05/27/2026
A hacker is selling what they claim are 340M OnlyFans user records, but there’s no proof of a new breach. The impacted data appears to be a mix of old leaks and public info which can still fuel , , and attempts.
340M OnlyFans records listing raises recycled data risk
A hacker is selling alleged OnlyFans user records, but current evidence points to recycled breach data, not a confirmed new hack.
05/26/2026
Ghost CMS under attack. A massive campaign is exploiting a critical SQLi flaw to hijack sites and deliver malware. Over 700 domains hit. https://bit.ly/4tWVF1y
Ghost CMS SQL injection flaw exploited in large-scale ClickFix campaign
A large-scale campaign is exploiting a critical SQL injection vulnerability (CVE-2026-26980) in Ghost CMS to inject malicious JavaScript code that triggers ClickFix attack flows.
05/23/2026
After ShinyHunters breached Canvas twice and claimed massive data theft, Instructure struck an “agreement” to recover stolen data. https://buff.ly/9WlYhLe
Canvas owner reaches ‘agreement’ with threat actors after data breach
Cybersecurity experts suggest that Instructure appears to have made a ransomware payment, which the FBI highly discourages.
05/22/2026
ZDNET breaks down why small businesses need smarter AI tools. https://buff.ly/fDwgJcu
How to actually use AI in a small business: 10 lessons from the trenches
It's not about proving you can use AI - it's about using it wisely. Let's cut through the hype with practical tips on how small companies can get real results.
05/21/2026
After Windows 11 update KB5089549, low EFI System Partition space is giving some users errors. https://bit.ly/4dvienF
Microsoft confirms Windows 11 security update install issues
Microsoft has confirmed that the May 2026 Windows 11 security update (KB5089549) fails to install on some systems and triggers 0x800f0922 errors.
05/20/2026
DARPA’s AI Cyber Challenge finalist teams uncovered 83 real-world bugs across major systems like Android, Linux, SQLite, and Redis. https://buff.ly/iMVH1VT
How a government contest launched a revolution in AI-based bug hunting
Security researchers have spent months honing AI systems that can find and fix serious vulnerabilities. Critical infrastructure everywhere could benefit.
05/19/2026
Microsoft's new MDASH AI system found 16 Windows multiple critical vulnerabilities before humans did. https://bit.ly/4nxjGuB
Microsoft's AI Just Found 16 Windows Vulnerabilities Humans Missed — And It's Only Getting Started
Microsoft's MDASH AI system uncovered 16 Windows vulnerabilities in this month's Patch Tuesday, including 4 critical RCE flaws — topping the CyberGym
05/18/2026
The “Gentlemen” ransomware gang just got a taste of its own medicine with a massive internal leak exposing chat logs, affiliate IDs, and even signs of insider betrayal. https://bit.ly/48Zk6E6
#
The Gentlemen RaaS breach: What the leak reveals about modern cybercriminal operations
Shieldworkz is the best OT security company and a trusted OT cybersecurity vendor, offering agentic AI-powered OT security platform, risk assessments, SOC-as-a-Service and security posture management
05/17/2026
Microsoft confirms that Windows 11 still relies heavily on the Win32 API, a core technology introduced in Windows 95, because it is too deeply embedded to retire. https://buff.ly/RvsxGai
Microsoft: Windows 11 Still Runs on 1990s Code
Microsoft says Win32 remains central to Windows decades later, showing how compatibility still shapes Windows 11 and enterprise apps.
05/16/2026
Google has disclosed the first known real‑world cyberattack in which threat actors used AI to discover and generate a zero‑day exploit, which appears to be part of a coordinated mass‑exploitation campaign by cybercriminals working together. https://bit.ly/4u6AL11
Hackers Used AI to Develop First Known Zero-Day 2FA Bypass for Mass Exploitation
Google identified the first malicious AI use for a zero-day 2FA bypass in an open-source admin tool, accelerating threat actor operations.