All Articles
Security Intelligence
3414 articles · Updated every 8 hours
Advertisement
Private APN Misconfiguration Led to Polish Energy Plant OT Compromise
Hackers compromised a Polish energy plant's OT network by exploiting a private APN misconfiguration, shutting down a steam turbine and water treatment system.
Cloudflare Achieves FedRAMP High Status for Government
Cloudflare for Government achieves FedRAMP Class D (High) certification, enabling federal agencies to secure the nation's most sensitive unclassified data.
Hugging Face Incident: AI Agents and Rapid Exploitation
An AI agent exploited Artifactory vulnerabilities in an OpenAI evaluation, demonstrating rapid, low-cost exploration and persistence against Hugging Face.
Python's pyca/cryptography Gains Post-Quantum Support
Python's pyca/cryptography library now supports NIST-standard ML-KEM and ML-DSA for post-quantum encryption, addressing future quantum threats.
Outdated Cybercrime Laws Threaten Security Researchers
Outdated cybercrime laws endanger ethical hackers, creating legal risks that stifle critical vulnerability research.
OpenAI Astra Model Raises Autonomous Cyberattack Concerns
OpenAI's unreleased Astra model reached a 'critical' cybersecurity risk threshold in internal evaluations due to advanced agentic capabilities.
Advertisement
SonicWall SMA1000 Exploited: Ransomware Targets CVE-2026-15409/15410
CISA confirms ransomware exploitation of SonicWall SMA1000 flaws CVE-2026-15409 and CVE-2026-15410, urging immediate patching.
TP-Link Zero-Trust Provisioning Bugs: 15 Flaws Threaten Security
Researchers uncover 15 TP-Link device bugs that undermine automated zero‑trust provisioning, exposing credential leakage and network compromise.
TONTOU CPU Attack Bypasses Spectre v2 Mitigations on Linux
New TONTOU CPU attack bypasses Spectre v2 fixes on Intel and AMD, enabling unprivileged attackers to leak Linux kernel password hashes.
Solidity Pro VS Code Extensions Steal Crypto Wallets & Credentials
Malicious 'Solidity Pro' VS Code extensions steal crypto wallets, API keys, and credentials, using delayed activation to evade detection. Immediate removal is advised.
Webmail CSS Injection: Hidden Data Exfiltration Threats
Security researchers warn that Cascading Style Sheets can exfiltrate sensitive data from webmail inboxes if vendors fail to sanitize styles.
Zero-Click AI Browser Hacking Threatens Claude and ChatGPT Atlas
Zenity details zero-click indirect prompt injection vulnerabilities affecting OpenAI ChatGPT Atlas and Claude in Chrome via malicious web content.
Swiss Government SharePoint Breach: 200 Accounts Compromised
Switzerland's federal IT office confirms a Microsoft SharePoint breach compromised approximately 200 accounts, leading to a swift remediation.
ClickFix Attacks Deliver macOS Stealer Targeting Crypto
ClickFix social engineering campaigns target macOS users with Go-based infostealers designed to drain cryptocurrency wallets and credentials.
AI Browser Prompt Injection Flaws Defeat Vendor Guardrails
New security research reveals that AI-powered web browsers remain susceptible to persistent prompt injection flaws despite guardrails.
Chrome 151 Update Patches 41 Critical, High-Severity Flaws
Google's Chrome 151 update addresses 41 critical and high-severity vulnerabilities, including memory safety bugs potentially leading to RCE.
UNC6671 Targets Financial Sector via Vishing and AiTM Phishing
UNC6671, linked to BlackFile, exploits vishing and AiTM phishing against financial firms for cloud data theft and extortion.
AI Browsers Face 'PleaseFix' Zero-Click Agent Hijacking
Attackers can hijack AI browser agents via 'PleaseFix' zero-click vulnerabilities, injecting malicious instructions through content poisoning. No simple fix exists.
Microsoft & Apple Patch Critical RCEs and Auth Bypass Flaws
Microsoft released patches for critical-severity RCE and EoP flaws across Active Directory, Azure, and Teams. Apple fixed a Screen Sharing authentication bypass.
NC Ports Cyberattack Disrupts Operations at Key Facilities
North Carolina Ports confirmed a cyberattack disrupting IT systems and operations across its facilities. Recovery efforts are underway, with expected delays.
Vidar Stealer & XMRig Campaign Leverages Malvertising, AMSI Bypass
Financially motivated campaign delivers Vidar stealer and XMRig miner via malvertising for cracked software, targeting consumers and SMBs globally.
The Gentlemen Ransomware: Operations, Tools, and Mitigation
Analyzing The Gentlemen (Storm-2697) Ransomware-as-a-Service, its custom tooling, rapid victim surge in 2026, and mitigation.
Python Supply Chain: Malicious Packages Targeting Developers
Malicious Python packages exploit trusted ecosystems like PyPI, enabling supply chain attacks on developer systems. Learn about the threat and mitigation.
DNC's Security-First Culture: Executive Support & Creative Engagement
Learn how the Democratic National Committee built a strong security-first culture, emphasizing executive buy-in and engaging, even absurd, communication.