All Articles
Security Intelligence
3410 articles · Updated every 8 hours
Advertisement
AI CLI Tools Vulnerable to RCE via Malicious Repositories
TrustFall research reveals RCE risks in Claude Code and Cursor CLI. AI agents can be manipulated via malicious repositories to execute arbitrary commands.
AI-Driven Cyberattack Fails to Breach OT Systems via SCADA Login
Analysis of the first AI-driven cyberattack targeting OT. Despite advanced automation, the campaign failed to bypass standard SCADA login interfaces.
Boost Security Expands SDLC Defense via Strategic Acquisitions
Boost Security secures $4 million and acquires SecureIQx and Korbit.ai to streamline automated governance and security within the development lifecycle.
CVE-2024-3400: Palo Alto PAN-OS RCE Exploited by State Actors
Chinese state actors exploit a critical RCE vulnerability in Palo Alto Networks PAN-OS. Learn how to detect and mitigate CVE-2024-3400 exploitation.
Bypassing Enterprise DLP via Browser-Based Data Exfiltration
Examine how modern SaaS workflows and generative AI prompts bypass traditional DLP, creating significant visibility gaps in enterprise security posture.
CVE-2023-35081: Ivanti EPMM Remote Code Execution Zero-Day Analysis
Ivanti warns of a high-severity RCE vulnerability in EPMM exploited in zero-day attacks. Secure your systems by patching CVE-2023-35081 today.
Advertisement
PAN-OS RCE via CVE-2026-0300 — Mitigation Guide
Technical analysis of CVE-2026-0300, a critical buffer overflow in PAN-OS User-ID Authentication Portal enabling unauthenticated root access and espionage.
Neutralizing Patient Zero: Strategies to Prevent Stealth Breaches
Analyze how AI-driven social engineering creates a Patient Zero scenario and explore technical strategies to contain stealth breaches before total shutdown.
ICE Developing Smart Glasses with Integrated Facial Recognition
ICE is developing smart glasses with real-time facial recognition linked to federal databases, raising significant privacy and technical security concerns.
Cisco ISE and Nexus Dashboard RCE via CVE-2024-20469 — Mitigation Guide
Cisco patches high-severity vulnerabilities in ISE, Nexus Dashboard, and Catalyst Center that enable RCE, SSRF, and DoS attacks. Secure your enterprise today.
Crypto Gang Sentencing: Inside the $243M Greavys Group Heist
A 20-year-old gang member receives a 6.5-year sentence for his role in a $243 million crypto heist involving home invasion and social engineering.
Day Zero Readiness: Bridging Incident Response Operational Gaps
Identify and close the operational gaps in incident response that hinder day-zero readiness, ensuring external partners can act immediately during a breach.
Microsoft Edge Plaintext Password Exposure and ICS Zero-Day Risks
Analysis of Microsoft Edge plaintext password storage risks, newly disclosed ICS zero-day vulnerabilities, and Telegram-based data exfiltration TTPs.
Claude AI Guided Hackers Toward OT Assets During Water Utility Intrusion
Threat actors utilized Anthropic’s Claude AI to navigate OT environments during a water utility breach, highlighting the rising risk of AI-assisted ICS attacks.
Adaptive UI for Web Honeypot Log Analysis: Enhancing Threat Intel
An overview of an adaptive cyber analytics UI for web honeypot logs, enhancing threat intelligence gathering and analysis for security operations.
vm2 Node.js Library RCE: Multiple Sandbox Escape Vulnerabilities
Discovery of a dozen critical vulnerabilities in the vm2 Node.js library allows for sandbox escape and RCE. Learn how to mitigate these security risks now.
Instructure Data Breach: ShinyHunters Exposes Education Sector Vendor Risk
Analysis of the Instructure data breach by ShinyHunters, impacting educational institutions using Canvas LMS and highlighting critical third-party vendor dependencies.
Google Chrome ABE Bypass: Heightened Infostealer Threat
VoidStealer Trojan authors bypass Google Chrome's App-Bound Encryption (ABE), enabling infostealers to exfiltrate cookies and credentials from users.
Google Ads Phishing Campaign Targets GoDaddy ManageWP Users
A persistent phishing campaign leverages malicious Google Ads to steal GoDaddy ManageWP credentials, risking extensive WordPress site compromises.
Mirai-Based xlabs_v1 Botnet Hijacks IoT Devices via ADB
Learn how the xlabs_v1 botnet exploits Android Debug Bridge (ADB) on port 5555 to enroll IoT devices into a DDoS network and how to secure your hardware.
CVE-2026-0300: Palo Alto Networks PAN-OS Out-of-bounds Write Exploit
CISA adds CVE-2026-0300, a Palo Alto Networks PAN-OS out-of-bounds write vulnerability, to its KEV Catalog due to active exploitation.
Cisco Crosswork & NSO DoS: Manual Reboot Needed Post-Exploit
Cisco Crosswork Network Controller and Network Services Orchestrator are vulnerable to a denial-of-service flaw, necessitating manual reboots for recovery.
CVE-2023-29017: Critical vm2 Sandbox Escape Leads to Host RCE
Technical analysis of CVE-2023-29017 in the vm2 Node.js library. Learn how attackers escape the sandbox for remote code execution and how to patch.
Threat Activity Enablers: Unpacking Cybercrime Infrastructure
Analyzing how cybercriminals leverage hosting, domain, and cloud services as "threat activity enablers" to power operations. Learn to identify and disrupt this critical