Two-Factor Authentication Bypass: Attackers Brute-Force 2FA Systems, Gaining Access to Enterprise Accounts
Throughout June 2026, incident responders have documented a pattern of attackers bypassing two-factor authentication systems through brute-force attacks against one-time password (OTP) generation endpoints. In…
France’s Tchap Government Messaging Breach Signals Weak Oversight of Encrypted State Communications
On June 7, 2026, France’s National Cybersecurity Agency (ANSSI) detected suspicious activity on Tchap, the government’s homegrown messaging service designed for secure communications across French…
OpenSSL CVE-2026-45447: Heap Use-After-Free in PKCS#7 Verification Enables S/MIME RCE, Discovered With AI
On June 9, 2026, OpenSSL disclosed CVE-2026-45447, a high-severity heap use-after-free vulnerability (CVSS 9.8) in the PKCS7_verify() function that allows remote code execution via specially…
Microsoft Patch Tuesday June 2026: Record 200+ Vulnerabilities in Single Release, Three Pre-Disclosure Zero-Days
On June 9, 2026, Microsoft released Patch Tuesday security updates addressing 206 vulnerabilities—the largest single-month disclosure in the 23-year history of the program, exceeding the…
Check Point VPN Zero-Day (CVE-2026-50751) Actively Exploited by Qilin Ransomware, CISA Orders Emergency Patch
On June 8, 2026, Check Point disclosed CVE-2026-50751, a critical authentication bypass (CVSS 9.3) affecting Remote Access VPN, Mobile Access, and Spark Firewall products running…
Ondas (ONDS) Buys Cyberhawk for $125 Million, Pulling Critical Infrastructure Inspection Data Into the Defense and Security Perimeter
On June 18, 2026, Ondas Inc. (Nasdaq: ONDS) announced a definitive agreement to acquire Cyberhawk Holdings Limited for approximately $125 million, roughly 95% in cash,…
Fable 5’s Export Ban: When AI Vulnerability Discovery Became a National Security Cyber Weapon
Strip away the politics and the IPO timing and the export-control novelty, and the Fable 5 suspension is, at its core, a cybersecurity story. A…
Global Scam Losses Near Half a Billion, One in Seven Consumers Hit in 2025
Global online fraud has crossed a threshold that can no longer be treated as background noise. Bitdefender’s newly released 2026 Global Scam Intelligence Report —…
Google’s $32 Billion Wiz Bet Meets the OT Grid: Hitachi Becomes Its Critical-Infrastructure Channel
Hitachi and Google Cloud expanded their alliance this week, and the framing was physical AI — autonomous control of equipment, sensor-driven decision-making, frontline workers handing…
Cybersecurity Stocks Fall Friday as Nasdaq’s 4.2% Tech Rout Sweeps Up CrowdStrike and Palo Alto
Cybersecurity stocks fell on Friday, June 5, dragged down with the rest of high-multiple technology as a hotter-than-expected jobs report revived fears of a Federal…
IdentityTheft.org Sells for $30,000 on Sedo
IdentityTheft.org has reportedly changed hands for $30,000 on Sedo, which is one of those sales that quietly feels more meaningful than the raw number might…
Infosecurity Europe 2026, June 2–4, London
Europe’s cybersecurity industry is preparing for the return of one of its largest annual gatherings as Infosecurity Europe 2026 heads back to ExCeL London from…
Ocean Launches From Stealth With $28 Million to Reinvent Email Security Using AI Agents
Ocean, a new cybersecurity startup focused on AI-native email protection, has officially emerged from stealth with $28 million in total funding. The round was led…
Salt Typhoon, Volt Typhoon, Flax Typhoon: China’s 2024 Campaign Against U.S. Infrastructure
Three Chinese state-sponsored campaigns disclosed in 2023 and 2024 represent a qualitative shift in the publicly documented threat from Beijing. Previous Chinese cyber operations —…
Foreign Criminal Cyberattacks Against the United States: Ransomware, Botnets, and Financial Fraud
The Congressional Research Service’s inventory of foreign criminal cyberattacks against the United States runs from 2003 through 2025 and documents operations by individuals and groups…
Iran’s Cyber Operations: Infrastructure Attacks, Election Interference, and IRGC Proxies
Iran’s documented cyber operations against the United States are distinguished by their breadth of target selection and their use of both the Islamic Revolutionary Guard…
North Korea’s Cyber Program: From Sony to Blockchain Theft
North Korea’s cyber program is unlike any other nation-state operation in the CRS record. Where China steals intellectual property to fuel industrial development and Russia…
Russia’s State Cyber Operations: From SolarWinds to Logistics Warfare
Russia’s documented cyber operations against the United States and its allies span three distinct intelligence and military organizations — the FSB, the GRU, and the…
China’s Cyber Campaigns Against the United States: Two Decades of Documented Operations
The People’s Republic of China runs the most sustained documented cyber espionage program targeting the United States. The Congressional Research Service’s updated cyberattack compendium covers…
How the U.S. Government Attributes Cyberattacks — and Why It Is Harder Than It Looks
Attributing a cyberattack to a specific actor or nation is an analytic exercise that combines forensic investigation with intelligence tradecraft, and the U.S. government has…
Thirteen Years of Cyberattacks Against the United States: The CRS Record
The Congressional Research Service released an updated inventory of significant cyberattacks against the United States spanning 2012 through 2025. The document, R46974, catalogues operations attributed…
Billington Critical Infrastructure CyberSecurity Summit, Nov. 17–18, 2026, San Antonio, Texas
Billington CyberSecurity is launching its first dedicated Critical Infrastructure CyberSecurity Summit on Nov. 17–18, 2026 at Henry B. Gonzalez Convention Center, bringing together government officials,…
ShinyHunters Breaches Canvas LMS, Threatening Data on 275 Million Users
The criminal extortion group ShinyHunters has claimed responsibility for a sweeping breach of Instructure’s Canvas learning management system, one of the most widely deployed academic…
NETSCOUT FY2026: Revenue Growth, Margin Expansion, and a Balance Sheet That Tells the Real Story
NETSCOUT Systems reported fiscal year 2026 results on May 7, 2026, covering the twelve months ended March 31, 2026. Total revenue of $859.5 million grew…