Skip to main content

All Articles

Security Intelligence

3414 articles · Updated every 8 hours

Severity (this page):

Advertisement

CRITICAL
Vulnerabilities

SonicWall Zero-Days CVE-2026-15409 & CVE-2026-15410 Under Active Exploit

Volexity's UTA0533 exploited SonicWall zero-days (CVE-2026-15409, CVE-2026-15410) for weeks, deploying custom malware. Urgent patching required.

Runtime Rebel Intel
4 min read · Jul 20, 2026
INFO
Threat Intel

Neo Secures $100M: Fortifying Enterprise AI Software Security

Runtime Rebel reports on Neo's emergence with $100M in funding to develop control and security solutions for enterprise AI software, addressing novel risks.

Runtime Rebel Intel
5 min read · Jul 20, 2026
HIGH
Malware

HollowGraph Malware Uses Microsoft Graph for Stealthy C2

HollowGraph malware leverages Microsoft Graph API calendar features for covert command-and-control and data exfiltration from Microsoft 365 environments.

Runtime Rebel Intel
4 min read · Jul 20, 2026
HollowGraph Malware Leverages Microsoft 365 Calendar for Stealthy C2
HIGH
Malware

HollowGraph Malware Leverages Microsoft 365 Calendar for Stealthy C2

HollowGraph, a new espionage malware, hides C2 commands and exfiltrates data via legitimate Microsoft 365 calendar events, mimicking normal Graph API traffic.

Runtime Rebel Intel
5 min read · Jul 20, 2026
AI-Assisted Phishing Leverages WebDAV for Infostealer Deployment
HIGH
Malware

AI-Assisted Phishing Leverages WebDAV for Infostealer Deployment

An exposed server revealed an AI-assisted phishing toolkit used in a WebDAV-based infostealer campaign targeting Windows users in Mexico. Learn detection and mitigation.

Runtime Rebel Intel
5 min read · Jul 20, 2026
MEDIUM
Threat Intel

Flock License Plate Cameras: Accuracy Gaps & Civil Liberty Risks

Analysis of Flock license plate tracking cameras, detailing a case of misidentification leading to arrest.

Runtime Rebel Intel
4 min read · Jul 20, 2026

Advertisement

Securing Global Events: CISA and the SEAR Framework Analysis
INFO
Threat Intel

Securing Global Events: CISA and the SEAR Framework Analysis

Analyze the strategic security frameworks used by CISA and federal agencies to protect high-profile global events from cyber and physical threats.

Runtime Rebel Intel
3 min read · Jul 20, 2026
INFO
Threat Intel

Material Breach Index Launches to Track SEC Disclosure Trends

Richard Bird’s new Material Breach Index centralizes SEC Form 8-K filings to provide transparency on the material impact of corporate cybersecurity incidents.

Runtime Rebel Intel
3 min read · Jul 20, 2026
HIGH
Vulnerabilities

OpenSSL HollowByte Vulnerability: Mitigating Memory Exhaustion Risks

OpenSSL addresses the HollowByte Denial-of-Service vulnerability. Learn how buffer pre-allocation flaws impact server availability and memory management.

Runtime Rebel Intel
3 min read · Jul 20, 2026
HIGH
Supply Chain

Hugging Face Infrastructure Breach: Analyzing Autonomous AI Agent TTPs

Hugging Face discloses a breach where autonomous AI agents compromised production infrastructure, exposing internal datasets and secrets. Learn how to mitigate.

Runtime Rebel Intel
4 min read · Jul 20, 2026
INFO
Threat Intel

Evaluating AI SOC Platforms: A Framework for Security Leaders

Learn to evaluate AI SOC solutions for accuracy, production readiness, and integration with existing telemetry to reduce alert fatigue effectively.

Runtime Rebel Intel
3 min read · Jul 20, 2026
Russian Intelligence Hijacks IP Cameras to Track NATO Logistics
HIGH
Threat Intel

Russian Intelligence Hijacks IP Cameras to Track NATO Logistics

Russian intelligence services are hijacking security cameras to monitor military logistics and troop movements throughout NATO member states and Ukraine.

