Skip to main content

Coverage

Vulnerabilities

1245 articles on vulnerability disclosures and exploits

Advertisement

iOS 18.7.7 Update Expanded to Mitigate DarkSword Exploit Kit Risks
HIGH
Threat Intel

iOS 18.7.7 Update Expanded to Mitigate DarkSword Exploit Kit Risks

Apple expands iOS 18.7.7 and iPadOS 18.7.7 availability to additional devices to mitigate risks from the recently disclosed DarkSword exploit kit.

Runtime Rebel Intel
3 min read · Apr 2, 2026
CRITICAL
Vulnerabilities

Apple iOS 18 Security Updates: Mitigating DarkSword Exploit Chain

Apple expands iOS 18 security patches to protect more iPhone models against the DarkSword exploit kit targeting WebKit and JavaScriptCore vulnerabilities.

Runtime Rebel Intel
3 min read · Apr 2, 2026
CRITICAL
Vulnerabilities

Google Chrome Zero-Day Patch: Fourth In-the-Wild Exploit

Google has released an urgent security update for Chrome, patching the fourth zero-day vulnerability actively exploited in 2024. Update now to protect against…

Runtime Rebel Intel
5 min read · Apr 1, 2026
HIGH
Vulnerabilities

PX4 Autopilot v1.16.0 RCE via CVE-2026-1579: Mitigation Guide

Unauthenticated attackers can execute shell commands on PX4 Autopilot v1.16.0 via MAVLink. Learn how to enable message signing to secure autonomous systems.

Runtime Rebel Intel
3 min read · Mar 31, 2026
HIGH
Vulnerabilities

CVE-2026-3356: Anritsu Remote Spectrum Monitor Authentication Bypass

Critical CVE-2026-3356 allows authentication bypass in Anritsu Remote Spectrum Monitors.

Runtime Rebel Intel
4 min read · Mar 31, 2026
CVE-2026-3502: TrueConf Zero-Day Exploited in Asia Gov Attacks
CRITICAL
Vulnerabilities

CVE-2026-3502: TrueConf Zero-Day Exploited in Asia Gov Attacks

TrueConf video conferencing zero-day [CVE-2026-3502] exploited to distribute tampered updates to Southeast Asian government networks in 'TrueChaos' campaign.

Runtime Rebel Intel
5 min read · Mar 31, 2026
INFO
Vulnerabilities

Vulnerability Management for Mid-Market: Prioritizing Remediation Speed

Mid-market organizations must shift vulnerability management focus from vulnerability count to remediation speed, integrating attack surface management for comprehensive…

Runtime Rebel Intel
5 min read · Mar 31, 2026
INFO
Threat Intel

Censys Secures $70 Million to Advance Internet Intelligence Platform

Censys raises $70 million in funding, bolstering its internet intelligence platform for enhanced attack surface management and global asset discovery.

Runtime Rebel Intel
4 min read · Mar 31, 2026
CRITICAL
Vulnerabilities

Fortinet FortiClient EMS Critical SQLi Flaw Under Active Exploitation

Critical SQL injection in FortiClient EMS allows unauthenticated remote code execution. Active exploitation detected, immediate patching required.

Runtime Rebel Intel
4 min read · Mar 31, 2026
MEDIUM
Threat Intel

Uranium Finance Exploit: Hacker Charged for $53 Million Breach

US prosecutors charge a Maryland man for stealing $53 million from Uranium Finance by exploiting smart contracts and laundering via Tornado Cash.

Runtime Rebel Intel
4 min read · Mar 31, 2026
CRITICAL
Vulnerabilities

CVE-2023-3519: Patching Active RCE in Citrix NetScaler ADC

CISA mandates federal agencies patch CVE-2023-3519, an unauthenticated RCE flaw in Citrix NetScaler ADC and Gateway actively exploited in the wild.

Runtime Rebel Intel
3 min read · Mar 31, 2026
HIGH
Vulnerabilities

Apache Struts 2.5.33 Patch Guidance: Mitigating CVE-2023-50164 RCE

Technical analysis of CVE-2023-50164, a critical RCE vulnerability in Apache Struts. Learn how to detect exploits and secure your file upload implementations.

Runtime Rebel Intel
3 min read · Mar 31, 2026
HIGH
Malware

RoadK1ll WebSocket Implant: New Threat for Stealthy Lateral Movement

Analysis of the new RoadK1ll WebSocket implant, detailing its capabilities for lateral movement on compromised networks and offering detection and mitigation strategies.

