ZCyberNews
中文

Articles

432 articles

Inc Ransom Breach at Sandhills Medical Exposes 170K RecordsHIGH
Industry News

Inc Ransom Breach at Sandhills Medical Exposes 170K Records

Inc Ransom group breached Sandhills Medical in 2025; the South Carolina healthcare provider took nearly a year to disclose the incident, affecting 170,000 patients.

2 min readInc Ransom
Linux 'Copy Fail' LPE CVE-2026-31431 Lets Local Users Gain RootHIGH
Vulnerabilities

Linux 'Copy Fail' LPE CVE-2026-31431 Lets Local Users Gain Root

CVE-2026-31431 (CVSS 7.8) dubbed 'Copy Fail' lets unprivileged local users write four controlled bytes to any readable file's page cache, enabling root on major Linux…

CVE-2026-31431
2 min read
Moldova Health Agency Breach: Possible Data Theft ConfirmedMEDIUM
Industry News

Moldova Health Agency Breach: Possible Data Theft Confirmed

Moldova's National Health Insurance Company reported a cyberattack that may have exposed limited personal data from its systems, weeks after initial compromise.

2 min read
PyTorch Lightning Compromised in PyPI Supply Chain AttackCRITICAL
Malware

PyTorch Lightning Compromised in PyPI Supply Chain Attack

Threat actors pushed malicious PyTorch Lightning versions 2.6.2 and 2.6.3 to PyPI on April 30, 2026, stealing credentials via a typosquatted dependency — Aikido Security, Socket,…

2 min read
Silver Fox Targets Russia, India With ABCDoor BackdoorHIGH
Malware

Silver Fox Targets Russia, India With ABCDoor Backdoor

Silver Fox group impersonates tax authorities to deliver ValleyRAT and the new ABCDoor backdoor to organizations in Russia and India, per Kaspersky.

2 min readSilver Fox
SMS Blaster Busts, OpenEMR Flaws, 600K Roblox Hacks in ThreatsDayHIGH
Industry News

SMS Blaster Busts, OpenEMR Flaws, 600K Roblox Hacks in ThreatsDay

Fake cell towers blast scam texts; OpenEMR flaws expose patient data; 600,000 Roblox accounts hacked via credential stuffing. A busy week in cyber threats.

2 min read
Trump Cyber Ambassador Nominee Advances to Senate VoteINFORMATIONAL
Industry News

Trump Cyber Ambassador Nominee Advances to Senate Vote

Adam Cassady, Trump's pick to lead the State Department's Bureau of Cyberspace and Digital Policy, cleared a Senate committee vote 17-5 and now heads to a full floor vote.

2 min read
Chrome 147, Firefox 150 Patch Critical Code Execution FlawsCRITICAL
Industry News

Chrome 147, Firefox 150 Patch Critical Code Execution Flaws

Google and Mozilla ship Chrome 147 and Firefox 150 to fix critical and high-severity vulnerabilities enabling arbitrary code execution. Users urged to update immediately.

2 min read
CISA Adds Actively Exploited ConnectWise, Windows Flaws to KEVHIGH
Vulnerabilities

CISA Adds Actively Exploited ConnectWise, Windows Flaws to KEV

CISA added CVE-2024-1708 (ConnectWise ScreenConnect path traversal, CVSS 8.4) and an unnamed Windows flaw to its KEV catalog based on confirmed active exploitation.

CVE-2024-1708
3 min read
cPanel & WHM Authentication Bypass CVE-2026-41940: CVSS 9.8CRITICAL
Vulnerabilities

cPanel & WHM Authentication Bypass CVE-2026-41940: CVSS 9.8

CVE-2026-41940: Unauthenticated remote attackers can bypass authentication in cPanel & WHM and WP Squared. CVSS 9.8. Patch released April 28, 2026.

CVE-2026-41940
3 min read
CVE-2026-25874: Unpatched RCE Flaw in Hugging Face LeRobotCRITICAL
Vulnerabilities

CVE-2026-25874: Unpatched RCE Flaw in Hugging Face LeRobot

CVE-2026-25874 (CVSS 9.3) in Hugging Face LeRobot enables unauthenticated RCE via unsafe deserialization.

CVE-2026-25874
2 min read
EU Accuses Meta of Breaching DSA Child Safety RulesHIGH
Industry News

EU Accuses Meta of Breaching DSA Child Safety Rules

European Commission finds Meta violated Digital Services Act by failing to protect minors under 13 on Facebook and Instagram — risks not assessed or mitigated.

2 min read
← PrevPage 18 of 36Next →