Aggregator
Физики получили топливо из воды и света — без капли нефти. Квантовые слои не дали зарядам убить друг друга
Diesel Vortex Russian Cybercrime Group Targets Global Logistics Sector and Steals 1,600+ Credentials
A Russian-linked cybercrime group named Diesel Vortex has been quietly running a large phishing operation against freight and trucking companies across the United States and Europe. The campaign ran from September 2025 through February 2026 and resulted in more than 1,649 stolen login credentials from users of major logistics platforms, including DAT Truckstop, Penske Logistics, […]
The post Diesel Vortex Russian Cybercrime Group Targets Global Logistics Sector and Steals 1,600+ Credentials appeared first on Cyber Security News.
CISA Adds One Known Exploited Vulnerability to Catalog
CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.
- CVE-2026-25108 Soliton Systems K.K. FileZen OS Command Injection Vulnerability
This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise.
Binding Operational Directive (BOD) 22-01: Reducing the Significant Risk of Known Exploited Vulnerabilities established the KEV Catalog as a living list of known Common Vulnerabilities and Exposures (CVEs) that carry significant risk to the federal enterprise. BOD 22-01 requires Federal Civilian Executive Branch (FCEB) agencies to remediate identified vulnerabilities by the due date to protect FCEB networks against active threats. See the BOD 22-01 Fact Sheet for more information.
Although BOD 22-01 only applies to FCEB agencies, CISA strongly urges all organizations to reduce their exposure to cyberattacks by prioritizing timely remediation of KEV Catalog vulnerabilities as part of their vulnerability management practice. CISA will continue to add vulnerabilities to the catalog that meet the specified criteria.
Celebrating Two Years of CSF 2.0!
Identity Prioritization isn't a Backlog Problem - It's a Risk Math Problem
Lazarus Group Uses Medusa Ransomware in Middle East and U.S. Healthcare Attacks
Всю сеть взломали через одно письмо. К чему ещё приводит отказ обновить Roundcube
ShinyHunters extortion gang claims Odido breach affecting millions
Chinese AI Firms Hit Claude with Distillation Attacks, Anthropic Warns
太平洋向北冰洋的热输送过去二十年增至 1.5 倍
New ZeroDayRAT Malware Claims Full Monitoring of Android and iOS Devices
North Korean state hackers seen using Medusa ransomware in attacks on US, Middle East
CVE-2024-56208
CVE-2025-53217
CVE-2025-68461
"Патрулируй здесь", "лети туда", "перехвати цель" — пилот истребителя F-22 командует беспилотником-напарником прямо в полёте
Windows 365 for Agents brings managed cloud PCs to autonomous workflows
Microsoft’s Windows 365 for Agents is a cloud platform that gives AI agents secure access to cloud PCs. It lets builders run copilots, agents, and automated workflows in Windows environments without managing infrastructure. The platform includes security, policy controls, scalability, and visibility so agents can browse websites, process data, and complete tasks inside a managed cloud PC. “Windows 365 is designed to support a broad spectrum of agent solutions, operating systems, and data access controls, … More →
The post Windows 365 for Agents brings managed cloud PCs to autonomous workflows appeared first on Help Net Security.