Skip to main content

All Articles

Security Intelligence

3410 articles · Updated every 8 hours

Severity (this page):

Advertisement

CRITICAL
Vulnerabilities

CVE-2026-42208: LiteLLM Pre-Auth SQLi Actively Exploited – Patch Now

Hackers are actively exploiting CVE-2026-42208, a critical pre-authentication SQL injection vulnerability in LiteLLM, to access sensitive data.

Runtime Rebel Intel
5 min read · Apr 29, 2026
HIGH
Malware

VECT 2.0 Ransomware Analysis: Encryption Flaws Act as Data Wiper

VECT 2.0 ransomware features a critical flaw in its encryption logic that permanently wipes large files, making data recovery impossible even with a key.

Runtime Rebel Intel
3 min read · Apr 29, 2026
LofyGang Targets Minecraft Players with LofyStealer Malware
HIGH
Malware

LofyGang Targets Minecraft Players with LofyStealer Malware

Brazilian cybercrime group LofyGang resurfaces after three years, deploying LofyStealer (GrabBot) disguised as a Minecraft 'Slinky' hack to steal player credentials.

Runtime Rebel Intel
5 min read · Apr 28, 2026
CVE-2026-3854: GitHub RCE via Malicious Git Push Command
HIGH
Vulnerabilities

CVE-2026-3854: GitHub RCE via Malicious Git Push Command

A critical command injection vulnerability, CVE-2026-3854, allows authenticated users to achieve RCE on GitHub instances via a single git push operation.

Runtime Rebel Intel
3 min read · Apr 28, 2026
Lazarus Group's $2B+ Crypto Theft: Defending Against Supply Chain Attacks
HIGH
Threat Intel

Lazarus Group's $2B+ Crypto Theft: Defending Against Supply Chain Attacks

An analysis of Lazarus Group's persistent and financially motivated cyber operations, highlighting over $2B in crypto theft and critical supply chain attack risks.

Runtime Rebel Intel
5 min read · Apr 28, 2026
INFO
Threat Intel

X-Vercel-Set-Bypass-Cookie Header: Honeypot Observations & Implications

Runtime Rebel analyzes recent honeypot observations of HTTP requests using the `X-Vercel-Set-Bypass-Cookie` header, discussing potential implications for Vercel users…

Runtime Rebel Intel
4 min read · Apr 28, 2026

Advertisement

GlassWorm Campaign Leverages Malicious VS Code Extensions
MEDIUM
Supply Chain

GlassWorm Campaign Leverages Malicious VS Code Extensions

Runtime Rebel details the GlassWorm campaign, which infects developers via malicious Visual Studio Code extensions on Open VSX, facilitating a supply chain attack.

Runtime Rebel Intel
5 min read · Apr 28, 2026
INFO
Threat Intel

AI Agentic Threats: Countering Automated Attacks with AI-Driven Defense

The rise of AI agents introduces new attack vectors. Enterprises must adopt AI-driven agentic defenses to counter automated reconnaissance, exploitation, and evasion…

Runtime Rebel Intel
5 min read · Apr 28, 2026
HIGH
Data Breach

Checkmarx Data Leak: LAPSUS$ Group Targets GitHub Repositories

LAPSUS$ threat actors leaked source code stolen from Checkmarx's private GitHub repositories. Analyze the impact of this supply chain security incident.

Runtime Rebel Intel
3 min read · Apr 28, 2026
HIGH
Threat Intel

US Charges Scattered Spider Member Arrested in Finland

US federal authorities charge a 19-year-old member of the Scattered Spider hacking group, highlighting the group's social engineering and SIM swapping TTPs.

Runtime Rebel Intel
4 min read · Apr 28, 2026
Zero Trust Implementation Stalled by Secure Data Movement Bottlenecks
INFO
Identity & Access

Zero Trust Implementation Stalled by Secure Data Movement Bottlenecks

New Cyber360 research reveals why organizations fail to achieve Zero Trust by prioritizing network connectivity over granular data movement security.

Runtime Rebel Intel
4 min read · Apr 28, 2026
VECT 2.0 Ransomware Acts as Wiper on Windows, Linux, and ESXi
MEDIUM
Malware

VECT 2.0 Ransomware Acts as Wiper on Windows, Linux, and ESXi

VECT 2.0 ransomware permanently destroys files over 131KB on Windows, Linux, and ESXi systems due to flawed encryption, making data recovery impossible.

