Press "Enter" to skip to content

OSINT / CyberSec report 31.05.2026 00:07

1. Palo Alto Networks confirmed that CVE-2026-0257, an authentication bypass vulnerability in PAN-OS and Prisma Access, is currently under active exploitation (thehackernews.com).

2. Dutch authorities successfully dismantled a massive botnet consisting of 17 million infected devices and seized over 200 associated servers (bleepingcomputer.com).

3. A Russian-linked threat actor named GREYVIBE has been identified conducting persistent AI-powered cyberattacks against Ukrainian entities since August 2025 (thehackernews.com).

4. Attackers are exploiting the Marimo network vulnerability CVE-2026-39987 to gain initial access and subsequently using LLM agents for post-exploitation activities (thehackernews.com).

5. Researchers discovered a malicious NuGet package masquerading as a Sicoob SDK designed to exfiltrate sensitive banking credentials and PFX certificates (thehackernews.com).

6. The ChatGPhish vulnerability in OpenAI ChatGPT allows attackers to leverage implicit trust in Markdown links to facilitate phishing campaigns (thehackernews.com).

7. Threat actors are abusing ChatGPT share links to host fake outage pages that distribute malware disguised as the official desktop application (bleepingcomputer.com).

8. A North Carolina man was sentenced to over 10 years in prison for selling the personal information of 7 million elderly Americans to scammers (bleepingcomputer.com).

9. The California Attorney General filed a lawsuit against 23andMe regarding a 2023 data breach that exposed the sensitive health and genetic information of customers (bleepingcomputer.com).

10. A Google security engineer faces insider trading charges for using confidential company data to place bets on the Polymarket prediction platform (bleepingcomputer.com).

11. A threat actor hid a full remote access trojan inside a fake npm package to exfiltrate victim data to the HuggingFace platform (reddit.com).

12. Google Chrome has officially released Device Bound Session Credentials to protect all users against session cookie theft (bleepingcomputer.com).

13. IBM announced a 5 billion dollar commitment aimed at enhancing the security of open-source software (reddit.com).

14. Researchers identified a criminal gang known as The Com that uses proceeds from cyberattacks to fund violent crimes and sexploitation (darkreading.com).

Be First to Comment

Leave a Reply

Your email address will not be published. Required fields are marked *