Cyber Team is RECATOOLS’ cybersecurity desk, covering vulnerabilities, data breaches, supply-chain attacks, threat intelligence, exploit activity, and security best practices. The desk focuses on practical implications for developers, SMEs, IT teams, and ASEAN organisations.

About this byline

Cyber Team is a specialist RECATOOLS editorial desk focused on cybersecurity coverage. Articles are produced and reviewed under RECATOOLS editorial supervision. The articles listed here keep this byline. New coverage on these beats is published under the persona whose beat it falls in: Kenji Tanaka for vulnerabilities, patching and supply-chain security, and Priya Nair for threat intelligence, attribution and privacy.

Editorial responsibility for this byline rests with Jeffrey Tan (Tan Seng Fei), RECASYS, Singapore. Our Editorial Policy sets out how sources are reviewed, how AI-assisted workflows are used, and how editorial desks and personas are defined.

153
Articles
Cybersecurity
Primary beat
Jan 2026
Writing since
~1054 min
Total reading

Articles Showing 81–90 of 153

Close-up image of yellow caution tape with blurred background, emphasizing warning and safety.
Cybersecurity

SolarWinds Serv-U Enters CISA KEV After Active Exploitation Warning

SolarWinds Serv-U CVE-2026-28318 is now in CISA’s Known Exploited Vulnerabilities catalogue after a June 2026 hotfix. This is an availability-risk threat intel update: patch Serv-U 15.5.4 Hotfix 1 and avoid unsupported claims about breach or ransomware impact.

7 Jun 2026 · 5 min read
Singapore's modern skyline reflected in the water at night.
Cybersecurity

CSA Flags GlobalProtect Auth-Bypass CVE-2026-0257 as Critical While Attackers Forge VPN Cookies in the Wild

Singapore's CSA rates a GlobalProtect authentication-bypass flaw critical (9.1) — sterner than Palo Alto's own HIGH rating — as Rapid7 confirms attackers forging VPN cookies since 17 May. PAN-OS and Prisma Access teams should patch or disable authentication override now.

7 Jun 2026 · 7 min read
Singapore's financial district skyline of high-rise office towers against the sky.
Cybersecurity

Singapore Reviews Binding Cyber Obligations for Interconnected Non-CII Systems

The Cyber Security Agency of Singapore is evaluating whether to extend regulatory requirements to non-critical information infrastructure systems linked to critical networks.

7 Jun 2026 · 3 min read
Close-up image of ethernet cables plugged into a network switch, showcasing IT infrastructure.
Cybersecurity

Cisco Unified CM SSRF Flaw Needs Fast Action Where WebDialer Is Enabled

Cisco has patched CVE-2026-20230, a Unified CM and Unified CM SME server-side request forgery flaw that can lead to root if WebDialer is enabled. The key action is to patch affected systems or disable WebDialer until patching is complete.

6 Jun 2026 · 5 min read
A smartphone displaying the Android robot logo during a software upgrade.
Cybersecurity

Google’s June Android Patch Fixes a Zero-Day Under Targeted Exploitation

Google’s June 2026 Android security bulletin includes CVE-2025-48595, a Framework vulnerability flagged for limited, targeted exploitation. Android users and administrators should prioritise devices that have not reached the 2026-06-05 patch level.

6 Jun 2026 · 5 min read
Conceptual image of a headset and a glowing login screen on a dark desk — illustrating the voice-phishing-to-single-sign-on chain behind these breaches.
Cybersecurity

No Zero-Day Required: ShinyHunters' Salesforce Vishing Spree Snares Charter and Carnival in One Week

Two major consumer brands confirmed breaches days apart — Carnival began notifying nearly six million people, and Charter's customer data was dumped on a leak site after an extortion threat. Neither attack needed a software flaw. Both trace to the same playbook: a phone call that talks an employee out of their single sign-on, then a quiet export of the corporate Salesforce. It is the year's defining identity-and-trust attack, and the control that stops it is not a patch.

2 Jun 2026 · 7 min read
Network server room with rack cabling, illustrating a firewall vulnerability at the network edge.
Cybersecurity

CISA orders agencies to patch an actively exploited Palo Alto firewall flaw by 1 June

Attackers are exploiting a flaw in Palo Alto Networks' PAN-OS that lets them slip past security controls and open an unauthorised VPN connection through GlobalProtect gateways. The US cyber agency has added CVE-2026-0257 to its must-patch list and set a 1 June deadline for federal agencies.

1 Jun 2026 · 5 min read
Nova ransomware group claim against Badan Pangan Nasional Indonesia food agency May 2026
Cybersecurity

Nova Ransomware Claims Indonesia's National Food Agency in Latest Government Sector Hit

Nova ransomware claimed Badan Pangan Nasional — Indonesia's National Food Agency — on 29 May 2026, citing 133 compromised credentials and 39 exposed attack-surface items. The group, which operated as RALord from March 2025 before rebranding to Nova in late April 2025, has now claimed at least two Indonesian public-sector bodies. No official confirmation from BPN or BSSN has been issued.

1 Jun 2026 · 8 min read
Server room with warning indicators representing a Security Operations Centre failure at two Vietnamese government ministries
Cybersecurity

VNCERT: SOC Systems Failed to Catch Breaches at Two Vietnamese Ministries, Millions of Records Stolen

Vietnam's national cybersecurity authority disclosed on 22 May 2026 that hackers breached two ministerial-level agencies and exfiltrated millions of user records — while both organisations' Security Operations Centre platforms raised no alerts. The incident is a case study in why tool deployment without qualified operators offers the appearance of security rather than the substance.

1 Jun 2026 · 8 min read
Bombay High Court building with a digital lock overlay representing the HDFC AMC ransomware injunction ruling
Cybersecurity

Morpheus Ransomware Steals 680 GB from HDFC AMC; Bombay HC Issues Temporary Injunction

On 16 May 2026 HDFC AMC's IT administrator detected anomalies in the company's infrastructure and received an extortion email from "Morpheus" claiming 680 GB of investor data had been exfiltrated. Bombay HC Justice Shreeram Shirsat granted a temporary injunction on 29 May and directed DoT and MeitY to block any platforms distributing the stolen records.

1 Jun 2026 · 5 min read
Editorial Policy →