News

Trezor ShipMonk data breach

Trezor Customer Data Exposed in ShipMonk Breach: What Happened and What Customers Need to Know

The CyberSec Guru

Trezor says a ShipMonk data breach exposed information belonging to 13,689 customers, including names, emails, phone numbers and shipping addresses

WordPress CVE-2026-65640

WordPress 7.0.4 Fixes Critical Imagick RCE: How a Malicious PNG Could Become Server-Side Code Execution

The CyberSec Guru

WordPress 7.0.4 fixes CVE-2026-65640, an authenticated RCE affecting sites using Imagick and Ghostscript. Learn how malicious PNG reach code execution

LiteLLM supply chain attack

LiteLLM Supply Chain Attack: How the Trivy Compromise Exposed CI/CD Credentials Across Thousands of Organizations

The CyberSec Guru

2,500+ organizations may have been exposed after malicious LiteLLM releases stole 434,000 CI/CD files. See how the Trivy attack stole secrets

CopyEscape

CVE-2026-17106: Docker docker cp Container-to-Host Arbitrary File Write

The CyberSec Guru

CopyEscape (CVE-2026-17106) lets a malicious Docker container abuse docker cp to overwrite host files through a filesystem race and symlink extraction flaw

TCS Data Breach

TCS 800,000-Record Azure Dump Claim: What We Know About the Alleged Employee Data Exposure

The CyberSec Guru

More than 800,000 TCS employee records are allegedly being offered for sale in an Azure dump. Here's what the threat actor claims and what TCS said

CVE-2026-62737

CVE-2026-62737: Windows 11 Kernel Zero-Day via NDIS KLoader and ExecutionContext.sys

The CyberSec Guru

CVE-2026-62737 is a Windows 11 kernel zero-day involving NDIS KLoader and ExecutionContext.sys. Analyze the ACL bypass, task injection and controlled kernel RIP

BTCPay Server vulnerability

BTCPay Server Vulnerability Is Being Actively Exploited to Drain LND Lightning Nodes

The CyberSec Guru

BTCPay Server is under active attack. Learn how the vulnerability exposed LND credentials, drained Lightning nodes, and why users must update!

HCLTech data leak

HCL Technologies Employee Data Claimed Stolen From Azure, 250,000 Records Offered for Sale

The CyberSec Guru

A threat actor claims to sell 250,000+ HCLTech employee records allegedly taken from an Azure tenant using compromised credentials

CVE-2026-65400

CVE-2026-65400: macOS Screen Sharing Authentication Bypass Can Lead to Root-Level Remote Access

The CyberSec Guru

CVE-2026-65400 affects macOS Screen Sharing. Learn how the authentication flaw works, affected versions, exploitation research, detection etc.

Proton VPN AB testing

Proton VPN Pricing A/B Test: How One HTML Tag Correlates With a €12 Difference in What Customers Pay

The CyberSec Guru

An investigation into Proton VPN's pricing page found an A/B-test tag linked to two VPN Plus prices: €2.99 and €3.49 per month