Conpet, Romania’s National Oil Pipeline Operator, Reports Cyberattack Impacting Business Systems

80/69 Tuesday, February 10, 2026 Conpet, the company responsible for operating Romania’s crude oil and petroleum product pipeline network, has disclosed that it detected a cyberattack on February 3, 2026. The incident affected the company’s business IT infrastructure and temporarily rendered its website unavailable. However, Conpet confirmed that its Operational Technology (OT), including SCADA systems […]

sittisak mintaboon

February 10, 2026

U.S. Man Pleads Guilty to Hacking Over 600 Women’s Snapchat Accounts to Steal and Sell Intimate Images

79/69 Tuesday, February 10, 2026 Kyle Svara, a 26-year-old man from Illinois, United States, has pleaded guilty in court to hacking nearly 600 women’s Snapchat accounts to steal private and nude photos. He used social engineering tactics by impersonating Snapchat staff and sending messages to more than 4,500 targets, tricking victims into revealing their access […]

sittisak mintaboon

February 10, 2026

CISA Orders Federal Agencies to Replace End-of-Support Edge Devices Within 18 Months to Reduce Cyber Intrusion Risks

78/69 Monday, February 9, 2026 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued Binding Operational Directive 26-02, instructing Federal Civilian Executive Branch (FCEB) agencies to strengthen the management of edge network devices. Agencies are required to identify and replace devices that have reached end-of-support status within 12 to 18 months to reduce cybersecurity […]

sittisak mintaboon

February 9, 2026

Italy’s La Sapienza University Goes Offline Following Cyberattack

77/69 Monday, February 9, 2026 La Sapienza University in Rome, Italy, remains unable to fully restore its IT services after suffering a cyberattack on February 2, causing widespread operational disruptions. Students have been unable to book exams, verify tuition payments, or access faculty contact information. The university has primarily communicated updates through social media and […]

sittisak mintaboon

February 9, 2026

Shadow Campaigns: APT Espionage Operation Targets 155 Countries Worldwide

76/69 Monday, February 9, 2026 Unit 42 from Palo Alto Networks has revealed the discovery of a state-sponsored threat group tracked as TGR-STA-1030 (also known as UNC6619), believed to be operating from Asia. The group is responsible for a large-scale cyber espionage initiative dubbed “Shadow Campaigns,” primarily aimed at stealing strategic, economic, and political intelligence […]

sittisak mintaboon

February 9, 2026

Microsoft Warns Infostealer Malware Is Spreading to macOS, Using Python and Malvertising to Steal iCloud Keychain Data

75/69 Friday, February 6, 2026 Microsoft Defender security researchers have warned of a growing trend in infostealer malware targeting the macOS operating system. Attackers are leveraging Python to develop cross-platform malware and employing social engineering techniques such as ClickFix, along with malvertising campaigns on Google Ads, to trick users into downloading fake installers. Once installed, […]

sittisak mintaboon

February 6, 2026

CISA Warns VMware ESXi Vulnerability Is Being Exploited in Ransomware Campaigns

74/69 Friday, February 6, 2026 CISA has disclosed that ransomware groups have begun exploiting a VMware ESXi vulnerability related to virtual machine sandbox escape. The flaw, tracked as CVE-2025-22225, was previously used in zero-day attacks and is classified as an arbitrary write vulnerability that could allow attackers with privileges inside the VMX process to write […]

sittisak mintaboon

February 6, 2026

Cyberattack Campaign Targets NGINX Servers, Aiming at Government and Educational Websites Across Asia

73/69 Friday, February 6, 2026 Researchers from DataDog Security Labs have discovered a cyberattack campaign targeting NGINX servers, a widely used web traffic management software. Threat actors modify configuration files to secretly install redirect commands, routing user data through hacker-controlled infrastructure before forwarding it to the legitimate destination. The campaign primarily targets websites using Asian […]

sittisak mintaboon

February 6, 2026

Docker Users Urged to Update Immediately: DockerDash Vulnerability in AI Assistant “Ask Gordon” Risks Code Execution via Image Metadata

72/69 Thursday, February 5, 2026 Cybersecurity researchers from Noma Labs have disclosed a critical vulnerability named DockerDash affecting Ask Gordon, the AI assistant integrated into Docker Desktop and Docker CLI. The flaw allows attackers to perform Remote Code Execution (RCE) and secretly exfiltrate sensitive data by exploiting how the assistant reads and processes metadata attached […]

ThaiCERT

February 5, 2026

React Native Vulnerability Actively Exploited in the Wild

71/69 Thursday, February 5, 2026 Researchers from vulnerability intelligence firm VulnCheck have revealed that a critical vulnerability in the React Native platform has been actively exploited since late December. The flaw, tracked as CVE-2025-11953, carries a CVSS score of 9.8 (Critical) and affects the widely used @react-native-community/cli package, a key tool for developing React Native […]

ThaiCERT

February 5, 2026
1 2 3 73