📰 DAILY THREAT BRIEFING
Saturday, June 20, 2026
12 News Items
THN · BleepingComputer · Krebs · Dark Reading · SANS

📰 Cybersecurity News Headlines

Top stories from leading cybersecurity publications as of June 20, 2026.

  1. Klue OAuth breach victim list grows as Icarus hackers claim attack
    — Bleeping Computer

    Market intelligence platform Klue has publicly confirmed a recent security incident that allowed threat actors to steal OAuth tokens used to…
  2. Hackers exploit info disclosure bug in Gravity SMTP WordPress plugin
    — Bleeping Computer

    Threat actors are exploiting an unauthenticated information disclosure vulnerability in the WordPress plugin Gravity SMTP, active on 100,000…
  3. Unpatchable 'usbliter8' Exploit Breaks Apple A12 and A13 SecureROM Boot Chain
    — The Hacker News

    Security researchers at Paradigm Shift have published a working exploit, dubbed usbliter8, that achieves arbitrary code execution inside …
  4. The Gentlemen RaaS Uses GentleKiller EDR Framework Targeting 400 Security Processes
    — The Hacker News

    The Gentlemen ransomware-as-a-service (RaaS) operation is actively developing and maintaining a suite of endpoint detection and response (ED…
  5. Texas govt data breach exposes over 3 million driver’s licenses
    — Bleeping Computer

    The Texas Parks and Wildlife Department (TPWD) disclosed a data breach at its license system vendor that exposed personal information for mo…
  6. AutoJack Attack Lets One Web Page Hijack AI Agent for Host Code Execution
    — The Hacker News

    Microsoft researchers have detailed an exploit chain, named AutoJack, that turns an AI browsing agent into a delivery vehicle for remote co…
  7. Operation Endgame Disrupts SocGholish Servers, Cleans 14,971 WordPress Sites
    — The Hacker News

    Dutch law enforcement authorities, along with counterparts from Canada , Germany, and the U.S., have disrupted malicious infrastructure asso…
  8. Every AI Agent Is an Identity. Most Organizations Don't Treat Them That Way
    — Bleeping Computer

    AI agents can access data, trigger workflows, deploy code, and interact with critical business systems, often with little oversight. Token S…
  9. Stressors, AI Forcing Changes to Cybersecurity Teams
    — Dark Reading

    As threats proliferate and AI complicates cybersecurity, CISOs say the job is getting harder, but more companies still want cybersecurity ex…
  10. eBanking Phishing Delivered Through IPv4-Mapped IPv6 Address, (Fri, Jun 19th)
    — SANS ISC

    I detected an interesting phishing email this morning. It targets a major Belgian bank:
  11. Novo Nordisk Breach Exposes Software Development Pipeline Risk
    — Dark Reading

    A leaked GitHub token underscores what most organizations get wrong: Treating secrets management as a tooling problem rather than an identit…
  12. Operation Escaneo Signals Shift in LatAm Threat Landscape
    — Dark Reading

    The threat group's curious business model may combine opportunistic monetization alongside intel collection, without much coordination betwe…

Generated by HiveNet.ai Threat Intelligence Platform · June 20, 2026 · Sources: The Hacker News, Bleeping Computer, Krebs on Security, Dark Reading, SANS ISC