Critical VMware vCenter and ESX Flaws Fixed
Critical VMware vCenter and ESX Flaws Fixed Broadcom has released a new VMware advisory, VMSA-2026-0006, addressing five vulnerabilities in VMware vCenter, ESX, Workstation, Fusion, and related VMware...
Russia Charges Pavel Durov: What It Means for Cybercrime
Russia Charges Pavel Durov: What It Means for Cybercrime On July 29, 2026, Russia’s Federal Security Service charged Telegram founder Pavel Durov with aiding terrorist activity and placed him on an in...
Dark Web Profile: Section9 Ransomware
Dark Web Profile: Section9 Ransomware Section9 or SECTION9, is a ransomware operation that skipped the slow, quiet build-up most new brands go through before any victim ever appears on a leak site. Wi...
Dark Web Price Index 2026: How Much Is Your Data Worth?
Dark Web Price Index 2026: How Much Is Your Data Worth? TL;DR: Personal records sell for $1 to $4, payment cards from $5, medical records $250 to $310, bank logins $200 to $500, and corporate network ...
Are Meta’s AI Smart Glasses a Privacy Risk?
Are Meta’s AI Smart Glasses a Privacy Risk? Meta’s AI smart glasses and data privacy concerns come from a simple issue: the device puts cameras, microphones, and AI assistant features into eyewear tha...
Dark Web Profile: ExfilSquad
Dark Web Profile: ExfilSquad ExfilSquad is an emerging data-extortion group that surfaced with a rapid wave of public claims and a Tor-hosted Data Leak Site (DLS). The group is associated with an “onl...
Meccha Chameleon Discord Server Hijacked After Steam Workshop Malware ...
Meccha Chameleon Discord Server Hijacked After Steam Workshop Malware Incident The compromise removed official staff from the community server and turned a trusted communication channel into a potenti...
Cyber Risks for Wearable Technologies
Cyber Risks for Wearable Technologies A smartwatch can unlock a door, approve a payment, display an authentication prompt, read a message, and record a user’s heart rhythm without ever leaving the wri...
Alleged Healthcare, Military, RDP, SEP Tlaxcala, and GulfJobs Data Lea...
Alleged Healthcare, Military, RDP, SEP Tlaxcala, and GulfJobs Data Leaks SOCRadar Dark Web Team identified several new underground posts involving alleged healthcare data exposure, military infrastruc...
CVE-2025-66376: Russian APT Exploits Zimbra Zero-Day
CVE-2025-66376: Russian APT Exploits Zimbra Zero-Day CVE-2025-66376 is a stored cross-site scripting vulnerability in the Classic UI of Zimbra Collaboration Suite, creating a path to mailbox theft and...
WP Botnet Master: How a Security Researcher’s Paid Course Built a 2.1-...
WP Botnet Master: How a Security Researcher’s Paid Course Built a 2.1-Million-Credential WordPress Botnet On 13 July 2026, SOCRadar Researchers recovered the complete toolkit behind a distributed Word...
SharedRoot: Sandbox Escape in Claude Cowork
SharedRoot: Sandbox Escape in Claude Cowork SharedRoot is the name researchers gave to a sandbox-escape chain affecting the local execution mode of Claude Cowork on macOS. The chain uses CVE-2026-4633...
Iranian Hackers Broaden PLC Attacks on US Critical Infrastructure
Iranian Hackers Broaden PLC Attacks on US Critical Infrastructure On July 22, 2026, seven US government agencies updated joint Cybersecurity Advisory AA26-097A, first published in April, warning that ...
Oracle July 2026 CPU: 1,449 Patches, 10 Score Max
Oracle July 2026 CPU: 1,449 Patches, 10 Score Max Oracle July 2026 Critical Patch Update ships 1,449 patches covering 1,434 CVEs across 334 products in 32 product families, making it the largest quart...
Adobe Acrobat WhatsApp Flaw “HermeticReader”
Adobe Acrobat WhatsApp Flaw “HermeticReader” Adobe and WhatsApp have rolled out a new way to handle PDF files without ever leaving a chat, and the timing puts a spotlight on a vulnerability that Adobe...
WhatsApp Usernames Explained: Privacy Gains and Scam Risks
WhatsApp Usernames Explained: Privacy Gains and Scam Risks How WhatsApp’s shift from phone numbers to usernames changes privacy for users, and the brand and executive impersonation surface it opens fo...
CVE-2026-50522 PoC Fuels SharePoint Attacks
CVE-2026-50522 PoC Fuels SharePoint Attacks Attackers are exploiting CVE-2026-50522, a critical Microsoft SharePoint Server vulnerability, after public proof-of-concept (PoC) exploit code became avail...
OpenAI Models Hacked Hugging Face During a Cyber Test
OpenAI Models Hacked Hugging Face During a Cyber Test [30.07.2026] Update: The Scope Keeps Growing During an internal cybersecurity benchmark in July 2026, OpenAI’s GPT-5.6 Sol and a more capable unre...
Dark Token Economy: Unauthorized LLM API Proxies Harvest Prompts for F...
Dark Token Economy: Unauthorized LLM API Proxies Harvest Prompts for Fraud and Distillation The dark token economy is a parallel market where unauthorized proxy services resell access to frontier LLMs...
CVE-2026-6875 Hits ServiceNow AI Platform
CVE-2026-6875 Hits ServiceNow AI Platform Attackers are reportedly exploiting CVE-2026-6875, a critical pre-authentication vulnerability in the ServiceNow AI Platform. The flaw can allow an unauthenti...
