Cristian Luțic

Cristian Luțic is a cybersecurity professional and Editor-in-Chief of iSec.News, with experience in security enablement, risk analysis, and vulnerability reporting. As Editor-in-Chief, he is responsible for editorial standards, source verification, and publication oversight at iSec News.
From professional sports to cybersecurity, his career path may have been unconventional, but it has been driven by the same core values: discipline, perseverance, and a passion for doing meaningful, impactful work.
iSec.News Motto: “Only news, only information security and privacy news. No fluff.”
-
U.S. seizes cloud account tied to HuiOne money laundering network
U.S. authorities seized a cloud account used by HuiOne Group subsidiaries and imposed new sanctions tied to Prince Group. Officials said the move targeted infrastructure that helped move billions of dollars from fraud and scam operations.
-
Cisco Unified CM flaw under active exploitation after public disclosure
Threat actors are exploiting CVE-2026-20230 in Cisco Unified CM and Unified CM SME, a critical flaw that can enable server-side request forgery and file writes. Cisco has patched affected versions, and WebDialer must be enabled for abuse.
-
Trump order sets 2030 deadline for federal post-quantum cryptography migration
President Donald Trump signed an executive order on June 22 setting 2030 and 2031 deadlines for federal post-quantum cryptography migration. The move advances the U.S. timeline and adds new planning and procurement pressure.
-
Xsolis says phishing attack exposed data of 1.4 million people
Xsolis said a January phishing attack exposed sensitive data tied to nearly 1.4 million people, including Social Security numbers and medical treatment information. The company is notifying affected individuals and offering identity monitoring.
-
GitHub updates actions/checkout to block forked pull request exploits
GitHub updated actions/checkout to block common forked pull request attack patterns in GitHub Actions, aiming to reduce pwn request risks tied to privileged workflows that can expose secrets and write tokens.
-
LastPass says Salesforce customer data exposed in Klue supply chain attack
LastPass said hackers used OAuth tokens stolen in the Klue supply chain attack to reach customer data in its Salesforce environment. The company said vaults were not affected and warned about phishing risk.
-
Malicious npm packages found posing as PostCSS tools to deliver Windows RAT
Researchers found three malicious npm packages posing as PostCSS tools that delivered a Windows remote access trojan. The campaign used a multi-stage install chain to steal Chrome credentials, run commands and contact an external server.
-
WhatsApp VBScript campaign uses fake documents to spread RMM software
Malicious VBScript files are being spread through WhatsApp messages to install legitimate remote management software, with a Kaspersky technical analysis saying the campaign is active in Malaysia and at least 11 other countries.
-
OpenAI expands Daybreak with GPT-5.5-Cyber update and Patch the Planet initiative
OpenAI said it is expanding its Daybreak effort with an updated GPT-5.5-Cyber model, a new security plugin and a Patch the Planet program aimed at helping defenders find, validate and fix software vulnerabilities faster.
-
FFmpeg fixes PixelSmash flaw that could crash media apps and, in some cases, enable code execution
FFmpeg has fixed CVE-2026-8461, a high-severity MagicYUV decoder flaw that researchers say can crash media apps and, in some cases, enable remote code execution on Jellyfin servers.









