Skip to main content

All Articles

Security Intelligence

2671 articles · Updated every 4 hours

Advertisement

VU
CRITICAL
Vulnerabilities

CVE-2024-2821: Critical RCE in Daktronics Controllers — Patch Now

Critical vulnerabilities (CVE-2024-2821, CVE-2024-2822, CVE-2024-2823) in Daktronics Venus 1500 and Vanguard controllers allow remote hacking of highway signs and

Runtime Rebel Intel
3 min read·Jun 30, 2026
DA
HIGH
Data Breach

ShinyHunters Breach NAIC via PeopleSoft Zero-Day: Public Data Stolen

ShinyHunters exploited an Oracle PeopleSoft zero-day to breach NAIC, exfiltrating public data, logs, and configuration files. Review PeopleSoft security.

Runtime Rebel Intel
3 min read·Jun 30, 2026
DA
HIGH
Data Breach

Nissan Breach: Oracle PeopleSoft Zero-Day Exploited by ShinyHunters

Nissan discloses a data breach impacting current and former employees, attributed to an exploited Oracle PeopleSoft zero-day vulnerability linked to the ShinyHunters

Runtime Rebel Intel
5 min read·Jun 30, 2026
Malicious Perplexity Chrome Extension Intercepts User Data
HIGH
Threat Intel

Malicious Perplexity Chrome Extension Intercepts User Data

A malicious Chrome extension impersonating Perplexity AI intercepted user search queries and address bar inputs, routing them via attacker infrastructure, posing a

Runtime Rebel Intel
4 min read·Jun 29, 2026
TH
HIGH
Threat Intel

Russia's Evolving Influence Ecosystem: Global Pivot & AI Integration

Russia's influence ecosystem pivots from Ukraine-centric operations to global targets, leveraging generative AI and hybrid cyber-IO tactics.

Runtime Rebel Intel
5 min read·Jun 29, 2026
VU
HIGH
Vulnerabilities

Weak RSA Keys with Many Zeros Found In-the-Wild: Factoring Risk

New research reveals a class of weak RSA keys containing many zero bits, making them vulnerable to factoring. These keys are present in TLS, SSH, and PGP deployments,

Runtime Rebel Intel
5 min read·Jun 29, 2026
TH
HIGH
Threat Intel

Claude Code Indirect Prompt Injection: Hijacking Developer Machines

Researchers demonstrate a new attack method leveraging indirect prompt injection in Claude Code, enabling the hijack of developer machines via malicious code in

Runtime Rebel Intel
4 min read·Jun 29, 2026
TH
INFO
Threat Intel

WhatsApp Introduces Usernames to Bolster Phone Number Privacy

WhatsApp's new optional username feature allows users to connect without sharing their phone number, significantly enhancing personal data privacy and security.

Runtime Rebel Intel
4 min read·Jun 29, 2026
TH
INFO
Threat Intel

Agentic AI Identity Problem: New Attack Surface for Enterprises

Agentic AI systems pose novel identity and access management challenges, creating new attack vectors for data exfiltration and privilege escalation.

Runtime Rebel Intel
5 min read·Jun 29, 2026
TH
CRITICAL
Threat Intel

US Targets Russian-Linked UNC5792, UNC4221 Hackers of Messaging Apps

US State Dept. offers $10M for info on Russian-linked UNC5792 & UNC4221 groups targeting WhatsApp, Signal users. Learn about nation-state threats.

Runtime Rebel Intel
4 min read·Jun 29, 2026
Mustang Panda Exploits Zoho WorkDrive for C2 in Indian Govt Attacks
CRITICAL
Threat Intel

Mustang Panda Exploits Zoho WorkDrive for C2 in Indian Govt Attacks

Mustang Panda, a China-aligned APT, targets Indian government and hydropower entities, leveraging Zoho WorkDrive as a C2 channel and deploying new malware.

Runtime Rebel Intel
4 min read·Jun 29, 2026
Analyzing WhatsApp Usernames: A Shift in User Identity and Data Privacy
INFO
Threat Intel

Analyzing WhatsApp Usernames: A Shift in User Identity and Data Privacy

WhatsApp introduces usernames to enhance user privacy, decoupling identity from phone numbers. This article analyzes the feature's impact on OSINT and data privacy.

Runtime Rebel Intel
4 min read·Jun 29, 2026