BreachFeed

Security news

Everything BreachFeed is tracking across the industry, as it publishes.

Trending this week

Spotlight

Cyber Security News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwqtwa32npwhmu2rcbvoey0

Hackers Deploy New SloppyRAT via ClickFix to Enable Ransomware Lateral Movement

SloppyRAT is a remote access tool that appears designed to help ransomware operators move deeper into compromised networks. The malware arrives through ClickFix, a social-engineering method that tricks people into running commands presented as a routine check. Rather than immediately encrypting files, the attackers establish a foothold, collect system details, and reach other devices, giving […] The post Hackers Deploy New SloppyRAT via ClickFix to Enable Ransomware Lateral Movement appeared…

CSO Online·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwpjlij2m7jhmu2hiiefewe

Google’s Early Access is creating a blind spot for malicious apps

Google’s Early Access program is meant to give developers a place to release unfinished apps, gather feedback and handle bugs before a full launch. But new research from Bitdefender Labs suggests the feature may also be giving potentially deceptive applications an unusual advantage, as users cannot publicly rate or review an app while it remains in Early Access. An analysis of Google Play applications installed by Bitdefender users identified thousands of Early Access apps that appeared to…

Cyber Security News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwowg7v2li4hmu2qs7h569a

GitLab Patches Critical Flaws Enabling Arbitrary File Read, Credential Theft and Remote Code Execution

GitLab has released security updates for Community Edition and Enterprise Edition to fix multiple vulnerabilities, including two critical flaws that could enable arbitrary file reads and credential theft. A separate high-severity issue in GitLab Enterprise Edition could allow authenticated attackers to achieve remote code execution by importing a malicious project export. The company released GitLab […] The post GitLab Patches Critical Flaws Enabling Arbitrary File Read, Credential Theft and…

Cyber Security News·2 sources
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwowg7v2li5hmu2xvvflbfw

JFrog Artifactory Vulnerabilities Actively Exploited in the Wild to Gain Administrative Control

An active exploitation of three JFrog Artifactory vulnerabilities that attackers are using to bypass authentication, elevate privileges, and take administrative control of exposed servers. The flaws, tracked as CVE-2026-42016, CVE-2026-42018, and CVE-2026-82329, affect multiple Artifactory release branches and create a serious supply-chain security risk. Attackers have already targeted self-hosted Artifactory deployments, creating persistent administrator accounts, […] The post JFrog…

Also reported by 1 other source
Cyber Security News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwooqgh2l8yhmu2f07wz6xq

Okta Fixes Auth0 and Access Gateway Flaws Enabling XSS, Auth Bypass, and SQL Injection

Okta has released security fixes for three vulnerabilities affecting the Auth0 AD/LDAP Connector and Okta Access Gateway. The flaws could enable stored cross-site scripting, authorization bypass, and SQL injection in certain configurations. The vulnerabilities were disclosed on September 8, 2026. Organizations using the affected identity and access management components should prioritize upgrades, especially where Access […] The post Okta Fixes Auth0 and Access Gateway Flaws Enabling XSS, Auth…

Cyber Security News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwnefxu2jt0hmu2ceaz0unt

Hackers Can Hide Malicious AI Commands Inside Normal English to Bypass Security Filters

A newly disclosed AI attack technique shows that harmful commands do not need strange symbols, hidden text, or coded strings to evade security checks. Attackers can conceal an instruction inside ordinary English and rely on different AI models to interpret the same text differently. The method, called PuzzleMask, targets applications that put a fast screening […] The post Hackers Can Hide Malicious AI Commands Inside Normal English to Bypass Security Filters appeared first on Cyber Security…

Cyber Security News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwn6q7v2jkmhmu2qvq09t3e

Microsoft Investigating Microsoft 365 Copilot Access Issues Under Incident CP1470554

Microsoft is investigating a Microsoft 365 Copilot disruption in which users may be unable to open the assistant or encounter errors while using it. The company is tracking the event as CP1470554 and pointed administrators to the Service Health Dashboard in the Microsoft 365 admin center. In a status update on X, Microsoft 365 Status […] The post Microsoft Investigating Microsoft 365 Copilot Access Issues Under Incident CP1470554 appeared first on Cyber Security News.

