Aggregator
US wants cyber partnerships to send ‘coordinated, strategic message’ to adversaries
CVE-2026-26214 | Xiaomi Galaxy FDS Android SDK up to 3.0.8 GalaxyFDSClientImpl.createHttpClient certificate host validation
Constella Intelligence Unveils 2026 Identity Breach Report: The Industrialization of Identity
New research reveals a 1-trillion-attribute threat landscape driven by machine speed and scale, and high-density credential consolidation. LOS ALTOS, CA — February 12, 2026 — Constella, the leader in Identity Risk Intelligence, today announced the release of its flagship 2026 Identity Breach Report. The report details a fundamental shift in the cyber threat landscape, moving from the …
The post Constella Intelligence Unveils 2026 Identity Breach Report: The Industrialization of Identity appeared first on Security Boulevard.
苹果修复动态链接器漏洞:曾被用于针对特定个人的极其复杂攻击
CVE-2025-14014 | NTN Smart Panel prior 20251215 unrestricted upload
CVE-2023-31313 | AMD Instinct MI210/Instinct MI250 PMFW confused deputy
У вас все еще Windows 10? У нас для вас плохие новости (и совет поскорее обновиться)
Is OpenClaw an entry point for attackers?
WordPress Backup Plugin Vulnerability Exposes 800,000 Sites to Remote Code Execution Attacks
A critical flaw in the WPvivid Backup & Migration WordPress plugin can let an unauthenticated attacker upload files and run code on the server, a path that often ends in full site takeover. The issue is tracked as CVE-2026-1357, scored 9.8 (Critical), and affects plugin versions up to and including 0.9.123, with a fix available […]
The post WordPress Backup Plugin Vulnerability Exposes 800,000 Sites to Remote Code Execution Attacks appeared first on Cyber Security News.
The cyber threat to marine transportation
LummaStealer activity spikes post-law enforcement disruption
CVE-2026-1893 | Orbisius Random Name Generator Plugin up to 1.0.2 on WordPress Shortcode btn_label cross site scripting (CNNVD-202602-2050)
CVE-2025-15400 | Pix Para Woocommerce Plugin up to 2.13.3 on WordPress Payment Gateway Configuration authorization (CNNVD-202602-2039)
CVE-2026-26079 | Roundcube Webmail up to 1.5.12/1.6.12 Cascading Style Sheet inclusion of functionality from untrusted control sphere (CNNVD-202602-2040)
CVE-2026-1231 | Beaver Builder Page Builder Plugin up to 2.10.0.5 on WordPress save_global_settings cross site scripting (CNNVD-202602-2051)
Wapens, munitie, materieel en F-16-simulatoren voor Oekraïne
Windows Notepad Markdown feature opens door to RCE (CVE-2026-20841)
Among the many security fixes released by Microsoft on February 2026 Patch Tuesday is one for CVE-2026-20841, a command injection vulnerability in Notepad that could be exploited by attackers to achieve remote code execution on targets’ Windows system. About CVE-2026-20841 For many, many years, Windows Notepad was a simple text editor and a staple tool for everyone who wanted a no-frills way to work with plain text, but in early 2022, Microsoft started redesigning it … More →
The post Windows Notepad Markdown feature opens door to RCE (CVE-2026-20841) appeared first on Help Net Security.
Кто потушил звезду в созвездии Единорога на год? Виноват «Супер-Юпитер» с кольцами в пол-Солнечной системы
AI is Supercharging Romance Scams with Deepfakes and Bots
AI is giving online romance scammers even more ways to hide and accelerate their schemes while making it more difficult for people to detect fraud operations that are resulting in billions of dollars being stolen every year from millions of victims.
The post AI is Supercharging Romance Scams with Deepfakes and Bots appeared first on Security Boulevard.