Here is the most recent Cybersecurity news for the past week:
🕸️Microsoft and Europol Lead Global Takedown of Amadey and StealC InfostealersMicrosoft and Europol led a coordinated international operation that dismantled the shared infrastructure behind the Amadey and StealC infostealer malware families. The operation disrupted malware responsible for stealing credentials, browser data, and financial information from hundreds of thousands of systems worldwide.
https://www.securityweek.com/microsoft-and-allies-smash-shared-infrastructure-of-amadey-and-stealc-malware/
🏛️Insurance Regulators Group NAIC Targeted in Massive ShinyHunters Extortion Attack
The National Association of Insurance Commissioners (NAIC) confirmed it was compromised during a ShinyHunters extortion campaign that exploited an Oracle PeopleSoft vulnerability. Attackers claim to have stolen more than 3 TB of sensitive regulatory data.
https://www.securityweek.com/insurance-regulators-group-naic-hit-in-oracle-peoplesoft-hack/
🐧New ‘DirtyClone’ Linux Kernel Vulnerability Grants Immediate Root Privileges
Researchers disclosed “DirtyClone,” a Linux kernel privilege escalation vulnerability allowing local attackers to gain root access by manipulating cloned network packets. Organizations running affected Linux systems should prioritize updates as patches become available.
https://thehackernews.com/2026/06/dirtyclone-linux-kernel-flaw-lets.html
☁️Amazon Q Flaw Fixed After Research Shows Potential for Cloud Credential Theft
AWS addressed a vulnerability in Amazon Q after researchers demonstrated how prompt injection techniques could manipulate the AI assistant into exposing cloud credentials from malicious repositories. The finding reinforces the need for secure AI implementation and governance.
https://www.securityweek.com/amazon-q-flaw-enabled-cloud-credential-theft-via-malicious-repositories/
🎯Critical Progress Kemp LoadMaster API Bug Allows Root Command Execution
A critical authentication bypass vulnerability affecting Progress Kemp LoadMaster could allow unauthenticated attackers to execute commands as root through the administrative API. Organizations using affected versions should apply vendor patches immediately.
https://thehackernews.com/2026/06/critical-vulnerability-in-progress-kemp.html



