Skip to main content

All Articles

Security Intelligence

3410 articles · Updated every 8 hours

Severity (this page):

Advertisement

OAuth Exploitation and EDR Termination: New Bulletin Analysis
HIGH
Threat Intel

OAuth Exploitation and EDR Termination: New Bulletin Analysis

Analysis of current threats including OAuth token theft, EDR termination techniques, Signal phishing, and 'Zombie ZIP' archive evasion strategies.

Runtime Rebel Intel
3 min read · Mar 12, 2026
Scaling Enterprise Phishing Detection: 3 Strategies for CISOs
MEDIUM
Threat Intel

Scaling Enterprise Phishing Detection: 3 Strategies for CISOs

Discover how to scale phishing detection within your SOC by leveraging automated triage, behavioral analysis, and integrated threat intelligence feeds.

Runtime Rebel Intel
4 min read · Mar 12, 2026
HIGH
Vulnerabilities

Cisco IOS XR Software Vulnerabilities: CVE-2024-20320 Patch Guide

Cisco addresses high-severity vulnerabilities in IOS XR Software, including SSH privilege escalation and DoS flaws. Essential mitigation steps for network admins.

Runtime Rebel Intel
3 min read · Mar 12, 2026
HIGH
Vulnerabilities

Zoom and Splunk Patch Critical RCE and PE Vulnerabilities

Security updates for Splunk Enterprise and Zoom Desktop Client address critical vulnerabilities, including a 9.6-rated RCE and high-severity privilege escalation.

Runtime Rebel Intel
3 min read · Mar 12, 2026
HIGH
Threat Intel

DOJ Charges Second Insider for Aiding BlackCat Ransomware Operations

The US DOJ charges a second DigitalMint employee for collaborating with BlackCat ransomware, revealing insider threats in incident response and negotiation.

Runtime Rebel Intel
4 min read · Mar 12, 2026
Apple Patches CVE-2023-43010 WebKit Vulnerability in Older Devices
HIGH
Vulnerabilities

Apple Patches CVE-2023-43010 WebKit Vulnerability in Older Devices

Apple backports fixes for CVE-2023-43010 in older iOS and macOS versions to defend against the Coruna exploit kit targeting WebKit memory corruption.

Runtime Rebel Intel
4 min read · Mar 12, 2026

Advertisement

Weaponizing SOC Workloads: How Modern Phishing Exhausts Analysts
MEDIUM
Threat Intel

Weaponizing SOC Workloads: How Modern Phishing Exhausts Analysts

Attackers are shifting from employee deception to operational disruption by weaponizing phishing investigation workloads to overwhelm SOC analysts.

Runtime Rebel Intel
3 min read · Mar 12, 2026
n8n RCE via CVE-2025-68613 — CISA Flags Active Exploitation
CRITICAL
Vulnerabilities

n8n RCE via CVE-2025-68613 — CISA Flags Active Exploitation

CISA adds CVE-2025-68613 to its KEV catalog after reports of active exploitation against n8n workflow automation instances. Patch now to prevent RCE.

Runtime Rebel Intel
3 min read · Mar 12, 2026
MEDIUM
Threat Intel

IoT Default Credentials: Preventing Unauthorized Admin Access

The SANS ISC highlights the persistent threat of IoT devices compromised by default admin credentials. Learn critical steps to secure your smart devices.

Runtime Rebel Intel
5 min read · Mar 12, 2026
HIGH
Vulnerabilities

CVE-2024-21410: Protect Microsoft Exchange from NTLM Relay Attacks

Deep dive into CVE-2024-21410, a critical privilege escalation vulnerability in Microsoft Exchange. Learn how to detect exploits and implement EPA mitigations.

Runtime Rebel Intel
3 min read · Mar 12, 2026
Tag Poisoning Compromises Xygeni GitHub Action, C2 Implant Active
HIGH
Supply Chain

Tag Poisoning Compromises Xygeni GitHub Action, C2 Implant Active

Attackers compromised the `xygeni/xygeni-action` GitHub Action using tag poisoning, deploying a C2 implant for up to a week. Users must verify integrity and review logs.

Runtime Rebel Intel
4 min read · Mar 12, 2026
INC Ransomware Oceania: Healthcare and Government Sectors Under Siege
HIGH
Threat Intel

INC Ransomware Oceania: Healthcare and Government Sectors Under Siege

INC Ransomware has launched a series of attacks against healthcare and government agencies in Oceania, using double extortion to compromise sensitive data.

