Monday , September 7 2026

Cyber Attack

Portugal updates cybercrime law to protect “Ethical Hackers/Researchers”

Portugal

Portugal has changed its cybercrime law to protect good-faith security research and to make hacking legal under specific, strict conditions. Daniel Cuthbert identified a new rule in Article 8.o-A, called “Acts not punishable due to public interest in cybersecurity,” which exempts some actions from being illegal that were once seen …

Read More »

30 orgs breach vi React2Shell flaw, 77k IP addresses vulnerable

React2Shell

More than 77,000 IP addresses online are at risk from the serious React2Shell remote code execution flaw (CVE-2025-55182). Researchers report that attackers have already breached over 30 organizations in various sectors. React2Shell is a vulnerability that allows unauthorized remote code execution with just one HTTP request. It affects all frameworks …

Read More »

Over 74 US banks, credit unions impacted via Marquis data breach

Marquis

Marquis Software Solutions has announced a data breach affecting multiple banks and credit unions in the US. Marquis Software Solutions offers data analytics, CRM tools, compliance reporting, and digital marketing to more than 700 banks, credit unions, and mortgage lenders. Marquis reported a ransomware attack on August 14, 2025, in …

Read More »

1,20,000 IP cameras hacked; Home video sold for porn site: Suspect arrested

120,000 IP cameras

The Korean National Police arrested suspected four people for hacking over 120,000 IP cameras and selling the footage to a foreign adult website. Police are acting against the operators of the illegal content despite not revealing the suspects or websites, through international cooperation. “The National Office of Investigation announced that …

Read More »

Indian Major Airports faced GPS Spoofing: Gov.t Confirmed; Tightens Security

GPS Spoofing

India’s Civil Aviation Minister K Rammohan Naidu informed the Rajya Sabha that some flights reported Positioning System- GPS spoofing in the vincinity of Indira Gandhi International Airport in New Delhi while using GPS-based landing procedures. In a written reply to a question on GPS spoofing, Mr Naidu told the House …

Read More »

Bangladesh President’s Facebook ID Hacked: What was revealed

President

Writing “#resignation” posted from the verified ID of Bangladesh President Md. Shahabuddin Chuppu. Later, it was posted again with the words “My Facebook ID is hacked. For All Concerns”. Several Bangladeshi media reports said that the President’s Facebook ID was hacked. In the meantime Somoy TV reported in their news …

Read More »

OAST-based exploit platform targets 200 CVEs using Google Cloud

OAST

Research from VulnCheck reveals that a highly skilled threat actor has been running a private Out-of-band Application Security Testing (OAST) service on Google Cloud infrastructure, executing an extensive exploit campaign aimed at over 200 CVEs. Private OAST Domain Raises Red Flags: Security experts at VulnCheck noticed strange behavior linked to …

Read More »

CISA Flags Actively Exploited OpenPLC Flaw Exploited in Attacks

OpenPLC

Cybersecurity and Infrastructure Security Agency (CISA) has mandated federal agencies to protect their industrial control systems due to active exploitation. CVE-2021-26829, a vulnerability in OpenPLC ScadaBR, is now included in the KEV Catalog. This inclusion signals that threat actors are actively weaponizing this specific flaw to target operational technology (OT) …

Read More »