LiveThreat Breach Watch

BREACH WATCH

Live threat intelligence from multiple sources. Updated every 6 hours.

Score 10 Vendors on Free Tier →📡 RSS Feed
8
Last 24h
326
Last 7 Days
20
Critical (7d)
Showing 21 of 5382 results
ADVISORYLIVETHREAT BRIEF📱
LIVETHREAT BRIEFApple Announces iOS 27, Next‑Gen Siri, and AI Glasses at WWDC 2026 – Implications for Third‑Party Risk

Apple’s WWDC 2026 unveiled iOS 27, an AI‑driven Siri, and prototype smart glasses. The announcements reshape data handling, privacy, and attack surface considerations for vendors and enterprises that rely on Apple platforms.

🏭 Technology & SaaS
Informational · Jun 07, 2026 · ZDNet Security
Read Full Intelligence Brief →
THREAT INTELLIVETHREAT BRIEF📧
LIVETHREAT BRIEFSecurity Affairs Newsletter Round 580 Flags New Exploited CVEs, Ransomware Fast‑Flux, and Nation‑State Espionage

Security Affairs released its weekly Round 580 newsletter, summarizing over 30 security developments—including newly added CISA‑listed exploits, active ransomware DNS fast‑flux infrastructure, and a zero‑day VS Code disclosure. The briefing helps third‑party risk managers stay ahead of emerging vendor‑related threats.

Informational · Jun 07, 2026 · Security Affairs
Read Full Intelligence Brief →
THREAT INTELLIVETHREAT BRIEF💀
LIVETHREAT BRIEFSilent Ransom Group Uses Fake IT‑Support Calls to Extort U.S. Law Firms

The Silent Ransom Group is leveraging invoice‑themed phishing emails followed by impersonated IT‑support phone calls to gain remote access to U.S. law firms, install legitimate RMM tools, and exfiltrate sensitive client data. The campaign highlights a low‑tech but high‑impact social‑engineering vector that threatens third‑party risk for legal‑service providers.

🏭 Professional Services⚡ Ransomware🎯 Phishing
High · Jun 07, 2026 · BleepingComputer
Read Full Intelligence Brief →
ADVISORYLIVETHREAT BRIEF📰
LIVETHREAT BRIEFMicrosoft Unveils Surface Laptop Ultra with Nvidia RTX Spark – High‑Performance AI‑Ready Device

Microsoft showcased the Surface Laptop Ultra at Computex 2026, the first laptop powered by Nvidia’s RTX Spark SoC. With up to 128 GB unified memory and AI‑grade GPU performance, the device expands the endpoint attack surface and raises supply‑chain security questions for enterprises.

🏭 Technology & SaaS
Low · Jun 07, 2026 · ZDNet Security
Read Full Intelligence Brief →
ADVISORYLIVETHREAT BRIEF📱
LIVETHREAT BRIEFAndroid Auto Customization Guide: 6 Tricks to Personalize In‑Car Experience

ZDNet outlines six quick tweaks—launcher ordering, permanent night mode, custom shortcuts, notification fine‑tuning, and more—that let users tailor Android Auto. Enterprises should assess how these settings intersect with mobile device management and data‑leakage controls.

🏭 Technology & SaaS
Low · Jun 07, 2026 · ZDNet Security
Read Full Intelligence Brief →
VULNERABILITYLIVETHREAT BRIEF🐛
LIVETHREAT BRIEFZero‑Day in Cisco SD‑WAN Exploited in the Wild, Threatening Enterprise Networks

Cisco’s SD‑WAN platform was hit by a zero‑day remote code execution vulnerability that attackers are already exploiting. The flaw impacts any organization using Cisco SD‑WAN, raising urgent TPRM concerns around network‑level compromise and downstream supply‑chain risk.

🏭 Technology & SaaS🎯 Vulnerability Exploit
Critical · Jun 07, 2026 · Help Net Security
Read Full Intelligence Brief →
BREACHLIVETHREAT BRIEF🔑
LIVETHREAT BRIEFData Breach Exposes 103K Customer Records from HVAC Distributor Baker Distributing via SharePoint and Salesforce

In May 2026 ShinyHunters published over 102,900 corporate contacts harvested from Baker Distributing’s SharePoint and Salesforce environments. The leak includes emails, names, phone numbers, addresses and support‑ticket metadata, raising phishing and supply‑chain risks for the HVAC/R sector.

