Skip to main content

All Articles

Security Intelligence

2443 articles · Updated every 4 hours

Advertisement

Megalodon Campaign: 5,561 GitHub Repos Hit by Malicious Workflows
HIGH
Supply Chain

Megalodon Campaign: 5,561 GitHub Repos Hit by Malicious Workflows

Automated Megalodon attack pushes 5,718 malicious commits to GitHub repositories to exfiltrate secrets via GitHub Actions workflows.

Runtime Rebel Intel
4 min read·May 22, 2026
MA
HIGH
Malware

Analysis of Cross-Platform NPM Stealer Using Discord Webhooks

Technical teardown of an obfuscated Node.js infostealer targeting Discord tokens, crypto wallets, and browser credentials via cross-platform scripts.

Runtime Rebel Intel
3 min read·May 22, 2026
SU
HIGH
Supply Chain

Grafana Codebase Stolen via TanStack Supply Chain Attack

Grafana confirms unauthorized access to private GitHub repositories after a developer token leaked in the TanStack breach was not rotated.

Runtime Rebel Intel
3 min read·May 22, 2026
VU
CRITICAL
Vulnerabilities

CVE-2026-34926: TrendAI Apex One Directory Traversal Exploit Analysis

TrendAI patches a critical zero-day directory traversal vulnerability (CVE-2026-34926) in Apex One on-premise currently exploited in the wild.

Runtime Rebel Intel
4 min read·May 22, 2026
TH
HIGH
Threat Intel

US and Canada Charge Suspected KimWolf Botnet Operator

Authorities dismantle the KimWolf botnet following the arrest of a Canadian national linked to nearly two million global device infections and DDoS attacks.

Runtime Rebel Intel
3 min read·May 22, 2026
CVE-2025-34291 & CVE-2023-41179: CISA Warns of Active Exploitation
CRITICAL
Vulnerabilities

CVE-2025-34291 & CVE-2023-41179: CISA Warns of Active Exploitation

CISA adds Langflow and Trend Micro Apex One vulnerabilities to KEV. Learn how to mitigate CVE-2025-34291 and CVE-2023-41179 to prevent active exploitation.

Runtime Rebel Intel
4 min read·May 22, 2026
Kimwolf Botnet Operator Jacob Butler Arrested in DDoS-for-Hire Case
HIGH
Threat Intel

Kimwolf Botnet Operator Jacob Butler Arrested in DDoS-for-Hire Case

DOJ arrests Canadian operator of the Kimwolf botnet, a variant of the AISURU malware, used in large-scale DDoS-for-hire attacks against global targets.

Runtime Rebel Intel
3 min read·May 22, 2026
ID
HIGH
Identity & Access

RFID Vulnerabilities: Analyzing Ghost on the Wire Security Risks

Technical analysis of passive RFID tag security vulnerabilities including cloning and relay attacks revealed in the Ghost on the Wire research.

Runtime Rebel Intel
3 min read·May 22, 2026
Communicating AI's Impact on Vulnerability Discovery to Boards
INFO
Threat Intel

Communicating AI's Impact on Vulnerability Discovery to Boards

Security leaders must articulate AI-driven vulnerability trends and strategic resource needs to their boards, translating technical risks into business impact.

Runtime Rebel Intel
4 min read·May 22, 2026
Securing Agentic AI Workflows with Advanced AI BOM Frameworks
MEDIUM
Supply Chain

Securing Agentic AI Workflows with Advanced AI BOM Frameworks

Learn why CISOs must transition from traditional SBOMs to Agentic-Ready AI BOMs to manage risks in autonomous AI systems and data supply chains.

Runtime Rebel Intel
3 min read·May 22, 2026
TH
HIGH
Threat Intel

Kimwolf Botmaster Arrested: Impacts on IoT Botnet DDoS Mitigation

Canadian and U.S. authorities arrest the alleged operator of the massive Kimwolf IoT botnet, linked to millions of compromised devices and disruptive DDoS attacks.

Runtime Rebel Intel
4 min read·May 22, 2026
TH
INFO
Threat Intel

Linux Process-Specific HTTP Proxying: Tools and Analysis Gaps

Explores the utility of process-specific HTTP proxying for Linux debugging and reverse engineering, highlighting the absence of a generic solution akin to Proxifier.

Runtime Rebel Intel
4 min read·May 21, 2026