Spanish police, with assistance from the FBI, have arrested an individual suspected of supporting the pro-Russian hacktivist group Cyber Army of Russia Reborn. The arrest, which occurred in March but was announced recently, is part of a broader international effort to combat cybercrime. The suspect allegedly provided logistical support to another hacker and participated in activities aimed at spreading pro-Russian narratives.

Spanish authorities have arrested a man suspected of involvement in pro-Russian hacktivist campaigns, including activities linked to Cyber Army of Russia Reborn and NoName. The arrest, which occurred in March but was announced on a Monday, was the result of an investigation initiated by a tip from the FBI in August 2025.
The individual was detained at his home in Palencia. Spanish officials stated that the suspect allegedly provided logistical support to a Ukrainian hacker associated with Cyber Army of Russia Reborn, also known as Z-Pentest. This support reportedly facilitated the Ukrainian hacker's escape to Russia by transiting through Poland and Belarus.
In addition to these alleged actions, the arrested individual is also accused of participating in operations attributed to the hacktivist group NoName057(16). These operations have been documented on geopolitical news sites and are characterized by Spanish authorities as efforts to disseminate pro-Russian and anti-Western narratives.
The FBI's Los Angeles field office coordinated with Spanish law enforcement in the operation, which is part of a broader global initiative called Operation Riptide. This ongoing campaign aims to target cybercriminals and the financial and infrastructural networks they utilize for fraudulent activities.
During the investigation, Spanish police searched the suspect's residence, seizing computers and cryptocurrency storage devices. A cryptocurrency wallet, believed to have been used for receiving payments related to his alleged criminal activities, was also frozen. While the investigation concluded recently, specific charges have not yet been formally announced. However, the suspect is accused of collaborating with a terrorist organization, glorifying terrorism, and damaging computer systems.
Cyber Army of Russia Reborn has been a focus for authorities since 2022, with alleged members targeted for years. The U.S. Treasury Department sanctioned individuals identified as the group's alleged leader and primary hacker, Yuliya Vladimirovna Pankratova and Denis Olegovich Degtyarenko, in July 2024.
Further actions against individuals linked to these groups include an indictment by the Department of Justice in December 2025 against Victoria Eduardovna Dubranova, a Ukrainian national accused of participating in attacks supporting Russia's geopolitical interests through Cyber Army of Russia Reborn and NoName057(16). Dubranova was extradited to the United States and has since pleaded guilty in two federal cases.
The U.S. State Department has offered substantial rewards for information on individuals associated with these hacktivist organizations. Rewards of up to $2 million are available for information on individuals linked to Cyber Army of Russia Reborn, and up to $10 million for information concerning individuals tied to NoName.
NoName057(16) was reportedly established in October 2018, according to the Department of Justice. In December 2025, multiple federal agencies and international partners issued a joint cybersecurity advisory highlighting the threats posed by pro-Russian hacktivist groups, including Cyber Army of Russia Reborn and NoName.
A weakness has been identified in Tenda CP3 27.5.57.101. This issue affects some unknown processing of the file Net/NetCheckPing.cpp. This manipulation of the argument interface_name/host causes os command injection. The attack can be initiated remotely.
A security flaw has been discovered in Tenda CP3 27.5.57.101. This vulnerability affects the function SystemAsh of the file Apis/system.c of the component Kylin. The manipulation of the argument AlarmVoiceURL results in os command injection. It is possible to launch the attack remotely.

OpenAI has announced a $1 billion commitment to provide subsidized access to its Daybreak AI cybersecurity tools for under-resourced critical infrastructure defenders. The initiative, named Daybreak for Frontline Defenders, will offer AI models, training, and technical support over the next six months, prioritizing water and wastewater utilities, electric grid operators, and local government entities. This move aims to equip organizations with limited budgets and staff against increasingly sophisticated cyber threats.

Attackers are exploiting a new unpatched vulnerability in Magento Open Source and Adobe Commerce that lets them run malicious code on an online store's server without logging in, Dutch e-commerce security company Sansec said in an advisory published on September 5. Sansec, which discovered the flaw and named it StyleSmuggler, said attacks started on September 4. "Sansec is publishing early
In BPF instructions that load/store a value from/to a scratch memory register the register index is an unsigned 32-bit integer and must not exceed 15, but libpcap BPF interpreter does not validate the value. In particular uncommon use cases a crafted filter program can cause the interpreter to try reading and writing the OS process memory in the 16GiB starting at the current stack frame on 64-bit architectures and in the entire address space on 32-bit architectures.

Attackers are exploiting two new PaperCut flaws to steal credentials and gain privileged access in education-sector attacks across the U.S. and Europe. Attackers are exploiting two recelty disclosed PaperCut flaws, CVE-2026-81578 and CVE-2026-82078, in attacks targeting schools and other education organizations in the U.S. and Europe, as reported by TheHackerNews. Arctic Wolf researchers observed