Yazoul - Cybersecurity Alerts

38 Followers
33 Following
1,002 Posts

๐Ÿ” Yazoul Security โ€” CVE Advisories ยท Data Breaches ยท Cyber News

Automated security intelligence: daily CVE alerts, breach reports, correlated news, and learning resources.

๐ŸŒ www.yazoul.net
๐Ÿ“จ Newsletter: www.yazoul.net/
๐Ÿ”— @[email protected]

#InfoSec #Cybersecurity #CVE #ThreatIntel #DataBreach

๐Ÿ”ต THREAT INTELLIGENCE

CISA Adds Cisco, Chrome, and Arista Flaws to KEV Catalog Amid Active Exploitation

Vulnerability | CRITICAL
CVEs: CVE-2026-20245

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added three new vulnerabilities to its Known Exploited Vulnerabilities...

Full analysis:
https://www.yazoul.net/news/article/cisa-adds-cisco-chrome-and-arista-flaws-to-kev-catalog-amid-active-exploitation

#ThreatIntel #Malware #SecurityOps

CISA adds Cisco, Chrome flaws to KEV catalog

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, following reports of active exploitati

Yazoul Security

๐Ÿ”ต THREAT INTELLIGENCE

LiteLLM Flaw CVE-2026-42271 Exploited in the Wild, Chains to Unauthenticated RCE

Vulnerability | CRITICAL
CVEs: CVE-2026-42271

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a high-severity flaw impacting BerriAI LiteLLM to its Known...

Full analysis:
https://www.yazoul.net/news/article/litellm-flaw-cve-2026-42271-exploited-in-the-wild-chains-to-unauthenticated-rce

#CyberSecurity #APT #CyberNews

LiteLLM CVE-2026-42271 exploited, chains to RCE

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a high-severity flaw impacting BerriAI LiteLLM to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of

Yazoul Security

๐Ÿ›ก THREAT INTEL | Cal Fresh

๐ŸŸข Actor "termite" claims Undisclosed

โš ๏ธ Unverified claim

https://www.yazoul.net/intel/claim/2026-06-10-cal-fresh-ransomware-attack-by-termite-june-2026

#DarkWeb #DataBreach #ThreatIntel #CyberSecurity #InfoSec

Cal Fresh Ransomware Attack by Termite (June 2026)

Termite ransomware group claims attack on Cal Fresh (calfresh.ca.gov). Unverified breach of California food assistance data. Monitor for updates.

Yazoul Security

๐Ÿ”ถ DATA BREACH ALERT

University of Nottingham - 455K accounts exposed

Compromised data:
Email Addresses, Names, Phone Numbers

Check if you're affected and what to do:
https://www.yazoul.net/breaches/breach/university-of-nottingham-breach-455k-records-exposed-2026

#DataBreach #CyberAttack #InfoSec

University of Nottingham Breach: 455K Records Exposed (2026)

In June 2026, the University of Nottingham was the target of a cyber attack , later linked to a ShinyHunters "pay or leak" extortion campaign. Tens of gigabytes of data were subsequently published online and included 455k unique email addresses along with extensive personal information including nam...

Yazoul Security

๐Ÿ›ก THREAT INTEL | nottingham.ac.uk

๐ŸŸข Actor "shinyhunters" claims 40GB

Allegedly exposed (+2 more)
โ€ข Email addresses
โ€ข Phone numbers
โ€ข Physical addresses

โš ๏ธ Unverified claim

https://www.yazoul.net/intel/claim/2026-06-10-university-of-nottingham-hit-by-shinyhunters-june-2026

#DarkWeb #DataBreach #ThreatIntel #CyberSecurity #InfoSec

University of Nottingham Hit by ShinyHunters (June 2026)

ShinyHunters claims 40GB+ data theft from University of Nottingham, including billing records and student finance data. Unverified claim under analysis.

Yazoul Security

๐Ÿ”ต THREAT INTELLIGENCE

Chrome V8 Zero-Day CVE-2026-11645 Exploited in the Wild - Patch Now

Vulnerability | CRITICAL
CVEs: CVE-2026-11645

Google has released security updates to address 74 vulnerabilities, including one that has come under active exploitation in the wild. The...

Full analysis:
https://www.yazoul.net/news/article/chrome-v8-zero-day-cve-2026-11645-exploited-in-the-wild-patch-now

#InfoSec #ZeroDay #ThreatHunting

Chrome V8 zero-day CVE-2026-11645 exploited in wild

Google has released security updates to address 74 vulnerabilities, including one that has come under active exploitation in the wild. The high-severity vulnerability, tracked as CVE-2026-11645 (CVSS

Yazoul Security

๐Ÿ›ก THREAT INTEL | WCM Remedium

๐Ÿ”ด Actor "thegentlemen" claims Undisclosed

Allegedly exposed
โ€ข Medical records
โ€ข Health records

โš ๏ธ Unverified claim

https://www.yazoul.net/intel/claim/2026-06-08-wcm-remedium-ransomware-attack-by-thegentlemen-june-2026

#DarkWeb #DataBreach #ThreatIntel #CyberSecurity #InfoSec

WCM Remedium Ransomware Attack by thegentlemen (June 2026)

WCM Remedium allegedly hit by thegentlemen ransomware. Polish healthcare provider targeted. Data exposure claims unverified. Read our analysis.

Yazoul Security

๐Ÿ”ด New security advisory:

CVE-2026-25089 affects multiple systems.

โ€ข Impact: Remote code execution or complete system compromise possible
โ€ข Risk: Attackers can gain full control of affected systems
โ€ข Mitigation: Patch immediately or isolate affected systems

Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-25089-fortisandbox-unauth-rce-poc

#InfoSec #ZeroDay #ThreatIntel

FortiSandbox unauth RCE (CVE-2026-25089) [PoC]

CVE-2026-25089: critical unauthenticated OS command injection in FortiSandbox 5.0.x/4.4.x/4.2.x allows remote code execution. Update to patched versions per vendor advisory.

Yazoul Security

๐ŸŸ  New security advisory:

CVE-2026-11645 affects Google Chrome.

โ€ข Impact: Significant security breach potential
โ€ข Risk: Unauthorized access or data exposure
โ€ข Mitigation: Apply patches within 24-48 hours

Full breakdown:
https://www.yazoul.net/advisory/cve/cve-2026-11645-chrome-v8-rce-actively-exploited

#Cybersecurity #SecurityPatching #HackerNews

Chrome V8 RCE actively exploited (CVE-2026-11645)

CVE-2026-11645: Google Chrome V8 RCE exploited in the wild in versions before 149.0.7827.103 (CVSS 8.8). Update Chrome immediately to the latest version.

Yazoul Security

๐Ÿ›ก THREAT INTEL | The Banyans Health and Wellness

๐Ÿ”ด Actor "qilin" claims Undisclosed

โš ๏ธ Unverified claim

https://www.yazoul.net/intel/claim/2026-06-09-the-banyans-health-ransomware-claim-by-qilin-june-2026

#DarkWeb #DataBreach #ThreatIntel #CyberSecurity #InfoSec

The Banyans Health Ransomware Claim by Qilin (June 2026)

Qilin ransomware group claims attack on The Banyans Health and Wellness, an Australian healthcare provider. Unverified claims with potential data exposure.

Yazoul Security