Runtime Rebel Intel
4 min read · Jul 20, 2026
WordPress RCE and SonicWall Zero-Days: Weekly Threat Intel Update
CRITICAL
Threat Intel

WordPress RCE and SonicWall Zero-Days: Weekly Threat Intel Update

Active exploitation of WordPress RCE and SonicWall zero-day vulnerabilities highlights critical risks for internet-facing systems. Learn how to mitigate.

Runtime Rebel Intel
3 min read · Jul 20, 2026
INFO
Vulnerabilities

Capital One VulnHunter: Open-Source AI Tool for Exploit Path Analysis

Capital One open-sources VulnHunter, an AI-powered agentic tool designed to trace complex exploit paths and validate software vulnerabilities autonomously.

Runtime Rebel Intel
3 min read · Jul 20, 2026
MEDIUM
Vulnerabilities

KB5121767: Microsoft Fixes Windows 11 Dell PC Shutdown Bug

Microsoft issues emergency out-of-band update KB5121767 to resolve critical system shutdown issues affecting Dell PCs running the July 2026 Windows 11 update.

Runtime Rebel Intel
4 min read · Jul 20, 2026
MEDIUM
Threat Intel

Microsoft Investigates WSUS Server Synchronization Timeout Errors

Microsoft confirms technical issues causing WSUS synchronization delays and timeouts. Learn how this affects enterprise patch management and security.

Runtime Rebel Intel
3 min read · Jul 20, 2026
Russian-Speaking Hacker Uses Google Gemini CLI for Botnet Control
MEDIUM
Threat Intel

Russian-Speaking Hacker Uses Google Gemini CLI for Botnet Control

Russian-speaking actor bandcampro utilized Google Gemini CLI to automate botnet control and password cracking across compromised dental healthcare systems.

Runtime Rebel Intel
3 min read · Jul 20, 2026
7-Zip RCE via CVE-2026-14266: XZ Archive Extraction Patch Guidance
HIGH
Vulnerabilities

7-Zip RCE via CVE-2026-14266: XZ Archive Extraction Patch Guidance

7-Zip versions prior to 26.02 are vulnerable to a heap-based buffer overflow. Learn how to mitigate CVE-2026-14266 and secure XZ archive extractions.

Runtime Rebel Intel
3 min read · Jul 20, 2026
HIGH
Vulnerabilities

WP2Shell Vulnerabilities CVE-2026-60137 & CVE-2026-63030 Exploited

WordPress sites face active exploitation via WP2Shell vulnerabilities CVE-2026-60137 and CVE-2026-63030. Learn the technical details and mitigation steps.

Runtime Rebel Intel
3 min read · Jul 20, 2026
SleeperGem: Malicious RubyGems Target Developer Environments
HIGH
Supply Chain

SleeperGem: Malicious RubyGems Target Developer Environments

The SleeperGem supply chain attack uses malicious RubyGems packages like git_credential_manager to compromise developers and deliver secondary payloads.

Runtime Rebel Intel
3 min read · Jul 20, 2026
Hugging Face Infrastructure Breached by Autonomous AI Agent
HIGH
Threat Intel

Hugging Face Infrastructure Breached by Autonomous AI Agent

Hugging Face reports a breach of its production infrastructure by an autonomous AI agent, resulting in unauthorized access to internal datasets and credentials.

Runtime Rebel Intel
4 min read · Jul 20, 2026
MEDIUM
Cloud Security

Identifying Origin IP Addresses Behind Cloudflare and WAF Services

Examine technical methods used to discover backend origin IPs hidden behind Cloudflare, including DNS history, TLS fingerprinting, and outbound leaks.

Runtime Rebel Intel
4 min read · Jul 20, 2026
CVE-2026-42533: NGINX RCE and Denial of Service — Mitigation Guide
HIGH
Vulnerabilities

CVE-2026-42533: NGINX RCE and Denial of Service — Mitigation Guide

Exploit analysis of CVE-2026-42533, a critical heap buffer overflow in NGINX. Learn how to detect and patch worker process crashes and potential RCE.

Runtime Rebel Intel
3 min read · Jul 20, 2026
HIGH
Threat Intel

Hikvision ISAPI Scanning Trends: Analysis and Mitigation Guide

Recent honeypot data reveals a surge in probes targeting the Hikvision Intelligent Security API. Learn how to identify and defend against these IoT scans.

Runtime Rebel Intel
3 min read · Jul 19, 2026