Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Aeternum Botnet Hides C2 Infrastructure in Polygon Smart Contracts to Evade Takedowns
3+ hour, 56+ min ago (399+ words) Security researchers have uncovered Aeternum, a C++-based botnet loader that uses the Polygon blockchain to host command-and-control (C2) instructions. Rather than relying on traditional servers and domains, the malware retrieves commands from smart contracts, making the operation harder to disrupt…...
Critical Citrix NetScaler Authentication Bypass Flaw Exposes Gateway Appliances
4+ hour, 3+ min ago (448+ words) Cloud Software Group has issued an urgent security bulletin for two high-severity vulnerabilities affecting NetScaler ADC and NetScaler Gateway appliances, formerly known as Citrix ADC and Citrix Gateway. The issues pose a significant risk to organizations that depend on NetScaler…...
Critical Zimbra OS Command Injection Vulnerability Exploited in the Wild
1+ hour, 51+ min ago (334+ words) A critical command-injection flaw in Zimbra Collaboration Suite is being actively exploited, prompting administrators to urgently patch installations and review systems for compromise. CERT Polska issued Alert 145/2026 on August 17, warning that CVE-2026-73570 enables unauthenticated remote attackers to run arbitrary operating-system…...
NSA and CISA Warn of Active Cyber Threat Targeting Siemens S7 PLCs
3+ hour, 33+ min ago (388+ words) The NSA, CISA, FBI, Department of Energy, and Environmental Protection Agency have issued a joint cybersecurity advisory warning of an active campaign targeting Siemens S7 Series programmable logic controllers used across U.S. critical infrastructure. Released on August 19, the advisory describes a live…...
Microsoft Defender Update Causes Quick and Full Virus Scans to Crash
4+ hour, 33+ min ago (469+ words) Microsoft Defender users have reported widespread scan failures after a series of Security Intelligence updates began reaching Windows systems on August 18, 2026. The issue reportedly affects Quick, Full, and Offline scans, leaving both home users and Microsoft Defender for Endpoint administrators…...
Microsoft to Stop Security Updates for Windows 11 24H2 Home and Pro Editions
20+ hour, 25+ min ago (365+ words) Microsoft has issued a 60-day reminder that Windows 11 version 24H2 Home and Pro editions will reach the end of servicing on October 13, 2026. The same deadline also applies to Windows 10 Enterprise LTSB 2016, requiring organizations and individual users to plan upgrades before their…...
CISA Warns of Windows IKE Flaw Allowing Unauthenticated Remote Code Execution
21+ hour, 26+ min ago (380+ words) The U.S. Cybersecurity and Infrastructure Security Agency has added a critical Microsoft Windows vulnerability to its Known Exploited Vulnerabilities catalog, warning that the flaw could allow unauthenticated remote code execution against affected systems. Tracked as CVE-2026-33824, the issue affects Microsoft Internet…...
659 Stripe Merchant API Keys Leaked Online, Exposing 688,000 Customer Records
23+ hour, 18+ min ago (475+ words) A threat actor has published a dataset containing allegedly live Stripe API keys for 659 merchant accounts, exposing data linked to 688,363 customers across 42 countries. The 35 GB archive was posted for free on a data-trading forum on August 18, 2026, rather than being offered…...
Oracle Security Update Patches Critical WebLogic, Hyperion and Fusion Middleware Flaws
23+ hour, 56+ min ago (276+ words) Oracle has released its August 2026 Critical Security Patch Update, delivering 943 new security patches across its products. Oracle said customers should deploy the fixes without delay, noting that attackers have successfully exploited previously patched Oracle vulnerabilities when organizations failed to apply…...
Cursor 0-Day Allows Arbitrary Code Execution by Simply Opening a Repository
23+ hour, 7+ min ago (450+ words) A newly disclosed Cursor IDE vulnerability demonstrates how opening an untrusted repository on Windows could lead to arbitrary code execution without prompt injection, AI-agent interaction, or any additional user approval. While the original issue centered on malicious git.exe binaries,…...