Runtime Rebel Intel
5 min read · Mar 31, 2026
CRITICAL
Vulnerabilities

CVE-2026-3055: Citrix NetScaler Out-of-Bounds Read Under Active Exploitation

CISA adds CVE-2026-3055, an actively exploited Citrix NetScaler Out-of-Bounds Read vulnerability, to its KEV Catalog, urging immediate remediation.

Runtime Rebel Intel
4 min read · Mar 30, 2026
Fortinet BIG-IP RCE via CVE-2025-53521 — Patch Now
CRITICAL
Vulnerabilities

Fortinet BIG-IP RCE via CVE-2025-53521 — Patch Now

Fortinet BIG-IP vulnerability CVE-2025-53521, initially a DoS, has been reclassified as a critical Remote Code Execution flaw.

Runtime Rebel Intel
4 min read · Mar 30, 2026
CRITICAL
Vulnerabilities

CVE-2026-3055: Critical Citrix NetScaler Memory Flaw Exploited

A critical memory flaw, CVE-2026-3055, in Citrix NetScaler ADC and Gateway appliances is actively exploited to steal sensitive data. Patch immediately.

Runtime Rebel Intel
4 min read · Mar 30, 2026
OpenAI Patches ChatGPT Data Exfiltration and Codex Token Flaws
HIGH
Vulnerabilities

OpenAI Patches ChatGPT Data Exfiltration and Codex Token Flaws

OpenAI addresses high-impact vulnerabilities in ChatGPT and Codex that enabled unauthorized data exfiltration and exposure of sensitive GitHub tokens.

Runtime Rebel Intel
3 min read · Mar 30, 2026
HIGH
Threat Intel

Star Blizzard (APT28) Adopts DarkSword iOS Exploit Kit

Russian APT Star Blizzard (APT28) now uses the DarkSword iOS exploit kit to target government, finance, and academia, increasing mobile threat exposure.

Runtime Rebel Intel
5 min read · Mar 30, 2026
LOW
Vulnerabilities

Windows 11 KB5079391 Update Pulled: Resolving 0x80073712 Errors

Microsoft withdraws the Windows 11 KB5079391 preview update following widespread reports of 0x80073712 installation failures on version 24H2 systems.

Runtime Rebel Intel
4 min read · Mar 30, 2026
CRITICAL
Vulnerabilities

F5 BIG-IP RCE via CVE-2023-46747 — Mitigation and Exploitation Guide

Exploit analysis of the critical F5 BIG-IP authentication bypass (CVE-2023-46747). Learn how to detect webshell deployment and apply essential security patches.

Runtime Rebel Intel
3 min read · Mar 30, 2026
CRITICAL
Vulnerabilities

CVE-2023-48788: FortiClient EMS RCE via SQL Injection Exploit

Exploitation of a critical RCE vulnerability (CVE-2023-48788) in Fortinet FortiClient EMS has been confirmed. Learn how to detect and mitigate this threat.

Runtime Rebel Intel
3 min read · Mar 30, 2026
MEDIUM
Vulnerabilities

Smart Slider 3 Vulnerability: Patch CVE-2024-11116 File Read Flaw

A file read vulnerability in Smart Slider 3 affects over 800,000 WordPress sites. Authenticated users can access sensitive server files via CVE-2024-11116.

Runtime Rebel Intel
3 min read · Mar 29, 2026
Citrix NetScaler CVE-2026-3055 Memory Overread — Mitigation Guide
CRITICAL
Vulnerabilities

Citrix NetScaler CVE-2026-3055 Memory Overread — Mitigation Guide

Attackers are actively scanning for CVE-2026-3055, a CVSS 9.3 memory overread flaw in Citrix NetScaler ADC and Gateway. Patch vulnerable instances immediately.

Runtime Rebel Intel
3 min read · Mar 28, 2026
CVE-2025-53521: CISA Warns of Active F5 BIG-IP APM RCE Exploitation
CRITICAL
Vulnerabilities

CVE-2025-53521: CISA Warns of Active F5 BIG-IP APM RCE Exploitation

CISA adds CVE-2025-53521 to its KEV catalog following active exploitation of F5 BIG-IP APM. The critical RCE flaw carries a CVSS v4 score of 9.3.

Runtime Rebel Intel
4 min read · Mar 28, 2026