Runtime Rebel Intel
4 min read · Apr 28, 2026
INFO
Threat Intel

Sevii Cyber Swarm Defense: Managing Agentic AI Security Costs

Sevii's Cyber Swarm Defense platform addresses the financial unpredictability of Agentic AI in security operations through specialized autonomous agents.

Runtime Rebel Intel
3 min read · Apr 28, 2026
MEDIUM
Supply Chain

GlassWorm Malware: Cloned Open VSX Extensions Target Developers

Over 70 malicious Open VSX extensions cloned from popular tools deliver GlassWorm malware, highlighting risks in developer-focused supply chain attacks.

Runtime Rebel Intel
3 min read · Apr 28, 2026
MEDIUM
Vulnerabilities

Microsoft RDP Security Warning Display Bug — Mitigation Guide

Microsoft confirms security warnings for Remote Desktop (.rdp) files may display incorrectly on Windows 10 and 11, potentially obscuring risk information.

Runtime Rebel Intel
4 min read · Apr 28, 2026
Defending the Zero-Window Era: AI-Driven Exploitation and NDR
CRITICAL
Threat Intel

Defending the Zero-Window Era: AI-Driven Exploitation and NDR

Anthropic’s Claude Mythos and Project Glasswing have eliminated traditional patching windows. Learn why NDR is essential for defending against AI-driven exploits.

Runtime Rebel Intel
4 min read · Apr 28, 2026
Hugging Face LeRobot RCE via CVE-2026-25874 — Mitigation Guide
CRITICAL
Vulnerabilities

Hugging Face LeRobot RCE via CVE-2026-25874 — Mitigation Guide

Technical analysis of CVE-2026-25874, a critical unpatched RCE vulnerability in Hugging Face LeRobot robotics platform with a CVSS score of 9.3.

Runtime Rebel Intel
3 min read · Apr 28, 2026
HIGH
Data Breach

Medtronic Data Breach: ShinyHunters Claims 9 Million Records Stolen

Medtronic confirms a security breach after the ShinyHunters threat group claims to have exfiltrated 9 million records containing personal information.

Runtime Rebel Intel
4 min read · Apr 28, 2026
INFO
Threat Intel

Spectrum Security Emerges from Stealth with $19M for Threat Detection

Spectrum Security exits stealth with $19M in funding to address the scaling challenges of modern security data infrastructure and threat detection platforms.

Runtime Rebel Intel
4 min read · Apr 28, 2026
LOW
Cloud Security

Microsoft Outlook iOS Authentication Issues: Remediation and Risks

Microsoft resolves global Outlook.com outage but requires iOS Mail app users to re-authenticate. Learn how to secure accounts and mitigate phishing risks.

Runtime Rebel Intel
4 min read · Apr 28, 2026
CVE-2026-32202: Active Exploitation of Windows Shell Spoofing Bug
HIGH
Vulnerabilities

CVE-2026-32202: Active Exploitation of Windows Shell Spoofing Bug

Microsoft confirms CVE-2026-32202, a Windows Shell spoofing flaw, is under active exploitation. Read our analysis and mitigation guide for enterprise security.

Runtime Rebel Intel
4 min read · Apr 28, 2026
Microsoft Entra ID Flaw: Agent ID Administrator Role Escalation
HIGH
Identity & Access

Microsoft Entra ID Flaw: Agent ID Administrator Role Escalation

Microsoft patches a critical logic flaw in the Entra ID Agent ID Administrator role that allowed attackers to take over service principals and escalate privileges.

Runtime Rebel Intel
4 min read · Apr 28, 2026
HIGH
Vulnerabilities

CVE-2024-9486: Critical Kubernetes Image Builder Flaws Exposed

Critical vulnerabilities in Kubernetes Image Builder allow root access via hardcoded credentials. Update to version v0.1.38 to mitigate potential exploits.

Runtime Rebel Intel
3 min read · Apr 28, 2026
HIGH
Malware

GlassWorm Malware Resurfaces via 73 OpenVSX Sleeper Extensions

A new GlassWorm campaign exploits the OpenVSX ecosystem with 73 'sleeper' extensions, posing a significant supply chain threat to developers.

Runtime Rebel Intel
4 min read · Apr 28, 2026