Skip to main content

All Articles

Security Intelligence

3410 articles · Updated every 8 hours

Severity (this page):

Advertisement

HIGH
Vulnerabilities

CVE-2024-38812: How to Mitigate VMware Fusion Privilege Escalation

VMware Fusion 13.6 fixes a high-severity local privilege escalation flaw (CVE-2024-38812) that allows attackers to gain root access on macOS hosts.

Runtime Rebel Intel
4 min read · May 14, 2026
HIGH
Vulnerabilities

CVE-2026-46300: Linux Fragnesia Kernel Privilege Escalation Analysis

Critical analysis of the Fragnesia Linux kernel vulnerability (CVE-2026-46300), enabling local root access via IP fragmentation flaws. Includes mitigation steps.

Runtime Rebel Intel
4 min read · May 14, 2026
MEDIUM
Threat Intel

US Indicts Linus Baumbach: Key Lessons from the Dream Market Takedown

US authorities indict alleged Dream Market administrator Linus Baumbach for drug trafficking and money laundering following his arrest in Germany.

Runtime Rebel Intel
3 min read · May 14, 2026
CVE-2026-42945: NGINX Rewrite Module Heap Overflow Enables RCE
HIGH
Vulnerabilities

CVE-2026-42945: NGINX Rewrite Module Heap Overflow Enables RCE

A critical 18-year-old heap buffer overflow in the NGINX rewrite module allows unauthenticated RCE. Learn how to detect and patch CVE-2026-42945.

Runtime Rebel Intel
4 min read · May 14, 2026
CVE-2026-46300: Fragnesia Linux Kernel LPE Grants Root Access
HIGH
Vulnerabilities

CVE-2026-46300: Fragnesia Linux Kernel LPE Grants Root Access

A technical analysis of CVE-2026-46300, a Linux kernel LPE vulnerability dubbed Fragnesia that enables root access via XFRM page cache corruption.

Runtime Rebel Intel
4 min read · May 14, 2026
RubyGems Supply Chain Attack: Malicious Packages Target UK Govt
MEDIUM
Supply Chain

RubyGems Supply Chain Attack: Malicious Packages Target UK Govt

Threat actors leverage malicious RubyGems packages, embedding scrapers that target public-facing UK government servers, utilizing the platform as a data dead drop…

Runtime Rebel Intel
4 min read · May 14, 2026

Advertisement

Beyond Checkbox Compliance: True Cyber Risk Measurement
INFO
Compliance

Beyond Checkbox Compliance: True Cyber Risk Measurement

Traditional checkbox assessments fail to measure dynamic cyber risk. Explore modern approaches to security governance and continuous risk management.

Runtime Rebel Intel
4 min read · May 14, 2026
HIGH
Threat Intel

MuddyWater Targets South Korean Electronics Maker in Espionage Campaign

Iran-linked MuddyWater (Seedworm) group launched a cyber-espionage campaign against a major South Korean electronics maker and other global entities.

Runtime Rebel Intel
4 min read · May 14, 2026
HIGH
Data Breach

West Pharmaceutical Breach: Analysis of System Encryption

West Pharmaceutical Services confirms data exfiltration and system encryption in a major cyberattack. Learn about the impact and defense strategies.

Runtime Rebel Intel
3 min read · May 14, 2026
HIGH
Vulnerabilities

Pixel 10 0-Click Exploit Chain: Re-Targeting CVE-2025-54957 for Root

Analysis of a zero-click exploit chain targeting the Google Pixel 10, achieving root via an adapted Dolby vulnerability (CVE-2025-54957). Critical threat. Patch now.

Runtime Rebel Intel
4 min read · May 13, 2026
Two Decades of Cybersecurity Evolution: Reflecting on Threat Intelligence
INFO
Threat Intel

Two Decades of Cybersecurity Evolution: Reflecting on Threat Intelligence

Dark Reading's 20th anniversary highlights the dynamic cybersecurity landscape. We analyze two decades of evolving threats and the critical role of intelligence in…

Runtime Rebel Intel
4 min read · May 13, 2026
HIGH
Data Breach

Foxconn North America Ransomware Attack: Nitrogen Group Data Theft

Foxconn's North American operations confirm a ransomware attack by Nitrogen group, resulting in 8TB of data theft, including confidential documents.

