Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
This ThreatsDay bulletin covers a range of recent cyber threats including phishing that delivers XWorm and LunaSpy malware, as well as the Toy Ghouls group deploying custom GenieLocker ransomware against Russian sectors. It highlights that many attacks still rely on common weaknesses like reused credentials and abused trust.
Cisco has released emergency hot fixes for an actively exploited vulnerability impacting Cisco Secure Firewall Management Center (FMC) Software. The issue is caused by static credentials for a low-privileged account and allows an unauthenticated remote attacker to sign in to an affected appliance and access sensitive information.
Cisco released emergency hotfixes for an actively exploited vulnerability (CVE-2026-20316) in Secure Firewall Management Center (FMC) Software, caused by hard-coded credentials. The flaw allows unauthenticated remote attackers to access sensitive data and can be chained with other weaknesses for privilege escalation.
<img width="400" height="234" src="https://socprime.com/wp-content/uploads/CVE-2026-20316-400x234.
Ruby on Rails released security updates for a critical Active Storage vulnerability (CVE-2026-66066) that allows unauthenticated attackers to read arbitrary server files through crafted image uploads. The flaw, rated 9.5 on the CVSS scale, arises from unsafe libvips operations in default Rails configurations.
Ruby on Rails released security updates for a critical Active Storage vulnerability (CVE-2026-66066) that allows unauthenticated attackers to read arbitrary server files through crafted image uploads. The flaw, rated 9.5 on the CVSS scale, arises from unsafe libvips operations in default Rails configurations.