Skip to main content

All Articles

Security Intelligence

3410 articles · Updated every 8 hours

Severity (this page):

Advertisement

CRITICAL
Vulnerabilities

CVE-2026-35616: FortiClient EMS Exploit Delivers EKZ Infostealer

Attackers are actively exploiting CVE-2026-35616, an authentication bypass in FortiClient EMS, to deploy the EKZ infostealer. Protect your organization now.

Runtime Rebel Intel
4 min read · May 28, 2026
MEDIUM
Threat Intel

FBI Warning: Fake FIFA World Cup Sites Target Fans with Fraud

FBI warns of fraudulent websites impersonating FIFA for the 2026 World Cup, engaging in data theft, fake ticket sales, and hospitality scams.

Runtime Rebel Intel
5 min read · May 28, 2026
Gogs Authenticated RCE: Arbitrary Code Execution - Mitigation Guide
HIGH
Vulnerabilities

Gogs Authenticated RCE: Arbitrary Code Execution - Mitigation Guide

A critical RCE vulnerability in Gogs allows authenticated users to execute arbitrary code. Runtime Rebel provides an analysis and urgent mitigation guidance.

Runtime Rebel Intel
4 min read · May 28, 2026
MEDIUM
Vulnerabilities

CVE-2026-6332: Schneider Electric EcoStruxure HVAC Source Code Disclosure

A cleartext storage vulnerability in Schneider Electric EcoStruxure Machine Expert HVAC (CVE-2026-6332) exposes sensitive source code. Update to v1.10.0.

Runtime Rebel Intel
5 min read · May 28, 2026
HIGH
Vulnerabilities

CVE-2021-22291: ABB EIBPORT V3 <3.9.2 Session Hijacking Vulnerability

ABB EIBPORT V3 devices are vulnerable to CVE-2021-22291 (XSS/session hijacking), allowing unauthenticated access and configuration changes. Patch immediately.

Runtime Rebel Intel
4 min read · May 28, 2026
Cyber Insurance Mandates: Quantifying Risk to Reshape Enterprise Security
INFO
Threat Intel

Cyber Insurance Mandates: Quantifying Risk to Reshape Enterprise Security

Explore how cyber insurance requirements are driving organizations to quantify cyber risk, impacting security investments and overall security posture.

Runtime Rebel Intel
5 min read · May 28, 2026

Advertisement

Securing Agentic AI Deployments: Mitigating Overlap Risks
INFO
Threat Intel

Securing Agentic AI Deployments: Mitigating Overlap Risks

Understanding the security risks in agentic AI deployments is crucial. This article outlines how AI agents' interaction with software tools creates vulnerabilities and…

Runtime Rebel Intel
5 min read · May 28, 2026
HIGH
Data Breach

Carnival Data Breach: 6 Million Customer Records Exposed

A data breach at Carnival Cruise Line exposed personal information for nearly 6 million customers, raising significant identity theft risks.

Runtime Rebel Intel
4 min read · May 28, 2026
INFO
Threat Intel

Geordie Secures $30M for AI Security and Governance Platform

Geordie raises $30M in Series A funding to address enterprise AI security risks, focusing on governance, visibility, and data protection for LLM deployments.

Runtime Rebel Intel
3 min read · May 28, 2026
INFO
Threat Intel

Leveraging SIEM for MSPs: Strategies to Reduce SOC Alert Fatigue

Explore how Managed Service Providers use SIEM to consolidate security logs, reduce alert noise, and improve incident response times in modern SOC environments.

Runtime Rebel Intel
3 min read · May 28, 2026
HIGH
Vulnerabilities

Gogs Self-Hosted Git RCE via Zero-Day: Mitigation Guide

An unpatched zero-day vulnerability in Gogs self-hosted Git service allows attackers to achieve remote code execution, impacting Internet-facing instances.

Runtime Rebel Intel
4 min read · May 28, 2026
Microsoft Condemns Public Zero-Day Disclosures, Advocates CVD
INFO
Threat Intel

Microsoft Condemns Public Zero-Day Disclosures, Advocates CVD

Microsoft reiterates strong support for Coordinated Vulnerability Disclosure, criticizing immediate public zero-day disclosures after a researcher's account removal.

