Nyhetsnavet

Samlar nyheter från utvalda källor. Logga in för att spara urval och skapa profiler.

Uppdaterad 2026-10-08 11:45 Nästa om --:-- Försenad
14 av 14 källor 10 per källa

IT-säkerhet och cybersäkerhet i realtid — CVE-varningar, sårbarhetsrapporter, incidenter och hotinformation från NVD, CISA, BleepingComputer och fler SOC-källor.

Snabbfilter
Toppnyheter Säkerhet
SecurityWeek Vulnerabilities 28 min
SecurityWeek Vulnerabilities

Fake Decryption Tools Masked $11M Markup in Ransomware Recovery Scheme

Zohar Pinhasi was paying ransoms to obtain decryption keys and then charging victims substantially more for remediation. The post Fake Decryption Tools Masked $11M Markup in Ransomware Recovery Scheme appeared first...

2026-10-08 11:27 28 min
Full coverage Flera perspektiv på samma ämne.
2 källor · 2026-10-07 22:50
BleepingComputer The Hacker News
Fler källor:
Säkerhet 30 artiklar
SecurityWeek Vulnerabilities ikon
SecurityWeek Vulnerabilities
Fake Decryption Tools Masked $11M Markup in Ransomware Recovery Scheme

Zohar Pinhasi was paying ransoms to obtain decryption keys and then charging victims substantially more for remediation. The post Fake Decryption Tools Masked $11M Markup in Ransomware Recovery Scheme appeared first...

SecurityWeek Vulnerabilities ikon SecurityWeek Vulnerabilities
SecurityWeek Vulnerabilities ikon
SecurityWeek Vulnerabilities
Oracle Health Data Breach Tally Climbs to Nearly 20 Million

The figure is far higher than the counts that surfaced in earlier filings and patient notifications. The post Oracle Health Data Breach Tally Climbs to Nearly 20 Million appeared first on SecurityWeek.

SecurityWeek Vulnerabilities ikon SecurityWeek Vulnerabilities
SecurityWeek Vulnerabilities ikon
SecurityWeek Vulnerabilities
FortiBleed Attackers Locking Victims Out of Fortinet Devices

Attackers are creating new accounts and deleting existing ones and passwords to prevent legitimate access. The post FortiBleed Attackers Locking Victims Out of Fortinet Devices appeared first on SecurityWeek.

SecurityWeek Vulnerabilities ikon SecurityWeek Vulnerabilities
Cisco PSIRT ikon
Cisco PSIRT
Cisco Meraki Security Hardening Release: October 2026

As part of Cisco's ongoing commitment to proactive security and product quality, engineering teams conducted a comprehensive internal security review. This review resulted in software hardening releases that address...

Cisco PSIRT ikon Cisco PSIRT
BleepingComputer ikon
BleepingComputer
Ransomware recovery CEO charged over secret ransom payments

The owner of ransomware remediation company MonsterCloud has been charged with allegedly defrauding ransomware victims by secretly paying their attackers for decryptors while claiming to use proprietary technology to...

BleepingComputer ikon BleepingComputer
BleepingComputer ikon
BleepingComputer
Hackers hijack Google domains after breaching ccTLD registries

Hackers obtained unauthorized HTTPS certificates for several Google domains and hijacked domains in the country-code top-level domains (ccTLDs) for Ghana, American Samoa, and Sierra Leone after compromising third-...

BleepingComputer ikon BleepingComputer
GitHub Security Advisories ikon
GitHub Security Advisories
CVE-2026-105642: Ghost: Remote Code Execution via Bookmark Card Images

### Impact An image processing library bundled with Ghost contained a vulnerability in its SVG handling. Any staff user, including Contributors, could create a bookmark card for an attacker-controlled website,...

GitHub Security Advisories ikon GitHub Security Advisories
GitHub Security Advisories ikon
GitHub Security Advisories
CVE-2026-105643: Ghost: Stored XSS via Embed Card Previews

### Impact Embed cards in the Ghost editor could be used to bypass the fix for GHSA-8vhf-xxpj-4qrg. Any staff user, including Contributors, could store scripts in post content that ran when another staff user opened...

GitHub Security Advisories ikon GitHub Security Advisories
GitHub Security Advisories ikon
GitHub Security Advisories
CVE-2026-105644: Ghost : Stored XSS via SVG Files in Content Imports

### Impact SVG images included in content imports were stored without sanitization. An attacker who convinced an Administrator to import a crafted file could host scripts on the site's domain, possibly resulting in...

GitHub Security Advisories ikon GitHub Security Advisories
Ladda fler
Visar 30 av 140 artiklar