Skip to main content

All Articles

Security Intelligence

2425 articles · Updated every 4 hours

Advertisement

TH
MEDIUM
Threat Intel

Tech Support Fraud: Executives Plead Guilty in Infrastructure Case

Former executives of CallerReady plead guilty to facilitating global tech support scams by providing call-tracking and CRM infrastructure to fraudsters.

Runtime Rebel Intel
3 min read·May 22, 2026
Webworm Group Exploits Discord and MS Graph to Target EU Governments
HIGH
Threat Intel

Webworm Group Exploits Discord and MS Graph to Target EU Governments

China-linked threat actor Webworm utilizes Discord and Microsoft Graph API for C2 infrastructure in a campaign targeting European government organizations.

Runtime Rebel Intel
4 min read·May 22, 2026
TH
HIGH
Threat Intel

FBI Disrupts First VPN Service Used by Ransomware Groups

The FBI and international partners dismantled First VPN, a specialized service used by dozens of ransomware groups for reconnaissance and intrusions.

Runtime Rebel Intel
4 min read·May 22, 2026
TH
MEDIUM
Threat Intel

Canadian Man Arrested for Kimwolf Botnet Operations

Jacob Butler faces US extradition for operating the Kimwolf botnet. Analysis of the arrest, botnet infrastructure, and its role in the initial access market.

Runtime Rebel Intel
3 min read·May 22, 2026
VU
CRITICAL
Vulnerabilities

Ubiquiti Patches Critical UniFi OS Command Injection Vulnerabilities

Ubiquiti has addressed three critical vulnerabilities (CVE-2024-42025, CVE-2024-42027, CVE-2024-42028) in UniFi OS that allow unauthenticated RCE via local networks.

Runtime Rebel Intel
3 min read·May 22, 2026
Bypassing Hardware Gates: Exploitability of Vulnerable Drivers
HIGH
Threat Intel

Bypassing Hardware Gates: Exploitability of Vulnerable Drivers

Technical analysis of how researchers bypass hardware-gating to exploit Windows kernel-mode drivers without physical devices in BYOVD attacks.

Runtime Rebel Intel
4 min read·May 22, 2026
Megalodon Campaign: 5,561 GitHub Repos Hit by Malicious Workflows
HIGH
Supply Chain

Megalodon Campaign: 5,561 GitHub Repos Hit by Malicious Workflows

Automated Megalodon attack pushes 5,718 malicious commits to GitHub repositories to exfiltrate secrets via GitHub Actions workflows.

Runtime Rebel Intel
4 min read·May 22, 2026
MA
HIGH
Malware

Analysis of Cross-Platform NPM Stealer Using Discord Webhooks

Technical teardown of an obfuscated Node.js infostealer targeting Discord tokens, crypto wallets, and browser credentials via cross-platform scripts.

Runtime Rebel Intel
3 min read·May 22, 2026
SU
HIGH
Supply Chain

Grafana Codebase Stolen via TanStack Supply Chain Attack

Grafana confirms unauthorized access to private GitHub repositories after a developer token leaked in the TanStack breach was not rotated.

Runtime Rebel Intel
3 min read·May 22, 2026
VU
CRITICAL
Vulnerabilities

CVE-2026-34926: TrendAI Apex One Directory Traversal Exploit Analysis

TrendAI patches a critical zero-day directory traversal vulnerability (CVE-2026-34926) in Apex One on-premise currently exploited in the wild.

Runtime Rebel Intel
4 min read·May 22, 2026
TH
HIGH
Threat Intel

US and Canada Charge Suspected KimWolf Botnet Operator

Authorities dismantle the KimWolf botnet following the arrest of a Canadian national linked to nearly two million global device infections and DDoS attacks.

Runtime Rebel Intel
3 min read·May 22, 2026
CVE-2025-34291 & CVE-2023-41179: CISA Warns of Active Exploitation
CRITICAL
Vulnerabilities

CVE-2025-34291 & CVE-2023-41179: CISA Warns of Active Exploitation

CISA adds Langflow and Trend Micro Apex One vulnerabilities to KEV. Learn how to mitigate CVE-2025-34291 and CVE-2023-41179 to prevent active exploitation.

Runtime Rebel Intel
4 min read·May 22, 2026