All Articles
Security Intelligence
3410 articles · Updated every 8 hours
Advertisement
Hikvision and Rockwell Automation CVEs: CISA KEV Mitigation Guide
CISA adds Hikvision CVE-2017-7921 and Rockwell Automation flaws to the KEV catalog. Learn how to detect and mitigate these critical CVSS 9.8 vulnerabilities.
Windows Terminal Exploited in ClickFix Campaign for Lumma Stealer
Microsoft identifies a new ClickFix campaign using Windows Terminal to deliver Lumma Stealer. Analysis of social engineering TTPs and mitigation steps included.
CVE-2024-28182: Python Cryptography RSA DoS Mitigation Guide
Technical deep dive into CVE-2024-28182, a denial-of-service vulnerability in the Python cryptography library. Learn how to detect and patch RSA-based DoS.
Europol Dismantles Tycoon 2FA Phishing Platform: Mitigating MFA Bypass
Europol and cybersecurity vendors dismantle Tycoon 2FA, a major phishing-as-a-service platform known for its sophisticated MFA bypass capabilities.
APT36 Leverages AI for Mass-Produced Malware: Overwhelming Defenses
APT36, a Pakistan-linked threat actor, is using AI 'vibe-coding' to generate malware at scale, posing a significant challenge to conventional defenses.
Bing AI Promotes Fake GitHub Repositories Spreading Info-Stealers
Microsoft Bing AI search promoted malicious GitHub repositories hosting fake OpenClaw software, leading to info-stealing and proxy malware deployment.
Advertisement
UAT-9244 Targets South American Telcos with Custom Malware Toolkit
Chinese state-sponsored actor UAT-9244 targets telecommunications in South America using FaceFish and TinyShell malware to exploit network edge devices.
Optimizing Mutational Grammar Fuzzing for Enhanced Vulnerability Discovery
Explore the effectiveness and inherent flaws of mutational grammar fuzzing, a key technique for vulnerability discovery, and a method to improve its efficacy.
CISA KEV Update: Five Actively Exploited CVEs in Apple, Hikvision, Rockwell
CISA adds five actively exploited vulnerabilities, including Apple iOS/iPadOS use-after-free and Hikvision improper authentication, to its KEV Catalog.
CVE-2026-3094: Delta CNCSoft-G2 Out-of-bounds Write RCE
Delta Electronics CNCSoft-G2 is vulnerable to an out-of-bounds write (CVE-2026-3094) allowing remote code execution. Update to V2.1.0.39.
Nation-State Cyber Operation: Israel's Compromise of Iranian Traffic Cameras
Analysis of the reported Israeli cyber operation targeting Iranian traffic cameras, detailing implications for critical infrastructure security and cyber-physical…
Secure-by-Design: Mitigating Enterprise Risk & Human Error
Leverage secure-by-design principles from software development to address non-technical enterprise risks, including governance gaps and human error, enhancing…
FBI Arrests Suspect in $46M US Marshals Crypto Theft
A suspect linked to the theft of $46 million in cryptocurrency from the U.S. Marshals Service has been arrested.
WordPress User Registration & Membership Plugin: Admin Account Exploit
Critical vulnerability in WordPress User Registration & Membership plugin actively exploited to create unauthorized admin accounts.
CVE-2026-20122: Cisco Catalyst SD-WAN Manager Exploited in the Wild
Cisco confirms active exploitation of CVE-2026-20122 in Catalyst SD-WAN Manager, allowing authenticated attackers to perform arbitrary file overwrites.
2025 Zero-Day Exploitation Review: Enterprise & OS Targets Dominate
GTIG's 2025 zero-day review reveals 90 in-the-wild exploits, with a record 48% targeting enterprise tech and a surge in OS vulnerabilities. Includes actor TTPs.
LatAm Cyberattack Surge: Regional Vulnerabilities & Mitigation
Latin American organizations face double the cyberattacks compared to the US, driven by lower cybersecurity maturity.
Russian Ransomware Operator Pleads Guilty in US After Extradition
Evgenii Ptitsyn, a Russian ransomware operator, pleaded guilty in the US after his extradition from South Korea, marking a win for international cyber law enforcement.
Google Forecasts 90 Enterprise Zero-Day Exploits in 2025
Google predicts half of the 90 exploited zero-day vulnerabilities in 2025 will target enterprises. Understand attribution and proactive defense strategies.
Enterprise Browser Security: Emerging Blind Spots & AI Web Tool Risks
Keep Aware's 2026 report reveals critical enterprise browser security gaps, citing AI web tool use, phishing, and extensions as major blind spots for defenders.
Google Reports 90 Zero-Day Exploits in 2025: Enterprise Focus
Google Threat Intelligence Group tracked 90 zero-day vulnerabilities actively exploited throughout 2025, with nearly half targeting enterprise software and appliances.
Harvest Now, Decrypt Later: Preparing for Quantum-Era Threats
Understand the 'harvest now, decrypt later' threat. Learn how attackers store encrypted data today for future quantum decryption and how to mitigate risks with PQC.
Redis RCE Threats Amidst Broader Cyber Landscape
A new wave of cyber threats emerges, headlined by potential Redis RCE vulnerabilities, sophisticated DDR5 bot scalping operations, and escalating privacy concerns.
Microsoft Outlook CVE-2025-21418: Mitigating NTLM Relay Attacks
Analysis of CVE-2025-21418 in Microsoft Outlook. Learn how attackers bypass security features to leak NTLM hashes and the steps needed for mitigation.