LATEST

ZerOwl — Find Vulnerabilities Before Hackers Do
Weekly Cybersecurity Newsletter — Top 50 Cybersecurity Stories of the Week (August 3–7, 2026)

Weekly Cybersecurity Newsletter — Top 50 Cybersecurity Stories of the Week (August 3–7, 2026)

CYBER ATTACKZerowl

Welcome to this edition of the ZeroOwl weekly cybersecurity newsletter — your cybersecurity bulletin covering the 50 most important stories from August 3.

Weekly Cyber Security Newsletter — OWASP Top 10 for LLM, Cisco IOS XE Flaw, and 1-Click Cursor RCE +20 Stories

Weekly Cyber Security Newsletter — OWASP Top 10 for LLM, Cisco IOS XE Flaw, and 1-Click Cursor RCE +20 Stories

CYBER ATTACKZerowl

This week's roundup highlights the exploitation of Apache Tomcat and SonicWall SMA vulnerabilities, a nearly two-decade-old Linux kernel flaw, critical.

Shai-Hulud Returns With Self-Propagating npm Worm Targeting Developer Credentials

Shai-Hulud Returns With Self-Propagating npm Worm Targeting Developer Credentials

CYBER ATTACKZerowl

A campaign was identified on August 4, 2026, targeting the maintainer of Keyv, a popular JavaScript key-value storage library This article explores.

Payroll Pirates AiTM Campaign Hijacks Microsoft 365 Sessions to Hunt Payroll and Finance Mailboxes

Payroll Pirates AiTM Campaign Hijacks Microsoft 365 Sessions to Hunt Payroll and Finance Mailboxes

CYBER ATTACKZerowl

Discover how Arctic Wolf has detected an ongoing Microsoft 365 phishing campaign targeting organizations within healthcare, education, manufacturing.

OpenAI's Next AI Model Astra Shows Cyber Performance Strong Enough to Trigger Pause

OpenAI's Next AI Model Astra Shows Cyber Performance Strong Enough to Trigger Pause

OpenAI has suspended certain "internal operations" related to its upcoming artificial intelligence (AI) model Astra following an internal assessment.

New WordPress Supply Chain Attack Compromises Themes via Poisoned API Response

New WordPress Supply Chain Attack Compromises Themes via Poisoned API Response

CYBER ATTACKZerowl

A supply chain attack on BdThemes WordPress plugins exposed administrators to account takeover, webshell deployment, and persistent backdoors This article.

Microsoft to Launch New Security Detection Report in Teams

Microsoft to Launch New Security Detection Report in Teams

CYBER ATTACKZerowl

Microsoft is set to introduce a new Security Detection Report within the Teams admin center, providing administrators with an eagerly awaited.

Metabase Zero-Day Attack Lets Hackers Gain Admin Access and Steal Database Credentials

Metabase Zero-Day Attack Lets Hackers Gain Admin Access and Steal Database Credentials

CYBER ATTACKZerowl

A severe unauthenticated SQL injection vulnerability in Metabase has been exploited by attackers for maximum privileges and credential theft across.

Malware Abuses Windows Hello for Business Key to Authenticate Microsoft Entra ID

Malware Abuses Windows Hello for Business Key to Authenticate Microsoft Entra ID

CYBER ATTACKZerowl

A newly revealed technique demonstrates how malware in a compromised Windows user session can exploit the Windows Hello for Business (WHFB) system's.

Top 5 this week

Page 27 of 271