IT Security Weekend Catch Up – May 1, 2026

Comments

01.05.2026 | 22:30

IT Security Weekend Catch Up – May 1, 2026
avatar

badcyber

comments

IT Security Weekend Catch Up – May 1, 2026

Afraid of missing important security news during the week? We're here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!

For the less technical

  1. Cursor-Opus agent snuffs out startup’s production database
  2. Extension developers sell the data of at least 6.5 million users – and it’s all completely legal
  3. Video service Vimeo confirms Anodot breach exposed user data
  4. U.S. companies hit with record fines for privacy in 2025
  5. Turkish parliament passes bill to restrict social media access for under-15s
  6. Sflix, Myflixerz, HDtoday, and other pirate sites go dark as backend infrastructure fails
  7. Anti-DDoS firm heaped attacks on Brazilian ISPs
  8. Call centres dismantled and ten arrested in EUR 50 million online fraud case
  9. Coordinated takedown of scam centers leads to at least 276 arrests; alleged managers and recruiters charged in San Diego

For the more technical

  1. New Linux 'Copy Fail' vulnerability enables root access on major distributions
  2. Pack2TheRoot (CVE-2026-41651): Cross-distro local privilege escalation vulnerability
  3. We found a stable Firefox identifier linking all your private Tor identities
  4. CanisterSprawl: pgserve compromised on npm: malicious versions harvest credentials and exfiltrate to a decentralized ICP canister
  5. LOLBins – analysis of MSBuild-based attack techniques
  6. The Gentlemen ransomware decryptor
  7. VECT: Ransomware by design, wiper by accident
  8. Inside Vidar (2026): From infection to memory execution via JPEG and TXT payloads
  9. “Chaos is a ladder”: Vidar’s recent rise to the top
  10. Jenkins honeypot reveals emerging botnet targeting online games
  11. Crypto drainers as a converging threat: Insights into emerging hybrid attack ecosystems
  12. Hold the phone! International revenue share fraud driven by fake CAPTCHAs
  13. Morpheus: A new spyware linked to IPS Intelligence
  14. Boutique phishing kit Saiga 2FA hides behind ‘lorem ipsum’ metadata
  15. Deep#Door stealer: Stealthy Python backdoor and credential stealer leveraging tunneling, multi-layer persistence, and in-memory surveillance capabilities
  16. Firestarter backdoor infects Cisco firewall at a U.S. federal agency
  17. fast16: mystery ShadowBrokers reference reveals high-precision software sabotage 5 years before Stuxnet
  18. BlueNoroff uses ClickFix, fileless PowerShell, and AI-generated fake Zoom meetings to target Web3 sector
  19. Tall Tales. How Chinese actors use impersonation and stolen narratives to perpetuate digital transnational repression

Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.

Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy! 2026-05-01T22:30:00+02:00

Comments