UNIX CONSULTINGIT security, defense and AI compliance Back to site

Cybersecurity archive

Cybersecurity watch archive

This archive keeps previously published signals available through stable indexed URLs and makes older alerts easier to browse.

Page 1 of 20
Tracked sources CISA Microsoft MSRC Cisco Security Advisories SANS ISC BleepingComputer SecurityWeek The Hacker News Google Project Zero Cloudflare Security GitHub Security Lab

Hackers build AI frameworks for widescale credential theft

BleepingComputer

Threat actors are increasingly switching from AI-powered coding assistants to multi-agent frameworks that automate every stage of... Unix Consulting read: This signal relates to AI usage, assistants, models or data handled by these systems. It should be read through a governance lens: which data enters...

Microsoft: Windows Server 2025 changes causing app crashes

BleepingComputer

Microsoft warned customers last week that they may experience application crashes on some Windows Server 2025 due to recent... Unix Consulting read: This signal deserves fast qualification: affected asset, exposure, potential impact, urgency and internal owner. The value comes from turning the...

FreeIPA Flaw Chain Lets Anonymous Clients Create Reusable Administrator Credentials

The Hacker News

A flaw in FreeIPA lets a client that has never logged in create a Kerberos identity of its own choosing in the directory and end... Unix Consulting read: This signal relates to AI usage, assistants, models or data handled by these systems. It should be read through a governance lens: which data enters...

MikroTik Patches Critical Flaws Chained to Hack Routers

SecurityWeek

Dubbed MikroTrick, the bugs allow attackers to bypass authentication, overwrite configuration files, and take over devices. The... Unix Consulting read: This signal should be mapped against the application inventory, internet exposure and patch-management process. The key point is not only the...

Mathspace Data Breach Exposes Over 1 Million People

SecurityWeek

Hackers stole the information of students, teachers, staff, and parents/guardians from a self-hosted Metabase instance. The post... Unix Consulting read: This signal deserves fast qualification: affected asset, exposure, potential impact, urgency and internal owner. The value comes from turning the...

N-able Patches Critical Zero-Day in N-central

SecurityWeek

Administrators are advised to check their deployments for newly created user accounts they don’t recognize. The post N-able... Unix Consulting read: This signal should be mapped against the application inventory, internet exposure and patch-management process. The key point is not only the...

BengalSEO Poisons Bing Search Results to Deliver MayaBot and Tech Support Scams

The Hacker News

Cybersecurity researchers have disclosed details of a sprawling search engine optimization (SEO) poisoning campaign that paves... Unix Consulting read: This signal relates to AI usage, assistants, models or data handled by these systems. It should be read through a governance lens: which data enters...

220 million traveler records exposed in Vietnam-linked APIS leak

BleepingComputer

Exclusive: An exposed Advance Passenger Information System (APIS) database held 220 million passenger and crew records containing... Unix Consulting read: This signal relates to AI usage, assistants, models or data handled by these systems. It should be read through a governance lens: which data enters...

Grindr to Pay £26 Million to Settle U.K. Claims Over HIV Status Data Sharing

The Hacker News

Online dating app Grindr has opted to pay £26 million ($35.1 million) to settle a lawsuit in the U.K. over allegations that it... Unix Consulting read: This signal relates to AI usage, assistants, models or data handled by these systems. It should be read through a governance lens: which data enters...

Magento StyleSmuggler zero-day exploited to deploy Linux backdoor

BleepingComputer

A zero-day vulnerability dubbed "StyleSmuggler" affecting all versions of Magento and Adobe Commerce is being exploited in... Unix Consulting read: This signal should be mapped against the application inventory, internet exposure and patch-management process. The key point is not only the...

Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks

The Hacker News

Threat hunters have disclosed details of a widespread data theft and extortion threat cluster that's targeting Microsoft 365 and... Unix Consulting read: This signal relates to AI usage, assistants, models or data handled by these systems. It should be read through a governance lens: which data enters...

BigBear Microsoft 365 phishing service bypassed MFA at 258 organizations

BleepingComputer

A phishing-as-a-service framework called BigBear 2.0 has been used to bypass multi-factor authentication at 258 organizations and... Unix Consulting read: This topic concerns access, identity or social engineering. It is often a transversal entry point: a low-level user incident may become critical if...

Mathspace discloses data breach affecting over 1 million people

BleepingComputer

Online maths learning platform Mathspace disclosed over the weekend that attackers stole data from more than 1 million students,... Unix Consulting read: This signal deserves fast qualification: affected asset, exposure, potential impact, urgency and internal owner. The value comes from turning the...