Apple discloses first actively exploited zero-day of 2026

The vendor said the memory-corruption defect was exploited to target specific people, but it did not describe the objectives of the attack.

The post Apple discloses first actively exploited zero-day of 2026 appeared first on CyberScoop.

Continue reading Apple discloses first actively exploited zero-day of 2026

0APT ransomware group rises swiftly with bluster, along with genuine threat of attack

Most signs suggest the group is running a massive hoax by claiming hundreds of initial victims, but at least some of the threat 0APT poses is grounded in truth backed by proven capabilities.

The post 0APT ransomware group rises swiftly with bluster, along with genuine threat of attack appeared first on CyberScoop.

Continue reading 0APT ransomware group rises swiftly with bluster, along with genuine threat of attack

Microsoft Patch Tuesday matches last year’s zero-day high with six actively exploited vulnerabilities

Microsoft said three of the exploited vulnerabilities were publicly known, suggesting attackers already had details about the defects prior to Tuesday’s release.

The post Microsoft Patch Tuesday matches last year’s zero-day high with six actively exploited vulnerabilities appeared first on CyberScoop.

Continue reading Microsoft Patch Tuesday matches last year’s zero-day high with six actively exploited vulnerabilities

Fallout from latest Ivanti zero-days spreads to nearly 100 victims

Shadowserver scans have identified 86 compromised instances, and researchers warn multiple threat groups are involved.

The post Fallout from latest Ivanti zero-days spreads to nearly 100 victims appeared first on CyberScoop.

Continue reading Fallout from latest Ivanti zero-days spreads to nearly 100 victims

Alleged 764 member arrested, charged with CSAM possession in New York

Authorities have arrested multiple members of 764 during the past year, reflecting heightened law enforcement activity targeting the violent extremist collective.

The post Alleged 764 member arrested, charged with CSAM possession in New York appeared first on CyberScoop.

Continue reading Alleged 764 member arrested, charged with CSAM possession in New York

Ivanti’s EPMM is under active attack, thanks to two critical zero-days

Limited attacks occurred prior to Ivanti’s disclosure, followed by mass exploitation by multiple threat groups. More than 1,400 potentially vulnerable instances remain exposed.

The post Ivanti’s EPMM is under active attack, thanks to two critical zero-days appeared first on CyberScoop.

Continue reading Ivanti’s EPMM is under active attack, thanks to two critical zero-days

China-based espionage group compromised Notepad++ for six months

The Chinese APT group Lotus Blossom intruded the tool’s internal systems to snoop on a limited set of users’ activities, according to researchers.

The post China-based espionage group compromised Notepad++ for six months appeared first on CyberScoop.

Continue reading China-based espionage group compromised Notepad++ for six months

DOJ seizes piracy sites, Italian police dismantle illegal IPTV operation

Officials took down three U.S.-registered domains that distributed copyrighted content and received tens of millions of visits a year.

The post DOJ seizes piracy sites, Italian police dismantle illegal IPTV operation appeared first on CyberScoop.

Continue reading DOJ seizes piracy sites, Italian police dismantle illegal IPTV operation

Google’s disruption rips millions out of devices out of malicious network

The actions impaired some of IPIDEA’s proxy infrastructure, but not all of it. The effort underscores the back-and-forth struggle of taking out pieces of cybercriminals’ vast and growing infrastructure.

The post Google’s disruption rips millions out of devices out of malicious network appeared first on CyberScoop.

Continue reading Google’s disruption rips millions out of devices out of malicious network

Long-running North Korea threat group splits into 3 distinct operations

The trio, which share lineage with the more broadly defined Lazarus Group, are focused on espionage and cryptocurrency theft, according to CrowdStrike.

The post Long-running North Korea threat group splits into 3 distinct operations appeared first on CyberScoop.

Continue reading Long-running North Korea threat group splits into 3 distinct operations