Skip to main content

All Articles

Security Intelligence

2161 articles · Updated every 4 hours

Advertisement

Linux Vulnerabilities and Defender Zero-Days: Weekly Threat Recap
HIGH
Threat Intel

Linux Vulnerabilities and Defender Zero-Days: Weekly Threat Recap

Weekly intelligence recap covering Linux flaws, Microsoft Defender zero-days, router botnets, and supply chain compromises targeting developer toolchains.

Runtime Rebel Intel
3 min read·May 25, 2026
DA
HIGH
Data Breach

Radiology Associates of Richmond Breach Affects 266,000 Patients

A data breach at Radiology Associates of Richmond has exposed the sensitive health and personal information of over 266,000 individuals.

Runtime Rebel Intel
4 min read·May 25, 2026
DA
MEDIUM
Data Breach

Oncology Institute Discloses Third-Party Data Breach via Vendor

The Oncology Institute reports a data breach involving a third-party vendor, potentially TriZetto, exposing patient PHI and sensitive healthcare data.

Runtime Rebel Intel
3 min read·May 25, 2026
TH
HIGH
Threat Intel

FBI Warns of Kali365 PhaaS Targeting Microsoft 365 Accounts

The FBI issues an advisory on Kali365, a Phishing-as-a-Service platform exploiting OAuth device code flows to bypass MFA and hijack Microsoft 365 accounts.

Runtime Rebel Intel
3 min read·May 25, 2026
Next-Gen NDR: Reducing Alert Fatigue with Agentic AI Capabilities
INFO
Threat Intel

Next-Gen NDR: Reducing Alert Fatigue with Agentic AI Capabilities

Examine how agentic AI is transforming Network Detection and Response to mitigate alert fatigue and improve threat triage efficiency for SOC teams.

Runtime Rebel Intel
4 min read·May 25, 2026
CVE-2026-26980: Ghost CMS SQL Injection Leads to ClickFix Attacks
CRITICAL
Vulnerabilities

CVE-2026-26980: Ghost CMS SQL Injection Leads to ClickFix Attacks

Attackers exploit CVE-2026-26980 in Ghost CMS to compromise 700+ websites, deploying ClickFix malware that tricks users into executing malicious scripts.

Runtime Rebel Intel
4 min read·May 25, 2026
SU
HIGH
Supply Chain

Megalodon Supply Chain Attack Infects 5,500+ GitHub Repositories

Attackers used automated commits to inject malicious GitHub Actions workflows into 5,500+ repositories, targeting CI/CD secrets and sensitive tokens.

Runtime Rebel Intel
3 min read·May 25, 2026
TrapDoor Campaign: Detecting Cross-Ecosystem Supply Chain Attacks
HIGH
Supply Chain

TrapDoor Campaign: Detecting Cross-Ecosystem Supply Chain Attacks

The TrapDoor campaign targets npm, PyPI, and Crates.io with over 384 malicious versions designed to exfiltrate developer credentials and sensitive data.

Runtime Rebel Intel
4 min read·May 25, 2026
VU
CRITICAL
Vulnerabilities

CVE-2026-5426: RCE via ViewState Deserialization in KnowledgeDeliver

Attackers exploit CVE-2026-5426 in the KnowledgeDeliver LMS to achieve RCE via shared ASP.NET machine keys. Immediate key rotation and patching are required.

Runtime Rebel Intel
3 min read·May 25, 2026
TH
HIGH
Threat Intel

Chinese-Language PhaaS: Real-Time OTP Interception and Tokenization

Chinese-language PhaaS providers like Darcula are shifting to real-time OTP interception and digital wallet tokenization to bypass modern MFA controls.

Runtime Rebel Intel
4 min read·May 25, 2026
VU
MEDIUM
Vulnerabilities

Wireshark 4.6.6: Fixing Critical Vulnerability and Dissector Bugs

Wireshark 4.6.6 release addresses one security vulnerability and 11 functional bugs. Learn how this update secures packet analysis and prevents dissector crashes.

Runtime Rebel Intel
4 min read·May 24, 2026
VU
CRITICAL
Vulnerabilities

CVE-2025-26980: Ghost CMS SQL Injection Exploited in ClickFix Campaign

A critical SQL injection vulnerability in Ghost CMS (CVE-2025-26980) is being exploited to deliver ClickFix malware through malicious JavaScript injections.

Runtime Rebel Intel
3 min read·May 24, 2026