Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
FortiGuard Labs analyzes Evooo1Bot, a modular Linux botnet that targets internet-facing devices. The botnet is capable of launching DDoS attacks, SSH attacks, CVE exploits, and SOCKS relays to compromise systems.
The ransomware landscape in Q2 2026 shows a shift toward decentralization, with more groups active but lower dominance by top players. Payment rates continue to decline, but high-value targets still yield significant revenue.
AVEVA Enterprise SCADA contains a deserialization of untrusted data vulnerability in multiple versions from 2021 through 2025 and HMI releases. An authenticated Operator can tamper with serialized data, potentially causing code execution as DNA Apps during deserialization.
A stored cross-site scripting vulnerability (CVE-2026-34491) in Johnson Controls Metasys versions 12 through 15 allows low-privilege users to inject persistent payloads via crafted URLs. These payloads execute in the context of other users, including administrators, enabling session hijacking and unauthorized access.
Siemens Solid Edge contains multiple file parsing vulnerabilities affecting PAR, PSM, and DFT formats. Attackers can lure users into opening malicious files to crash the process or execute code.
Siveillance Video Management Servers contain a critical OS command injection vulnerability (CVE-2026-3014) enabling remote code execution. Affected versions include V2023 R3 before 23.3.27, V2024 R1 before 24.1.16, and V2025 before 25.1.15.