All Articles
Security Intelligence
3410 articles · Updated every 8 hours
Advertisement
Salesforce Disables Klue App Integration Following OAuth Token Abuse
Salesforce suspends Klue Battlecards integration after OAuth token abuse exposed customer data, highlighting significant SaaS supply chain security risks.
Nintendo Confirms Third-Party TinyPulse Data Breach — Supply Chain Risks
Nintendo confirms employee survey data was stolen via a breach at TinyPulse, a third-party vendor owned by WebMD subsidiary Internet Brands.
Gentlemen Ransomware: EDR Evasion Tactics and Mitigation Strategies
Runtime Rebel details Gentlemen ransomware's advanced EDR killer suite, analyzing its impact and providing actionable strategies to defend against sophisticated evasion.
CVE-2026-42530 & -42531: NGINX RCE via Use-After-Free
F5 addresses critical RCE flaws [CVE-2026-42530, CVE-2026-42531] in NGINX Open Source. Unauthenticated attackers can exploit use-after-free issues. Patch now.
Outdated REDCap Servers Targeted by China-linked UNC6508
A majority of internet-accessible REDCap servers remain unpatched, making them prime targets for initial access and backdoor deployment by China-linked UNC6508.
USB Worm Exploits LNK Files for Crypto-Stealing Malware
New USB worm propagates crypto-stealing malware through Windows shortcut files, leveraging removable drives and the Tor network for C2 to target cryptocurrency wallets.
Advertisement
NastyC2 npm Packages, AI Abuse & macOS Threats Identified
Analysis of NastyC2 npm supply chain attacks, Claude chat abuse for malware, memory-resident macOS threats, and device-code phishing.
Orphaned AI Agents: Mitigating Hidden Access Risks in Enterprise AI
Learn about the hidden access risks posed by orphaned AI agents and standing privileges in enterprise networks. Discover strategies to secure AI deployments.
Coordinated SSH Brute Force Attacks: Three-Month Analysis & Defenses
Analysis of coordinated SSH brute-force attacks over three months, detailing observed patterns and providing actionable strategies to protect SSH servers.
Rockwell RSLinx <4.50.00 RCE via CVE-2020-13573 — Patch Now
Urgent advisory for Rockwell RSLinx Classic users. CVE-2020-13573, a stack-based buffer overflow, enables remote code execution and DoS. Patch <=4.50.00.
CVE-2026-11317: Rockwell Logix DoS via CIP — Patch Critical ICS
Critical Manufacturing faces high-severity DoS risk in Rockwell Automation Logix 5370 & 5570 controllers from CVE-2026-11317. Patch now.
Federal AI Use Explodes: Unpacking Governance & Security Risks
The US government disclosed 3,611 AI use cases, a 70% increase. This extensive AI integration risks human oversight in critical functions, from public health to nuclear…
INC Ransomware: Foundational Exploits & Healthcare Targeting
Analysis of INC Ransomware's strategy targeting critical sectors like healthcare, leveraging common exploitation techniques for high-pressure payouts and disruption.
EU's Shield-6G Initiative: Proactive Defense for Future Networks
The EU's Shield-6G project is proactively integrating AI, digital twins, and honeypots to fortify future 6G networks against emerging cyber threats.
Kodak Data Breach Confirmed: ShinyHunters Linked to Exfiltration
Kodak acknowledges a data breach after ShinyHunters claimed responsibility, with the threat actor reportedly exfiltrating sensitive company information.
SailPoint's Entro Acquisition: Bolstering Non-Human Identity Security
SailPoint acquires Entro to enhance identity and credential security for non-human entities like APIs, bots, and service accounts, addressing a critical enterprise…
OpenAI Tests ChatGPT for Science: Security and Safety Analysis
Leaked details confirm OpenAI is testing a specialized ChatGPT for Science subscription. Analyze the features, dual-use risks, and AI safety implications.
FortiBleed: 73,000 Fortinet VPN Credentials Exposed
FortiBleed leak compromises Fortinet and FortiGate VPN credentials for over 73,000 firewall URLs globally, posing significant access risks.
Google Privacy Pivot: IP Address Use for UK and EEA Ad Targeting
Google announces plans to utilize IP addresses from UK, EEA, and Swiss users for ad personalization and measurement starting August 2026, raising privacy concerns.
Crypto Clipper Campaign Abuses AI Narrators and Fake Reviews
An unknown threat actor leverages paid posts, fake reviews, AI narrators, and phishing sites to distribute crypto clipper malware. Learn defense tactics.
Junior Hacker's Tailscale & OpenSSH Post-C2 Persistence
Analysis of a junior hacker's TTPs, leveraging Tailscale and OpenSSH for persistent access to a French automotive business after their Havoc C2 server went offline.
UK Social Media Ban: Privacy & Age Verification Concerns
The UK's proposed ban on social media for under-16s sparks privacy concerns regarding age-verification methods and potential for increased sensitive data collection.
Credential Harvesting Heist Compromises 30K+ Fortinet Devices
A widespread credential harvesting campaign has compromised over 30,000 Fortinet devices across 200 countries, enabling unauthorized access for threat actors.
Emerging AI Security: Detecting Malicious Agentic Behaviors
Tenet Security emerges, focusing on real-time detection of dangerous AI agentic behavior. Explore the implications and proactive defense strategies for AI systems.