📰 DAILY THREAT BRIEFING
Tuesday, June 9, 2026
12 News Items
THN · BleepingComputer · Krebs · Dark Reading · SANS

📰 Cybersecurity News Headlines

Top stories from leading cybersecurity publications as of June 9, 2026.

  1. NFCShare Android malware spreads via fake banking app updates on GitHub
    — Bleeping Computer

    New variants of the NFCShare Android malware are being distributed as fake updates for legitimate banking apps hosted on GitHub. […]
  2. SoFi confirms third-party data breach at Hong Kong subsidiary
    — Bleeping Computer

    SoFi Hong Kong is warning that it suffered a data breach after hackers gained access to a database at a third-party vendor containing custom…
  3. New Apple feature automatically changes your compromised passwords
    — Bleeping Computer

    At WWDC 26, Apple announced an Apple Intelligence-powered feature that can automatically fix weak and compromised passwords. This works in S…
  4. Silent Ransom Group Hits US Law Firms in Escalating Extortion Attacks
    — Dark Reading

    The financially motivated group is combining vishing, IT impersonation, and in-person office intrusions to steal data and extort victims.
  5. New Shai-Hulud attack trojanizes 19 science-focused PyPI packages
    — Bleeping Computer

    Hackers compromised 19 packages on the PyPI, collectively downloaded hundreds of thousands of times, in a new Shai-Hulud supply-chain attac…
  6. Check Point VPN Flaw Exploited Since Early May
    — Dark Reading

    A newly discovered, critical zero-day vulnerability is under attack; a Qilin ransomware affiliate has been blamed for at least one incident.
  7. One-Character Linux Kernel Flaw Enables Local Root Access, Exploits Now Public
    — The Hacker News

    Security researchers have published a detailed, working exploit for a Linux kernel use-after-free that lets an unprivileged local user escal…
  8. Iran Signed a Ceasefire — Its Hackers Didn't
    — Dark Reading

    An extension of the Geneva Conventions could impose restrictions on cyberwarfare under ceasefire conditions and close a major loophole in in…
  9. Meta Blocks NSO Group's New WhatsApp Phishing Attack, Files Contempt Order
    — The Hacker News

    Meta on Monday said it detected and blocked spear-phishing attempts linked to Israeli spyware vendor NSO Group. In addition, the tech giant …
  10. TeamPCP Supply Chain Campaign: Activity Through 2026-06-07, (Mon, Jun 8th)
    — SANS ISC

    This diary continues the Internet Storm Center's tracking of the TeamPCP supply chain campaign, first documented in the S…
  11. 'Hades' Campaign Against PyPI Puts New Spin on Shai-Hulud
    — Dark Reading

    The latest attacks, which hit 37 PyPI wheels and 19 code packages, show a continued evolution of the persistent software supply chain threat…
  12. Critical Check Point VPN Flaw Exploited to Bypass Passwords in IKEv1 Setups
    — The Hacker News

    Check Point has warned of active exploitation of a critical vulnerability impacting Remote Access VPN and Mobile Access deployments that are…

Generated by HiveNet.ai Threat Intelligence Platform · June 9, 2026 · Sources: The Hacker News, Bleeping Computer, Krebs on Security, Dark Reading, SANS ISC