Skip to content
Monday, June 1, 2026
  • Supply Chain Worm Alert: “Mini Shai-Hulud” Hits Node Ecosystem, Steals CI/CD Secrets at Scale
  • Funnel Builder Plugin Exploited To Steal Credit Cards
  • CIFSwitch: 19-Year-Old Linux Root Bug Found By AI
  • DDoS-as-a-Service: $5 Attacks Now Sold Like Subscriptions
Newsletter

CyDhaal – Your Daily Dose of Cyber Intelligence

Daily Cyber Threats. Zero Noise

Random News
  • Hackers Target Signal Users With Backup Theft Campaign
  • Turla Transforms Kazuar Into Modular P2P Botnet
  • JDownloader Installer Downloads Replaced With Malware
  • Pre-Stuxnet Malware Sabotaged Nuclear Weapon Simulations

CyDhaal – Your Daily Dose of Cyber Intelligence

Daily Cyber Threats. Zero Noise

Newsletter
Random News
  • Privacy Policy
  • Newsletter
  • About CyDhaal
Headlines
  • The Gentlemen Ransomware Exploits SYSTEM Privileges

    3 days ago
  • CIFSwitch Flaw Grants Root Access On Linux Systems

    2 days ago
  • DDoS-as-a-Service: $5 Attacks Now Sold Like Subscriptions

    3 days ago
  • 14 Malicious npm Packages Mimicked Trusted Libraries

    3 days ago
  • Microsoft Named Leader In Gartner Endpoint Protection

    3 days ago
  • Critical 7-Zip Flaw Enables Code Execution Attack

    7 days ago
  • JINX-0164 Targets Crypto Firms With Fake Job Offers

    4 days ago
  • Fake ChatGPT Site Infects Windows And Mac With Malware

    4 days ago
  • Carnival Cruise Confirms Breach Of 6 Million Records

    4 days ago
  • InvisibleFerret Malware Evades Detection With New Format

    7 days ago
  • AI

Ghostwriter APT Targets Ukraine With Platform Lure

CyDhaal Admin1 week ago09 mins

The Ghostwriter APT group has resurfaced with a sophisticated social engineering campaign targeting Ukrainian government institutions. Attackers are leveraging compromised credentials and spoofed communications mimicking the legitimate “Vseosvita” learning platform to distribute malicious payloads.

Read More
  • Zero Day

PAN-OS GlobalProtect Flaw Under Active Exploitation

CyDhaal Admin2 days ago08 mins

A critical authentication bypass vulnerability (CVE-2026-0257) in Palo Alto Networks’ PAN-OS GlobalProtect gateway is being actively exploited in the wild. The flaw allows unauthenticated attackers to bypass authentication mechanisms and gain unauthorized access to protected networks. With a CVSS sc

Read More
  • Vulnerability

CISA Flags Critical Cisco SD-WAN Flaw In KEV Catalog

CyDhaal Admin3 weeks ago04 mins

CISA adds critical Cisco SD-WAN flaw to KEV catalog. CVE-2026-20182 scores perfect 10.0 on CVSS scale. Federal agencies have limited time to patch.

Read More
  • Data Breach

Microsoft Access VBA Poses Hidden Security Threat

CyDhaal Admin1 week ago09 mins

Microsoft Access databases with embedded VBA macros represent a significant yet underestimated security threat to enterprise environments. Unlike Word or Excel macros that face heavy scrutiny and protection mechanisms, Access databases can execute malicious VBA code with minimal security warnings, b

Read More
  • AI

0-Click Exploit Chain Roots Google Pixel 10 Via VPU Flaw

CyDhaal Admin3 weeks ago04 mins

Researchers chain 0-click Dolby exploit with new VPU driver flaw to root Pixel 10. The VPU bug? Just 5 lines of code to read/write kernel memory. Patched Feb 2026

Read More
  • Cyber Espionage

CISA Sounds the Alarm: 7 New Exploited Flaws Added to KEV Catalog (Including 15-Year-Old Flaws)

CyDhaal Admin2 weeks ago2 weeks ago03 mins

CISA has added seven actively exploited vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, including critical flaws in Microsoft Windows, Webmin, Fortinet FortiOS, and others. Federal agencies have until specified deadlines to patch these vulnerabilities, and private sector organi

Read More
  • Ransomware

Foxconn Confirms Ransomware Attack On North American Sites

CyDhaal Admin3 weeks ago04 mins

Foxconn confirms ransomware attack on North American factories. Nitrogen gang claims 8TB of data stolen—11M+ files from top clients compromised.

Read More
  • AI

AI Transforms OSINT As Social Tracking Tools Fade Away

CyDhaal Admin2 weeks ago04 mins

AI is reshaping OSINT: automation powers modern investigations while legacy social tracking tools lose access. The game has changed for digital investigators.

Read More
  • Cyber Espionage

CISA Adds Microsoft Exchange XSS Flaw To KEV Catalog

CyDhaal Admin2 weeks ago04 mins

CISA adds Microsoft Exchange Server XSS vulnerability to KEV Catalog amid active exploitation. Federal agencies have a deadline—but all orgs should patch now.

Read More
  • Zero Day

Palo Alto PAN-OS Zero Day Grants Root Access to Attackers

CyDhaal Admin3 weeks ago3 weeks ago04 mins

Critical 0-day in Palo Alto PAN-OS lets attackers execute code with root privileges on enterprise firewalls. CVE-2026-0300 actively exploited in the wild.

Read More
  • 1
  • 2
  • 3
  • …
  • 23

Recent Posts

  • iOS 26.5 Finally Encrypts iPhone-Android RCS Chats
  • Fake Microsoft Teams Sites Spread ValleyRAT Malware
  • Exchange Server OWA Spoofing Flaw Actively Exploited
  • OpenAI Hit By TanStack npm Supply Chain Attack
  • OpenAI Hit By Malicious npm Package Supply Chain Attack

Recent Comments

No comments to show.

Archives

  • June 2026
  • May 2026

Categories

  • AI
  • Cyber Espionage
  • Data Breach
  • Malware
  • Others
  • Ransomware
  • Vulnerability
  • Zero Day
Copyright © 2026 CyDhaal. All Rights Reserved. Powered By BlazeThemes.