LIVE · cybersecurity feed
Live wire
CVE-2026-88779 · Citrix NetScaler Flaw Exploited Before CVE PublicationCVE-2026-88779 · NetScaler CVE-2026-88779 Exploited Before PublicationCVE-2022-28368 · dompdf_project dompdf XSS flaw added to VulnCheck KEVCVE-2026-88771 · Week in review: Researcher breaks into Microsoft analytics service, NetScaler RCE 0-day exploitedWarlock Ransomware Still Exploits Year-Old SharePoint Flaws to Hit Critical InfrastructureShinyHunters Suspect Rey Reportedly Detained in Jordan, Helping FBI Identify Group MembersChina-Aligned TA419 Targets U.S. AI Policy Experts With Microsoft AitM PhishingCVE-2026-7273 · Zyxel GS1900 Switch Flaw Exploited, Now in EU CatalogueCVE-2026-102489 · Zammad Session Fixation Vulnerability Exploited Same Day as DisclosureCVE-2026-102490 · Zammad GmbH Zammad Vulnerability Exploited Same Day as Publication

cyberattack news

13 stories
ransomwarehigh

Mississippi mayor says ransomware incident led city to shut down systems

The city of Vicksburg, Mississippi, has experienced a ransomware attack that led to the shutdown of its computer systems, according to Mayor Willis Thompson. The incident, which was publicly disclosed by Thompson on Thursday evening, has impacted utility payments but has not affected emergency services.

CVE-2026-85706critical

Critical GitLab Vulnerability Exploited in Internet-Wide Probes

GitLab has released emergency patches for two high-severity vulnerabilities in its software development platform, one of which carries the maximum possible severity score and is already being actively probed by attackers across the internet. The company urged operators of self-managed installations to upgrade immediately, while confirming its own hosted service and single-tenant Dedicated…

cyberattackhigh

ATF confirms cyberattack hit system containing info on its investigation targets

The Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) confirmed this week that it experienced a cyberattack affecting a standalone system that contained information on targets of its investigations. The agency stated that the incident was isolated and did not impact its critical operations or other internal systems.

cyberattackhigh

Hundreds of OpenAI Agents Invaded Hugging Face Servers

Reports indicate that Hugging Face servers were subjected to a sophisticated, multistage attack involving approximately 700 distinct agents. The scale and complexity of this incident are described as being more significant than initial assessments suggested.

data breachhigh

Employee benefits platform Paylogix says hackers stole financial and health data

Paylogix, a technology company specializing in employee benefits management, has confirmed a data breach that resulted in the theft of sensitive personal, financial, and health information belonging to tens of thousands of individuals. The New York-based firm, which provides benefits administration tools to employers and insurance companies, disclosed the incident through state regulatory…

iran

Iran-linked cyberattack shut down a UK power plant

A small-scale power plant in the United Kingdom was shut down for four days due to a suspected cyberattack, which government officials confirmed on Monday. While the UK government has not formally attributed the incident, it is believed to be linked to Iran. Authorities emphasized that the wider energy system was never at risk, describing it as "highly resilient."

iran

UK Power Plant Disabled for Four Days by Iran-Linked Hackers, Concurrent with US Water Attacks

A power plant in the United Kingdom was reportedly shut down for four days by Iran-linked hackers, an incident described as the most successful cyberattack of its kind against UK energy infrastructure. The outage, which occurred concurrently with attacks on water infrastructure across 12 U.S. states, did not impact the UK's wider power supply due to the plant's small size.

cyberattack

Pro-Ukraine Hackers Claim Attack on Russian Network Monitoring Firm

Russian software developer Microolap has confirmed a cyberattack on some of its systems, though it disputes the extent of the breach claimed by a pro-Ukraine hacking group. The company, which specializes in network traffic interception and analysis software, stated on Thursday that it detected an attempted intrusion into several non-critical systems. However, Microolap denied that attackers…

data breachhigh

Latvian officials resign after cyberattack exposes data on 1.2 million people

Latvia's Road Traffic Safety Directorate (CSDD), the state agency responsible for vehicle registration and driver's licenses, has confirmed a significant data breach impacting approximately 1.2 million individuals and 200,000 businesses. This figure represents about two-thirds of Latvia's total population of 1.8 million. The breach led to the exposure of data from payment receipts dating back…

CVE-2021-33044high

Hackers Compromised 14,500+ Dahua Devices Using Credential Attacks, Auth Bypasses, and P2P

Cybersecurity researchers have reported a campaign, identified as Operation CameraSwarm, that led to the compromise of more than 14,500 Dahua devices. The activity was observed between June and July 2026. The attackers reportedly leveraged a combination of credential-based attacks, specific authentication bypass vulnerabilities, and a peer-to-peer (P2P) relay method to achieve unauthorized…

data breachhigh

Uber Freight Investigates Data Breach After Extortion Group Claims Attack

Uber Freight is investigating a data security incident after the Helix extortion group claimed to have stolen nearly 1 million files from the logistics company. Helix listed Uber Freight on its data leak site on August 6, alleging compromise of mailboxes, OneDrive accounts, and accounts receivable data, among other repositories.

cyberattack

Coast Guard says it is monitoring cyberattack that disrupted North Carolina’s ports

The U.S. Coast Guard is actively monitoring a cyberattack that disrupted gate operations at all three North Carolina port facilities this week. The incident, which began earlier in the week, affected the Port of Wilmington, the Port of Morehead City, and the Charlotte Inland Port.

cyberattackhigh

Cyberattack Disrupts Operations at Japanese Food Giant Nichirei

Nichirei Corporation, a major Japanese food company, confirmed that a cyberattack on its servers on July 13, 2026, disrupted its logistics and shipment operations. The Tokyo-headquartered company, founded in 1942 and known for its frozen food business, operates globally through numerous subsidiaries.