Security news, decoded.
74 stories in the last 7 days, naming 204 CVEs; 60 of those CVEs are in CISA KEV.
The wire
Tuesday, Jun 925 stories
- SANS Internet Storm CenterMicrosoft June 2026 Patch Tuesday - SANS Internet Storm CenterReported exploitedMicrosoft Windows
- SecurityWeek
- The Hacker NewsVeeam Backup & Replication RCE Flaw Lets Domain Users Run Remote CodePatchVeeam Backup & Replication
- Dark ReadingRussian Attackers Weaponize WinRAR Flaw Against Ukrainian OrgsReported exploitedWinRAR
- Ars Technica (Security)High-severity vulnerability in Linux caused by a single errant characterPoC publicLinux kernel
- BleepingComputerNew Veeam vulnerability exposes backup servers to RCE attacksPatchVeeam Backup & Replication
- Daily CyberSecurity (securityonline.info)
- The Hacker NewsWinRAR Flaw Exploited by Russia-Aligned Groups to Deploy Stealers in UkraineReported exploitedWinRAR
- SecurityWeekSAP Patches Critical NetWeaver, Commerce VulnerabilitiesPatchSAP NetWeaver
- The Hacker NewsResearchers Build Self-Replicating AI Worm That Operates Entirely on Local, Open-Weight ModelsPoC publicopen-weight LLM
- The Hacker NewsChrome V8 Zero-Day CVE-2026-11645 Exploited in the Wild - Patch NowReported exploitedGoogle Chrome
- SecurityWeekCheck Point VPN Zero-Day Exploited in Qilin Ransomware AttacksReported exploitedCheck Point VPN
- BleepingComputerCISA gives feds 3 days to patch Check Point VPN bug exploited as zero-dayReported exploitedCheck Point Remote Access VPN
- BleepingComputerGoogle patches new Chrome zero-day flaw exploited in the wildReported exploitedGoogle Chrome
- Daily CyberSecurity (securityonline.info)
- The Hacker NewsLiteLLM Flaw CVE-2026-42271 Exploited in the Wild, Chains to Unauthenticated RCEReported exploitedBerriAI LiteLLM
- SecurityWeekGoogle Patches 5th Chrome Zero-Day Exploited in 2026Reported exploitedGoogle Chrome
- Daily CyberSecurity (securityonline.info)Critical Kemp LoadMaster Flaws Expose Network Appliances to RCEPatchProgress Kemp LoadMaster
- Daily CyberSecurity (securityonline.info)Emergency Patch Release Secures Apache HTTP Server Deployments Against Remote AttacksPatchApache HTTP Server
- Daily CyberSecurity (securityonline.info)TP-Link Patches Critical Archer MR600 Command Injection FlawPatchTP-Link Archer MR600 (v5)
- Daily CyberSecurity (securityonline.info)ABB Patches Critical T-MAC Plus Terminal System FlawsPatchABB T-MAC Plus (Terminal Management System)
- Daily CyberSecurity (securityonline.info)Jupyter Gateway Vulnerabilities: Severe CVSS 10 Exploits UncoveredResearchJupyter Enterprise Gateway
- Daily CyberSecurity (securityonline.info)Apache MINA Patches Critical Framework VulnerabilitiesPatchApache MINA (network application framework)
- Daily CyberSecurity (securityonline.info)New Chrome Security Update Addresses Critical V8 Exploit in the WildReported exploitedGoogle Chrome (V8 engine and related subsystems)
- Daily CyberSecurity (securityonline.info)CISA Active Exploit Catalog Expands with Critical Gateway FlawsReported exploitedCISA Known Exploited Vulnerabilities (KEV) catalog entries
Monday, Jun 815 stories
- Dark ReadingCheck Point VPN Flaw Exploited Since Early MayReported exploitedCheck Point Remote Access VPN
- The Hacker NewsOne-Character Linux Kernel Flaw Enables Local Root Access, Exploits Now PublicPoC publicLinux kernel nf_tables (netfilter packet filtering)
- SANS Internet Storm CenterTeamPCP Supply Chain Campaign: Activity Through 2026-06-07Reported exploitedTeamPCP-linked tooling
- Rapid7 BlogCritical Check Point VPN Zero-Day Exploited in the Wild (CVE-2026-50751)Reported exploitedCheck Point Remote Access VPN
- BleepingComputer
- BleepingComputerCritical UniFi OS bug lets hackers gain root without authenticationResearchUniFi OS Server
- Check Point Research8th June – Threat Intelligence ReportRoundupThreat Intelligence Bulletin
- The Hacker NewsCritical Check Point VPN Flaw Exploited to Bypass Passwords in IKEv1 SetupsReported exploitedSecurity Gateways
- The Hacker News⚡ Weekly Recap: Instagram Account Hacks, Android Zero-Day, GitHub Worm and MoreRoundupGitHub repositories
- BleepingComputerCheck Point links VPN zero-day attacks to Qilin ransomware gangReported exploitedRemote Access VPN
- Daily CyberSecurity (securityonline.info)Check Point VPN Vulnerability Exploited in the Wild with Ransomware LinksReported exploitedRemote Access VPN
- SecurityWeekEverest Forms Vulnerability Exploited to Hack WordPress SitesReported exploitedEverest Forms Pro (WordPress plugin)
- The Hacker NewsVerdantBamboo Deploys BSD Variant of BRICKSTORM on Linux AppliancesIncidentEgnyte Storage Sync
- Daily CyberSecurity (securityonline.info)PixyNetLoader Malware Analysis: How APT28 Hides Payloads Inside PNG FilesResearchPixyNetLoader
- Daily CyberSecurity (securityonline.info)