Latest

Latest cybersecurity news

Every verified report, in reverse news order. Nothing appears here until it has been checked.

Oracle's Riverside Campus in Austin, Texas, the company's headquarters. Vulnerabilities

ShinyHunters Uses Encoding Trick to Re-Exploit Oracle PeopleSoft Flaw Past WAFs

One URL-encoded letter lets ShinyHunters walk around web application firewall rules blocking its favorite attack path — re-targeting servers that blocked the endpoint with WAFs instead of patching. Mandiant confirmed the flaw was exploited as a zero-day in May and June.

A TP-Link Archer A6 router, front side, powered on with its status LEDs lit. Industry

Four More States Sue TP-Link Over Router Security and China Ties

Florida, Iowa, Montana, and Nebraska filed consumer-protection suits on Oct. 6, joining Texas in alleging the router maker misled buyers about security and its separation from China. TP-Link denies the claims — and a day later, 21 attorneys general wrote to the FCC.

The near-complete Atlassian Central tower, Atlassian's Sydney headquarters, at Railway Square, photographed October 2026. Vulnerabilities

Attackers Probe Critical Atlassian File-Read Flaw Within Hours of Public PoC

CVE-2026-21589 lets unauthenticated attackers read files in an Atlassian application’s web root — including plaintext credentials in Crowd-integrated Jira deployments. Honeypot operators saw exploitation attempts begin within about two hours of a public proof-of-concept.

Greater London House in Camden Town, London — ASOS's headquarters. Breaches

ASOS Confirms Data Breach Stemmed From Social Engineering Attack on Employee

The retailer says an attacker impersonated a trusted contact to steal employee login credentials, then accessed information on third-party platforms. Customer names and contact details were exposed — but not passwords or payment data. This is distinct from an earlier August breach.

Jen Easterly, former director of the Cybersecurity and Infrastructure Security Agency (CISA). Research

How to Verify a Data Breach: A Field Guide for Skeptics

An attacker’s claim is the start of an investigation, not its conclusion. This is the verification ladder HackedWire climbs before it calls a breach confirmed — worked through with the ASOS incident as the example.

Homeland Security Secretary Alejandro Mayorkas at a CISA Infrastructure Security Division ceremony at DHS headquarters, Washington, D.C., February 2024. Research

Ransomware Incident Response Basics: What to Do in the First 24 Hours

CISA defines ransomware as malware built to encrypt files and render systems unusable — increasingly paired with data theft. This guide distills the #StopRansomware Guide into what to have ready before an incident and what to do when one lands.