Cyber Dispatch™️
353 subscribers
18 photos
1 video
44 links
The definitive source for critical cybersecurity news. When a major threat breaks, we dispatch.

#CyberDispatch #CyberSecurity #InfoSec #ThreatIntelligence #ZeroDay #DataBreach #SecurityNews
Download Telegram
NGINX bug (CVE-2026-42945) now under active exploitation.

Critical heap overflow in rewrite module. Attackers can crash workers with one request (possible RCE).
New Reaper Malware Uses Fake Microsoft Domain to Steal macOS Passwords.
AudioHijack: adversarial audio attacks on generative voice models transfer from open weights to Microsoft and Mistral production systems.
Public Amazon bucket leaks sensitive guest data from Japanese hotel platform Tabiq.
Hacktivists, Ransomware, and a 124% Surge Across DACH.
Millions Impacted Across Several US Healthcare Data Breaches.
‘Claw Chain’ OpenClaw Flaws Allow Sandbox Escape, Backdoor Delivery.
Poland directs officials to ditch Signal in favor of 'secure' state-developed alternative.
Ivanti, Fortinet, SAP, VMware, n8n Patch RCE, SQL Injection, Privilege Escalation Flaws.
Mozilla warns UK: Breaking VPNs will not magically fix Britain's age-check mess.
ASELSAN aims to produce a fully domestic and national smart mobile phone by 2027. It will be equipped with domestic battery, domestic chip, and secure communication technologies.

The purpose of the project is to transfer the knowledge accumulated in the defense industry to the civilian sector and produce a phone equipped with domestic battery, domestic chip, and secure communication technologies.
Hacktivist group “Gladiators of God” claims it breached a subdomain of Israeli ISP LiveCity (livecity.co.il) in Beersheba, exfiltrating data of 2,880 users after reportedly bypassing multiple security layers, with plans to release the data publicly.
The hacker group "Team 313" claimed in a statement to have carried out a large-scale DDOS attack against the infrastructure of the Microsoft Power BI service.
The hacker group S-Root claims to have accessed and disclosed about 12 gigabytes of data from the private "Aman" hospital in Doha.
“Handala Cyber Command” issues operational security advisory to resistance-affiliated military and security personnel, urging strict avoidance of electronic devices, social apps, traceable SIMs, banking activity, geolocation services, and digital communications amid heightened cyber surveillance risks.
Cybersecurity reports indicate that China-affiliated hacker groups have targeted the infrastructure of telecom operators and communication networks in dozens of countries with organized attacks over recent years.
Israel’s 2025 banking supervision report flags cyber risk as the top threat facing the financial sector, with regulators highlighting concerns over advanced attack scenarios, supply chain compromises, and potential adversarial use of AI.
YouTube's new feature to combat deepfakes and unauthorized use of people's faces

YouTube has added a new feature that allows individuals over 18 years old to scan their faces and identify AI-generated videos that misuse their images. Users can request the removal of these videos if they wish.
Compromised Nx Console 18.95.0 executed a credential-stealing payload after VS Code users opened workspaces.

The extension has 2.2M+ installs; affected users should update to 18.100.0 and rotate reachable secrets.
The New Phishing Click: How OAuth Consent Bypasses MFA.
One Hacked Login Led to a Massive Cloud Breach, Microsoft Reveals.