🏭 Manufacturing & Industrial🎯 Stolen Credentials
High · Jun 07, 2026 · HIBP Latest Breaches RSS
Read Full Intelligence Brief →
ADVISORYLIVETHREAT BRIEF📧
LIVETHREAT BRIEFPractical Guide to Storm‑Proof Solar Generators for Home and Office Resilience

ZDNet’s latest guide walks readers through preparing solar generator systems for severe weather, covering safety checks, installation best practices, and maintenance routines. Organizations that rely on third‑party solar power vendors should assess these recommendations to mitigate operational and safety risks.

🏭 Energy & Utilities
Low · Jun 07, 2026 · ZDNet Security
Read Full Intelligence Brief →
VULNERABILITYLIVETHREAT BRIEF🏛️
LIVETHREAT BRIEFUnauthenticated DoS in SolarWinds Serv‑U (CVE‑2026‑28318) Added to CISA KEV Catalog – Service Disruption Risk

SolarWinds Serv‑U versions ≤ 15.5.4 contain an unauthenticated DoS flaw (CVE‑2026‑28318) that crashes the service via a crafted HTTP POST. The vulnerability is now in CISA’s Known Exploited Vulnerabilities catalog, prompting mandatory remediation for federal agencies and urging private organizations to patch. TPRM teams must assess supplier exposure and enforce rapid mitigation.

🏭 Technology & SaaS🎯 Vulnerability Exploit
High · Jun 06, 2026 · Security Affairs
Read Full Intelligence Brief →
THREAT INTELLIVETHREAT BRIEF🎣
LIVETHREAT BRIEFPink Extortion Group Uses Vishing to Bypass MFA and Steal Microsoft 365 Cloud Data

Researchers have uncovered a new extortion gang that employs voice‑phishing to capture MFA codes and gain unauthorized access to Microsoft 365 environments. The actors harvest documents and emails, then threaten to publish the data unless a ransom is paid, putting cloud‑dependent organizations at heightened risk.

🏭 Technology & SaaS🎯 Phishing
High · Jun 06, 2026 · HackRead
Read Full Intelligence Brief →
THREAT INTELLIVETHREAT BRIEF🏦
LIVETHREAT BRIEFAnthropic Deploys Engineers to NSA for Offensive Use of Mythos AI Model

Anthropic placed six engineers inside the NSA to help operationalize its restricted Mythos AI model for offensive cyber missions, exposing a significant supply‑chain risk for organizations that rely on the vendor’s technology.

🏭 Technology & SaaS🎯 Third-Party Dependency
High · Jun 06, 2026 · Security Affairs
Read Full Intelligence Brief →
VULNERABILITYLIVETHREAT BRIEF🐛
LIVETHREAT BRIEFCritical Remote Code Execution in Everest Forms Pro (CVE‑2026‑3300) Enables WordPress Site Takeover

A critical unauthenticated RCE (CVE‑2026‑3300) in the Everest Forms Pro plugin for WordPress is being actively exploited to create rogue administrator accounts. Organizations using the plugin face immediate risk of site takeover, data loss, and downstream supply‑chain compromise.

🏭 Technology & SaaS⚡ Zero-Day Exploit🎯 Vulnerability Exploit
Critical · Jun 06, 2026 · BleepingComputer
Read Full Intelligence Brief →
ADVISORYLIVETHREAT BRIEF🤖
LIVETHREAT BRIEFOpenAI Introduces ChatGPT Lockdown Mode to Block Prompt‑Injection Data Exfiltration

OpenAI has launched Lockdown Mode for personal ChatGPT accounts, restricting tool usage that could be abused in prompt‑injection attacks. The change affects all Free, Go, Plus, and Pro users and is critical for organizations handling sensitive data to mitigate third‑party data leakage risk.

Low · Jun 06, 2026 · The Hacker News
Read Full Intelligence Brief →
ADVISORYLIVETHREAT BRIEF📰
LIVETHREAT BRIEFApple Partners with Google to Power Next‑Gen Siri, Raising Health Data Integration Concerns

Apple announced that Google’s Gemini AI will power the next generation of Siri, enabling health‑focused voice interactions on the Apple Watch. The move introduces a new data‑sharing relationship that could affect compliance and privacy for organizations that rely on Apple Watch health data.

🏭 Healthcare & Life Sciences
Low · Jun 06, 2026 · ZDNet Security
Read Full Intelligence Brief →
THREAT INTELLIVETHREAT BRIEF📱
LIVETHREAT BRIEFFree Apps Covertly Turn Smart TVs into AI Web‑Scraping Proxies via Bright Data SDK

A researcher uncovered that Bright Data’s iOS SDK, embedded in free consumer apps, silently converts always‑on devices such as smart TVs into exit nodes for web‑scraping traffic used by AI data pipelines. The covert proxy activity creates legal, privacy, and supply‑chain risks for organizations that deploy or rely on these devices.

