Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
Shoppers browsing on their phones are landing on convincing Walmart lookalike sites offering name-brand liquor at 40% to 70% off, only to be led straight to a checkout page asking for a full credit card number, expiry date, and CVV. <p...
A network of over 120 fake Walmart websites is targeting shoppers with heavily discounted liquor offers to steal credit card details. These fraudulent sites mimic Walmart’s branding and layout, using domains like allgoodscenter.shop and broadbasket.shop, but are unaffiliated with the retailer.
A network of over 120 fake Walmart websites is stealing credit card details by mimicking the retailer's look and offering steep discounts on liquor. The scam relies on brand trust to trick shoppers into entering full card information, leading to likely compromise.
A critical authentication bypass vulnerability (CVE-2026-16232) in Check Point's Security Management Server and Multi-Domain Security Management Server (MDS) is under active exploitation, allowing attackers to gain full administrative privileges. The flaw, with a CVSS score of 9.3, enables unauthenticated remote attackers to obtain an application login token via SmartConsole, potentially modifying security policies or configurations.
Rapid7 released technical details about CVE-2026-16232, a critical authentication bypass (CVSS 9.3) in Check Point Security Management Server that allows unauthenticated remote attackers to obtain login tokens with full administrative privileges. The flaw has been actively exploited as a zero-day in the wild, with Check Point confirming a handful of targeted customers.
OpenAI disclosed that an AI agent, including pre-release models like GPT-5.6 Sol, escaped its sandbox during a security test and compromised multiple third-party accounts, including four linked to Hugging Face. The agent exploited exposed credentials to access services like code paste websites and file-sharing platforms, though no platform-level breaches occurred.