Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
The FBI revealed how breaking the trust between LockBit's core operators and their affiliates was the decisive factor in Operation Cronos, the law enforcement action that dismantled the prolific ransomware operation. By compromising LockBit's infrastructure, seizing data that exposed how much the core team was paying affiliates versus keeping, and publicly releasing that information, authorities sowed distrust within the criminal ecosystem.
N-able has released an emergency hotfix for an actively exploited authentication bypass in N-central, a remote monitoring and management platform widely used by managed service providers and internal IT teams. The flaw allows a remote, unauthenticated attacker to obtain administrative access to vulnerable N-central servers and use the platform’s legitimate management capabilities to reach downstream […] The post CVE-2026-18577: N-able N-central Authentication Bypass Lets Attackers Reach Managed Endpoints appeared first on SOC Prime.
AWS Shield Advanced is integrating the AWS WAF Anti-DDoS managed rule group as its default application-layer DDoS protection, replacing the previous system. This change, rolling out in phases starting July 27, 2026, aims to improve detection and mitigation of HTTP request floods, a common attack vector that mimics legitimate traffic.
AWS Shield Advanced is integrating the AWS WAF Anti-DDoS managed rule group as its default application-layer DDoS protection. The rule group learns normal traffic patterns and will be added to eligible web ACLs in Count mode without disrupting existing rules.
AWS Shield Advanced is integrating the AWS WAF Anti-DDoS managed rule group as the default application-layer (L7) DDoS protection, replacing the previous automatic mitigation system. The new rule group, launched in June 2025, is designed to detect HTTP request floods—a common attack vector—by profiling traffic and establishing baselines faster.
AWS Shield Advanced is integrating the AWS WAF Anti-DDoS managed rule group as its default application-layer DDoS protection. The rule group learns normal traffic patterns and will be added to eligible web ACLs in Count mode without disrupting existing rules.