Cyber Security News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwmz0992jbghmu2a76k81vh

Harley-Davidson Alleged Breach – CL0P Ransomware Adds Motorcycle Maker to the List

The CL0P ransomware operation has allegedly added iconic motorcycle manufacturer Harley-Davidson to its public leak site, claiming it compromised the company. Harley-Davidson has not confirmed the alleged cyberattack, and the specific scope, timing, and impact of the reported incident remain unknown. The claim was highlighted by threat-monitoring account ransomNews on September 10, 2026. According to […] The post Harley-Davidson Alleged Breach – CL0P Ransomware Adds Motorcycle Maker to the List…

Cyber Security News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwmrany2j2ahmu2dl67inw7

Top 10 Best CNAPP (Cloud-Native Application Protection) Platforms in 2026

Bottom line up front: CNAPP is the umbrella — it bundles CSPM (posture), CWPP (runtime), CIEM (entitlements), and increasingly DSPM (data) into one platform. Wiz leads on the graph that connects them, Prisma Cloud on module breadth, Defender for Cloud on Azure economics. This guide sizes the decision and names the one market fact — […] The post Top 10 Best CNAPP (Cloud-Native Application Protection) Platforms in 2026 appeared first on Cyber Security News.

Also reported by 1 other source (3 articles)
The Hacker News·2 sources
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwnal2c2jp0hmu2leomyxcc

China-Linked UNC3569 Exploited Sogou Input Method Flaw to Deploy GRAYRABBIT Backdoor

A China-linked hacking group exploited a flaw in Sogou Input Method, one of the most widely used tools for typing Chinese characters on Windows, to install a backdoor on victims' computers, security company Gen Digital said in research published Thursday. The attack started with a crafted link and ended with the attacker able to do anything the logged-in user could do. Tencent, which owns

Cyber Security News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwmbvd12immhmu2b7c2wlu3

Top 10 Best Cloud Security Posture Management (CSPM) Tools in 2026

CSPM finds the cloud misconfigurations that cause most cloud breaches public buckets, permissive IAM, exposed databases continuously, across accounts and providers. Wiz still sets the pace on agentless visibility and attack-path context, Microsoft Defender for Cloud wins Azure-centric economics, and the market’s biggest story is corporate: Google’s agreement to acquire Wiz for approximately $32 billion, […] The post Top 10 Best Cloud Security Posture Management (CSPM) Tools in 2026 appeared…

Cyber Security Headlines·3 sources
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu5rjzp5002fhku217ob6tet

NetScaler vulnerability exploited, AdaptHealth suffers breach, new Android malware

Critical NetScaler vulnerability exploited in attacks AdaptHealth data breach impacts 4.1 million people MantaxOtax Android malware delivers ransomware and spyware together Get the show notes here: https://cisoseries.com/cybersecurity-news-netscaler-vulnerability-exploited-adapthealth-suffers-breach-new-android-malware/ Huge thanks to our episode sponsor, ThreatLocker AI risk does not only come from attackers. Employees are adopting AI tools faster than many organizations can evaluate them.…

The Hacker News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwnal2c2jp1hmu2cw9ylezf

PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws

PaperCut on Thursday released a new security maintenance release that replaces all previously published emergency patches that were pushed to address two security flaws that have come under active exploitation. The software development company said PaperCut NG/MF versions 26.0.5, 25.0.13 and 24.1.10 are now available for customers to download. "These are Regular Maintenance Releases (MR) that

The Hacker News·4 sources
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwnal2c2jp2hmu2ghf97g8z

Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware

Cisco has revealed that three distinct threat clusters linked to ransomware and state-sponsored attacks have been exploiting two recently patched Secure Firewall Management Center (FMC) vulnerabilities. The attacks leverage CVE-2026-20079 (CVSS score: 10.0), an authentication bypass vulnerability in the web interface of FMC software that could allow an unauthenticated, remote attacker to bypass

Cyber Security News·2 sources
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwh6och2cr6hmu2irz7ktmg

Remote Desktop Services Failures on Windows Servers Following September Update

Windows administrators worldwide are grappling with a disruptive Remote Desktop Services (RDS) bug that surfaced immediately after Microsoft shipped its September 2026 Patch Tuesday cumulative updates. Session hosts running Windows Server 2019, 2022, and 2025 have begun freezing hours after boot, leaving RDP connections stuck at “Connecting…” and preventing logged-in users from disconnecting or logging […] The post Remote Desktop Services Failures on Windows Servers Following September Update…