UK F-35 Fleet to Use US Glide Bombs Amid Software Delays

The UK's F-35 fighter jets will temporarily utilize US-made glide bombs due to delays in essential software updates needed for the integration of the SPEAR 3 missile.
Ciberseguridad, vulnerabilidades y privacidad

The UK's F-35 fighter jets will temporarily utilize US-made glide bombs due to delays in essential software updates needed for the integration of the SPEAR 3 missile.

Multiple vendors have issued security updates addressing critical vulnerabilities that could allow unauthorized access and code execution.

Recent campaigns targeting developer environments highlight the need for enhanced security measures around developer workstations as they become critical points in the software supply chain.

The Russian hacking group Turla has upgraded its Kazuar backdoor into a modular peer-to-peer botnet, enhancing its stealth and persistence capabilities.

A critical vulnerability in the Funnel Builder plugin for WordPress is being actively exploited, allowing attackers to inject malicious JavaScript into WooCommerce checkout pages to steal payment data.

OpenAI has disclosed a security incident involving the theft of internal credentials due to compromised employee devices, part of a broader supply chain attack affecting npm ecosystems.

Instructure's assurances regarding the deletion of stolen student data from the recent Canvas breach are met with skepticism from security experts.

Cisco has identified a severe authentication bypass vulnerability in its Catalyst SD-WAN Controller, which is currently being exploited in limited attacks. The flaw, tracked as CVE-2026-20182, allows unauthorized remote access to administrative privileges.

Owe Martin Andresen, suspected of running the Dream Market, faces charges in the US and Germany for money laundering.

Recent advancements in AI technology have enabled significant increases in the discovery of software vulnerabilities, resulting in a notable rise in security patches across multiple vendors.