All Articles
Security Intelligence
3414 articles · Updated every 8 hours
Advertisement
SonicWall Zero-Days CVE-2026-15409 & CVE-2026-15410 Under Active Exploit
Volexity's UTA0533 exploited SonicWall zero-days (CVE-2026-15409, CVE-2026-15410) for weeks, deploying custom malware. Urgent patching required.
Neo Secures $100M: Fortifying Enterprise AI Software Security
Runtime Rebel reports on Neo's emergence with $100M in funding to develop control and security solutions for enterprise AI software, addressing novel risks.
HollowGraph Malware Uses Microsoft Graph for Stealthy C2
HollowGraph malware leverages Microsoft Graph API calendar features for covert command-and-control and data exfiltration from Microsoft 365 environments.
HollowGraph Malware Leverages Microsoft 365 Calendar for Stealthy C2
HollowGraph, a new espionage malware, hides C2 commands and exfiltrates data via legitimate Microsoft 365 calendar events, mimicking normal Graph API traffic.
AI-Assisted Phishing Leverages WebDAV for Infostealer Deployment
An exposed server revealed an AI-assisted phishing toolkit used in a WebDAV-based infostealer campaign targeting Windows users in Mexico. Learn detection and mitigation.
Flock License Plate Cameras: Accuracy Gaps & Civil Liberty Risks
Analysis of Flock license plate tracking cameras, detailing a case of misidentification leading to arrest.
Advertisement
Securing Global Events: CISA and the SEAR Framework Analysis
Analyze the strategic security frameworks used by CISA and federal agencies to protect high-profile global events from cyber and physical threats.
Material Breach Index Launches to Track SEC Disclosure Trends
Richard Bird’s new Material Breach Index centralizes SEC Form 8-K filings to provide transparency on the material impact of corporate cybersecurity incidents.
OpenSSL HollowByte Vulnerability: Mitigating Memory Exhaustion Risks
OpenSSL addresses the HollowByte Denial-of-Service vulnerability. Learn how buffer pre-allocation flaws impact server availability and memory management.
Hugging Face Infrastructure Breach: Analyzing Autonomous AI Agent TTPs
Hugging Face discloses a breach where autonomous AI agents compromised production infrastructure, exposing internal datasets and secrets. Learn how to mitigate.
Evaluating AI SOC Platforms: A Framework for Security Leaders
Learn to evaluate AI SOC solutions for accuracy, production readiness, and integration with existing telemetry to reduce alert fatigue effectively.
Russian Intelligence Hijacks IP Cameras to Track NATO Logistics
Russian intelligence services are hijacking security cameras to monitor military logistics and troop movements throughout NATO member states and Ukraine.
WordPress RCE and SonicWall Zero-Days: Weekly Threat Intel Update
Active exploitation of WordPress RCE and SonicWall zero-day vulnerabilities highlights critical risks for internet-facing systems. Learn how to mitigate.
Capital One VulnHunter: Open-Source AI Tool for Exploit Path Analysis
Capital One open-sources VulnHunter, an AI-powered agentic tool designed to trace complex exploit paths and validate software vulnerabilities autonomously.
KB5121767: Microsoft Fixes Windows 11 Dell PC Shutdown Bug
Microsoft issues emergency out-of-band update KB5121767 to resolve critical system shutdown issues affecting Dell PCs running the July 2026 Windows 11 update.
Microsoft Investigates WSUS Server Synchronization Timeout Errors
Microsoft confirms technical issues causing WSUS synchronization delays and timeouts. Learn how this affects enterprise patch management and security.
Russian-Speaking Hacker Uses Google Gemini CLI for Botnet Control
Russian-speaking actor bandcampro utilized Google Gemini CLI to automate botnet control and password cracking across compromised dental healthcare systems.
7-Zip RCE via CVE-2026-14266: XZ Archive Extraction Patch Guidance
7-Zip versions prior to 26.02 are vulnerable to a heap-based buffer overflow. Learn how to mitigate CVE-2026-14266 and secure XZ archive extractions.
WP2Shell Vulnerabilities CVE-2026-60137 & CVE-2026-63030 Exploited
WordPress sites face active exploitation via WP2Shell vulnerabilities CVE-2026-60137 and CVE-2026-63030. Learn the technical details and mitigation steps.
SleeperGem: Malicious RubyGems Target Developer Environments
The SleeperGem supply chain attack uses malicious RubyGems packages like git_credential_manager to compromise developers and deliver secondary payloads.
Hugging Face Infrastructure Breached by Autonomous AI Agent
Hugging Face reports a breach of its production infrastructure by an autonomous AI agent, resulting in unauthorized access to internal datasets and credentials.
Identifying Origin IP Addresses Behind Cloudflare and WAF Services
Examine technical methods used to discover backend origin IPs hidden behind Cloudflare, including DNS history, TLS fingerprinting, and outbound leaks.
CVE-2026-42533: NGINX RCE and Denial of Service — Mitigation Guide
Exploit analysis of CVE-2026-42533, a critical heap buffer overflow in NGINX. Learn how to detect and patch worker process crashes and potential RCE.
Hikvision ISAPI Scanning Trends: Analysis and Mitigation Guide
Recent honeypot data reveals a surge in probes targeting the Hikvision Intelligent Security API. Learn how to identify and defend against these IoT scans.