Aggregator
CVE-2026-4270 | Amazon AWS API MCP Server up to 1.3.8 improper protection of alternate path
CVE-2026-23489 | pluginsGLPI fields up to 1.23.2 Custom Fields input validation
«Мы только продаём, на курок нажимают другие». Как создатель Predator мастерски переводит стрелки
Qilin
You must login to view this content
CISA flags Wing FTP Server flaw as actively exploited in attacks
UK Agency Exposed Corporate Executive Data
The British government's company register service temporarily deactivated its online filing service after someone found a serious vulnerability that allowed people to access directors' sensitive personal data and potentially even amend companies' records or file bogus accounts on their behalf.
Poland Suspects Iranian Actors are Behind Attack on Its Nuclear Power Center
Poland officials say the cyberattack late last week appears to have been launched by an Iranian threat group, though they noted that bad actors not associated with any country in the war could have been behind it and used tactics associated with Iranian threat groups to cover their own tracks.
The post Poland Suspects Iranian Actors are Behind Attack on Its Nuclear Power Center appeared first on Security Boulevard.
FreeRDP: The Open-Source RDP Implementation That Powers Linux Remote Desktop
Wing FTP security advisory (AV25-391) - Update 2
Luxembourg court overturns $858 million privacy fine against Amazon
MEGA-кража. Почему облачные сервисы стали идеальным местом для кибершпионов
Hacked sites deliver Vidar infostealer to Windows users
We found fake “verify you are human” pages on hacked WordPress sites that trick Windows users into installing the Vidar infostealer.
The post Hacked sites deliver Vidar infostealer to Windows users appeared first on Security Boulevard.
Stryker says hospital tools are safe, but digital ordering systems still down after cyberattack
IBM Uncovers ‘Slopoly,’ Likely AI-Generated Malware Used in Hive0163 Ransomware Attack
A concerning development has emerged in early 2026, as IBM X-Force uncovered a likely AI-generated malware strain they named “Slopoly,” deployed during a ransomware attack by the financially motivated threat group Hive0163. The group is primarily focused on large-scale data theft and ransomware deployments, using a growing arsenal of custom-built tools to stay persistent inside […]
The post IBM Uncovers ‘Slopoly,’ Likely AI-Generated Malware Used in Hive0163 Ransomware Attack appeared first on Cyber Security News.
Microsoft Edge security advisory (AV26-243)
UK’s Companies House confirms security flaw exposed business data
Код как расходник. Зачем хакерам миллион одинаковых загрузчиков в разных обёртках
Randall Munroe’s XKCD ‘Bad Map Projection: Zero Declination’
via the comic artistry and dry wit of Randall Munroe, creator of XKCD
The post Randall Munroe’s XKCD ‘Bad Map Projection: Zero Declination’ appeared first on Security Boulevard.
Qihoo 360 Leaked Its Own Wildcard SSL Private Key Inside Public AI Installer
China’s largest cybersecurity firm, Qihoo 360, has inadvertently exposed its own wildcard SSL private key by bundling it directly inside the public installer of its newly launched AI assistant, 360Qihoo (Security Claw). The flaw discovered on March 16, 2026, is a textbook operational security failure from a company trusted by over 461 million users to […]
The post Qihoo 360 Leaked Its Own Wildcard SSL Private Key Inside Public AI Installer appeared first on Cyber Security News.