LIVE · cybersecurity feed
Live wire

News Archive

561 stories · page 14 of 24

Every story we've published, newest first. Vulnerability records live in the CVE Tracker.

government

UK cyber pledge draws only a handful of top firms despite ministerial appeal

A UK government cyber pledge attracted only a handful of major companies despite a ministerial appeal. Notable signatories include Aviva, the London Stock Exchange Group, and Marks & Spencer.

cybersecurity

Cloudflare proudly joins the UK government's Cyber Resilience Pledge

The UK government has introduced a voluntary Cyber Resilience Pledge, encouraging organizations to adopt strong cybersecurity governance and supply chain security. Cloudflare is among the first to sign, aligning with the pledge's principles of democratizing security, leadership accountability, and transparency. This initiative comes as the UK faces increasing cyber threats, including a rise in DDoS attacks and the growing influence of AI in cybercrime.

phishing

Two arrested over credit card phishing – as the Netherlands is named Europe’s worst for payment fraud

Two individuals were arrested over a phishing operation that harvested credit card details. The arrests come as the Netherlands is named the worst country in Europe for payment fraud.

CVE-2026-48282critical

Critical Adobe ColdFusion Vulnerability Exploited in Attacks

A critical Adobe ColdFusion vulnerability, CVE-2026-48282 with a maximum CVSS score of 10, is being actively exploited in attacks. The flaw poses a severe risk to affected systems.

apthigh

Iran-Linked Hackers Using Modular C&C Framework in Cyberattacks

An Iran-linked threat actor is using an adaptable modular command-and-control framework in cyberattacks. It compromised IT service providers to reach high-value targets primarily in Israel.

email security

Webinar tomorrow: Why modern email attacks require a new approach to defense

A webinar examines why modern email attacks require new defenses. It highlights behavioral AI for detecting phishing, business email compromise, and account takeover while reducing alert fatigue.

vulnerabilitycritical

New Januscape Linux flaw allows VM escape on Intel, AMD devices

A newly identified Linux kernel vulnerability, dubbed Januscape, allows virtual machine escape on Intel and AMD systems. The 16-year-old flaw lets attackers break out of a VM and run code on the host.

ciso

CISO Conversations: Tarah Wheeler, Cybersecurity Leader, Thought Leader and Original Thinker

A profile interview features Tarah Wheeler, Chief Information Security Officer of TPO Group, discussing her career and perspectives on cybersecurity leadership.

aihigh

Cyber Shield: The path to an agentic AI future for cyber defence

The UK's GCHQ has unveiled 'Cyber Shield,' a blueprint for a national cyber defence capability integrating agentic AI. This initiative aims to counter escalating cyber threats by enabling machine-speed identification, reduction, and resolution of national cyber risks. Cyber Shield will foster collaboration across sectors to develop and deploy AI-powered defensive agents, enhancing the UK's resilience against both current and future sophisticated attacks.

ai

What Changes When Your Software Supply Chain Includes AI Writing Your Code?

The use of AI in software development introduces new challenges to supply chain security. Organizations must now consider the security implications of AI-generated code, in addition to traditional component analysis. This requires a reevaluation of existing security practices to adapt to AI's role in code creation.

ai

Claude Code’s hidden tracker was an “experiment,” says Anthropic

A researcher discovered a hidden tracking mechanism within Anthropic's Claude Code client that encoded user traffic data based on system time zones. Anthropic has since removed the feature, stating it was an experimental measure to prevent account abuse and protect against model distillation, potentially linked to recent US government export controls.

google

Google Is Suing Chinese Scammers Who Are Using Gemini

Google has filed a lawsuit against a Chinese criminal organization known as Outsider Enterprise. The group is accused of providing "phishing-as-a-service" through Telegram and allegedly leveraging Google's Gemini platform for their fraudulent operations.

industrial automation

Threat landscape for industrial automation systems. Q1 2026

In the first quarter of 2026, the overall percentage of industrial control systems (ICS) computers experiencing malware infections continued its downward trend, reaching a three-year low. However, certain regions and industries, particularly biometric systems and manufacturing, saw increases in specific threat categories like spyware and internet-based threats. While ransomware and malicious documents saw significant decreases, malicious scripts, phishing pages, and denylisted internet resources remained prevalent.

threat actor

UAT-7810 continues building ORB networks using new malware

The threat actor UAT-7810 is reportedly developing new custom malware. This malware is being utilized to establish ORB networks, indicating an evolution in their tools and ongoing malicious operations.

linuxcritical

Linux Kernel Vulnerability Allows VM Escape on Intel and AMD Systems

A recently discovered 16-year-old vulnerability in the Linux kernel's KVM hypervisor, dubbed Januscape, allows attackers to break out of a virtual machine. This flaw affects both Intel and AMD systems and could enable unauthorized code execution on the underlying host system.

microsoft

Microsoft to enable Windows settings backup by default for orgs

Microsoft is making its Windows settings backup and restore feature the default for business organizations. This update will automatically apply to devices managed by Microsoft Entra that are upgraded to Windows 11 version 26H2.

ai

Scammers are using AI to sell impossible flowers

Scammers are leveraging AI image generation to create and market seeds for non-existent, fantastical plants. These listings, appearing on major e-commerce platforms like eBay, Amazon, and Etsy, depict flowers in impossible shapes and colors, enticing buyers with visually appealing AI-generated images. The scam aims to profit from the sale of these fake seeds, differing from previous brushing scams that used unsolicited seed packets to manipulate reviews.

funding

Keyfactor Scores $1 Billion+ Investment for AI, Post-Quantum Security

Keyfactor, a provider of machine identity and cryptographic security solutions, has announced a funding round valued at over $1 billion. The investment will support the advancement of its platform, with a focus on addressing future security challenges from artificial intelligence and post-quantum cryptography.

CVE-2024-42009high

Suspected China-Aligned Hackers Exploit Roundcube Flaws Against Universities

Researchers have identified a new cyberattack campaign targeting academic institutions in North America. The attackers, believed to be linked to China, are exploiting vulnerabilities within the Roundcube webmail system used by physics and engineering departments.

CVE-2024-42009high

Suspected Chinese espionage group used a Roundcube exploit chain to burrow into universities

A China-aligned espionage group has been observed targeting U.S. and Canadian universities, specifically in physics and engineering departments. The attackers exploited two vulnerabilities in the Roundcube email client (CVE-2024-42009 and CVE-2025-49113) to steal credentials and establish persistent access through webshells and backdoors. Proofpoint researchers identified the campaign, which appears to be ongoing, and noted that victims may not yet be aware of the compromise.

beyondtrustcritical

BeyondTrust warns of critical flaws in remote access software

BeyondTrust has alerted users to two critical vulnerabilities affecting its Remote Support and Privileged Remote Access software. These security weaknesses could potentially enable attackers to circumvent authentication mechanisms.

windows 11

Microsoft testing new Cloud Rebuild Windows 11 recovery feature

Microsoft is piloting a new Cloud Rebuild feature for Windows 11 through its Insider Preview program. This functionality aims to simplify the recovery process for users by allowing them to rebuild their operating system from the cloud. The feature is currently available to testers in the Experimental channel.

CVE-2026-11405high

CERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware

CERT/CC has identified a hidden backdoor in multiple Tenda router firmware versions. This backdoor allows unauthorized administrative access to the devices' web interfaces.

CVE-2026-40138critical

BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA

BeyondTrust has issued patches for critical vulnerabilities in its Remote Support and Privileged Remote Access software. These flaws could permit unauthenticated attackers to gain unauthorized control over affected systems.