Latest IT News, Cybersecurity Alerts & Tech Innovations

Oracle Patches Critical RCE Flaw in Identity Manager
Oracle released emergency patches for critical remote code execution vulnerabilities affecting Identity Manager and Web Services Manager components exposed to the internet.

Microsoft Details Windows 11 Performance Roadmap for 2026
Microsoft outlined comprehensive plans to enhance Windows 11 performance and reliability throughout 2026 with major system improvements.

Windows 11 Gets Movable Taskbar in Upcoming Insider Preview
Microsoft prepares to test vertical taskbar positioning and additional interface improvements for Windows 11 Insider participants.

Microsoft Overhauls Windows 11 to Match macOS and Linux
Microsoft announces major Windows 11 changes to compete with macOS and Linux performance and features.

Windows Feedback Hub Gets Redesigned Interface for Insiders
Microsoft rolls out redesigned Feedback Hub to Windows Insiders with streamlined home page and simplified submission process.

Trivy Scanner Hit by Second Supply Chain Attack in Month
Aqua Security's Trivy vulnerability scanner suffered another supply chain compromise targeting GitHub Actions workflows and CI/CD secrets.

Operation Alice Shuts Down 373,000 Dark Web CSAM Sites
International law enforcement operation dismantles massive dark web network distributing fake child exploitation material packages across hidden services.

Ransomware Groups Target Network Backups in Systematic Attacks
Security researchers discovered ransomware operators systematically targeting network backup infrastructure to maximize attack impact and prevent recovery.

Langflow CVE-2026-33017 Exploited 20 Hours After Disclosure
Critical authentication bypass flaw in Langflow enables remote code execution, actively exploited within hours of public disclosure.

Navia Data Breach Exposes 2.7 Million Health Records
Navia Benefits Solutions suffered a major data breach affecting 2.7 million individuals' personal and health plan information during a three-week attack period.

PolyShell Flaw Exposes Magento Stores to RCE Attacks
Critical Magento REST API vulnerability allows unauthenticated attackers to upload malicious executables disguised as images for remote code execution.

Windows 11 March Update Breaks Microsoft Account Sign-ins
Microsoft's March 2026 Windows 11 update disrupts authentication across Teams, OneDrive, and other Microsoft apps, affecting enterprise users globally.

NC Data Analyst Convicted of Extorting DC Tech Company
A North Carolina data analyst contractor was found guilty of extorting his Washington D.C.-based technology employer through insider threats.

Windows 11 26H1 Launches April 2026 for Snapdragon X2 Only
Microsoft will release Windows 11 version 26H1 next month exclusively for new Snapdragon X2 devices with extended support lifecycle.

Ubiquiti Patches Critical UniFi Flaw Enabling Account Takeover
Ubiquiti fixed two UniFi Network Application vulnerabilities including a maximum-severity flaw allowing complete account hijacking attacks.

CISA Warns of Intune Exploit After Stryker Medical Breach
CISA issued urgent guidance after attackers exploited Microsoft Intune vulnerabilities to wipe systems at medical technology giant Stryker Corporation.

CISA Warns: Critical SharePoint Flaw Under Active Attack
CISA adds critical Microsoft SharePoint vulnerability to its Known Exploited Vulnerabilities catalog after confirming active exploitation in the wild.

Cisco Firewall Zero-Day Exploited by Interlock Ransomware
Cisco's Firewall Management Center vulnerability CVE-2026-20131 was actively exploited by Russian-linked Interlock ransomware operators since January 2026.

GNOME 50 Desktop Environment Released for Linux
The GNOME Foundation released GNOME 50 on March 19, 2026, bringing major updates to the popular Linux desktop environment.

Aura Confirms Data Breach Affecting 900,000 Customers
Identity protection company Aura disclosed unauthorized access to customer records containing names and email addresses of nearly 900,000 users.

CISA Orders Federal Agencies to Patch Zimbra Zero-Day
CISA adds actively exploited Zimbra Collaboration Suite vulnerability to its Known Exploited Vulnerabilities catalog, mandating federal agency patches.

