Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
This article covers Google's large Chrome update fixing 230 vulnerabilities, including an actively exploited V8 zero-day (CVE-2026-87491) and five critical WebGL and Cast flaws. The zero-day enables sandboxed code execution via HTML pages.
WeLiveSecurity explores the concept of safe words — what they are, why you need one, and how to choose an effective one. Safe words are primarily used in online security as a fallback authentication method to verify identity in suspicious situations, helping prevent social engineering attacks and account takeover.
An Ohio man was sentenced to 15 years in prison for multiple cybercrimes including sextortion, cyberstalking, and AI-generated child sexual abuse material. The man targeted women online, threatening to distribute intimate images unless they complied with his demands.
Remember when social media was filled only with posts from your friends, rather than what an algorithm decided you wanted to see? So does the Australian government, and it wants that internet back.
cPanel has patched a flaw that it says lets a single hosting account take control of an entire server. An authenticated account holder with mail-related privileges can create files of their choosing on the server through EmailTrack and, from there, run code as the root user.
Malware linked to break-ins at F5 BIG-IP Access Policy Manager appliances hides a PHP web shell in memory instead of in a file on disk, Sophos said in an analysis published on September 7. When Apache loads any of the three appliances' own PHP scripts, the malware adds the web shell to the copy held in memory, so a check of the file on disk can come back clean.