All Articles
Security Intelligence
3410 articles · Updated every 8 hours
Advertisement
CVE-2026-42208: LiteLLM Pre-Auth SQLi Actively Exploited – Patch Now
Hackers are actively exploiting CVE-2026-42208, a critical pre-authentication SQL injection vulnerability in LiteLLM, to access sensitive data.
VECT 2.0 Ransomware Analysis: Encryption Flaws Act as Data Wiper
VECT 2.0 ransomware features a critical flaw in its encryption logic that permanently wipes large files, making data recovery impossible even with a key.
LofyGang Targets Minecraft Players with LofyStealer Malware
Brazilian cybercrime group LofyGang resurfaces after three years, deploying LofyStealer (GrabBot) disguised as a Minecraft 'Slinky' hack to steal player credentials.
CVE-2026-3854: GitHub RCE via Malicious Git Push Command
A critical command injection vulnerability, CVE-2026-3854, allows authenticated users to achieve RCE on GitHub instances via a single git push operation.
Lazarus Group's $2B+ Crypto Theft: Defending Against Supply Chain Attacks
An analysis of Lazarus Group's persistent and financially motivated cyber operations, highlighting over $2B in crypto theft and critical supply chain attack risks.
X-Vercel-Set-Bypass-Cookie Header: Honeypot Observations & Implications
Runtime Rebel analyzes recent honeypot observations of HTTP requests using the `X-Vercel-Set-Bypass-Cookie` header, discussing potential implications for Vercel users…
Advertisement
GlassWorm Campaign Leverages Malicious VS Code Extensions
Runtime Rebel details the GlassWorm campaign, which infects developers via malicious Visual Studio Code extensions on Open VSX, facilitating a supply chain attack.
AI Agentic Threats: Countering Automated Attacks with AI-Driven Defense
The rise of AI agents introduces new attack vectors. Enterprises must adopt AI-driven agentic defenses to counter automated reconnaissance, exploitation, and evasion…
Checkmarx Data Leak: LAPSUS$ Group Targets GitHub Repositories
LAPSUS$ threat actors leaked source code stolen from Checkmarx's private GitHub repositories. Analyze the impact of this supply chain security incident.
US Charges Scattered Spider Member Arrested in Finland
US federal authorities charge a 19-year-old member of the Scattered Spider hacking group, highlighting the group's social engineering and SIM swapping TTPs.
Zero Trust Implementation Stalled by Secure Data Movement Bottlenecks
New Cyber360 research reveals why organizations fail to achieve Zero Trust by prioritizing network connectivity over granular data movement security.
VECT 2.0 Ransomware Acts as Wiper on Windows, Linux, and ESXi
VECT 2.0 ransomware permanently destroys files over 131KB on Windows, Linux, and ESXi systems due to flawed encryption, making data recovery impossible.
Sevii Cyber Swarm Defense: Managing Agentic AI Security Costs
Sevii's Cyber Swarm Defense platform addresses the financial unpredictability of Agentic AI in security operations through specialized autonomous agents.
GlassWorm Malware: Cloned Open VSX Extensions Target Developers
Over 70 malicious Open VSX extensions cloned from popular tools deliver GlassWorm malware, highlighting risks in developer-focused supply chain attacks.
Microsoft RDP Security Warning Display Bug — Mitigation Guide
Microsoft confirms security warnings for Remote Desktop (.rdp) files may display incorrectly on Windows 10 and 11, potentially obscuring risk information.
Defending the Zero-Window Era: AI-Driven Exploitation and NDR
Anthropic’s Claude Mythos and Project Glasswing have eliminated traditional patching windows. Learn why NDR is essential for defending against AI-driven exploits.
Hugging Face LeRobot RCE via CVE-2026-25874 — Mitigation Guide
Technical analysis of CVE-2026-25874, a critical unpatched RCE vulnerability in Hugging Face LeRobot robotics platform with a CVSS score of 9.3.
Medtronic Data Breach: ShinyHunters Claims 9 Million Records Stolen
Medtronic confirms a security breach after the ShinyHunters threat group claims to have exfiltrated 9 million records containing personal information.
Spectrum Security Emerges from Stealth with $19M for Threat Detection
Spectrum Security exits stealth with $19M in funding to address the scaling challenges of modern security data infrastructure and threat detection platforms.
Microsoft Outlook iOS Authentication Issues: Remediation and Risks
Microsoft resolves global Outlook.com outage but requires iOS Mail app users to re-authenticate. Learn how to secure accounts and mitigate phishing risks.
CVE-2026-32202: Active Exploitation of Windows Shell Spoofing Bug
Microsoft confirms CVE-2026-32202, a Windows Shell spoofing flaw, is under active exploitation. Read our analysis and mitigation guide for enterprise security.
Microsoft Entra ID Flaw: Agent ID Administrator Role Escalation
Microsoft patches a critical logic flaw in the Entra ID Agent ID Administrator role that allowed attackers to take over service principals and escalate privileges.
CVE-2024-9486: Critical Kubernetes Image Builder Flaws Exposed
Critical vulnerabilities in Kubernetes Image Builder allow root access via hardcoded credentials. Update to version v0.1.38 to mitigate potential exploits.
GlassWorm Malware Resurfaces via 73 OpenVSX Sleeper Extensions
A new GlassWorm campaign exploits the OpenVSX ecosystem with 73 'sleeper' extensions, posing a significant supply chain threat to developers.