Skip to main content

All Articles

Security Intelligence

3410 articles · Updated every 8 hours

Severity (this page):

Advertisement

Shai-Hulud Campaign: TeamPCP Targets Open-Source Supply Chain
HIGH
Supply Chain

Shai-Hulud Campaign: TeamPCP Targets Open-Source Supply Chain

Analysis of the Shai-Hulud campaign by TeamPCP, detailing their open-source supply chain attacks, TTPs, and critical mitigation strategies.

Runtime Rebel Intel
5 min read · May 26, 2026
Megalodon Malware: GitHub Repo Compromise & Secret Theft
HIGH
Supply Chain

Megalodon Malware: GitHub Repo Compromise & Secret Theft

Analysis of the Megalodon malware campaign, which compromised over 5,500 GitHub repositories in six hours to steal developer credentials and sensitive secrets.

Runtime Rebel Intel
4 min read · May 26, 2026
HIGH
Threat Intel

Iranian APT33 Targets Aviation with Updated MimicC2 and PowerLess

Iranian APT Nimbus Manticore (APT33) targets aviation and software firms using new MimicC2 framework and updated PowerLess tools for stealthy operations.

Runtime Rebel Intel
5 min read · May 26, 2026
INFO
Cloud Security

Marlin AI: Autonomous Investigation for SaaS Security Posture

AppOmni's Marlin AI enhances SaaS security by automating misconfiguration analysis, activity investigation, and remediation recommendations across enterprise…

Runtime Rebel Intel
4 min read · May 26, 2026
HIGH
Data Breach

Charter Data Breach Confirmed: ShinyHunters Extortion Threat

Charter Communications confirms a data breach following an extortion threat by ShinyHunters.

Runtime Rebel Intel
5 min read · May 26, 2026
CRITICAL
Vulnerabilities

KnowledgeDeliver RCE via CVE-2024-52648 — Mitigation Guide

Attackers are exploiting a critical zero-day vulnerability (CVE-2024-52648) in KnowledgeDeliver LMS to deploy Godzilla web shells. Secure your servers now.

Runtime Rebel Intel
3 min read · May 26, 2026

Advertisement

INFO
Compliance

Varonis Atlas Claude Compliance API Integration for AI Governance

Varonis Atlas integrates the Claude Compliance API to monitor enterprise AI usage, identify sensitive data risks, and ensure regulatory compliance for LLMs.

Runtime Rebel Intel
3 min read · May 26, 2026
MuddyWater 2026 Espionage: DLL Side-Loading Across 9 Countries
HIGH
Threat Intel

MuddyWater 2026 Espionage: DLL Side-Loading Across 9 Countries

Iranian group MuddyWater targets industrial manufacturing and financial sectors in a global 2026 espionage campaign using DLL side-loading techniques.

Runtime Rebel Intel
4 min read · May 26, 2026
Professional Standards in the Evolution of Threat Intelligence
INFO
Threat Intel

Professional Standards in the Evolution of Threat Intelligence

Explore the impact of professional journalism on threat intelligence and the legacy of Tim Wilson in establishing standards for information sharing.

Runtime Rebel Intel
3 min read · May 26, 2026
INFO
Cloud Security

Anthropic Claude Enterprise Security Governance via 28 Integrations

Anthropic expands Claude’s security posture with 28 integrations from CrowdStrike, Okta, and Microsoft to enhance enterprise AI visibility and governance.

Runtime Rebel Intel
3 min read · May 26, 2026
HIGH
Data Breach

7-Eleven Data Breach: 185,000 Records Leaked by ShinyHunters

Analysis of the 7-Eleven data breach involving threat actor ShinyHunters, impacting 185,000 users and exposing sensitive PII including dates of birth.

Runtime Rebel Intel
4 min read · May 26, 2026
INFO
Threat Intel

Automated Endpoint Isolation in Microsoft Defender for Endpoint

Microsoft Defender for Endpoint now features automatic device isolation to block lateral movement and contain high-confidence security breaches effectively.

