Login
HN Monitor

A recent cyber intrusion into a small French automotive business has highlighted a critical vulnerability in typical cybersecurity remediation strategies. French-speaking attacker known as “Poisson” employed a sophisticated tactic of establishing a secondary, covert access channel before his primary command-and-control (C2) server was taken offline. This ensured continued access to…

Threat actors are actively exploiting multiple security vulnerabilities within Fortinet FortiSandbox appliances, according to a recent advisory from cybersecurity firm Defused Cyber. The firm reported observing exploitation attempts for three specific vulnerabilities, CVE-2026-39813, CVE-2026-39808, and CVE-2026-25089, within a 24-hour period, highlighting an urgent need for organizations using these Fortinet products…

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has officially added a critical security flaw affecting the LiteSpeed cPanel Plugin to its Known Exploited Vulnerabilities (KEV) catalog. This designation mandates that Federal Civilian Executive Branch (FCEB) agencies must implement the necessary patches by June 18, 2026, to mitigate the risk…

Cisco has issued urgent security updates for a critical vulnerability affecting its Catalyst SD-WAN Manager, a widely used network management platform. This medium-severity flaw, identified as CVE-2026-20262, has been observed under active exploitation in the wild, prompting immediate action from affected organizations and government agencies. The vulnerability, which carries a…

Researchers at Obsidian Security have disclosed a critical vulnerability chain (CVSS 9.9) in LiteLLM, an open-source AI gateway, that allows a low-privilege account to achieve full server takeover and execute arbitrary code. This severe flaw, impacting how LiteLLM handles virtual API keys and custom guardrails, exposes sensitive provider keys, encrypted…

A Chinese national has been sentenced to over 11 years in prison for her role in one of the largest cryptocurrency fraud schemes to date. Zhimin Qian, 47, received an 11-year and eight-month sentence for possessing and transferring criminal property, stemming from a fraud investigation that impacted over 128,000 victims…

Secure Logiq has appointed Elias Bechara as its new Regional Director for the Middle East and Africa (MEA) region, effective immediately. Bechara’s appointment signals a strategic move by the video analytics and CCTV manufacturer to further expand its presence and drive growth within the dynamic MEA security markets. The company…

U.S. federal prosecutors have charged three individuals, including two former employees of cybersecurity and tech firms, in connection with a series of BlackCat ransomware attacks that targeted five American companies between May and November 2023. The indictment alleges that these individuals used the notorious BlackCat (also known as ALPHV) ransomware…

A China-affiliated cyber threat actor, identified as UNC6348, has been linked to a recent series of attacks targeting European diplomatic and government entities. Between September and October 2025, the group exploited an unpatched Windows shortcut vulnerability to gain access to sensitive systems, according to a new report by Arctic Wolf.…

Recent warnings highlight a concerning rise in passport presentation attacks, indicating that even sophisticated travel documents may struggle to keep pace with evolving fraud techniques. As identity fraud becomes more prevalent, the security of physical and electronic passports is under scrutiny, prompting calls for enhanced countermeasures. Europol has issued alerts…

Ransomware continues to be a pervasive and damaging cyber threat, encrypting user data and systems and demanding payment for decryption. This malicious software operates by infiltrating computer systems through various entry points, including phishing emails, compromised downloads, and exploited software vulnerabilities. Once active, ransomware systematically encrypts files, rendering them inaccessible.…

Unidentified threat actors are actively exploiting publicly exposed Microsoft Exchange servers to inject malicious JavaScript code into login pages. This sophisticated attack aims to harvest user credentials, posing a significant risk to organizations relying on these critical communication platforms. The discovered method allows attackers to remain largely undetected while capturing…

The Australian Signals Directorate (ASD) has identified a significant and ongoing cyber threat targeting unpatched Cisco IOS XE devices across Australia. A previously undocumented implant, dubbed BADCANDY, is being actively leveraged by attackers to compromise critical network infrastructure. This sophisticated exploitation underscores the persistent dangers posed by unmitigated vulnerabilities in…

A sophisticated new phishing campaign is leveraging a tool called Quantum Route Redirect to launch one-click attacks targeting Microsoft 365 users across 90 countries. This advanced automation platform significantly lowers the technical barrier for cybercriminals, enabling them to conduct widespread phishing operations with unprecedented ease and effectiveness. The United States…

Daon has launched an industry-leading mobile driver’s license (mDL) verification capability, a significant advancement in secure digital identity verification. This new solution, powered by a collaboration with MATTR, allows for the secure and private verification of digital identity credentials, setting a new standard for how users can prove who they…