Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
The Netherlands National Cyber Security Centre (NCSC) has issued a warning about active exploitation of a macOS authentication bypass vulnerability. Hackers are targeting the Screen Sharing feature, using a publicly available exploit code to gain unauthorized access to systems.
The Americas faced the highest ransomware burden globally in the first half of 2026, with 2,188 documented attacks representing over 57% of worldwide incidents. North America experienced a diverse, multi-group RaaS economy led by Qilin, while South America saw concentrated activity from operators like The Gentlemen.
Stolen OAuth tokens provide an alternative entry path into Google Workspace beyond traditional phishing. Material Security emphasizes that defenses must address the full attack chain, including token abuse, to protect Gmail, Drive, and integrated services.
Many corporate boards fail to recognize technology risk until it materializes into a crisis, leading to reactive rather than proactive oversight. The article urges directors to treat cybersecurity and tech risk as core governance responsibilities that directly impact business resilience and shareholder value.
Google announced HEIR, an open-source compiler for homomorphic encryption that allows computations on encrypted data without ever decrypting it. This tool aims to make private AI practical by enabling cryptographically secure data processing in untrusted environments, such as cloud services.
A hand-crafted Windows backdoor, only 12 KB in size, concealed its command-and-control domain as the number of trailing spaces in a fake desktop.ini file. The malware was found on exactly one machine, highlighting a highly targeted operation that relied on steganographic hiding to evade detection.