rules Change What Knowing Your Code Actually Means
Policy & Regulation

CISA's Updated Software Ingredient List Rules Change What Knowing Your Code Actually Means

The US government just raised the bar on software transparency. The harder problem is that no single inventory was ever enough to answer the question that matters most: what can your software actually do?

4 min read
Illustration: A long row of identical black server rack doors receding into darkness in a large data center
Vulnerabilities

One flaw, eight Atlassian products, no login required

A critical file-access vulnerability published this month lets anyone on the internet read files inside Atlassian's most trusted enterprise tools without ever signing in.

3 min read
Illustration: A dimly lit server room with rows of blinking hardware
Ransomware

INC Ransom Claims Attack on US Firm Magnals.com

The ransomware group has listed the American company on its dark-web pressure site. The claim is unverified, and Magnals.com has not publicly confirmed any incident.

3 min read
Illustration: A server rack in a dimly lit data centre
Vulnerabilities

A Fresh Citrix Zero-Day Is Already Being Exploited, and Federal Agencies Have Three Days to Fix It

CVE-2026-88779 hit live networks almost immediately after Citrix shipped patches for two earlier flaws, leaving IT teams scrambling again.

3 min read
Illustration: a dimly lit industrial control room at a water treatment facility
Vulnerabilities

A 9.8-severity hole in industrial email code puts water and energy gear at risk

A buffer overflow in the lwIP SMTP client could let an unauthenticated attacker crash or hijack equipment running in energy and water systems. A patch is available.

3 min read
Illustration: a high-voltage electrical substation at dusk, rows of grey insulators and steel lattice towers
Vulnerabilities

Two Open-Source Bugs Force Patch for Hitachi Energy's REB500 Grid Relay

A pair of flaws in a widely used XML parser could let an insider knock Hitachi Energy's protection relay offline. The fix is version 8.3.4.0.

3 min read
Illustration: a cluster of small consumer networking devices, routers and cameras with blinking LED lights
Threat Intelligence

ClingSTUN: The Linux Backdoor Hiding in Your Router's Traffic

A newly tracked malware strain is quietly turning home routers, security cameras, and smart-office hardware into a criminal relay network, and it uses the internet's own plumbing to avoid detection.

4 min read
Illustration: A glowing network of interconnected nodes and data pipelines rendered in deep blue and amber
Vulnerabilities

Langflow's Built-In Testing Tool Has No Password and Attackers Are Using It Right Now

Three critical flaws in the popular AI workflow builder let attackers run any code they like on your server, as root, without logging in. CISA ordered federal agencies to patch by May 26. Attackers are not waiting.

4 min read
Illustration: rows of blinking server rack indicator lights in a dimly lit data centre
Vulnerabilities

AI Is Cutting the Time Criminals Need to Turn a Known Bug Into a Working Attack

Exploitation of already-patched flaws is outpacing zero-days, CVE volumes are on track to hit 96,000 this year, and the window between public disclosure and first attack has shrunk to 80 days.

4 min read
Illustration: A wide server room bathed in deep blue and orange light
Vulnerabilities

ShinyHunters Claims a Second PeopleSoft Zero-Day, and Oracle Has Said Nothing

A known criminal group says it used an unpatched Oracle flaw to break into FBI systems. The first PeopleSoft vulnerability is already being actively exploited. A possible second one has no patch, no CVE, and no vendor comment.

4 min read
Illustration: A dimly lit server room with rows of blinking rack-mounted hardware
Ransomware

Ransomware Group Insomnia Claims Attack on Medical Records Firm Praxis EMR

A criminal gang that has claimed 53 victims since February has listed an American electronic health records company on its dark-web shaming site. The company has not confirmed anything.

3 min read
Illustration: A smartphone screen glowing in a darkened room shows a social media profile page with a notification badge
Identity & Access

UK Account Hijacking Fraud Up 400% as Scammers Sell Fake Tickets Through Victims' Own Profiles

Criminals are breaking into people's email and social media accounts to impersonate them, then selling counterfeit concert tickets to the victim's own friends. The UK's cybersecurity authority says one fix is already in most people's pockets.

3 min read
Illustration: a dimly lit server rack in a European police evidence room, blue and red light bleeding across the metal
Ransomware

Teenager accused of running KillSec ransomware gang arrested as police seize servers

Europol says three suspects were detained and eight searches carried out across four countries, taking down the leak site of a group tied to around 1,000 attacks.

3 min read
Illustration: a closed silver laptop on a dark wood desk
Policy & Regulation

Apple will tighten Full Disk Access after AI agents started reading everything

Apple says it will redesign the macOS permission that hands an approved app the keys to a user's files, mail and browsing history, after finding that AI assistants are quietly using it to hoover up personal data.

4 min read
Illustration: a USB security hardware token plugged into a laptop port on a dark office desk
Vulnerabilities

A Broken Cryptographic Check in SWIFT's Login Tool Handed Attackers Full PC Control

A homemade RSA verification routine in Thales Group's SConnect software left SWIFT banking access, Qatar's national identity system, and the Swedish Tax Agency open to silent drive-by attacks. The patch is out. Most users haven't moved.

5 min read
Illustration: a dim server room with a single rack bay glowing a soft red, cables trailing across the floor
Vulnerabilities

Attackers Are Hunting a Rejetto HFS Flaw That an AI Model Found First

A session-cookie bug uncovered with Anthropic's Project Glasswing is now drawing live exploitation attempts against Rejetto's file server.

4 min read
Illustration: a dim data center aisle, rows of networking appliances with cool blue status LEDs
Vulnerabilities

Citrix NetScaler Zero-Day Is Knocking Login Systems Offline

A memory flaw in NetScaler ADC and Gateway, now exploited in the wild, can crash the gateways many companies rely on for single sign-on. US federal agencies have three days to patch.

4 min read
Illustration: a large government server room with rows of ageing rack-mounted equipment
Policy & Regulation

Australia Orders Federal Agencies to Audit Old Tech After AI Agent Exploited Medicare Systems

A government-wide stocktake of ageing technology is now mandatory for all 194 Australian federal entities, after an AI-assisted attack exposed how outdated systems make government networks easier to breach.

3 min read
© 2026 Threat Vectr