Runtime Rebel Intel
3 min read · May 26, 2026
CVE-2026-45659: SharePoint RCE via Deserialization - Patch Now
HIGH
Vulnerabilities

CVE-2026-45659: SharePoint RCE via Deserialization - Patch Now

Microsoft addresses CVE-2026-45659, a high-severity RCE flaw in SharePoint Server caused by untrusted data deserialization. Learn how to mitigate this risk.

Runtime Rebel Intel
3 min read · May 26, 2026
AI-Powered DDoS Attacks: Emerging Tactics and Defensive Strategies
HIGH
Threat Intel

AI-Powered DDoS Attacks: Emerging Tactics and Defensive Strategies

Threat actors are leveraging artificial intelligence to automate DDoS attacks, increasing speed and evasion capabilities against traditional network defenses.

Runtime Rebel Intel
4 min read · May 26, 2026
MEDIUM
Identity & Access

Windows Server 2016 DC Lookup Failures: KB5037763 Mitigation Guide

Microsoft confirms a regression in Windows Server 2016 causing LSASS crashes and domain controller lookup failures after the May 2024 security update.

Runtime Rebel Intel
4 min read · May 26, 2026
HIGH
Vulnerabilities

Drupal 7.x SQL Injection CVE-2014-3704 — Active Exploitation Alert

CISA adds Drupalgeddon SQL injection (CVE-2014-3704) to KEV catalog, mandating federal agencies to patch critical legacy systems against active exploits.

Runtime Rebel Intel
3 min read · May 26, 2026
CVE-2026-5426: KnowledgeDeliver LMS Zero-Day Exploited for Godzilla Shell
CRITICAL
Vulnerabilities

CVE-2026-5426: KnowledgeDeliver LMS Zero-Day Exploited for Godzilla Shell

Attackers exploited a zero-day in KnowledgeDeliver LMS (CVE-2026-5426) using hard-coded ASP.NET keys to deploy Godzilla web shells and Cobalt Strike Beacons.

Runtime Rebel Intel
4 min read · May 26, 2026
Nimbus Manticore Targets Aviation via MiniFast and MiniJunk V2
MEDIUM
Threat Intel

Nimbus Manticore Targets Aviation via MiniFast and MiniJunk V2

Iranian threat actor Nimbus Manticore utilizes SEO poisoning and phishing to deploy MiniFast malware against global aviation and software organizations.

Runtime Rebel Intel
4 min read · May 26, 2026
MEDIUM
Threat Intel

Analyzing Suspicious TLS Traffic Patterns with JA3 Fingerprinting

Improve threat detection by identifying TLS handshake anomalies, JA3 fingerprints, and SNI mismatches to expose hidden malicious network activity.

Runtime Rebel Intel
3 min read · May 26, 2026
HIGH
Malware

ACR Stealer Distributed via Fake Claude AI Desktop Site

Threat actors are distributing ACR Stealer malware through a fraudulent Claude AI desktop application site, targeting browser credentials and crypto wallets.

Runtime Rebel Intel
4 min read · May 26, 2026
MEDIUM
Threat Intel

Anthropic Claude Code Integration of Mythos Model Raises Security Risks

Anthropic may be integrating its restricted Mythos model into Claude Code, raising concerns about autonomous agentic capabilities and AI safety levels.

Runtime Rebel Intel
4 min read · May 25, 2026
HIGH
Supply Chain

TeamPCP Supply Chain Attack Targets Microsoft SDKs and GitHub

TeamPCP expands its supply chain campaign to trojanize official Microsoft Python SDKs and infiltrate GitHub, requiring immediate dependency audits.

Runtime Rebel Intel
3 min read · May 25, 2026
MEDIUM
Malware

Analyzing Microsoft Access VBA Macros for Malware Detection

Learn how threat actors use Microsoft Access .accdb files to execute malicious VBA code and how to analyze these OLE streams for incident response.

Runtime Rebel Intel
3 min read · May 25, 2026
MEDIUM
Threat Intel

Netherlands Seizes 800 Servers Linked to Russian Intelligence Proxies

Dutch authorities arrested hosting providers and seized 800 servers used by Russian intelligence for DDoS and disinformation campaigns following EU sanctions.

Runtime Rebel Intel
3 min read · May 25, 2026