Aggregator
CVE-2026-40556 | GNU nano up to 8.x Local Directory Page ~/.local permission assignment (EUVD-2026-26053)
CVE-2026-27760 | OpenCATS up to 0.9.7.4 AJAX Endpoint config.php define action code injection (EUVD-2026-26052)
How Identity, Geopolitics and Data Integrity Define Cyber Resilience
A good cyber framework is built on the assumption that disruption is inevitable, so it must be capable of anticipating, absorbing, and adapting to it.
The post How Identity, Geopolitics and Data Integrity Define Cyber Resilience appeared first on Security Boulevard.
Mythos AI: What Actually Matters for Cybersecurity Leaders
Мозгу все равно: живое лицо или желтый кружок. Ученые объяснили, почему мы постоянно шлем смайлики
Checkmarx Confirms GitHub Repository Data Published on Dark Web
Application security testing firm Checkmarx has confirmed a significant escalation in its ongoing security incident. Cybercriminals have officially published company data on the dark web. This new development directly ties back to a supply chain attack that initially compromised the company’s systems on March 23, 2026. Working alongside a leading third-party forensic firm, Checkmarx traced […]
The post Checkmarx Confirms GitHub Repository Data Published on Dark Web appeared first on Cyber Security News.
SecWiki News 2026-04-28 Review
【资料】东盟反诈骗政策和最佳实践指南
【培训】战鹰2026:铸基砺刃 赋能实战 打造涉网犯罪侦查的“实战精鹰”(文末有福利)
Rep. Delia Ramirez takes over as top House cybersecurity Dem
She replaces Rep. Eric Swalwell following his resignation, giving her the position of ranking member of the Subcommittee on Cybersecurity and Infrastructure Protection.
The post Rep. Delia Ramirez takes over as top House cybersecurity Dem appeared first on CyberScoop.
ByteToBreach Claims Global Breach Campaign
You must login to view this content
ATT&CK v19: The Defense Evasion Split, ICS Sub-Techniques, New AI & Social Engineering Coverage…
US reportedly charges Scattered Spider hacker arrested in Finland
ShinyHunters claims it stole 1.4 million records from Udemy
The ShinyHunters group claims it has breached the Udemy, one of the world’s largest online learning platforms. According to Have I Been Pwned, the leaked dataset contained 1.4 million unique email addresses of customers and instructors, along with names, physical addresses, phone numbers, employer information, and instructor payout methods, including PayPal, cheque, and bank transfer. “Over 1.4M records containing PII and other internal corporate data have been compromised. Pay or Leak,” ShinyHunters wrote on their … More →
The post ShinyHunters claims it stole 1.4 million records from Udemy appeared first on Help Net Security.
Две чёрные дыры, один газовый мост, миллиард лет до столкновения. Астрономы нашли редчайшую пару квазаров на краю Вселенной
Medtronic Confirms Data Breach After ShinyHunters Claims
朝鲜黑客组织利用人脸深度伪造技术分析
Critical LiteLLM SQL Injection Vulnerability Exploited in the Wild
A critical pre-authentication SQL injection vulnerability in LiteLLM, a widely used open-source AI gateway with over 22,000 GitHub stars, is actively being exploited in the wild. Tracked as CVE-2026-42208, this severe flaw allows unauthorized attackers to extract highly sensitive cloud and AI provider credentials directly from the platform’s PostgreSQL database. LiteLLM acts as a central […]
The post Critical LiteLLM SQL Injection Vulnerability Exploited in the Wild appeared first on Cyber Security News.