Runtime Rebel Intel
4 min read · May 13, 2026
HIGH
Vulnerabilities

Exim RCE: Unauthenticated Remote Code Execution Critical Flaw

A new critical flaw in Exim mailer allows unauthenticated remote code execution on certain configurations. Immediate patching is vital for security professionals.

Runtime Rebel Intel
4 min read · May 13, 2026
FamousSparrow APT: China-Linked Group Targets Caucasus Energy Sector
HIGH
Threat Intel

FamousSparrow APT: China-Linked Group Targets Caucasus Energy Sector

China-linked FamousSparrow APT expands targeting to include Azerbaijani energy infrastructure, signaling a shift in strategic objectives for the threat group.

Runtime Rebel Intel
3 min read · May 13, 2026
AI Agents Automate Custom Hacking Tool Development in LatAm
HIGH
Threat Intel

AI Agents Automate Custom Hacking Tool Development in LatAm

Threat actors targeting Mexico and Brazil are leveraging AI agents to generate bespoke malware and bypass traditional security controls in real-time.

Runtime Rebel Intel
4 min read · May 13, 2026
INFO
Threat Intel

Sweet Attack: Using Agentic AI for Continuous Runtime Red Teaming

Sweet Security launches Sweet Attack, using agentic AI and runtime intelligence to provide autonomous attack path analysis and identify exploitable chains.

Runtime Rebel Intel
3 min read · May 13, 2026
INFO
Vulnerabilities

Microsoft and Palo Alto Networks Use AI to Identify Dozens of Vulnerabilities

Microsoft and Palo Alto Networks leverage AI-powered tools MDASH and Mythos to identify dozens of critical software vulnerabilities before exploitation.

Runtime Rebel Intel
3 min read · May 13, 2026
HIGH
Vulnerabilities

Windows BitLocker Zero-Day Bypass and Privilege Escalation PoC Released

Security researcher releases PoC for YellowKey and GreenPlasma, unpatched vulnerabilities allowing BitLocker bypass and SYSTEM privilege escalation on Windows.

Runtime Rebel Intel
4 min read · May 13, 2026
FamousSparrow Exploits Microsoft Exchange in Azerbaijani Energy Campaign
HIGH
Threat Intel

FamousSparrow Exploits Microsoft Exchange in Azerbaijani Energy Campaign

Bitdefender reveals a multi-wave intrusion by FamousSparrow targeting an Azerbaijani oil and gas firm via repeated Microsoft Exchange exploitation.

Runtime Rebel Intel
3 min read · May 13, 2026
Microsoft MDASH AI Discovers 16 Windows Vulnerabilities
HIGH
Vulnerabilities

Microsoft MDASH AI Discovers 16 Windows Vulnerabilities

Microsoft reveals MDASH, a new AI-driven agentic scanning harness that discovered 16 vulnerabilities in Windows, now fixed in recent Patch Tuesday updates.

Runtime Rebel Intel
3 min read · May 13, 2026
MEDIUM
Threat Intel

GPT-5.5 Performance in Automated Vulnerability Discovery

An analysis of GPT-5.5 and Claude Mythos capabilities in identifying security vulnerabilities based on UK AI Security Institute evaluations.

Runtime Rebel Intel
3 min read · May 13, 2026
HIGH
Data Breach

716,000 Impacted by OpenLoop Health Data Breach — Impact Analysis

OpenLoop Health reports a significant data breach affecting 716,000 patients. Attackers exfiltrated SSNs and medical records during the January incident.

Runtime Rebel Intel
3 min read · May 13, 2026
MEDIUM
Data Breach

US Government Scrutinizes Instructure Canvas Breach and Outage

US Committee on Homeland Security investigates Instructure following a Canvas LMS data breach and service disruption affecting educational institutions.

Runtime Rebel Intel
3 min read · May 13, 2026
INFO
Threat Intel

Reducing MTTR with Autonomous Validation: The 73-Second Breach Gap

Attackers can breach systems in 73 seconds while patching takes over 24 hours. Learn how autonomous validation closes the gap for modern security teams.

Runtime Rebel Intel
3 min read · May 13, 2026