Skip to main content

All Articles

Security Intelligence

2161 articles · Updated every 4 hours

Advertisement

AI-Powered DDoS Attacks: Emerging Tactics and Defensive Strategies
HIGH
Threat Intel

AI-Powered DDoS Attacks: Emerging Tactics and Defensive Strategies

Threat actors are leveraging artificial intelligence to automate DDoS attacks, increasing speed and evasion capabilities against traditional network defenses.

Runtime Rebel Intel
4 min read·May 26, 2026
ID
MEDIUM
Identity & Access

Windows Server 2016 DC Lookup Failures: KB5037763 Mitigation Guide

Microsoft confirms a regression in Windows Server 2016 causing LSASS crashes and domain controller lookup failures after the May 2024 security update.

Runtime Rebel Intel
3 min read·May 26, 2026
VU
HIGH
Vulnerabilities

Drupal 7.x SQL Injection CVE-2014-3704 — Active Exploitation Alert

CISA adds Drupalgeddon SQL injection (CVE-2014-3704) to KEV catalog, mandating federal agencies to patch critical legacy systems against active exploits.

Runtime Rebel Intel
3 min read·May 26, 2026
CVE-2026-5426: KnowledgeDeliver LMS Zero-Day Exploited for Godzilla Shell
CRITICAL
Vulnerabilities

CVE-2026-5426: KnowledgeDeliver LMS Zero-Day Exploited for Godzilla Shell

Attackers exploited a zero-day in KnowledgeDeliver LMS (CVE-2026-5426) using hard-coded ASP.NET keys to deploy Godzilla web shells and Cobalt Strike Beacons.

Runtime Rebel Intel
4 min read·May 26, 2026
Nimbus Manticore Targets Aviation via MiniFast and MiniJunk V2
HIGH
Threat Intel

Nimbus Manticore Targets Aviation via MiniFast and MiniJunk V2

Iranian threat actor Nimbus Manticore utilizes SEO poisoning and phishing to deploy MiniFast malware against global aviation and software organizations.

Runtime Rebel Intel
3 min read·May 26, 2026
TH
MEDIUM
Threat Intel

Analyzing Suspicious TLS Traffic Patterns with JA3 Fingerprinting

Improve threat detection by identifying TLS handshake anomalies, JA3 fingerprints, and SNI mismatches to expose hidden malicious network activity.

Runtime Rebel Intel
3 min read·May 26, 2026
MA
HIGH
Malware

ACR Stealer Distributed via Fake Claude AI Desktop Site

Threat actors are distributing ACR Stealer malware through a fraudulent Claude AI desktop application site, targeting browser credentials and crypto wallets.

Runtime Rebel Intel
4 min read·May 26, 2026
TH
MEDIUM
Threat Intel

Anthropic Claude Code Integration of Mythos Model Raises Security Risks

Anthropic may be integrating its restricted Mythos model into Claude Code, raising concerns about autonomous agentic capabilities and AI safety levels.

Runtime Rebel Intel
4 min read·May 25, 2026
SU
CRITICAL
Supply Chain

TeamPCP Supply Chain Attack Targets Microsoft SDKs and GitHub

TeamPCP expands its supply chain campaign to trojanize official Microsoft Python SDKs and infiltrate GitHub, requiring immediate dependency audits.

Runtime Rebel Intel
3 min read·May 25, 2026
MA
MEDIUM
Malware

Analyzing Microsoft Access VBA Macros for Malware Detection

Learn how threat actors use Microsoft Access .accdb files to execute malicious VBA code and how to analyze these OLE streams for incident response.

Runtime Rebel Intel
3 min read·May 25, 2026
TH
HIGH
Threat Intel

Netherlands Seizes 800 Servers Linked to Russian Intelligence Proxies

Dutch authorities arrested hosting providers and seized 800 servers used by Russian intelligence for DDoS and disinformation campaigns following EU sanctions.

Runtime Rebel Intel
3 min read·May 25, 2026
VU
CRITICAL
Vulnerabilities

Ghost CMS CVE-2022-41654: Over 700 Websites Compromised

Attackers are exploiting a critical Ghost CMS vulnerability to inject malicious scripts into sites belonging to Harvard, Oxford, and DuckDuckGo.

Runtime Rebel Intel
3 min read·May 25, 2026