cPanel Zero-Day Gave Attackers Admin Access Without Login
A critical cPanel zero-day vulnerability (CVE-2026-41940) allowed attackers to bypass authentication and gain admin access since February, prompting urgent patching...
A critical cPanel zero-day vulnerability (CVE-2026-41940) allowed attackers to bypass authentication and gain admin access since February, prompting urgent patching...
A threat actor claims to sell a database of over 164,000 records allegedly stolen from Careficient EMR, containing sensitive patient...
A threat actor claimed to leak 75,000 Valuetainment user accounts from a BuddyPress-based WordPress system, exposing emails and profiles but...
ShinyHunters claims to have compromised Vimeo data via third-party analytics provider Anodot, exposing about 119,000 users' information, though Vimeo confirmed...
Itron confirmed a cyberattack in April 2026 involving unauthorized access to internal systems but reported no operational disruption or impact...
Handala Hack claims to have exposed personal details of 2,379 U.S. Marines and 400 Navy officers in the Gulf, raising...
A threat actor claims to have extracted over 300,000 records from Polymarket via API misconfigurations and unauthenticated endpoints, potentially exposing...
Medtronic disclosed unauthorized third-party access to its IT systems in an SEC filing, confirming no impact on operations or patient...
A threat actor publicly released an alleged Choice Health Insurance dataset exposing over 2.1 million records containing sensitive personal, financial,...
ShinyHunters leaked a dataset allegedly containing 1.4 million Udemy customers’ and instructors’ personal and financial data after failed extortion attempts,...