📰 DAILY THREAT BRIEFING
Sunday, June 21, 2026
12 News Items
THN · BleepingComputer · Krebs · Dark Reading · SANS

📰 Cybersecurity News Headlines

Top stories from leading cybersecurity publications as of June 21, 2026.

  1. New Prinz Eugen ransomware prioritizes recent files for encryption
    — Bleeping Computer

    A new ransomware operation named 'Prinz Eugen' prioritizes recently modified files for encryption and leaves no ransom note on the system. […
  2. Microsoft links Mastra AI supply chain attack to North Korean hackers
    — Bleeping Computer

    Microsoft has attributed a recent Mastra AI supply chain attack that compromised more than 140 npm packages to the North Korean hacking grou…
  3. Hackers Exploit Gravity SMTP WordPress Plugin Bug to Expose API Keys
    — The Hacker News

    Threat actors are exploiting a recently patched security flaw impacting Gravity SMTP, a WordPress plugin that's installed on about 100,000 s…
  4. Klue OAuth breach victim list grows as Icarus hackers claim attack
    — Bleeping Computer

    Market intelligence platform Klue has publicly confirmed a recent security incident that allowed threat actors to steal OAuth tokens used to…
  5. Hackers exploit info disclosure bug in Gravity SMTP WordPress plugin
    — Bleeping Computer

    Threat actors are exploiting an unauthenticated information disclosure vulnerability in the WordPress plugin Gravity SMTP, active on 100,000…
  6. Unpatchable 'usbliter8' Exploit Breaks Apple A12 and A13 SecureROM Boot Chain
    — The Hacker News

    Security researchers at Paradigm Shift have published a working exploit, dubbed usbliter8, that achieves arbitrary code execution inside …
  7. The Gentlemen RaaS Uses GentleKiller EDR Framework Targeting 400 Security Processes
    — The Hacker News

    The Gentlemen ransomware-as-a-service (RaaS) operation is actively developing and maintaining a suite of endpoint detection and response (ED…
  8. AutoJack Attack Lets One Web Page Hijack AI Agent for Host Code Execution
    — The Hacker News

    Microsoft researchers have detailed an exploit chain, named AutoJack, that turns an AI browsing agent into a delivery vehicle for remote co…
  9. Stressors, AI Forcing Changes to Cybersecurity Teams
    — Dark Reading

    As threats proliferate and AI complicates cybersecurity, CISOs say the job is getting harder, but more companies still want cybersecurity ex…
  10. eBanking Phishing Delivered Through IPv4-Mapped IPv6 Address, (Fri, Jun 19th)
    — SANS ISC

    I detected an interesting phishing email this morning. It targets a major Belgian bank:
  11. Novo Nordisk Breach Exposes Software Development Pipeline Risk
    — Dark Reading

    A leaked GitHub token underscores what most organizations get wrong: Treating secrets management as a tooling problem rather than an identit…
  12. Operation Escaneo Signals Shift in LatAm Threat Landscape
    — Dark Reading

    The threat group's curious business model may combine opportunistic monetization alongside intel collection, without much coordination betwe…

Generated by HiveNet.ai Threat Intelligence Platform · June 21, 2026 · Sources: The Hacker News, Bleeping Computer, Krebs on Security, Dark Reading, SANS ISC