Daily Drop on Cybersecurity – June 8, 2026 | DailyDrops
Curated daily feed on Cybersecurity for June 8, 2026: top articles, videos & insights.
34 items on this day.
Items
- WhatsApp slams Isreali firm, NSO Group, for trying to spy on its users (neowin.net)
- Tests suggest Russian satellites can jam GPS on a continental scale (arstechnica.com)
- Apple previews its biggest parental controls update in years, weeks before UK and US regulatory deadlines (thenextweb.com)
- Meta alleges NSO violated spyware injunction with new WhatsApp attacks (arstechnica.com)
- Microsoft's open source tools were hacked to steal passwords of AI developers | TechCrunch (techcrunch.com)
- 5 Software Supply Chain Security Best Practices | Docker (docker.com)
- Stop updating your router before doing this (it takes two minutes and saves hours) (howtogeek.com)
- This Company Will Add Phone, AirPod, and Smartwatch Trackers to License Plate Readers (404media.co)
- Only 10% of SOCs Say They’re Getting Excellent Value From AI. Here’s What the Second Wave Has to Deliver (thehackernews.com)
- Android Spyware Asin Targets Arabic Users via Fake News, PDF and War Map Apps (thehackernews.com)
- New Threat Cluster OP-512 Targets Microsoft IIS Servers with Custom Web Shell Framework (thehackernews.com)
- CISA Adds Actively Exploited SolarWinds Serv-U DoS Flaw to KEV Catalog (thehackernews.com)
- Free Apps Are Quietly Turning Smart TVs Into Web-Scraping Proxies for AI (thehackernews.com)
- IronWorm and New Miasma Worm Variant Hit npm in Supply Chain Attacks (thehackernews.com)
- New ChatGPT Lockdown Mode Limits Tools That Could Enable Data Exfiltration (thehackernews.com)
- AI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 Bugs (thehackernews.com)
- Miasma Worm Hits 73 Microsoft GitHub Repositories in Major Supply Chain Attack (thehackernews.com)
- Cisco Catalyst SD-WAN Manager CVE-2026-20245 Flaw Actively Exploited – No Patch Available (thehackernews.com)
- Exposed Fuel Tank Gauges Under Attack in the US (darkreading.com)
- China's TA4922 Expands Cybercrime Attacks Globally (darkreading.com)
- Bugcrowd Adds EU Data Residency Option for Data Sovereignty Needs (darkreading.com)
- 4 Critical Threats Where Attackers Have the Advantage (darkreading.com)
- Adaptive, Agentic AI Worms Loom as Next Enterprise Threat (darkreading.com)
- Rust-Written IronWorm Hits NPM Supply Chain (darkreading.com)
- Fake Sites Mimicking Open-Source Tools Rank High on Google to Deliver Malware via TDS (thehackernews.com)
- China-Linked TA4922 Expands Phishing Attacks to U.K., Germany, Italy, and South Africa (thehackernews.com)
- Hackers Exploit Critical Everest Forms Pro WordPress Plugin Flaw to Take Over Sites (thehackernews.com)
- ThreatsDay Bulletin: AI Agents Gone Wrong, Sketchy C2 Tools, ClickFix Tricks, JS Backdoors & 20+ New Stories (thehackernews.com)
- Cisco Patches CVE-2026-20230 in Unified CM as Exploit Code Goes Public (thehackernews.com)
- FIFA World Cup 2026 Scams Are Already Live: Fake Sites, Banking Malware, and Stolen Logins (thehackernews.com)
- Claude Code GitHub Action Flaw Let One Malicious Issue Hijack Repositories (thehackernews.com)
- CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV Catalog (thehackernews.com)
- FlutterShell Backdoor Spreads to macOS via Malicious Google and YouTube Ads (thehackernews.com)
- Hackers Spied on a Stock Exchange Executive's Outlook Mailbox for Five Months (thehackernews.com)