Latest stories — Page 4

Illustration: A modern medical office reception desk
Ransomware

Ransomware Group N0n Claims Attack on Houston Thyroid and Endocrine Specialists

A criminal group has listed a Houston endocrinology practice on its dark-web pressure site, claiming to hold patient records. The practice has not publicly confirmed any incident.

3 min read
Illustration for the story: Kiteworks Told Customers to Go Dark for Nine Hours After a Federal Warning
Vulnerabilities

Kiteworks Told Customers to Go Dark for Nine Hours After a Federal Warning

Fewer than 50 organisations use the affected feature. No breach has been confirmed. But the feds thought the risk serious enough to pick up the phone.

3 min read
Illustration: a generic laptop screen at night showing a plain calendar meeting invitation with a paperclip attachment icon
Threat Intelligence

Fake Meeting Invites Are Now Delivering Real Remote-Control Software

Microsoft says attackers are skipping the malware and installing legitimate MSP360 and ScreenConnect on victim machines, giving themselves a hands-on-keyboard foothold that looks like normal IT admin work.

4 min read
Illustration: a dimly lit server rack in a data centre, blue and amber status LEDs glowing
Vulnerabilities

Zimbra mail server flaw exploited in the wild, Microsoft warns after weeks of quiet attacks

Microsoft Threat Intelligence says attackers used a specially crafted email to hijack Zimbra Collaboration Suite mail servers, drop web shells and steal mailbox data, before the flaw was patched.

3 min read
Illustration: a dense server rack in a dim data centre, network cables glowing faint blue under status LEDs
Vulnerabilities

OpenSSL Ships a Pile of Fixes, and a DTLS Bug That Can Spill Memory to the Wrong Side of the Wire

A dozen CVEs land in Ubuntu and Debian's OpenSSL packages at once. The one worth reading first is a DTLS handshake bug that can leak heap memory across a connection.

4 min read
Close-up overhead shot of a modern smartphone lying face-up on a dark matte desk, its screen glowing with a generic abstract interface of geometric shapes and l
Vulnerabilities

Apple Patches Actively Exploited Zero-Day Tied to WhatsApp Attack Chain

A graphics-processing flaw in iOS and macOS is being used in what Apple calls an 'extremely sophisticated' targeted attack. CISA gave US federal agencies three days to fix it.

4 min read
A glowing neural network diagram rendered as physical infrastructure, tangled cables and server racks lit in cool blue and amber light, a single open file folde
AI Security

Browsing a Model Was Enough. The 'trust_remote_code' Flaw That Won't Go Away

A bug in Unsloth Studio ran malicious code before a model ever loaded. It's the fourth time this year the same one-line AI setting has opened the door.

4 min read
Illustration: a dense cluster of fiber optic cable ends glowing in shifting blue and green light
Cloud Security

Cloudflare Is Building Its Own Certificate Authority to Harden the Web Against Quantum Computers

The internet infrastructure giant wants to issue its own digital trust certificates, buying a head start from GlobalSign and promising post-quantum protection before most of the web even knows it needs it.

3 min read
Illustration: a modern server-class CPU die on a green motherboard, soft blue rim light
Vulnerabilities

Linux patches two Spectre-style flaws in the kernel's BPF engine

Kernel maintainers shipped fixes for CVE-2026-64507 and CVE-2026-64508 after researchers showed old branch predictions could leak data from new code.

3 min read
Illustration: a darkened corporate server room, rows of blue and amber indicator lights on rack-mounted equipment
Identity & Access

How one password reset gave hackers the keys to a company's cloud

Microsoft's incident response team says a group it tracks as Storm-3068 walked from a single user account into Azure DevOps, build pipelines and Kubernetes clusters without deploying any malware.

4 min read
Macro photograph of green circuit board traces glowing faintly in low light, with one section subtly illuminated in amber suggesting a hidden active signal bene
Threat Intelligence

NeedyMantis: The Hidden Malware That Moves In After the Break-In

Microsoft has named a previously unknown malware family being used against telecoms, universities, and government contractors. The group behind it is linked to China. And once it's inside a network, it's built to stay quiet.

4 min read
Illustration: a dimly lit laptop screen showing a generic email inbox with a red-tinted paperclip attachment icon
Threat Intelligence

Russia's Star Blizzard drops the ClickFix act and switches to one-click RedFlick malware

Microsoft says the FSB-linked crew has scaled up its phishing and streamlined how it plants its CosmicPulse backdoor. More than 100 organisations in the US and UK have been hit this year.

4 min read
Illustration: a dimly lit developer workstation at night
Identity & Access

A flaw in the official MCP Python SDK let hostile servers walk off with OAuth logins

Applications built on Anthropic's Model Context Protocol client library could be tricked into sending real service credentials to an attacker-controlled endpoint. The fix is in version 1.30.0.

4 min read
Illustration: A vast server room at night, rows of black server racks with cold blue and amber indicator lights casting
AI Security

Who Is Running Up Your AI Bill at 3am

Security researchers have mapped an ecosystem of more than 80,000 proxy servers quietly routing stolen AI credentials to frontier models, and companies are footing bills they never ran up.

5 min read
Illustration: A modern European office building at dusk, glass facade reflecting city lights, interior lights on
Ransomware

Ransomware Group The Gentlemen Claims Attack on German Secure-File Firm FTAPI Software

A criminal gang that has posted dozens of claimed victims in recent months has listed FTAPI Software on its dark-web extortion site. The Munich company serves hospitals, insurers and public agencies across Europe. Nothing has been confirmed.

3 min read
Illustration: a server rack bathed in deep blue and amber warning light
Vulnerabilities

Two Critical Check Point Flaws Are Being Actively Exploited and Federal Agencies Had Three Days to Patch

CISA added both vulnerabilities to its must-patch list on September 22, with a September 25 deadline for US government networks. One was a zero-day. The other had already been quietly targeted in the wild.

4 min read
Illustration: A pane of industrial glass in a workshop setting
Ransomware

Ransomware Group The Gentlemen Claims Attack on Leeds Glass Firm Crystal Glass

A family-run glazing company in West Yorkshire has been listed on a dark-web extortion page by The Gentlemen ransomware group. The firm has not confirmed any incident, and the claim is unverified.

3 min read
Illustration: a rack-mounted enterprise network appliance with blinking amber and red status lights in a darkened server room
Vulnerabilities

F5's BIG-IP Flaw Was Already Being Exploited Before a Patch Existed

A critical security hole in widely used network hardware is under active attack. Federal agencies have three days to patch. Here's what the flaw does and who is at risk.

3 min read
Illustration: a small, snow-covered Arctic school building surrounded by a vast frozen tundra landscape under a pale winter
Ransomware

INC Ransom Claims Attack on Alaska School District Serving Remote Arctic Communities

The criminal group INC Ransom has listed North Slope Borough School District on its dark-web pressure site. The district has not confirmed any incident, and the claim has not been independently verified.

3 min read
Illustration: a glowing server room corridor at night
Threat Intelligence

ShinyHunters Claims FBI Hack Exploiting Oracle Flaw

The cybercrime group says it breached FBI systems using a critical Oracle software vulnerability. The FBI is investigating the claim.

3 min read
Illustration for the story: Six Critical Flaws in Adobe Connect Could Let Attackers Take Over Accounts
Vulnerabilities

Six Critical Flaws in Adobe Connect Could Let Attackers Take Over Accounts

Two of the worst bugs require no action from the victim. Adobe wants patches applied within 30 days, but one score of 9.9 makes that window feel generous.

3 min read
© 2026 Threat Vectr