📰 DAILY THREAT BRIEFING
Monday, May 11, 2026
12 News Items
THN · BleepingComputer · Krebs · Dark Reading · SANS

📰 Cybersecurity News Headlines

Top stories from leading cybersecurity publications as of May 11, 2026.

  1. YARA-X 1.16.0 Release, (Sun, May 10th)
    — SANS ISC

    YARA-X's 1.16.0 release brings 4 improvements and 4 bugfixes.
  2. Hackers abuse Google ads, Claude.ai chats to push Mac malware
    — Bleeping Computer

    Attackers are abusing Google Ads and legitimate Claude.ai shared chats in an active malvertising campaign. Users searching for "Claude mac d…
  3. Police shut down reboot of Crimenetwork marketplace, arrest admin
    — Bleeping Computer

    German authorities have shut down a relaunch version of the criminal marketplace 'Crimenetwork' that generated more than 3.6 million euros, …
  4. Ollama Out-of-Bounds Read Vulnerability Allows Remote Process Memory Leak
    — The Hacker News

    Cybersecurity researchers have disclosed a critical security vulnerability in Ollama that, if successfully exploited, could allow a remote, …
  5. JDownloader site hacked to replace installers with Python RAT malware
    — Bleeping Computer

    The website for the popular JDownloader download manager was compromised earlier this week to distribute malicious Windows and Linux install…
  6. Fake OpenAI repository on Hugging Face pushes infostealer malware
    — Bleeping Computer

    A malicious Hugging Face repository that reached the platform's trending list impersonated OpenAI's "Privacy Filter" project to deliver info…
  7. cPanel, WHM Release Fixes for Three New Vulnerabilities — Patch Now
    — The Hacker News

    cPanel has released updates to address three vulnerabilities in cPanel and Web Host Manager (WHM) that could be exploited to achieve privile…
  8. ShinyHunters Claims Second Attack Against Instructure
    — Dark Reading

    The edtech company is struggling to wrest control from its hackers. PII belonging to hundreds of millions of people is on the line.
  9. TCLBANKER Banking Trojan Targets Financial Platforms via WhatsApp and Outlook Worms
    — The Hacker News

    Threat hunters have flagged a previously undocumented Brazilian banking trojan dubbed TCLBANKER that's capable of targeting 59 banking, fint…
  10. Fake Call History Apps Stole Payments From Users After 7.3 Million Play Store Downloads
    — The Hacker News

    Cybersecurity researchers have discovered fraudulent apps on the official Google Play Store for Android that falsely claimed to offer access…
  11. Another Universal Linux Local Privilege Escalation (LPE) Vulnerability: Dirty Frag, (Fri, May 8th)
    — SANS ISC

    Less than two weeks after the public disclosure of the Copy Fail vulnerability (CVE-2026-31431), another local privilege escalation (LPE) vu…
  12. Canvas Breach Disrupts Schools & Colleges Nationwide
    — Krebs on Security

    An ongoing data extortion attack targeting the widely-used education technology platform Canvas disrupted classes and coursework at school d…

Generated by HiveNet.ai Threat Intelligence Platform · May 11, 2026 · Sources: The Hacker News, Bleeping Computer, Krebs on Security, Dark Reading, SANS ISC