⚠️ ‘Popa’ Botnet Linked to Publicly-Traded Israeli Firm

📝 For the past four years, a sprawling Android-based botnet called Popa has forced millions of co...

https://krebsonsecurity.com/2026/06/popa-botnet-linked-to-publicly-traded-israeli-firm/

📰 Krebs on Security

#ZeroDay #CyberSecurity

‘Popa’ Botnet Linked to Publicly-Traded Israeli Firm – Krebs on Security

🏛️ CISA Adds One Known Exploited Vulnerability to Catalog

📝 CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog ,...

https://www.cisa.gov/news-events/alerts/2026/06/18/cisa-adds-one-known-exploited-vulnerability-catalog

📰 Alerts

#GovSec #CVE #ZeroDay

When the next zero-day drops, will you be scrambling for hours or executing a response in minutes?

In this clip Josh Bressers discusses the power of an SBOM inventory. 📚 See how SBOMs work for a #zeroday in this on-demand webinar: https://go.anchore.com/rapid-incident-response-with-sboms/ #SBOM #Cybersecurity

ClickFix si evolve: BabaDeda, Lorem Ipsum Loader e Potemkin portano ransomware e RAT con architetture modulari anti-detection

Tre ricerche indipendenti documentano l'evoluzione di ClickFix come framework di delivery ransomware di prima scelta: BabaDeda Loader, Lorem Ipsum Loader (attribuito a Vanilla Tempest/Rhysida) e Potemkin mostrano un'architettura sempre più modulare pensata per eludere il rilevamento.

https://insicurezzadigitale.com/clickfix-si-evolve-babadeda-lorem-ipsum-loader-e-potemkin-portano-ransomware-e-rat-con-architetture-modulari-anti-detection/

«Rekord-Datenleck — 24 Milliarden Zugangsdaten offen im Netz:
Ein ungeschützter Server enthielt 24 Milliarden Zugangsdaten im Klartext. Laut Cybernews sind Milliarden Konten ohne Multi-Faktor-Authentifizierung bedroht»

Ob nun Arch Linux, JavaScript, Microsoft Produkte oder Online-Dienste, fast kein Tag ohne Zero-Day Meldungen. Nun aber Kundendaten im Klartext ungeschützt aufbewahren ist so was von Vorgestern.

🔓 https://www.it-daily.net/it-sicherheit/cybercrime/rekord-datenleck-24-milliarden

#hacker #datenschutz #datenleck #online #zeroday #klartext

Rekord-Datenleck: 24 Milliarden Zugangsdaten offen im Netz

Rekord-Datenleck: Ein ungeschützter Server enthielt 24 Milliarden Zugangsdaten im Klartext. Laut Cybernews sind Milliarden Konten bedroht.

Onlineportal von IT Management

🔴 Cyber offenses now account for around a third of all crime acro...

📝 Cybercrime now ...

https://www.theregister.com/cyber-crime/2026/06/18/cyber-offenses-now-account-for-around-a-third-of-all-crime-across-asia-and-south-pacific/5257716

📰 www.theregister.com - Articles

#ZeroDay #Malware

Cyber offenses now account for around a third of all crime across Asia and South Pacific

Latest Interpol review shows how scams continue to dominate, and AI-enabled attackers prove too hot to handle for cash-strapped regions

theregister

Microsoft Tackles RoguePlanet Defender Flaw with Imminent Patch

Microsoft is working on a patch to fix a serious security flaw in Microsoft Defender, known as RoguePlanet, which could allow hackers to gain elevated privileges on affected systems. A high-quality security update is imminent to address this vulnerability and protect users.

https://osintsights.com/microsoft-tackles-rogueplanet-defender-flaw-with-imminent-patch?utm_source=mastodon&utm_medium=social

#ZeroDay #MicrosoftDefender #Rogueplanet #Cve202650656 #ElevationOfPrivilege

Microsoft Tackles RoguePlanet Defender Flaw with Imminent Patch

Microsoft to patch RoguePlanet Defender flaw soon, fix privilege escalation bug now, protect against CVE-2026-50656 vulnerability with imminent security update.

OSINTSights

🔒 The Agentic SOC: Solving Security’s Investigation Capacity Crisis in the Fron...

📝 The security industry spent the last decade solving detection. We got the alert i...

https://www.sentinelone.com/blog/frontier-ai-and-agentic-soc/

📰 Cybersecurity Blog | SentinelOne

#ThreatIntel #ZeroDay

The Agentic SOC: Solving Security's Investigation Capacity Crisis in the Frontier AI Era

SentinelOne’s Purple AI Agentic Investigation, now GA, solves the SOC investigation capacity gap with zero-click, machine-speed alert analysis.

SentinelOne

📰 Zero-Day 'RoguePlanet' in Microsoft Defender Grants SYSTEM-Level Control

🚨 CRITICAL ZERO-DAY: A new 'RoguePlanet' vulnerability in Microsoft Defender allows local attackers to gain full SYSTEM control on patched Windows 10/11 systems. PoC is public. No patch available. ⚠️ #RoguePlanet #ZeroDay #CyberSecurity #Windows

🌐 cyber[.]netsecops[.]io

🔗 https://cyber.netsecops.io/articles/rogueplanet-zero-day-in-microsoft-defender-allows-full-system-control/?utm_source=mas…

🤖 Google’s Vertex AI SDK could allow RCE through buc...

📝 A design flaw i...

https://www.csoonline.com/article/4186193/googles-vertex-ai-sdk-could-allow-rce-through-bucket-squatting.html

📰 Google’s Vertex AI SDK could allow RCE through bucket squatting | CSO Online

#AI #CloudSec #ZeroDay

Google’s Vertex AI SDK could allow RCE through bucket squatting

Google reportedly patched a flaw in the Vertex AI SDK for Python that could allow attackers to hijack model uploads and trigger remote code execution across tenants.

CSO Online