Below I’ve curated cyber security news from the world-wide-web – the lefthand column is from “The Hacker News” website and on the right is news from “Security Week”. Both are top cyber security news sites. In the very least this shows that threats are daily and they are very real.
Hacker News
- LangChain, LangGraph Flaws Expose Files, Secrets,...by info@thehackernews.com (The Hacker News) on March 27, 2026 at 8:07 am
Cybersecurity researchers have disclosed three security vulnerabilities impacting LangChain and LangGraph that, if successfully exploited, could expose filesystem data, environment secrets, and conversation history. Both LangChain and LangGraph are open-source frameworks that are used to build […]
- China-Linked Red Menshen Uses Stealthy BPFDoor...by info@thehackernews.com (The Hacker News) on March 26, 2026 at 5:40 pm
A long-term and ongoing campaign attributed to a China-nexus threat actor has embedded itself in telecom networks to conduct espionage against government networks. The strategic positioning activity, which involves implanting and maintaining stealthy access mechanisms within critical environments, […]
- [Webinar] Stop Guessing. Learn to Validate Your...by info@thehackernews.com (The Hacker News) on March 26, 2026 at 1:12 pm
Most teams have security tools in place. Alerts are firing, dashboards look clean, threat intel is flowing in. On the surface, everything feels under control. But one question usually stays unanswered: Would your defenses actually stop a real attack? That’s where things get shaky. A control […]
- Claude Extension Flaw Enabled Zero-Click XSS...by info@thehackernews.com (The Hacker News) on March 26, 2026 at 1:11 pm
Cybersecurity researchers have disclosed a vulnerability in Anthropic's Claude Google Chrome Extension that could have been exploited to trigger malicious prompts simply by visiting a web page. The flaw "allowed any website to silently inject prompts into that assistant as if the user wrote them," […]
- Masters of Imitation: How Hackers and Art Forgers...by info@thehackernews.com (The Hacker News) on March 26, 2026 at 11:58 am
Unmasking impostors is something the art world has faced for decades, and there are valuable lessons from the works of Elmyr de Hory that can apply to the world of defensive cybersecurity. During the 1960s, de Hory gained infamy as a premier forger, passing off counterfeit masterworks of Picasso, […]
- ThreatsDay Bulletin: PQC Push, AI Vuln Hunting,...by info@thehackernews.com (The Hacker News) on March 26, 2026 at 11:45 am
Some weeks in security feel loud. This one feels sneaky. Less big dramatic fireworks, more of that slow creeping sense that too many people are getting way too comfortable abusing things they probably shouldn’t even be touching. There’s a little bit of everything in this one, too. Weird […]
- Coruna iOS Kit Reuses 2023 Triangulation Exploit...by info@thehackernews.com (The Hacker News) on March 26, 2026 at 11:07 am
The kernel exploit for two security vulnerabilities used in the recently uncovered Apple iOS exploit kit known as Coruna is an updated version of the same exploit that was used in the Operation Triangulation campaign back in 2023, according to new findings from Kaspersky. "When Coruna was first […]
- WebRTC Skimmer Bypasses CSP to Steal Payment Data...by info@thehackernews.com (The Hacker News) on March 26, 2026 at 6:53 am
Cybersecurity researchers have discovered a new payment skimmer that uses WebRTC data channels as a means to receive payloads and exfiltrate data, effectively bypassing security controls. "Instead of the usual HTTP requests or image beacons, this malware uses WebRTC data channels to load its […]
- LeakBase Admin Arrested in Russia Over Massive...by info@thehackernews.com (The Hacker News) on March 25, 2026 at 5:35 pm
The alleged administrator of the LeakBase cybercrime forum has been arrested by Russian law enforcement authorities, state media reported Thursday. According to TASS and MVD Media, a news website linked to the Russian Interior Ministry, the suspect is a resident of the city of Taganrog. The suspect […]
- GlassWorm Malware Uses Solana Dead Drops to...by info@thehackernews.com (The Hacker News) on March 25, 2026 at 2:26 pm
