Google Patches Fifth Chrome Zero-Day of 2026 — V8 Engine Flaw Actively Exploited in the Wild (CVE-2026-11645)
Google has released emergency updates for Chrome 149 to patch CVE-2026-11645, a high-severity zero-day vulnerability in the V8 JavaScript engine that is being actively exploited in the wild. This marks…
Congress Introduces ‘Great American AI Act’ — Sweeping 269-Page Bill Would Freeze State AI Laws for Three Years
Summary On June 5, 2026, Congress introduced the “Great American Artificial Intelligence Act,” a comprehensive bipartisan bill spanning 269 pages that represents the most ambitious federal attempt to regulate artificial…
Lithuania’s Centre of Registers Breached — Over 600,000 Records Stolen in Major State Database Hack
Summary Lithuania’s Centre of Registers — the country’s primary authority for property, legal entity, and personal data registration — suffered a major cyberattack resulting in the theft of over 600,000…
Palo Alto PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Upgraded to High Severity as Exploitation Surges
Summary Palo Alto Networks has upgraded the severity of CVE-2026-0257 from medium to high (CVSS 7.8) after widespread exploitation of the authentication bypass vulnerability in PAN-OS GlobalProtect was confirmed across…
DentaQuest Data Breach Exposes 2.6 Million Accounts — ShinyHunters Leak 234GB of Sensitive Health Data
Summary Dental benefits administrator DentaQuest has confirmed a data breach that exposed the sensitive information of 2.6 million accounts after the ShinyHunters extortion group publicly leaked 234GB of stolen data.…
Cisco SD-WAN Zero-Day (CVE-2026-20245) Actively Exploited in the Wild — No Patch Available
Summary Cisco has disclosed a critical zero-day vulnerability in Cisco Catalyst SD-WAN Manager (formerly vManage) that is being actively exploited by attackers. Tracked as CVE-2026-20245, the flaw allows authenticated attackers…
Dashlane Confirms Brute-Force Attack — Hackers Downloaded Encrypted Password Vaults
Summary Password manager Dashlane disclosed on June 5, 2026, that attackers successfully downloaded encrypted vaults from a small number of user accounts following a brute-force attack that began on May…
Cisco Warns of Critical Unified Communications Manager Flaw With Public PoC Exploit (CVE-2026-20230)
Cisco has disclosed a high-severity server-side request forgery (SSRF) vulnerability in Unified Communications Manager (Unified CM) and Unified CM Session Management Edition that can be escalated to root-level privilege. Tracked…
Alphabet Raises $85 Billion in Largest Equity Offering in History to Fund AI Infrastructure
Alphabet, Google’s parent company, has completed the largest equity fundraising in history at approximately $85 billion — an increase from the initially announced $80 billion target. The massive capital raise,…
Fake Context Alignment Attack Lets Hackers Hijack Google Gemini Through WhatsApp and Slack Notifications
SafeBreach Labs has disclosed a new class of indirect prompt injection attack against Google Gemini voice assistant on Android, demonstrating how malicious instructions hidden in messaging notifications can take control…
