Latest Cybersecurity News

Real-time cybersecurity news aggregation: CVE alerts, malware analysis, ransomware updates, data breaches, AI security and threat intelligence from 50+ trusted sources.

U.S. DoJ Charges 12 Chinese Nationals in Massive State-Linked Cyber Espionage Campaign

The U.S. Department of Justice (DoJ) has charged 12 Chinese nationals, including government officers and hackers, for their roles in a global cyber espionage campaign. This coordinated effort involved data theft and suppression of dissent, targeting U.S. critics, Asian governments, and key U.S. agencies. The indictment reveals the intricate web of state-sponsored hacking and the U.S. response to safeguard national security.

#cybersecurity & data protection #chinese hackers #data theft

Read full article →

Webinar Learn How ASPM Transforms Application Security from Reactive to Proactive

Are you tired of dealing with outdated security tools that never seem to give you the full picture? You're not alone. Many organizations struggle with piecing together scattered information, leaving your apps vulnerable to modern threats. That's why we're excited to introduce a smarter, unified approach: Application Security Posture Management (ASPM). ASPM brings together the best of both worlds by combining proactive measures with reactive strategies to enhance your security posture.

#application security #cybersecurity #proactive measures

Read full article →

FBI Alerts: Cybercriminals Impersonate 'BianLian Group' to Extort Corporate Executives

The FBI's Internet Crime Complaint Center (IC3) has issued a critical alert about a data extortion scam targeting corporate executives. Cybercriminals, posing as the 'BianLian Group,' send threatening letters demanding payment to prevent the release of sensitive information. Learn how to protect your organization and report incidents to CISA.

#cybersecurity & data protection #data extortion #corporate executives

Read full article →

Siemens RUGGEDCOM CROSSBOW Flaw Lets Attackers Escalate Privileges

Siemens disclosed a high-severity privilege escalation vulnerability (CVE-2026-27668) in RUGGEDCOM CROSSBOW Secure Access Manager Primary (SAM-P), allowing authenticated User Administrators to escalate privileges and gain unauthorized access to device groups. The flaw affects all versions prior to 5.8, posing significant risks to industrial control systems (ICS) deployed globally, and requires immediate patching to mitigate exploitation.

CVEs: CVE-2026-27668

#siemens #cve-2026-27668 #privilege-escalation #industrial-security #ics

Read full article →

Critical Vulnerabilities in SenseLive X3050 Expose Industrial Systems to Attacks

Eleven critical vulnerabilities in the SenseLive X3050 industrial gateway (V1.523) allow attackers to bypass authentication, hijack sessions, and seize full control of devices. These flaws, with CVSS scores up to 9.8, impact critical infrastructure sectors including energy, water, and manufacturing, posing severe risks to operational technology security.

CVEs: CVE-2026-40630, CVE-2026-25720, CVE-2026-35503, CVE-2026-39462, CVE-2026-27843

#senselive-x3050 #cve-2026 #industrial-security #authentication-bypass #critical-vulnerabilities

Read full article →

Siemens SINEC NMS Authentication Bypass Vulnerability Exposed

Siemens patched a critical authentication bypass vulnerability (CVE-2026-24032) in its SINEC Network Management System (NMS) that could allow unauthenticated remote attackers to gain unauthorized access. This flaw affects all prior versions of SINEC NMS and poses significant risks to industrial networks, including critical infrastructure sectors like manufacturing and energy.

CVEs: CVE-2026-24032

#siemens #cve-2026-24032 #authentication-bypass #industrial-security #critical-infrastructure

Read full article →

Zero Motorcycles Bluetooth Vulnerability Exposes Firmware to Hackers

A critical Bluetooth vulnerability (CVE-2026-1354) in Zero Motorcycles' firmware (versions 44 and prior) allows attackers to forcibly pair unauthorized devices and upload malicious firmware. Affected are all Zero Motorcycle models running outdated firmware, enabling remote control and tampering. Users must update firmware immediately to mitigate exploitation risks.

CVEs: CVE-2026-1354

#bluetooth #cve-2026-1354 #firmware #zero-motorcycles #cybersecurity

Read full article →