Spanish Court Orders NordVPN and ProtonVPN to Block LaLiga Piracy Websites

104/69 Friday, February 20, 2026 A Spanish court has issued precautionary measures against major VPN providers NordVPN and ProtonVPN, ordering both companies to block 16 websites involved in illegally streaming LaLiga football matches. The order applies to IP addresses within Spain and provides no opportunity for appeal. The ruling was issued inaudita parte, meaning it […]

sittisak mintaboon

February 20, 2026

Cybersecurity and Infrastructure Security Agency Warns of Critical Vulnerability in Honeywell CCTV Cameras Allowing Account Takeover and Live Feed Access

103/69 Friday, February 20, 2026 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent advisory regarding a critical vulnerability affecting multiple Honeywell CCTV camera models. The flaw, tracked as CVE-2026-1670, carries a severity score of 9.8/10 and allows attackers to bypass authentication remotely. Successful exploitation could directly impact business environments and even […]

sittisak mintaboon

February 20, 2026

Notepad++ Enhances Update Security with “Double-Lock” Mechanism to Mitigate Supply Chain Threats

102/69 Thursday, February 19, 2026 Notepad++ has released version 8.9.2 to address vulnerabilities in its automatic update system that were previously exploited in a supply chain attack. The new release introduces a “Double-lock” security mechanism, implementing two layers of verification: This dual-verification process ensures that update files delivered to users have not been tampered with […]

sittisak mintaboon

February 19, 2026

CISA Adds Four Actively Exploited Vulnerabilities to KEV, Urges Immediate Remediation

101/69 Thursday, February 19, 2026 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added four security vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog after confirming evidence of active exploitation. The newly added vulnerabilities are: Regarding CVE-2026-2441, Google has confirmed active exploitation in the wild. However, detailed technical information about the attack techniques has […]

sittisak mintaboon

February 19, 2026

APT Group Exploits Dell Zero-Day Vulnerability to Breach VMware Systems Since Mid-2024

100/69 Thursday, February 19, 2026 Security researchers from Mandiant and the Google Threat Intelligence Group (GTIG) have disclosed that a threat actor tracked as UNC6201 has been conducting covert attacks by exploiting a critical zero-day vulnerability in Dell RecoverPoint for Virtual Machines, a backup and disaster recovery solution for VMware environments. The vulnerability, identified as […]

sittisak mintaboon

February 19, 2026

Washington Hotel Hit by Ransomware Attack, Enterprise Business Data Impacted

99/69 Wednesday, February 18, 2026 Washington Hotel, a major business hotel chain in Japan, has issued a statement confirming that its server systems were targeted by a ransomware attack on Friday, February 13, 2026, at 10:00 PM. The incident resulted in unauthorized access to certain business-related data. As an immediate containment measure, the company disconnected […]

sittisak mintaboon

February 18, 2026

Critical Vulnerability Discovered in DavaIndia Pharmacy System, Risking Customer Data Exposure and Full Administrative Takeover

98/69 Wednesday, February 18, 2026 A serious security vulnerability has been discovered in the systems of DavaIndia Pharmacy, one of India’s major pharmacy chains operated by Zota Health Care Ltd. The flaw could have allowed malicious actors to access customer order information and escalate privileges to gain full administrative control of the platform. This posed […]

sittisak mintaboon

February 18, 2026

Dutch Police Arrest Man After Attempting to Extort Authorities Over Accidentally Leaked Data

97/69 Wednesday, February 18, 2026 Dutch authorities have arrested a 40-year-old man at his residence in Ridderkerk on charges of computer intrusion and attempted extortion. The case began after a police officer mistakenly sent the man a download link to confidential government documents instead of a link intended for uploading evidence related to a case. […]

sittisak mintaboon

February 18, 2026

New ClickFix Campaign Uses nslookup to Deliver PowerShell Payloads via DNS

96/69 Tuesday, February 17, 2026 Microsoft Threat Intelligence has identified a new variant of the ClickFix social engineering campaign that shifts from delivering malware over HTTP to using DNS as a staging channel. Victims are tricked into opening the Windows Run dialog (Win+R) and executing the nslookup command, which connects to a DNS server controlled […]

sittisak mintaboon

February 17, 2026

Google Patches First Actively Exploited Chrome Zero-Day of 2026

95/69 Tuesday, February 17, 2026 Google has released an emergency security update to address a high-severity zero-day vulnerability in the Chrome browser that has been actively exploited in the wild. The flaw, tracked as CVE-2026-2441, is a use-after-free vulnerability in Chrome’s CSS processing component. It marks the first actively exploited Chrome zero-day of 2026, following […]

sittisak mintaboon

February 17, 2026
1 10 11 12 14