SolarWinds Web Help Desk Exploitation – February 2026
Summary li]:list-decimal”> Apply the latest SolarWinds Web Help Desk patches. Rotate all service and administrative credentials that are associated with SolarWinds Web Help Desk. Conduct…
Summary li]:list-decimal”> Apply the latest SolarWinds Web Help Desk patches. Rotate all service and administrative credentials that are associated with SolarWinds Web Help Desk. Conduct…
A new ClickFix variant dubbed TerminalFix uses fake Cloudflare CAPTCHA prompts on compromised websites to trick victims into executing malicious PowerShell commands in Windows Terminal.…
Broadcom unveiled VMware AI Factory at VMware Explore 2026 in Las Vegas, introducing a software-defined foundation within VMware Private AI Cloud designed to help enterprises…
A proof of concept called HardBreacher allegedly exploits an unpatched local privilege escalation flaw in Kaspersky Antivirus for Endpoint. This vulnerability allows a local user…
Attackers are disguising automated scanning as traffic from AI crawlers operated by OpenAI, Anthropic, Google, Perplexity and other companies while searching websites for exposed credentials…
Healthcare and pharmaceutical-distribution giant McKesson has disclosed a cybersecurity incident involving unauthorized access to third-party applications and the theft of data. McKesson Corporation is an…
Threat actors associated with Aurora (aka Aur0ra) ransomware have been observed using SpaceX’s artificial intelligence (AI)-powered coding assistant Cursor to break into target networks, according…
CVE-2026-77846, a newly disclosed AshSqlite vulnerability, can allow attackers to access hidden or sensitive fields stored inside JSON and map columns when applications pass untrusted…
Anthropic warned users over the weekend that a threat actor is using widely available infostealer malware to hijack active Claude login sessions from infected computers,…
Key points OpenAI plans to stop providing AI models to Cursor after SpaceX completed its US$60 billion acquisition of Anysphere, the startup behind Cursor. OpenAI…
The researcher known as Nightmare Eclipse has dropped another zero-day — this time a privilege escalation exploit targeting a Kaspersky endpoint security product. Nightmare Eclipse,…
Infostealers Are Hijacking Claude Sessions and Draining Subscriptions Pierluigi Paganini August 31, 2026 Infostealers can steal active Claude sessions, bypass 2FA and drain paid usage.…