Runtime Rebel Intel
4 min read · May 28, 2026
FortiClient EMS Critical Flaw Exploited for Credential Stealing
CRITICAL
Vulnerabilities

FortiClient EMS Critical Flaw Exploited for Credential Stealing

Threat actors are actively exploiting a critical, patched FortiClient EMS vulnerability to deploy credential-stealing malware, bypassing trusted endpoint security.

Runtime Rebel Intel
5 min read · May 28, 2026
CRITICAL
Vulnerabilities

CVE-2023-48788: Critical FortiClient EMS RCE Under Active Exploitation

Exploitation of CVE-2023-48788 in FortiClient EMS allows unauthenticated remote code execution. Administrators must patch to version 7.2.3 or 7.0.11 immediately.

Runtime Rebel Intel
3 min read · May 28, 2026
HIGH
Malware

BTMOB Android Malware: Analyzing Phishing-Driven Full Device Takeover

BTMOB malware targets Android users via phishing, utilizing VNC and accessibility services to facilitate financial theft and total remote device control.

Runtime Rebel Intel
3 min read · May 28, 2026
HIGH
Threat Intel

Romanian Hacker Sentenced for Breach of Oregon Government Networks

Adrian-Tiberiu Oprea sentenced to 56 months for a multi-year cyber campaign targeting Oregon government systems and dozens of U.S. organizations.

Runtime Rebel Intel
4 min read · May 28, 2026
Enterprise AI Risk Concentrated Among Power Users in 2026 Report
MEDIUM
Threat Intel

Enterprise AI Risk Concentrated Among Power Users in 2026 Report

LayerX Security’s 2026 report reveals that enterprise AI risk is concentrated among power users, highlighting a significant visibility gap for security teams.

Runtime Rebel Intel
4 min read · May 28, 2026
Nordic Cyber Resilience: Why Regional CISOs Report Threat Stability
INFO
Threat Intel

Nordic Cyber Resilience: Why Regional CISOs Report Threat Stability

An analysis of Nordic cybersecurity resilience, exploring why CISOs in northern Europe report stable threat levels despite rising geopolitical tensions.

Runtime Rebel Intel
3 min read · May 28, 2026
JINX-0164 Targets Crypto Firms with macOS Malware and Fake Lures
HIGH
Threat Intel

JINX-0164 Targets Crypto Firms with macOS Malware and Fake Lures

The JINX-0164 threat actor targets cryptocurrency firms via recruitment-themed social engineering, macOS-specific malware, and CI/CD infrastructure exploits.

Runtime Rebel Intel
4 min read · May 28, 2026
Silent Ransom Group Targets Law Firms via Physical Social Engineering
HIGH
Threat Intel

Silent Ransom Group Targets Law Firms via Physical Social Engineering

FBI warns of Silent Ransom Group (Luna Moth) targeting law firms using physical social engineering and data theft for extortion. Learn how to defend.

Runtime Rebel Intel
4 min read · May 28, 2026
HIGH
Malware

Akira Ransomware Kill Chain: Log Analysis for Early Detection

Analyze Akira Ransomware kill chain stages using perimeter and endpoint logs to detect initial access, privilege escalation, and pre-encryption activity.

Runtime Rebel Intel
5 min read · May 28, 2026
MEDIUM
Malware

SEO Poisoning and AI Chatbots Spread GPU Mining Malware

Threat actors are using SEO poisoning and manipulated AI chatbot recommendations to distribute persistent GPU mining malware to high-performance systems.

Runtime Rebel Intel
4 min read · May 28, 2026
CRITICAL
Vulnerabilities

Actively Exploited CVEs: Daemon Tools Lite, TanStack, Nx Console

CISA added three vulnerabilities—CVE-2026-8398, CVE-2026-45321, CVE-2026-48027—to its KEV Catalog due to active exploitation. Prioritize patching.

Runtime Rebel Intel
5 min read · May 27, 2026
HIGH
Threat Intel

GCHQ Warning: Russian Gray Zone Tactics and AI-Driven Cyber Threats

GCHQ Director Anne Keast-Butler warns that AI is an unstoppable force that Russian state-sponsored actors are leveraging for gray zone cyber operations.

Runtime Rebel Intel
4 min read · May 27, 2026