🏭 Technology & SaaS🎯 Third-Party Dependency
High · Jun 06, 2026 · The Hacker News
Read Full Intelligence Brief →
VULNERABILITYLIVETHREAT BRIEF🏛️
LIVETHREAT BRIEFActively Exploited DoS Vulnerability (CVE-2026-28318) in SolarWinds Serv‑U Added to CISA KEV Catalog

CISA has listed CVE‑2026‑28318, a DoS bug in SolarWinds Serv‑U, in its KEV catalog after detecting active exploitation. The flaw can crash file‑transfer services, posing immediate disruption risk to organizations and their supply‑chain partners.

🏭 Technology & SaaS🎯 Vulnerability Exploit
High · Jun 06, 2026 · The Hacker News
Read Full Intelligence Brief →
VULNERABILITYLIVETHREAT BRIEF🐛
LIVETHREAT BRIEFCritical Zero-Day in Zcash Orchard Privacy Pool Enables Undetectable Counterfeit ZEC Creation

A four‑year‑old vulnerability in Zcash’s Orchard privacy pool, discovered by a researcher using Claude Opus 4.8, could have let attackers mint unlimited ZEC without detection. The issue was patched on June 1 2026, but its existence highlights significant third‑party risk for crypto‑related vendors.

🏭 Financial Services & FinTech🎯 Vulnerability Exploit
Critical · Jun 06, 2026 · Security Affairs
Read Full Intelligence Brief →
VULNERABILITYLIVETHREAT BRIEF💣
LIVETHREAT BRIEFAI Agent Discovers 21 Zero‑Day Flaws in FFmpeg Library; Google Patches Record 429 Bugs in Chrome

An autonomous AI security startup reported 21 new zero‑day vulnerabilities in FFmpeg, the media library used by countless third‑party products. Simultaneously, Google shipped Chrome 149 with a record‑breaking 429 security fixes. Both events raise urgent TPRM concerns for any organization relying on video processing or Chrome‑based vendor portals.

🏭 Technology & SaaS🎯 Vulnerability Exploit
High · Jun 06, 2026 · The Hacker News
Read Full Intelligence Brief →
THREAT INTELLIVETHREAT BRIEF☁️
LIVETHREAT BRIEFMiasma Worm Compromises 73 Microsoft GitHub Repositories in Supply‑Chain Attack

A self‑replicating Miasma worm infected 73 Microsoft GitHub repositories across Azure, Azure‑Samples, Microsoft, and MicrosoftDocs, forcing GitHub to disable access. The supply‑chain intrusion expands risk for any organization using Microsoft open‑source components.

🏭 Technology & SaaS🎯 Third-Party Dependency
High · Jun 06, 2026 · The Hacker News
Read Full Intelligence Brief →
VULNERABILITYLIVETHREAT BRIEF🏛️
LIVETHREAT BRIEFCritical Remote Code Execution in Cisco Catalyst SD‑WAN Manager (CVE‑2026‑20245) Actively Exploited – No Patch

Cisco has confirmed that CVE‑2026‑20245, a remote code execution flaw in Catalyst SD‑WAN Manager, is being actively exploited in the wild. The vulnerability spans on‑prem and cloud SD‑WAN deployments, and no fix exists yet, creating immediate supply‑chain risk for enterprises that depend on Cisco’s networking platform.

🏭 Technology & SaaS🎯 Vulnerability Exploit
High · Jun 06, 2026 · The Hacker News
Read Full Intelligence Brief →
THREAT INTELLIVETHREAT BRIEF🔑
LIVETHREAT BRIEFMalicious Polyfill CDN Serves Phishing Login Prompts on Toshiba and Muji Websites

A hijacked JavaScript CDN (polyfill.io) began delivering fake authentication pop‑ups on Toshiba and Muji sites, potentially harvesting user credentials. The incident underscores the risk of unmanaged third‑party script dependencies for TPRM programs.

⚡ Credential Compromise🎯 Third-Party Dependency
High · Jun 05, 2026 · BleepingComputer
Read Full Intelligence Brief →
Page 1 of 257

Know When Your Vendors Are Breached

LiveThreat monitors this intelligence against your vendor portfolio and alerts you automatically.

Score 10 Vendors on Free Tier →📡 Subscribe via RSS

Daily Breach Intelligence Digest

Get critical and high-severity threats delivered to your inbox every morning. Unsubscribe anytime.

RSS Feed One email per day · No spam · Unsubscribe anytime

DON'T BE A LARRY. TRY LIVETHREAT FREE.

Assess your first vendors free — no credit card, no contract, no gym membership required.

Score 10 Vendors on Free Tier →