06/18

Police cleans nearly 15,000 SocGholish-infected sites tied to Evil Corp

https://www.bleepingcomputer.com/news/security/law-enforcement-nukes-socgholish-malware-from-nearly-15-000-sites/
Police cleans nearly 15,000 SocGholish-infected sites tied to Evil Corp

F5 issues out-of-band patches for critical NGINX vulnerabilities

https://www.bleepingcomputer.com/news/security/f5-issues-out-of-band-patches-for-critical-nginx-vulnerabilities/
F5 issues out-of-band patches for critical NGINX vulnerabilities

403 Forbidden

https://techcommunity.microsoft.com/blog/windows-itpro-blog/advancing-windows-driver-security-removing-trust-for-the-cross-signed-driver-pro/4504818
403 Forbidden

Critical Command Execution Vulnerability Patched in Cisco ISE - SecurityWeek

https://www.securityweek.com/critical-command-execution-vulnerability-patched-in-cisco-ise/
Critical Command Execution Vulnerability Patched in Cisco ISE - SecurityWeek

Klue OAuth breach linked to 'Icarus' Salesforce data theft attacks

https://www.bleepingcomputer.com/news/security/klue-oauth-breach-linked-to-icarus-salesforce-data-theft-attacks/
Klue OAuth breach linked to 'Icarus' Salesforce data theft attacks

Zer0con_2026_Attacking_Apple_DCP/Zhang_Zer0Con_Attacking_Apple_DCP.pdf at main · dgh05t/Zer0con_2026_Attacking_Apple_DCP · GitHub

https://github.com/dgh05t/Zer0con_2026_Attacking_Apple_DCP/blob/main/Zhang_Zer0Con_Attacking_Apple_DCP.pdf
Zer0con_2026_Attacking_Apple_DCP/Zhang_Zer0Con_Attacking_Apple_DCP.pdf at main · dgh05t/Zer0con_2026_Attacking_Apple_DCP · GitHub

F5 Patches Two Critical NGINX Open Source Flaws Enabling Remote Code Execution

https://thehackernews.com/2026/06/f5-patches-two-critical-nginx-open.html
F5 Patches Two Critical NGINX Open Source Flaws Enabling Remote Code Execution

Kodak Admits Data Breach After ShinyHunters Hack Claims - SecurityWeek

https://www.securityweek.com/kodak-admits-data-breach-after-shinyhunters-hack-claims/
Kodak Admits Data Breach After ShinyHunters Hack Claims - SecurityWeek

ShapedPlugin update flow hacked to infect WordPress sites

https://www.bleepingcomputer.com/news/security/shapedplugin-update-flow-hacked-to-infect-wordpress-sites/
ShapedPlugin update flow hacked to infect WordPress sites

Cyber offenses now account for around a third of all crime across Asia and South Pacific

https://www.theregister.com/cyber-crime/2026/06/18/cyber-offenses-now-account-for-around-a-third-of-all-crime-across-asia-and-south-pacific/5257716
Cyber offenses now account for around a third of all crime across Asia and South Pacific

Captured Logs Reveal Hackers Using Claude and Codex to Breach Companies | OALABS Research

https://research.openanalysis.net/claude/codex/hacking/ai%20hacking/llm/redteam/policy%20violation/2026/06/16/compromised-claude-hacking.html
Captured Logs Reveal Hackers Using Claude and Codex to Breach Companies | OALABS Research

USB worm spreads crypto-stealing malware via Windows shortcut files

https://www.bleepingcomputer.com/news/security/usb-worm-spreads-crypto-stealing-malware-via-windows-shortcut-files/
USB worm spreads crypto-stealing malware via Windows shortcut files

International law enforcement initiate hunt on malware group SocGholish | politie.nl

https://www.politie.nl/en/news/2026/juni/18/11-international-law-enforcement-initiate-hunt-on-malware-group-socgholish.html
International law enforcement initiate hunt on malware group SocGholish | politie.nl

Atlassian, Splunk Patch Critical Vulnerabilities - SecurityWeek

https://www.securityweek.com/atlassian-splunk-patch-critical-vulnerabilities/
Atlassian, Splunk Patch Critical Vulnerabilities - SecurityWeek

F5 Patches Critical, High-Severity NGINX Vulnerabilities - SecurityWeek

https://www.securityweek.com/f5-patches-critical-high-severity-nginx-vulnerabilities/
F5 Patches Critical, High-Severity NGINX Vulnerabilities - SecurityWeek

‘Popa’ Botnet Linked to Publicly-Traded Israeli Firm – Krebs on Security

https://krebsonsecurity.com/2026/06/popa-botnet-linked-to-publicly-traded-israeli-firm/
‘Popa’ Botnet Linked to Publicly-Traded Israeli Firm – Krebs on Security

Telegram admits it couldn't police exam-leak channels, India tells court

https://www.bleepingcomputer.com/news/security/telegram-admits-it-couldnt-police-exam-leak-channels-india-tells-court/
Telegram admits it couldn't police exam-leak channels, India tells court

Malware à la Mode: Tracking Dropping Elephant Tradecraft Through a China-Themed Loader Chain

https://www.rapid7.com/blog/post/tr-malware-tracking-dropping-elephant-tradecraft-china-themed-loader-chain/
Malware à la Mode: Tracking Dropping Elephant Tradecraft Through a China-Themed Loader Chain