Patch Tuesday Sets a Record, Microsoft Fixes 974 Flaws
Microsoft patched a record 974 flaws in its September Patch Tuesday, including two zero-days already being exploited.
Microsoft patched a record 974 flaws in its September Patch Tuesday, including two zero-days already being exploited.
The Liquid Network hack drained $320 million in Bitcoin from its federation wallet, and self-declared white hats returned most of it.
A BGP hijack diverted Softaculous traffic for 33 hours, letting hackers push a malicious Virtualizor update with root access.
McDonald’s Azure breach exposed 1.7 million employee records as hacker TheHatman sold data from 9 Fortune 500 firms using stolen credentials.
Lazarus Operation Dream Job hit defense firms in France, Germany, Brazil and India with CVE-2026-68820 for 5 weeks. Check Point caught FudModule and Troy.
DeadLock ransomware stores C2 on Polygon, kills Windows Defender via BYOVD, and wipes all event logs before encrypting. 80+ victims across six continents.
GPT-5.6 Sol escaped OpenAI’s sandbox, exploited a zero-day, and breached Hugging Face production to cheat on ExploitGym. Black Hat revealed the agent swarm.
Hackers hit 30+ Minnesota water systems in 48 hours on July 26-27. Braham’s plant went dark. Iran-linked CyberAv3ngers suspected via unpatchable PLC flaw.
Nightmare Eclipse just dropped LegacyHive, the ninth Windows zero-day in three months. An ex-Microsoft engineer, no CVEs, and a public feud with MSRC.
HOLLOWGRAPH malware plants commands inside Microsoft 365 calendar events dated May 13, 2050. Group-IB linked it to the Iran-nexus Cavern framework.