Cybersecurity researchers have flagged a new evolution of the GlassWorm campaign that delivers a multi-stage framework capable of comprehensive data theft and installing a remote access trojan (RAT), which deploys an information-stealing Google Chrome extension masquerading as an offline version of […]
WordPress News
- WordPress 7.0 Release Candidate 2by Mary Hubbard on March 26, 2026 at 6:37 pm
The second Release Candidate (“RC2”) for WordPress 7.0 is ready for download and testing! This version of the WordPress software is under development. Please do not install, run, or test this version of WordPress on production or mission-critical websites. Instead, it’s recommended that you […]
- WP Packages is Working the Way Open Source Shouldby Jonathan Bossenger on March 25, 2026 at 3:27 pm
When WP Engine acquired WPackagist on March 12, the WordPress developer community faced a familiar question: what happens when critical open source infrastructure ends up under corporate control? The community already had an answer in progress. Four days later, WP Packages (formerly WP Composer) […]
- WordPress 7.0 Release Candidate 1by Amy Kamala on March 24, 2026 at 7:32 pm
The first Release Candidate (“RC1”) for WordPress 7.0 is ready for download and testing! This version of the WordPress software is still under development. Please do not install, run, or test this version of WordPress on production or mission-critical websites. Instead, it’s recommended to […]
- WordPress 7.0 Beta 5by Ahmed Kabir Chaion on March 12, 2026 at 3:49 pm
WordPress 7.0 Beta 5 is ready for download and testing! This version of the WordPress software is still under development. Please do not install, run, or test this version of WordPress on production or mission-critical websites. Instead, it’s recommended to test Beta 5 on a test server and […]
- WordPress 6.9.4 Releaseby John Blackbourn on March 11, 2026 at 3:34 pm
WordPress 6.9.4 is now available WordPress 6.9.2 and WordPress 6.9.3 were released yesterday, addressing 10 security issues and a bug that affected template file loading on a limited number of sites. The WordPress Security Team has discovered that not all of the security fixes were fully applied, […]
- Your Browser Becomes Your WordPressby Brandon Payton on March 11, 2026 at 1:00 pm
For nearly two decades, WordPress has been known for a simple, powerful idea: that anyone should be able to get online and start creating with minimal friction. The famous five-minute install captured that spirit for an earlier era of the web. Today, we’re introducing my.WordPress.net, a new take […]
- WordPress 6.9.3 and 7.0 beta 4by John Blackbourn on March 10, 2026 at 11:41 pm
WordPress 6.9.2 was released earlier today and addressed 10 security issues. A few users have subsequently reported an issue where the front end of their site was appearing blank after updating to 6.9.2. The issue has been narrowed down to some themes using an unusual approach to loading template […]
- WordPress 6.9.2 Releaseby John Blackbourn on March 10, 2026 at 3:43 pm
WordPress 6.9.2 is now available This is a security release that features several fixes. Because this is a security release, it is recommended that you update your sites immediately. You can download WordPress 6.9.2 from WordPress.org, or visit your WordPress Dashboard, click “Updates”, and […]
- WordPress 7.0 Beta 3by Amy Kamala on March 5, 2026 at 2:47 pm
WordPress 7.0 Beta 3 is available for download and testing! This beta version of the WordPress software is still under development. Please do not install, run, or test this version of WordPress on production or mission-critical websites. Instead, you should evaluate Beta 3 on a test server and […]
- WordPress 7.0 Beta 2by Amy Kamala on February 26, 2026 at 4:32 pm
WordPress 7.0 Beta 2 is now ready for testing! This beta version of the WordPress software is under development. Please do not install, run, or test this version of WordPress on production or mission-critical websites. Instead, you should evaluate Beta 2 on a test server and site. You can test […]


![[Webinar] Stop Guessing. Learn to Validate Your Defenses Against Real Attacks](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgCypzkb6uvHuNx6LKknUqtvQFoqsr6aalztDeBKT1aaUASzfjZMZAZqExx1k0w5iKWl08lx3MxbM_FwWxAvBdZODEerioaMp8OHVvhSjC8VL3uAW9_NMniMl_niggBVhVMdDFu2324YyhW5TrK4fua1PXlrb0DweOULvNgi5mlQUZUct_dIX3OePrfqks/s1600/validate.jpg)








