FBI Warns Russian Hackers Steal Signal Backup Recovery Keys
June 27, 2026 The FBI and CISA issued an updated public service advisory on June 26, 2026, warning that Russian Intelligence Services (RIS) have evolved their Signal phishing campaign to steal Backup Recovery Keys. Consequently, attackers who obtain…
Amazon Q Developer CVE Malicious MCP Configs Steal Cloud Credentials
June 26, 2026 A high-severity vulnerability in Amazon Q Developer could allow malicious repositories to run arbitrary commands and steal a developer’s cloud credentials. The flaw, tracked as CVE-2026-12957 with a CVSS score of 8.5, was disclosed by…
Cisco Unified CM CVE-2026-20230: Active Exploitation Confirmed
June 24, 2026 A critical server-side request forgery vulnerability in Cisco Unified Communications Manager is now under active exploitation in the wild. Threat intelligence firm Defused confirmed attacks against CVE-2026-20230 over the weekend, marking a…
Cordyceps CI/CD Flaws Expose 300+ GitHub Repositories to Supply-Chain Attacks
June 24, 2026 Cybersecurity researchers at Novee Security have disclosed a critical new class of CI/CD workflow vulnerabilities called Cordyceps. This flaw allows unauthenticated attackers to hijack GitHub Actions workflows and seize full control of…
Squidbleed CVE-2026-47729: 29-Year Squid Proxy Bug Leaks HTTP Credentials
June 22, 2026 Researchers disclosed a critical heap over-read vulnerability in Squid Proxy that has existed since 1997. CVE-2026-47729, nicknamed Squidbleed, lets a trusted attacker on the same proxy leak another user’s cleartext HTTP requests.…
AryStinger Botnet Hijacks 4,300 D-Link Routers for Global Proxy Network
June 22, 2026 A previously undocumented malware botnet named AryStinger has compromised more than 4,300 outdated routers worldwide. Unlike typical IoT botnets built for DDoS or cryptocurrency mining, this threat converts infected devices into distributed…
Unpatchable Exploit for Apple A12 and A13 SecureROM
June 21, 2026 Security researchers at Paradigm Shift have disclosed usbliter8. It is an unpatchable exploit that achieves arbitrary code execution inside Apple’s A12 and A13 SecureROM. This vulnerability was published on June 18, 2026, following…
Gravity SMTP CVE-2026-4020: WordPress Plugin Actively Exploited
June 20, 2026 Threat actors are actively exploiting CVE-2026-4020, an unauthenticated information disclosure vulnerability in the popular Gravity SMTP WordPress plugin. This flaw exposes sensitive credentials and system configuration data on over 100,000…
Splunk Enterprise CVE-2026-20253: CISA KEV Alert Orders Federal Patch by Sunday
June 19, 2026 CISA has added a critical Splunk Enterprise vulnerability to its Known Exploited Vulnerabilities catalog after threat actors began actively exploiting it in the wild. Tracked as CVE-2026-20253, the flaw allows unauthenticated remote…
F5 Critical NGINX RCE CVE-2026-42530 and CVE-2026-42055 Patched
June 18, 2026 Cybersecurity company F5 has released out-of-band security updates for multiple critical NGINX vulnerabilities. Consequently, organizations running NGINX Plus, NGINX Open Source, or NGINX Gateway Fabric should prioritize patching…