Runtime Rebel Intel
4 min read · Mar 12, 2026
CRITICAL
Vulnerabilities

CVE-2025-68613: n8n Improper Code Control — Actively Exploited

CISA adds CVE-2025-68613, an n8n vulnerability involving improper control of dynamically-managed code, to its KEV Catalog due to active exploitation.

Runtime Rebel Intel
4 min read · Mar 11, 2026
INFO
Threat Intel

Joshua Rudd Confirmed: Implications for NSA and US Cyber Command Leadership

General Joshua Rudd's confirmation to lead both NSA and US Cyber Command under the 'dual-hat' arrangement signals unified cybersecurity strategy.

Runtime Rebel Intel
4 min read · Mar 11, 2026
HIGH
Vulnerabilities

Elementor Ally Plugin SQLi: Unauthenticated Data Theft Risk

An unauthenticated SQL injection vulnerability in the Elementor Ally WordPress plugin affects over 400,000 sites, risking sensitive data exposure.

Runtime Rebel Intel
4 min read · Mar 11, 2026
INFO
Identity & Access

WhatsApp Introduces Parent-Managed Accounts for Pre-Teens

WhatsApp rolls out new parent-managed accounts, enabling guardians to control contact lists and group access for pre-teen users, enhancing digital safety.

Runtime Rebel Intel
4 min read · Mar 11, 2026
Manipulating Perplexity Comet AI via Reasoning-Based Phishing
HIGH
Threat Intel

Manipulating Perplexity Comet AI via Reasoning-Based Phishing

Researchers from Guardio demonstrate a rapid attack vector against Perplexity’s Comet AI browser, tricking it into executing malicious phishing tasks.

Runtime Rebel Intel
4 min read · Mar 11, 2026
Chinese Nexus Actors Pivot to Qatar: Geopolitical Espionage
HIGH
Threat Intel

Chinese Nexus Actors Pivot to Qatar: Geopolitical Espionage

Analysis of Chinese Nexus actors' shift to targeting Qatari entities amid Iranian conflict. Understand their adaptable TTPs and fortify defenses.

Runtime Rebel Intel
5 min read · Mar 11, 2026
HIGH
Threat Intel

Stryker Wiper Attack: Iran-Backed Group Targets Medtech Operations

Analysis of a destructive wiper attack claimed by an Iran-backed hacktivist group against medical technology firm Stryker, disrupting global operations.

Runtime Rebel Intel
4 min read · Mar 11, 2026
INFO
Cloud Security

Wiz Joins Google Cloud: Strategic Implications for Cloud Security

Analyzes Google Cloud's landmark acquisition of Wiz, exploring the strategic impacts on cloud security posture, multi-cloud defense, and compliance for enterprises.

Runtime Rebel Intel
4 min read · Mar 11, 2026
HIGH
Threat Intel

Handala Group Attack on Stryker: MedTech Device Wiping Incident

Iranian-linked Handala group claims wiping over 200,000 devices at medtech giant Stryker. Analysis of TTPs and mitigation for critical infrastructure.

Runtime Rebel Intel
5 min read · Mar 11, 2026
INFO
Threat Intel

Meta Anti-Scam Tools: Facial Recognition and WhatsApp Protection

Meta implements facial recognition and enhanced messaging warnings to combat celeb-bait ads and account takeovers across WhatsApp, Facebook, and Messenger.

Runtime Rebel Intel
3 min read · Mar 11, 2026
Meta Disables 150K Accounts Linked to Southeast Asia Scam Centers
MEDIUM
Threat Intel

Meta Disables 150K Accounts Linked to Southeast Asia Scam Centers

Meta disrupts a global fraud network by disabling 150,000 accounts tied to Southeast Asian scam centers in coordination with international law enforcement.

Runtime Rebel Intel
3 min read · Mar 11, 2026
n8n RCE Vulnerabilities CVE-2026-27577 and CVE-2026-27493 - Patch Now
HIGH
Vulnerabilities

n8n RCE Vulnerabilities CVE-2026-27577 and CVE-2026-27493 - Patch Now

Critical vulnerabilities in the n8n workflow automation platform allow unauthenticated remote code execution and sandbox escapes. Update instances immediately.

Runtime Rebel Intel
4 min read · Mar 11, 2026