All Articles
Security Intelligence
3410 articles · Updated every 8 hours
Advertisement
Instructure Data Breach: ShinyHunters Claims Theft of Employee Data
Educational technology giant Instructure confirms an internal data breach after the ShinyHunters threat group claims to have stolen sensitive corporate data.
Wireshark 4.6.5 Security Update: 38 CVEs Patched — Upgrade Guide
Wireshark 4.6.5 addresses 38 CVEs and 43 vulnerabilities across protocol dissectors. Learn how to mitigate risks and protect packet analysis systems.
US DoD Partners with 7 Tech Giants for Classified AI Integration
The US Department of Defense secures deals with AWS, Google, and OpenAI to integrate AI into classified environments, focusing on operational decision-making.
Microsoft Defender DigiCert False Positive: Trojan:Win32/Cerdigent.A!dha
Microsoft Defender is incorrectly identifying DigiCert root certificates as the Cerdigent trojan, causing certificate removal and enterprise disruptions.
Telegram Mini Apps Exploited for Crypto Scams and Malware Delivery
Threat actors are weaponizing Telegram Mini Apps to distribute Android malware and deploy sophisticated crypto drainers via TON blockchain exploits.
CVE-2026-31431: CISA Warns of Linux Local Privilege Escalation Exploit
CISA adds CVE-2026-31431 to its KEV catalog following active exploitation of a Linux local privilege escalation flaw. Learn how to mitigate root access risks.
Advertisement
CVE-2026-41940: Critical cPanel Vulnerability Exploited by Sorry Ransomware
Attackers are mass-exploiting CVE-2026-41940 in cPanel to deploy Sorry ransomware. Learn how to detect CVE-2026-41940 exploit and protect your web servers.
ConsentFix v3: How Attackers Automate Azure OAuth Abuse
Attackers use ConsentFix v3 to automate illicit consent grants in Microsoft Azure, enabling persistent access to Entra ID data without user passwords.
Bluekit Phishing Kit: AI Integration and Automated Deployment
The Bluekit phishing kit uses an AI assistant and automated domain registration to simplify credential harvesting against financial and logistics sectors.
Trellix Source Code Breach: Assessing Risk to Security Products
Trellix confirms unauthorized access to a portion of its source code repositories, raising concerns regarding potential downstream supply chain risks.
North Korea Dominates Crypto Heists: 76% of Stolen Funds by 2026
North Korean threat actors are projected to be responsible for 76% of all cryptocurrency stolen by 2026, utilizing sophisticated methods for large-scale heists.
Instructure Canvas Cyber Incident: What Defenders Need to Know
Instructure, operator of the Canvas learning platform, discloses a cyber incident. This analysis details potential impacts and provides actionable steps for users.
Windows 11 Modern Run Dialog: Technical Overview and Security Analysis
Microsoft updates the Windows 11 Run dialog in Insider Preview Build 27793 with WinUI 3 components, Dark Mode, and improved performance for OS interactions.
MacSync Stealer Distributed via Malicious Homebrew Ad Campaign
Malicious ads for Homebrew distribute MacSync Stealer, targeting macOS users. Threat actors leverage trusted software to deploy data-stealing malware.
CVE-2026-31431: Linux Kernel Resource Transfer Vulnerability Actively Exploited
CISA adds CVE-2026-31431, a Linux Kernel incorrect resource transfer vulnerability, to its KEV catalog due to active exploitation. Prioritize remediation.
Threat Intelligence Reliability: Lessons from Instructure Breach Retraction
Analysis of a retracted data breach story at Instructure highlights the critical need for verifying threat intelligence sources and avoiding misinformation impact.
French ANTS Agency Data Breach: Teen Suspect Detained
French authorities detain a 15-year-old suspected of orchestrating a data breach at ANTS, the national agency for administrative documents, impacting citizen data…
AccountDumpling: Vietnamese Phishing Relay Abuses Google AppSheet
A Vietnamese-linked operation dubbed AccountDumpling used Google AppSheet as a phishing relay to compromise 30,000 Facebook accounts for illicit resale.
Secure AI Agent Integration: Preventing Production Data Loss
Organizations face catastrophic data loss as AI agents misinterpret prompts. Learn how to secure autonomous agents and implement strict guardrails.
Google Adjusts Bug Bounties: $1.5M Android Reward and AI Shift
Google updates its Vulnerability Reward Program, increasing Android zero-click payouts to $1.5 million while adjusting Chrome rewards amid an AI security surge.
Scattered Spider Arrest and NSA Emissary CVE-2024-34543 Analysis
Analysis of the Scattered Spider arrest, the NSA Emissary XXE vulnerability (CVE-2024-34543), and CISA's new Zero Trust guidance for OT environments.
Windows 11 24H2 Remote Desktop Security Warning Bug Patched
Microsoft resolves a Windows 11 24H2 bug where Remote Desktop (.rdp) security warnings failed to display correctly after the October 2024 updates.
Criminal IP Integrates with Securonix and ThreatQ for Enhanced Intel
Criminal IP partners with Securonix and ThreatQ to automate exposure-based intelligence and accelerate incident response through real-time IP reputation.
SHADOW-EARTH-053: China-Linked APT Targets NATO and Asian Governments
Trend Micro uncovers SHADOW-EARTH-053, a China-aligned espionage group targeting defense sectors in Asia and a NATO member through advanced TTPs.