News

Cybersecurity headlines, summarized. Updated hourly.Last update: Aug 16, 2026, 11:32 AM UTC

Last 24 hours
0Critical
0New CVEs
0Zero Days
0Vendor Advisories
BREAKING注意喚起: MetabaseのSQLインジェクションの脆弱性(CVE-2026-72898)に関する注意喚起 (公開)
Read →
FEATUREDNewsAI Security

Stopping a cyberattack while walking your dog - defensive AI security CEO says it's not ruff to do

The CEO of defensive AI security firm Corma stated that their platform enables defenders to stop cyberattacks remotely, even while walking a dog. The company is developing a centralized tool intended to give security teams ultimate control against threats.

The Register · 1 min read
Read →

199 stories

  • Help Net Security · 1 min
    NewsMalwareVulnerability

    Week in review: Salesforce and ServiceNow portals exposed for 17 months, exploited Metabase 0-day

    A weekly review highlights significant cybersecurity news, including exposed Salesforce and ServiceNow portals and the exploitation of a Metabase zero-day vulnerability. Additionally, GitHub Dependabot has expanded its malware alerts to cover eight different ecosystems.

    Why this matters

    Unsecured enterprise portals and zero-day exploits pose severe risks of data compromise and unauthorized access for organizations.

    Affected: Salesforce portals, ServiceNow portals, Metabase

    Action: Review enterprise portal security configurations and apply available patches immediately.

    GitHub
  • BleepingComputer · 1 min
    NewsMalware

    New Evooo1Bot Linux botnet turns routers into traffic relay nodes

    A new Mirai-based modular Linux botnet named Evooo1Bot is actively targeting internet-facing gateway devices. The malware compromises these routers to repurpose them as SOCKS5 traffic relay nodes.

    Why this matters

    This botnet expands malicious infrastructure by weaponizing standard gateway devices for covert traffic relaying.

    Affected: Not specified

    Action: Ensure all internet-facing routers and gateways are updated with the latest firmware and secure default credentials.

    Linux
  • The Register · 1 min
    NewsMalwareOpen Source

    ChainDrop worm crawls into npm supply chain, evades standard defenses

    A new worm named ChainDrop, a Shai-Hulud variant, has infected 444 npm packages within the software supply chain. The malware spreads effectively through tarballs and development-tool hooks while evading standard security defenses.

    Why this matters

    This supply chain compromise poses a widespread security risk to developers and systems utilizing the poisoned npm packages.

    Affected: npm packages

    Action: Audit npm packages for signs of the ChainDrop worm.

  • JPCERT/CC · 2 min
    MediumVulnerabilityVendor Advisory

    注意喚起: NetScaler ADCおよびNetScaler Gatewayにおけるリモートコード実行につながる脆弱性(CVE-2026-8452)に関する注意喚起 (公開)

    An alert has been issued regarding a remote code execution vulnerability in NetScaler ADC and NetScaler Gateway. Administrators are advised to review the security advisory for CVE-2026-8452 and apply necessary updates.

    Why this matters

    This vulnerability allows remote attackers to execute arbitrary code on affected NetScaler systems, potentially leading to a full system compromise.

    Affected: NetScaler ADC, NetScaler Gateway

    Action: Apply the official security patches or updates provided by the vendor immediately.

  • BleepingComputer · 1 min
    NewsAI Security

    How Anthropic plans to watermark Claude's AI-generated text

    Anthropic is planning to implement watermarking technology for text generated by its Claude AI model. This feature aims to make it easier to identify AI-generated content across various platforms.

    Why this matters

    This development is important for tracking the spread of AI-generated content and mitigating misinformation.

    Affected: Claude

    Action: Stay informed on AI watermarking developments.

  • Rapid7 · 1 min
    HighPoC ReleasedNews

    Metasploit Wrap Up: Lot of summer shells and fit http profiles

    The latest Metasploit wrap-up introduces thirteen new exploit modules focused on remote code execution. These modules target various platforms and applications including WordPress, Ghost CMS, and SonicWall devices.

    Why this matters

    The addition of these modules significantly lowers the barrier for threat actors to exploit known vulnerabilities across multiple widely-used platforms.

    Affected: WordPress WP2Shell, Ghost CMS, Joomla JCE, Langflow, OpenCATS, Pterodactyl Panel, SonicWall SMA1000, Ray Dash

    Action: Audit and patch all listed software and platforms immediately.

    WordPress
  • Schneier on Security · 1 min
    NewsNews

    Friday Squid Blogging: Searching for the Colossal Squid

    This article discusses a fascinating deep-sea exploration video focusing on the search for the colossal squid. It notes that traditional bright white searchlights frighten marine life, whereas red light provides a more neutral alternative.

    Why this matters

    This is a general interest marine biology post with no cybersecurity relevance.

    Affected: Not specified

    Action: Ignore this article.

  • The Record · 1 min
    NewsGovernment

    Investigation of banking hack leads to arrests in Germany, Brazil

    German and Brazilian federal police have arrested a total of seven suspects in connection with a major banking hack. The individuals face charges related to fraud stemming from the cyber attack.

    Why this matters

    This coordinated international law enforcement action highlights successful cross-border cooperation in dismantling financial cybercrime rings.

    Affected: Not specified

    Action: Monitor internal banking systems for unauthorized transactions and review fraud detection protocols.

  • Dark Reading · 1 min
    NewsAI Security

    Mission-Driven Security: Inside a Global Bank's Defense

    Standard Chartered's group CISO discusses the transition from technical roles to strategic leadership in a video interview. The conversation also covers the importance of business-savvy security executives and how artificial intelligence is reshaping defense strategies.

    Why this matters

    It provides executive-level perspective on how global financial institutions approach strategic cybersecurity leadership and the integration of AI in defense.

    Affected: Not specified

    Action: Watch the interview to gain strategic leadership insights.

Page 1 of 23
© 2026 TRIADA. All Rights Reserved.built for the community