Skip to main content
LiMP VPN

News & Protection

VPN and privacy news from the LiMP VPN team: data breaches, phone and account security, online scams, and practical advice on protecting your data in 2026.

Levi Strauss: Three Phone Calls, Corporate Data Stolen
Featured

Levi Strauss: Three Phone Calls, Corporate Data Stolen

Three phone calls gave attackers access to Levi Strauss corporate data in August 2026 — a vishing campaign linked to UNC6671 targeting more than 200 companies in five weeks.

3 min readRead article
$15 Domain Purchase Exposed 400,000 Corporate Emails

$15 Domain Purchase Exposed 400,000 Corporate Emails

Two researchers bought 'noreply.net' for $15 and received 400,000 corporate emails — including passwords, medical records, hotel bookings and security camera fo

Read more
Trezor Data Breach: 13,689 Customers Exposed via Metabase

Trezor Data Breach: 13,689 Customers Exposed via Metabase

Zero-day CVE-2026-72898 in Metabase exposed 13,689 Trezor buyers' names, phone numbers, and shipping addresses via logistics partner ShipMonk.

Read more
Armored Likho: Telegram Spy Suite and Covert Microphone Recording

Armored Likho: Telegram Spy Suite and Covert Microphone Recording

Kaspersky GReAT uncovered Armored Likho: the Still Toolkit steals Telegram sessions and covertly records audio from infected Windows devices.

Read more
Windows Zero-Day Exploited 5 Weeks by Lazarus: Patch Now

Windows Zero-Day Exploited 5 Weeks by Lazarus: Patch Now

North Korean Lazarus hackers exploited Windows kernel zero-day CVE-2026-68820 for 5 weeks via fake LinkedIn job offers. Microsoft patched it on August 11, 2026.

Read more
Zoom Zoomsday: Zero-Click Flaw Hijacks Your PC Live

Zoom Zoomsday: Zero-Click Flaw Hijacks Your PC Live

Zoom's Zoomsday zero-click flaw lets attackers hijack any meeting participant's device with no user action needed. Patch released August 11 — update now.

Read more
Two CVSS 9.8 SharePoint Flaws Actively Exploited in the Wild

Two CVSS 9.8 SharePoint Flaws Actively Exploited in the Wild

Two critical SharePoint Server flaws rated CVSS 9.8 are actively exploited — attackers breached Switzerland's federal IT office in July 2026, compromising aroun

Read more
ViPNet Client: Critical CVSS 9.0 Flaw Exploited in Russia

ViPNet Client: Critical CVSS 9.0 Flaw Exploited in Russia

A CVSS 9.0 flaw in Russia's ViPNet Client let attackers deploy a backdoor via fake updates, compromising at least 8 organizations in targeted operations.

Read more
SIM Cards Can Read Your Files: Proactive SIM Exploit 2026

SIM Cards Can Read Your Files: Proactive SIM Exploit 2026

Compromised SIM cards can read files, run modem commands, and force your phone from 4G to 2G — bypassing Android security entirely. USENIX WOOT 2026 research.

Read more
OctLurk and SilkLurk: Memory-Only Spy Backdoors in 6 Countries

OctLurk and SilkLurk: Memory-Only Spy Backdoors in 6 Countries

Kaspersky GReAT found two memory-only spy backdoors active in 6 countries — each sample is custom-built for one specific device and leaves no traces on disk.

Read more
Malware Inside Password-Protected Archives: New Phishing Wave

Malware Inside Password-Protected Archives: New Phishing Wave

Mail.ru's anti-spam team detected a surge: 13% of blocked emails now hide malware inside password-protected RAR archives disguised as business documents.

Read more
VPN News and Online Protection Guides | LiMP VPN