Certighost Exploit Enables Low-Privileged AD Users to Impersonate Domain Controllers
On July 24, 2026, researchers H0j3n and Aniq Fakhrul published a working exploit for a Microsoft Active Directory Certificate Services (AD CS)…
On July 24, 2026, researchers H0j3n and Aniq Fakhrul published a working exploit for a Microsoft Active Directory Certificate Services (AD CS)…
Threat actors have been observed exploiting a now-patched high-severity Palo Alto Networks PAN-OS vulnerability, CVE-2026-0257 (CVSS score: 7.8), as an entry point…
ACR Stealer, an infostealer active since 2024, is targeting enterprise networks by stealing saved browser passwords, live session tokens, PDFs, Microsoft 365…
Cybersecurity researchers have flagged a previously undocumented Rust-based remote access trojan (RAT) codenamed LabubaRAT that masquerades as NVIDIA software to blend into…
Cybersecurity researchers at Huntress have identified an intrusion where an unknown threat actor used a suspected AI-generated PowerShell script to enumerate Active…
Cybersecurity researchers have identified a new ransomware family named GodDamn, which leverages the PoisonX kernel driver to disable endpoint defenses. First observed…
Microsoft has released security updates to address a critical privilege escalation vulnerability in its Microsoft Malware Protection Engine, tracked as CVE-2026-50656 (CVSS…
Sophos has identified that AI coding agents such as Claude Code, Cursor, and OpenAI Codex are triggering endpoint security rules originally designed…
A new banking fraud operation tracked as REF6045 by Elastic Security Labs is targeting customers of Mexican banks, fintech platforms, payment processors,…
A newly identified cyber attack campaign, tracked as StrikeShark by Kaspersky, is deploying a previously undocumented malware family called SharkLoader to deliver…