Suspected ShinyHunters Member Detained in Jordan, Reportedly Cooperating with FBI to Track Group Members

548/69 Tuesday, October 6, 2026 A man suspected of being a member of the ShinyHunters group has reportedly been detained by Jordanian authorities and is cooperating with the FBI to help identify other members of the group. The individual has been identified as Saif al-Din Khader, who sources said was arrested last Tuesday. However, details […]

ThaiCERT

October 6, 2026

Warlock Ransomware Continues Exploiting Older SharePoint Vulnerabilities to Target Critical Infrastructure Worldwide

547/69 Tuesday, October 6, 2026 The threat group behind Warlock ransomware, also known as Longlegs or Storm-2603, has reportedly continued exploiting the Microsoft SharePoint ToolShell vulnerability chain, first disclosed in mid-2025, as an initial access vector. Over the past two months, the group has attacked at least four organizations, including a water utility, a telecommunications […]

ThaiCERT

October 6, 2026

CloudSyncD Malware Disguised as Zoom Installer on macOS Tricks Users into Providing Passwords and Deploys a Backdoor

546/69 Monday, October 5, 2026 Researchers from Jamf Threat Labs have disclosed the discovery of CloudSyncD malware on macOS, which disguises itself as a Zoom installer and uses instructions on the installation page to trick users into bypassing Gatekeeper protections before displaying a fake prompt requesting the password for the local account. Researchers first identified […]

ThaiCERT

October 5, 2026

GitLab Patches Critical AI Gateway Vulnerability That Could Allow Command Execution on Self-Hosted Gateways

545/69 Monday, October 5, 2026 GitLab has released patches for a Critical vulnerability in GitLab AI Gateway, tracked as CVE-2026-90970 with a CVSS score of 9.9. The vulnerability could allow an authenticated user with access to the Duo Agent Platform to execute commands on the AI Gateway. GitLab disclosed the vulnerability on October 2, 2026, […]

ThaiCERT

October 5, 2026

Citrix Patches NetScaler Zero-Day Vulnerability After Active Exploitation Detected

544/69 Monday, October 5, 2026 Citrix has released an emergency security update to address CVE-2026-88779, a zero-day memory buffer vulnerability affecting NetScaler ADC and NetScaler Gateway devices with SAML authentication enabled. The vulnerability is particularly important for organizations using these appliances because attacks have been observed targeting unpatched systems. The U.S. Cybersecurity and Infrastructure Security […]

ThaiCERT

October 5, 2026

SC Malware Found on WordPress, Embedding Itself Across Multiple Locations and Rebuilding Backdoors After Removal

543/69 Friday, October 2, 2026 Researchers from Sucuri have disclosed the discovery of malware on WordPress websites known as SC, which uses multiple persistence mechanisms to restore deleted backdoor components even after administrators remove detected files. Researchers identified at least eight malware components distributed across WordPress files, the database, and shared memory, with each component […]

ThaiCERT

October 2, 2026

WatchGuard Patches Critical Fireware OS Vulnerability That Could Allow Command Execution with Root Privileges

542/69 Friday, October 2, 2026 WatchGuard has released security updates for Fireware OS to address a total of 15 vulnerabilities. The most significant issue is CVE-2026-86131, which has a CVSS score of 9.2 and is a code injection vulnerability in the configuration handling of the BOVPN over TLS Client. The flaw could allow an attacker […]

ThaiCERT

October 2, 2026

Zimbra Vulnerability (CVE-2026-73570) Exploited to Deploy Web Shells and Steal Sensitive Data

541/69 Friday, October 2, 2026 Security researchers from Microsoft have detected attacks exploiting CVE-2026-73570 in Zimbra Collaboration Suite (ZCS), affecting organizations across multiple industries. The vulnerability has a severity score of 8.9 and can allow unauthenticated attackers to execute operating system commands when the server has SNMP notifications enabled and the zimbra-snmp package installed. The […]

ThaiCERT

October 2, 2026

TeamViewer Full Client and Host Vulnerabilities Could Allow Command Execution and Privilege Escalation

540/69 Thursday, October 1, 2026 TeamViewer has released security updates to address five High-severity vulnerabilities in TeamViewer Full Client and Host on Windows, Linux, and macOS. The most severe vulnerability is CVE-2026-92370, with a CVSS score of 8.8, caused by improper permission controls during remote sessions. The flaw could allow an attacker to bypass user-defined […]

ThaiCERT

October 1, 2026

ANSSI Discloses Tax Data Theft After Stolen Staff Passwords Enabled Undetected Access for Seven Weeks

539/69 Thursday, October 1, 2026 France’s national cybersecurity agency, ANSSI, has published a report on a cyberattack targeting the Direction générale des Finances publiques (DGFIP), the French tax administration responsible for the impots.gouv.fr website. Attackers used stolen staff passwords to gain access to systems and exfiltrate tax-related data belonging to individuals and businesses between June […]

ThaiCERT

October 1, 2026
1 2 3 … 119