“The JDY botnet comprises over 1,500 SOHO [small office and home office] and IoT devices and operates as a centrally controlled, high-performance scanner used to discover, fingerprint, and continuously map exposed services at scale,” Lumen’s
Meta to Use Off-Site Business Data for Feed and AI Personalization
“Businesses often share information about people’s activity on their sites with us to make ads more relevant,” Meta said in a statement.
“We already use this data – like games you play
One-Character Linux Kernel Flaw Enables Local Root Access, Exploits Now Public
The flaw, CVE-2026-23111, sits in the kernel’s nf_tables packet-filtering code and was patched upstream on February 5, 2026. Exodus Intelligence released its full technical walkthrough on June 8, and it is not even
Cisco Patches CVE-2026-20230 in Unified CM as Exploit Code Goes Public
It is tracked as CVE-2026-20230, and proof-of-concept exploit code is already public. Cisco’s PSIRT says it has not seen the flaw used in attacks yet. The PoC shortens that runway.
The flaw is a server-side request forgery.
MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 Countries
The activity targeted industrial and electronics manufacturing, education and public-sector bodies, financial services, and professional services, per the Threat Hunter Team from Symantec and Carbon Black.
⚡ Weekly Recap: Linux Flaws, Defender 0-Days, Router Botnets, and Supply Chain Chaos
A sketchy dev tool got people pwned, old bugs came back from the dead, and security products somehow needed protecting from themselves. A bunch of companies spent the week checking old boxes and forgotten servers they should’ve patched years ago. Good times.
Phishing crews are getting smarter too – less obvious scam junk, more targeted stuff that actually
First VPN Dismantled in Global Takedown Over Use by 25 Ransomware Groups
The disruption of First VPN Service was led by France and the Netherlands, with several other nations supporting the investigation since December
Researchers Uncover Pre-Stuxnet ‘fast16’ Malware Targeting Engineering Software
According to a new report published by SentinelOne, the previously undocumented cyber sabotage framework dates back to 2005, primarily targeting high-precision calculation software to tamper
FIRESTARTER Backdoor Hit Federal Cisco Firepower Device, Survives Security Patches
FIRESTARTER, per CISA and the U.K.’s National Cyber Security Centre (NCSC), is assessed to be a backdoor designed for remote access and
SystemBC C2 Server Reveals 1,570+ Victims in The Gentlemen Ransomware Operation
According to new research published by Check Point, the command-and-control (C2 or C&C) server linked to SystemBC has led to the discovery of a botnet of more than 1,570 victims.
“SystemBC establishes SOCKS5 network tunnels within
