Grafana Confirms Breach After Hackers Claim They Stole Data

Grafana appears to have been targeted by Coinbase Cartel, a cybercrime group linked to ShinyHunters, Scattered Spider, and Lapsus$.

The post Grafana Confirms Breach After Hackers Claim They Stole Data appeared first on SecurityWeek.

SecurityWeek – ​Read More

First Shai-Hulud Worm Clones Emerge

At least one threat actor has adopted the recently released malware source code in attacks against NPM developers.

The post First Shai-Hulud Worm Clones Emerge appeared first on SecurityWeek.

SecurityWeek – ​Read More

Save 20% on Corsair gaming gear right now – here’s how

Corsair’s latest sale makes premium peripherals more affordable.

Latest news – ​Read More

Exploitation of Critical NGINX Vulnerability Begins

The flaw leads to denial-of-service on default configurations and to remote code execution if ASLR is disabled.

The post Exploitation of Critical NGINX Vulnerability Begins appeared first on SecurityWeek.

SecurityWeek – ​Read More

Hackers Earn $1.3 Million at Pwn2Own Berlin 2026 

Participants demonstrated exploits for Windows, Linux, VMware, Nvidia, and AI products.

The post Hackers Earn $1.3 Million at Pwn2Own Berlin 2026  appeared first on SecurityWeek.

SecurityWeek – ​Read More

Can Laws Stop Deepfakes? South Korea Aims to Find Out

South Korea’s local elections next month will be a test bed for how effective regulations might be to stymie the flow of deepfakes.

darkreading – ​Read More

Closing the Gap: The Regulatory and Structural Maturation of Digital Assets

Digital assets are reshaping global finance as institutions adopt regulated crypto infrastructure, stablecoins, and tokenized assets.

Hackread – Cybersecurity News, Data Breaches, AI and More – ​Read More

NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCE

A newly disclosed security flaw impacting NGINX Plus and NGINX Open has come under active exploitation in the wild, days after its public disclosure, according to VulnCheck.
The vulnerability, tracked as CVE-2026-42945 (CVSS score: 9.2), is a heap buffer overflow in ngx_http_rewrite_module affecting NGINX versions 0.6.27 through 1.30.0. According to AI-native security company depthfirst, the

The Hacker News – ​Read More

Scammers Send Physical Phishing Letters to Steal Ledger Wallet Seed Phrases

Scammers are mailing fake Ledger phishing letters to users in Italy with QR codes that trick crypto wallet users into revealing seed phrases.

Hackread – Cybersecurity News, Data Breaches, AI and More – ​Read More

Roborock vs Ecovacs: Which robot vacuum should you buy?

I’ve tested dozens of robot vacuum brands, with Roborock and Ecovacs models consistently delivering market-leading performance. Here’s how they compare.

Latest news – ​Read More