FortiSandbox SSRF Vulnerability Allow Attacker to proxy Internal Traffic via Crafted HTTP Requests
13
Jan
2026

FortiSandbox SSRF Vulnerability Allow Attacker to proxy Internal Traffic via Crafted HTTP Requests

Fortinet disclosed a Server-Side Request Forgery (SSRF) vulnerability in its FortiSandbox appliance on January 13, 2026, urging users to update…

Malicious Chrome Extension Steals MEXC API Keys by Masquerading as Trading Tool
13
Jan
2026

Malicious Chrome Extension Steals MEXC API Keys by Masquerading as Trading Tool

Jan 13, 2026Ravie LakshmananWeb Security / Online Fraud Cybersecurity researchers have disclosed details of a malicious Google Chrome extension that’s…

‘Dual-channel’ attacks are the new face of BEC in 2026
13
Jan
2026

‘Dual-channel’ attacks are the new face of BEC in 2026

So-called ‘dual-channel’ attacks using multiple methods of communication either simultaneously or in sequence are becoming more prevalent as digital fraudsters…

Healthcare breaches double as shadow AI, vendor risks proliferate
13
Jan
2026

Healthcare breaches double as shadow AI, vendor risks proliferate

Listen to the article 3 min This audio is auto-generated. Please let us know if you have feedback. Dive Brief:…

Betterment confirms data breach after wave of crypto scam emails
13
Jan
2026

Betterment confirms data breach after wave of crypto scam emails

U.S. digital investment advisor Betterment confirmed that hackers breached its systems and sent fake crypto-related messages to some customers. The…

FortiOS and FortiSwitchManager Vulnerability Let Remote Attackers Execute Arbitrary Code
13
Jan
2026

FortiOS and FortiSwitchManager Vulnerability Let Remote Attackers Execute Arbitrary Code

Fortinet has disclosed a critical heap-based buffer overflow vulnerability (CWE-122) in the cw_acd daemon of FortiOS and FortiSwitchManager. This flaw…

Dozens of ICE Vehicles in Minnesota Lack ‘Necessary’ Lights and Sirens
13
Jan
2026

Dozens of ICE Vehicles in Minnesota Lack ‘Necessary’ Lights and Sirens

More than two dozen Immigration and Customs Enforcement vehicles on the ground in the Minneapolis-St. Paul area “currently lack the…

Flowable 2025.2 Brings Governed Multi-Agent AI Orchestration to Enterprises
13
Jan
2026

Flowable 2025.2 Brings Governed Multi-Agent AI Orchestration to Enterprises – Hackread – Cybersecurity News, Data Breaches, AI, and More

Flowable has launched version 2025.2 of its enterprise work orchestration platform, adding support for governed multi-agent AI, impact analysis, and…

Data broker fined after selling Alzheimer’s patient info and millions of sensitive profiles
13
Jan
2026

Data broker fined after selling Alzheimer’s patient info and millions of sensitive profiles

California’s privacy regulator has fined a Texas data broker $45,000 and banned it from selling Californians’ personal information after it…

Majority of hedge funds boosted cybersecurity spending in 2025
13
Jan
2026

Majority of hedge funds boosted cybersecurity spending in 2025

Eight of every 10 hedge funds and other investment firms increased spending on cybersecurity in 2025, according to a report…

CrowdStrike is buying Seraphic Security to lock down the browser, where work actually happens
13
Jan
2026

CrowdStrike is buying Seraphic Security to lock down the browser, where work actually happens

CrowdStrike announced Tuesday an agreement to acquire Seraphic Security, a browser runtime security provider, in a move that signals growing…

8000+ SmarterMail Hosts Vulnerable to RCE Attack
13
Jan
2026

8000+ SmarterMail Hosts Vulnerable to RCE Attack

Over 8,000 internet-exposed SmarterMail servers remain vulnerable to a critical remote code execution flaw tracked as CVE-2025-52691, according to scans…