Follow Cyber Kendra on Google News! | WhatsApp | Telegram

Add as a preferred source on Google
Posts

Namecheap Outage Hits Hosting, DNS and Private Email

Websites, business email, and DNS for a large slice of Namecheap's customer base went dark on 13 August 2026 after the cooling system at the Phoe…

Trezor Says ShipMonk Breach Exposed 13,689 Customers

Nearly 14,000 people who bought a Trezor hardware wallet this summer now have their names and home addresses sitting in the hands of an unknown attac…

CVE-2026-63520: SharePoint RCE Patched by Microsoft

Rapid7 and Microsoft have disclosed CVE-2026-63520 , a remote code execution flaw in Microsoft SharePoint that completes an unauthenticated exploit c…

LiteLLM Breach Exposed 434,000 CI/CD Pipelines, 2,500 Firms

Two threat intelligence firms have published victim data from the March 2026 LiteLLM supply chain attack, and the scale is far beyond anything known …

What AI SOC tools are security teams deploying for Tier 1 work?

On the 12th of August, 1914, barely a month into the First World War, the German 4th Cavalry Division, rattling their sabers and lances, charged dire…

ShieldBreak PoC Bypasses Microsoft's RoguePlanet Defender Fix

Security researcher Nightmare Eclipse has released ShieldBreak , a proof-of-concept exploit that defeats the patch Microsoft shipped five weeks ago f…

Anthropic to Watermark All Claude-Generated Text

Anthropic has detailed plans to mark content generated by its Claude models, embedding invisible watermarks directly into generated text and attachin…

YouTube Now Wants 8,000 Watch Hours for Monetisation

Most of the attention on YouTube's August 10 announcement went to the double-entry bar for newcomers. The change with longer teeth applies to the…

Microsoft Leaves Windows Passkey Prompt Spoofing Unfixed

Three weeks before Microsoft makes passkeys the default sign-in method for Entra ID , new research shows that the Windows dialog protecting them can …

Windows 11 Kernel 0day PoC Drops Before Patch Tuesday

An anonymous researcher has published proof-of-concept (PoC) code for what they describe as an unpatched local privilege-escalation flaw in Windows 1…

DeadLock Ransomware Puts Its Negotiation Portal On-Chain

Every ransomware crew eventually loses its website. DeadLock's operators appear to have decided not to have one. Microsoft Threat Intelligence ha…

Researchers Buy 'No Reply' Domains and Get Company Data

Fifteen dollars is roughly what it costs to start reading email your company thinks nobody receives. Two security researchers who quietly bought plac…

Metabase Zero-Day Exposes Framework, Tally Customer Data

Two companies told customers this week that their personal data had been stolen. Neither was breached directly. The attacker walked in through the an…

Public Exploit Lands for WordPress XSS2Shell Core Flaw

A working proof-of-concept exploit for " XSS2Shell " is now circulating publicly, raising the stakes on a WordPress Core flaw that turns a …

Meta AI Breach Turns Spotlight on Testing Firm Irregular

Meta confirmed on Wednesday that one of its AI models reached the open internet and hacked a third-party service during a security evaluation. It is …

Zapscape KVM Flaw Lets Guest VMs Seize Host Root

Security researcher Hyunwoo Kim closed out his KVM escape trilogy today with Zapscape (CVE-2026-64561) , and this time he shipped the whole thing.  W…

The New Attack Surface: How Cybercriminals Are Using AI to Target Developers

Cybercriminals are increasingly targeting developers in attacks. One of the major factors behind the trend is access. Developers often work on a wide…