Skip to main content

All Articles

Security Intelligence

3410 articles · Updated every 8 hours

Severity (this page):

Advertisement

SolarWinds Patches Four Critical RCE Flaws in Serv-U File Transfer
HIGH
Vulnerabilities

SolarWinds Patches Four Critical RCE Flaws in Serv-U File Transfer

SolarWinds addresses four critical vulnerabilities (CVSS 9.1) in Serv-U 15.5, including CVE-2025-40538, which allows unauthorized root code execution.

Runtime Rebel Intel
4 min read · Feb 25, 2026
Russia's Escalating New Generation Hybrid Warfare in Europe
HIGH
Threat Intel

Russia's Escalating New Generation Hybrid Warfare in Europe

Analysis of Russia's coordinated New Generation Warfare against NATO, blending cyber attacks, sabotage, and influence operations. Understand the threat.

Runtime Rebel Intel
5 min read · Feb 25, 2026
January 2026 CVE Landscape: APT28 Zero-Day & Critical Flaws
CRITICAL
Vulnerabilities

January 2026 CVE Landscape: APT28 Zero-Day & Critical Flaws

Runtime Rebel details January 2026's 23 critical CVEs, including an APT28 zero-day in Microsoft Office and critical enterprise authentication bypass vulnerabilities.

Runtime Rebel Intel
5 min read · Feb 25, 2026
HIGH
Vulnerabilities

macOS coreaudiod Type Confusion Exploitation: CVE-2024-54529

Analysis of CVE-2024-54529, a critical type confusion vulnerability in macOS coreaudiod, detailing its exploitation and necessary mitigations.

Runtime Rebel Intel
4 min read · Feb 25, 2026
HIGH
Vulnerabilities

Windows Administrator Protection Bypassed via UI Access Abuse

Analysis of UI Access abuse techniques that bypassed Windows Administrator Protection, a new UAC feature, detailing historical context and fixes.

Runtime Rebel Intel
4 min read · Feb 25, 2026
MEDIUM
Vulnerabilities

Open Redirects: Overlooked Vulnerability Impact & Analysis

An analysis of open redirect vulnerabilities, their historical context in OWASP, common exploitation vectors like phishing, and essential mitigation strategies.

Runtime Rebel Intel
4 min read · Feb 25, 2026

Advertisement

HIGH
Threat Intel

AI-Enabled Threats: Model Extraction, APT Phishing, & Malware Evolution

GTIG reports on Q4 2025 AI threats: rising model extraction, APTs using AI for reconnaissance and phishing, and new AI-integrated malware families like HONESTCUE and…

Runtime Rebel Intel
9 min read · Feb 25, 2026
HIGH
Threat Intel

UNC6201 Exploits Dell RecoverPoint Zero-Day CVE-2026-22769

Mandiant and GTIG detail UNC6201's exploitation of CVE-2026-22769 in Dell RecoverPoint for VMs, deploying GRIMBOLT backdoor and novel VMware TTPs.

Runtime Rebel Intel
6 min read · Feb 25, 2026
CRITICAL
Vulnerabilities

CISA Alert: CVE-2026-25108 Soliton FileZen OS Command Injection Exploited

CISA adds CVE-2026-25108, a Soliton Systems FileZen OS Command Injection vulnerability, to KEV Catalog due to active exploitation. Immediate remediation advised.

Runtime Rebel Intel
4 min read · Feb 25, 2026
HIGH
Vulnerabilities

Critical RCE Flaws in InSAT MasterSCADA BUK-TS Affect ICS

Two critical vulnerabilities (SQLi, OS Command Injection) in InSAT MasterSCADA BUK-TS lead to remote code execution, impacting critical infrastructure sectors globally.

Runtime Rebel Intel
4 min read · Feb 25, 2026
Lazarus Group Shifts to Medusa Ransomware & Multi-Tool Attacks
HIGH
Threat Intel

Lazarus Group Shifts to Medusa Ransomware & Multi-Tool Attacks

North Korea's Lazarus Group now employs Medusa ransomware, Comebacker backdoor, Blindingcan RAT, and Infohook info stealer in recent attacks, signaling an evolving…

Runtime Rebel Intel
5 min read · Feb 25, 2026
Attackers Halve Breakout Time to 29 Minutes, CrowdStrike Reports
HIGH
Threat Intel

Attackers Halve Breakout Time to 29 Minutes, CrowdStrike Reports

CrowdStrike research indicates attackers now achieve lateral movement in just 29 minutes, driven by credential misuse, AI, and blind spots.

