Acronis backup plugin flaw exploited in targeted attacks (CVE-2026-87886)

A Linux privilege escalation vulnerability (CVE-2026-87886) affecting Acronis’ backup extensions for cPanel, WebHost Manager (WHM), and Plesk, is being leveraged by attackers, the backup and recovery company warns. “Exploitation of this vul… Continue reading Acronis backup plugin flaw exploited in targeted attacks (CVE-2026-87886)

Iranian hackers use CHOSEN BRICK data-stealing malware to spy on dissidents and journalists

Iranian state cyber actors are deploying malware called CHOSEN BRICK against individuals they see as a threat to the regime, reaching victims through social messaging apps and infecting their Windows devices, three Western intelligence agencies warned…. Continue reading Iranian hackers use CHOSEN BRICK data-stealing malware to spy on dissidents and journalists

America’s Cryptocurrency ‘Clarity Act’ Fails Spectacularly, Despite Hundreds of Millions in Industry Lobbying

“The crypto industry’s top legislative priority failed on Tuesday in spectacular fashion,” reports Barron’s.

A procedural motion to advance the bill failed by a vote of 49 to 50, with a handful of Republicans joining all Democrats to shoot it down. T… Continue reading America’s Cryptocurrency ‘Clarity Act’ Fails Spectacularly, Despite Hundreds of Millions in Industry Lobbying

Can this double-SIMPLEBLOB footer behavior in an AES-256/RSA CryptoAPI ransomware indicate an exploitable key-management bug? [migrated]

I am analyzing an unknown ransomware that appends .BRKD.
Normal encrypted files have the structure:

[AES ciphertext]
[12-byte CryptoAPI SIMPLEBLOB header]
[256-byte RSA-wrapped session key]
[8-byte ciphertext length]

The header is consis… Continue reading Can this double-SIMPLEBLOB footer behavior in an AES-256/RSA CryptoAPI ransomware indicate an exploitable key-management bug? [migrated]

Oracle Patches 800+ Vulnerabilities in September 2026 Security Update

The security updates resolve over 800 vulnerabilities across 17 product families, including over 100 critical-severity flaws.
The post Oracle Patches 800+ Vulnerabilities in September 2026 Security Update appeared first on SecurityWeek.
Continue reading Oracle Patches 800+ Vulnerabilities in September 2026 Security Update

NIST and CISA finalize playbook to stop token theft and forgery

NIST and CISA have finalized guidelines to help federal agencies and cloud service providers (CSPs) protect identity and access tokens from forgery, theft, and misuse. The guidance, Protecting Tokens and Assertions from Forgery, Theft, and Misuse (NIST… Continue reading NIST and CISA finalize playbook to stop token theft and forgery