Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Latest Cybersecurity News

Significant cybersecurity M&A deals announced by Check Point, Booz Allen, Proofpoint, Sophos, Palo Alto Networks, and Zscaler.

Fake CAPTCHA pages instruct victims to paste malicious commands in the Windows Terminal instead of the Run dialog.

Abusing DNS record management controls, the threat actor hides the location of malicious content via Cloudflare.

Threat actors replace legitimate commands on the cloned installation webpages with malicious commands.

WatchTowr reports seeing exploitation attempts for CVE-2026-20127 from numerous unique IP addresses.

Trump’s Cyber Strategy calls for stronger deterrence against cyber adversaries, modernization of federal networks, protection of critical infrastructure, and investment in technologies such as AI and post-quantum cryptography.

The malware targets browser and cryptocurrency wallet data, along with system information and user files.

Pentagon CTO Emil Michael said the military is developing procedures for enabling different levels of autonomy in warfare depending on the risk posed.

The bureau is working to determine the scope and impact of the problem, according to a notification sent to members of Congress.

The company will accelerate platform development, expand go-to-market efforts, and invest in product innovation.

Other noteworthy stories that might have slipped under the radar: Avira antivirus vulnerabilities, Transport for London data breach affects 10 million, Gaming cheat exposes North Korean hacker.

The nation-state-grade iOS exploit kit targets 23 vulnerabilities affecting iOS 13 to 17.2.1.

The vulnerability was disclosed and mitigated in 2021 but its in-the-wild exploitation has only now come to light.

Cisco vulnerability Cisco vulnerability

WatchTowr reports seeing exploitation attempts for CVE-2026-20127 from numerous unique IP addresses.

US Cyber Strategy US Cyber Strategy

Trump’s Cyber Strategy calls for stronger deterrence against cyber adversaries, modernization of federal networks, protection of critical infrastructure, and investment in technologies such as AI and post-quantum cryptography.

FBI Hacked FBI Hacked

The bureau is working to determine the scope and impact of the problem, according to a notification sent to members of Congress.

Top Cybersecurity Headlines

The vulnerability was disclosed and mitigated in 2021 but its in-the-wild exploitation has only now come to light.

The attacks, observed since February, show that Iranian hackers already have a presence in the networks of US organizations.

Less than half of the total zero-days have been attributed to a threat actor, but spyware vendors and China are in the lead. 

SecurityWeek Industry Experts

More Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Get a candid look at the current OT threat landscape as we move past “doom and gloom” to discuss the mechanics of modern OT exposure.

Register

Join the event where top security experts unpack the biggest software supply chain risks.

Register

Upcoming Cybersecurity Events

2026 Ransomware Resilience & Recovery Summit

SecurityWeek’s 2026 Ransomware Summit is a must-attend event for cybersecurity professionals as ransomware attacks continue to hit big-name victims across industries with ruthless efficiency.
[February 25, 2026 | Virtual]

Read More
Supply Chain Security Summit 2026

SecurityWeek’s 2026 Supply Chain Security Summit is where top security experts unpack the complexity of modern software supply chain threats and proven strategies to mitigate risk.
[March 18, 2026 | Virtual]

Read More
ICS Lockdown Virtual Event

SecurityWeek’s 2026 ICS Lockdown is an online extension of the ICS Cybersecurity Conference and will dive deep into the world of industrial cybersecurity to help those charged with protecting OT environments.
[April 29, 2026 | Virtual]

Read More
TDIR 2026 Summit

SecurityWeek’s 2026 Threat Detection & IR Summit brings together security practitioners from around the world to share war stories on breaches, APT attacks and more.
[May 20, 2026 | Virtual]

Read More

Vulnerabilities

Cybercrime

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

New research shows attackers increasingly abusing APIs at machine speed as AI-driven systems widen exposure and amplify impact.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.