All Articles
Security Intelligence
3551 articles · Updated every 8 hours
Advertisement
Critical Cisco Nexus 9000 RCE (CVE-2026-20212) & IOS XR Hardening
Cisco addresses a critical RCE flaw (CVE-2026-20212) in Nexus 9000 switches, alongside significant IOS XR hardening updates.
AI-Assisted Campaigns Target Latin American Organizations
Ongoing multi-stage network intrusions and data exfiltration campaigns in Latin America leverage AI tools to enhance operations.
HiddenLayer Secures $100M for AI Runtime Security Expansion
HiddenLayer raises $100 million in Series B funding to expand its AI runtime security platform, focusing on agentic AI protection.
Plex Media Server & Desktop: Patch Critical Security Flaws
Plex advises users to immediately update Plex Media Server to v1.43.3 and Plex Desktop to v1.115.0 to resolve multiple undisclosed security vulnerabilities.
Node.js Abuse: Attackers Deploy Malware via Trusted Runtime
Threat actors are leveraging Node.js as a signed, trusted tool to deploy various malicious payloads, evading detection in targeted attacks since February 2026.
AI Vulnerability Surge: Enterprise Security Strategies
New research suggests the anticipated increase in AI vulnerabilities can be managed by enterprise security teams with effective strategies.
Advertisement
OpenLeash: Human Control for AI Agent Actions
OpenLeash provides a human-in-the-loop authorization layer to control autonomous AI agents, preventing unintended and risky actions.
Google, Anthropic, and OpenAI Launch Cyber AI Models and Safeguards
Google, Anthropic, and OpenAI unveil advanced cybersecurity AI models like Gemini 3.8 Flash Cyber, focusing on defense and strict access controls.
CVE-2026-83548: SonicWall SMA1000 SSRF Under Active Exploitation
A critical server-side request forgery (SSRF) vulnerability, CVE-2026-83548, in SonicWall SMA1000 Appliances is under active exploitation.
CVE-2026-9586: Sangoma Switchvox RCE via SQL Injection
Sangoma Switchvox is affected by CVE-2026-9586, an unauthenticated remote SQL injection vulnerability enabling RCE, with active exploitation confirmed.
CVE-2026-49869: Kestra OSS OS Command Injection Exploited
CISA has added CVE-2026-49869, an OS command injection in Kestra OSS, to its KEV catalog, confirming active exploitation by unauthenticated attackers.
CVE-2026-48710: Kludex Starlette HTTP Smuggling for Auth Bypass
CVE-2026-48710 impacts Kludex Starlette, enabling HTTP request smuggling and authentication bypass via path injection. Actively exploited.
CVE-2026-59822: BerriAI LiteLLM Authentication Bypass
BerriAI LiteLLM is vulnerable to an improper authentication flaw (CVE-2026-59822) actively exploited to bypass authentication.
Autonomous AI Agents Email Security Insights on Perimeter Defences
An autonomous AI agent emailed security researcher Bruce Schneier detailing perimeter defences, anti-bot mechanisms, and invisible prompt injections.
UK Cyber Security and Resilience Bill Targets High-Risk Vendors
The UK amends its Cyber Security and Resilience Bill to grant ministers powers to block high-risk technology suppliers from critical infrastructure.
Silver Fox Malware Campaign Impersonates Software Vendors
An active Silver Fox malware campaign uses fake software download sites to disable Windows Update and weaken Microsoft Defender defenses.
AI-Assisted Cyber Attacks Accelerate Enterprise Breaches
Unit 42 reveals how AI agents dramatically accelerate enterprise network breaches, compressing weeks of attack activity into hours for ransomware operations.
Comcast WiFi Motion: Privacy Concerns in Router-Based Sensing
Comcast's WiFi Motion feature transforms routers into motion detectors, raising significant privacy concerns over data sharing with third parties without user consent.
CVE-2026-84115: Cleo Harmony Auth Bypass Exploit Published
An exploit is published for CVE-2026-84115, an authentication bypass in Cleo Harmony allowing remote privilege escalation. Immediate patching to v5.8.1.11 is urged.
Microsoft Defender Blocks Legitimate Google Search Links
Microsoft Defender for Office 365's Safe Links feature is incorrectly flagging legitimate Google search results as malicious, blocking user access and generating alerts.
Securing Enterprise AI: Managing Risks & Incident Readiness
Organizations face expanding attack surfaces and new risks from rapid AI adoption, including shadow AI and AI agents with excessive permissions.
Philippines Nuclear Agency Breached via Unpatched ownCloud Flaws
Threat actors exploit unpatched ownCloud vulnerabilities to breach the Philippines nuclear agency, stealing sensitive databases and credentials.
Dark Web Service Nexus Sells 153M+ Driver Licenses
A new dark web service, Nexus, is selling over 153 million drivers' licenses from North America, likely sourced from an identity verification company.
Palo Alto Networks Acquires AI Agent Platform Console
Palo Alto Networks acquires AI agent platform Console to enhance Cortex with natural language automation and agentic workflows.