Runtime Rebel Intel
4 min read · Feb 25, 2026
HIGH
Vulnerabilities

VMware Aria Operations RCE Vulnerability Patched

Broadcom patched high-severity vulnerabilities in VMware Aria Operations, including an RCE flaw. Organizations must update immediately to mitigate risk.

Runtime Rebel Intel
4 min read · Feb 25, 2026
MEDIUM
Malware

Arkanix Stealer: Rapid Disappearance of C++ & Python Malware

Arkanix Stealer, a C++ and Python-based info-stealer, emerged briefly, exfiltrating system data, browser credentials, and files before vanishing. Analysis of its TTPs.

Runtime Rebel Intel
4 min read · Feb 25, 2026
HIGH
Data Breach

Wynn Resorts Data Breach: ShinyHunters Exfiltrates Employee PII

Wynn Resorts confirms a data breach impacting employee PII, attributed to the ShinyHunters extortion gang. Analysis covers TTPs and mitigation strategies.

Runtime Rebel Intel
4 min read · Feb 25, 2026
MEDIUM
Threat Intel

Diesel Vortex Phishing Campaign Targets Logistics Sector

Financially motivated Diesel Vortex group targets US & European freight and logistics with extensive phishing campaign, using 52 domains to steal credentials.

Runtime Rebel Intel
4 min read · Feb 25, 2026
UAC-0050 Targets European Financial Institutions with RMS Malware
MEDIUM
Threat Intel

UAC-0050 Targets European Financial Institutions with RMS Malware

Russia-aligned actor UAC-0050 expands operations beyond Ukraine, targeting European financial entities with spoofed domains and RMS malware for espionage.

Runtime Rebel Intel
4 min read · Feb 25, 2026
RoguePilot Vulnerability: GitHub Codespaces GITHUB_TOKEN Leak
HIGH
Cloud Security

RoguePilot Vulnerability: GitHub Codespaces GITHUB_TOKEN Leak

Orca Security researchers discovered RoguePilot, a flaw in GitHub Codespaces allowing attackers to steal GITHUB_TOKENs through indirect prompt injection.

Runtime Rebel Intel
4 min read · Feb 24, 2026
MEDIUM
Compliance

UK ICO Fines Reddit £14.47M Over Children's Data Privacy Failures

The UK ICO fined Reddit $19.5 million for processing data of 1.5 million children without parental consent, citing systemic age verification failures.

Runtime Rebel Intel
4 min read · Feb 24, 2026
INFO
Identity & Access

Mitigating Identity Risks in Autonomous AI Agent Workflows

Enterprise security must evolve to manage AI agents as non-human identities (NHIs) by implementing intent-based controls and solving over-scoped privilege risks.

Runtime Rebel Intel
4 min read · Feb 24, 2026
HIGH
Vulnerabilities

Critical Flaws in PUSR USR-W610 Impact Critical Manufacturing

CISA identifies critical vulnerabilities in PUSR USR-W610 gateways, including authentication bypass and credential theft. No patches available for EOL hardware.

Runtime Rebel Intel
3 min read · Feb 24, 2026
HIGH
Vulnerabilities

Valmet DNA Engineering Web Tools Vulnerable to Path Traversal

Unauthenticated attackers can exploit CVE-2025-15577 in Valmet DNA Engineering Web Tools to gain arbitrary file read access across critical infrastructure.

Runtime Rebel Intel
3 min read · Feb 24, 2026
HIGH
Vulnerabilities

CISA Adds Roundcube Webmail Vulnerabilities to KEV Catalog

CISA adds CVE-2025-49113 and CVE-2025-68461 to its Known Exploited Vulnerabilities catalog, signaling active exploitation of Roundcube Webmail systems.

Runtime Rebel Intel
4 min read · Feb 24, 2026
MEDIUM
Threat Intel

AI Influence Operations and the Erosion of Democratic Feedback

Bruce Schneier analyzes how AI-generated content overwhelms democratic institutions and creates an influence arms race, threatening institutional integrity.

Runtime Rebel Intel
3 min read · Feb 24, 2026