Defense, Security & Intelligence News: The Latest Tracked Articles
This page lists, without rewriting them, the 30 most recent articles tracked by Veilyo on defense, security & intelligence news.
Recent articles
- Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks (new tab)
The Hacker News · July 24, 2026
The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of a new campaign that involves the use of a malicious program that's dressed up as a Notepad++ plugin to compromise Windows system…
- New Dolphin X malware uses AI to rank high-value targets (new tab)
BleepingComputer · July 23, 2026
A new Dolphin X remote access trojan claims to use an AI-powered profiling feature to score and rank infected users, helping cybercriminals identify which victims should be targeted first. [...]
- Australian energy provider Origin says data breach exposes client data (new tab)
BleepingComputer · July 23, 2026
Origin Energy has confirmed that an unauthorized party accessed and subsequently leaked customer data online, exposing sensitive personally identifiable information (PII), among others. [...]
- Fake Claude app promoted by Bing ads pushes SectopRAT malware (new tab)
BleepingComputer · July 23, 2026
A malvertising campaign on the Bing search service is pushing a fake Claude desktop app installer hosted on a legitimate Claude.ai domain to deliver the SectopRAT malware. [...]
- Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes (new tab)
The Hacker News · July 23, 2026
A Russian state-supported espionage group spent months reading Western mailboxes through a then-unknown flaw in Zimbra's webmail client. The payload goes after the last 90 days of email, the organiza…
- Russian hackers exploit Zimbra zero-click flaw for email theft (new tab)
BleepingComputer · July 23, 2026
CISA is warning that the Russian state-sponsored hacking group Laundry Bear, also known as Void Blizzard, is targeting organizations using Zimbra Collaboration email servers by combining phishing atta…
- Hackers abuse Notepad++ plugins to stealthily install malware (new tab)
BleepingComputer · July 23, 2026
Ukraine's CERT has uncovered attacks distributing an archive containing the legitimate Notepad++ application and a malicious utility called LunchPoke disguised as a plugin to establish persistence. [.…
- Microsoft 365 outage affects Teams, SharePoint and other services (new tab)
BleepingComputer · July 23, 2026
Microsoft Teams and several Microsoft 365 services are experiencing an ongoing outage, with users reporting problems accessing Teams, SharePoint, Excel and the Microsoft 365 Admin Center. [...]
- ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories (new tab)
The Hacker News · July 23, 2026
Most of this week's trouble came dressed as something useful. A package stole data. A fake extension opened remote access. A safety app became spyware. An image gave hidden orders to an AI agent. Oth…
- FedRAMP Rev5 Is Ending: What the 20x Transition Really Requires (new tab)
BleepingComputer · July 23, 2026
FedRAMP 20X replaces point-in-time assessments with continuous, machine-readable evidence that demonstrates security controls are working. Anecdotes explains what the transition from Rev5 to FedRAMP 2…
- Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files (new tab)
The Hacker News · July 23, 2026
Cybersecurity researchers have uncovered a sandbox escape vulnerability in Anthropic's Claude Cowork that makes it possible to break out of the confines of a Linux virtual machine (VM) within which th…
- Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge (new tab)
The Hacker News · July 23, 2026
The Chaos ransomware group ran its command-and-control through the victim's own browser. Cisco Talos on Thursday detailed msaRAT, the Rust implant behind it, found on a compromised Windows machine ahe…
- EU fines Google $1 billion for search, app store antitrust violations (new tab)
BleepingComputer · July 23, 2026
The European Commission fined Google €890 million ($1 billion) on Thursday after finding the company had violated the European Union's Digital Markets Act (DMA), which ensures fair online competition.…
- China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks (new tab)
The Hacker News · July 23, 2026
An exposed Alibaba Cloud server has revealed a China-nexus operation that Group-IB tracks as JadeProx. The cluster has targeted government, healthcare, and education organizations across Asia and Lati…
- How Synthetic Identity Fraud is Coming for Machine Identities (new tab)
The Hacker News · July 23, 2026
Most people understand identity theft as an attacker stealing a real person's sensitive information and impersonating them. Synthetic identity fraud is much harder to catch. Instead of stealing a real…
- New RefluXFS Linux flaw lets attackers gain root privileges (new tab)
BleepingComputer · July 23, 2026
A nine-year-old race condition vulnerability in the Linux kernel's XFS filesystem, tracked as CVE-2026-64600, allows local attackers to overwrite protected files and gain root privileges. [...]
- Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers (new tab)
The Hacker News · July 23, 2026
Cybersecurity researchers have shed light on a large-scale campaign that has turned compromised GitHub repositories into distributed attack infrastructure designed to target cPanel and WebHost Manager…
- Google Adds Selfie Video Recovery for Users Locked Out of Their Accounts (new tab)
The Hacker News · July 23, 2026
Google on Thursday announced a new way for users to sign-in to their accounts by letting them take a selfie video. The selfie for sign-in, per the tech giant, is another option on top of existing rec…
- New msaRAT malware uses Chrome, Edge browsers to route C2 traffic (new tab)
BleepingComputer · July 23, 2026
The Chaos ransomware gang is using a new backdoor dubbed msaRAT that hides command-and-control (C2) communication by routing it through the Chrome or Edge browsers. [...]
- Microsoft working to fix Exchange Online mailbox quarantine issue (new tab)
BleepingComputer · July 23, 2026
Microsoft is working to resolve an ongoing Exchange Online issue that has been mistakenly quarantining customers' mailboxes since Sunday. [...]
- Check Point warns of SmartConsole zero-day exploited in attacks (new tab)
BleepingComputer · July 23, 2026
Israeli cybersecurity firm Check Point Software has addressed an actively exploited zero-day flaw in the company's SmartConsole graphical user interface (GUI) admin panel. [...]
- Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs (new tab)
The Hacker News · July 23, 2026
RefluXFS, a new Linux kernel flaw disclosed on July 22 and tracked as CVE-2026-64600, lets an unprivileged local user overwrite root-owned files on an XFS filesystem and gain persistent root access.…
- Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin Access (new tab)
The Hacker News · July 23, 2026
Check Point has released security updates to address multiple vulnerabilities impacting Security Management and Multi-Domain Management (MDSM) products, including a critical flaw that has come under a…
- Upbound says hack caused $13 million in fraudulent Acima leases (new tab)
BleepingComputer · July 22, 2026
The Upbound Group fintech company disclosed that threat actors who stole data from its systems leveraged it to create $13 million in Acima leases. [...]
- South Korea discloses data breach impacting diplomats worldwide (new tab)
BleepingComputer · July 22, 2026
South Korea disclosed that hackers breached the National Diplomatic Academy's online education system for ten months and stole personal information belonging to current and former employees of the Min…
- GitHub Cuts Public Bug Bounty Payouts, Moves Top Rewards to VIP Tier (new tab)
The Hacker News · July 22, 2026
Beginning July 27, 2026, GitHub will cut public bug bounty payouts by at least half at every severity level. Critical findings will drop from $20,000-$30,000+ to a fixed $10,000, while its permanent i…
- Ubuntu snap-confine Flaw Could Give Local Users Root on Default Desktop Installs (new tab)
The Hacker News · July 22, 2026
Cybersecurity researchers have disclosed details of a new local privilege escalation (LPE) vulnerability in snap-confine that an unprivileged user can trigger to obtain root access and gain complete c…
- Swiss rail giant Stadler rejects $12.3M ransom demand after cyberattack (new tab)
BleepingComputer · July 22, 2026
Swiss rail vehicle manufacturer Stadler Rail says the Everest ransomware gang demanded about $12.3 million after breaching a data exchange platform shared with one of its suppliers. [...]
- How enterprise GenAI can amplify ransomware risk — and how to contain it (new tab)
BleepingComputer · July 22, 2026
Enterprise AI can accelerate ransomware attacks when AI assistants and agents inherit excessive permissions or compromised identities. Acronis explains how identity controls, governance, and least-pri…
- Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web Data (new tab)
The Hacker News · July 22, 2026
Cybersecurity researchers have disclosed details of a now-patched vulnerability chain in the Adobe Acrobat Chrome extension that has over 314 million users, which, if exploited, could facilitate a sil…
Frequently asked questions
- Where Do These Articles on Defense, Security & Intelligence Come From?
- From sources curated by Veilyo for this domain. Each entry links to the original article; no content is republished in full.
- Is This Defense, Security & Intelligence News Page Updated?
- Yes: it reflects the latest articles actually collected by Veilyo for this domain, over a recent rolling window.
You might also like
Ready for monitoring that works for you?
Create your Veilyo workspace and get your first sorted articles in minutes.
