Skip to main content

Coverage

Vulnerabilities

1245 articles on vulnerability disclosures and exploits

Advertisement

Ransomware TTPs Shift: From Cobalt Strike to Native Tools, Data Theft Surges
HIGH
Threat Intel

Ransomware TTPs Shift: From Cobalt Strike to Native Tools, Data Theft Surges

Ransomware actors are abandoning Cobalt Strike for native Windows tools as payment rates decline, leading to a significant surge in data theft.

Runtime Rebel Intel
5 min read · Mar 18, 2026
HIGH
Vulnerabilities

CVE-2025-13957: Hard-coded Credentials in Schneider EcoStruxure DCE

Hard-coded credentials in Schneider Electric EcoStruxure Data Center Expert v9.0 and prior (CVE-2025-13957) allow information disclosure and RCE if SOCKS Proxy is…

Runtime Rebel Intel
5 min read · Mar 17, 2026
HIGH
Vulnerabilities

Siemens SICAM SIAPP SDK RCE and DoS Vulnerabilities: Patch Guide

Siemens releases security updates for SICAM SIAPP SDK versions prior to 2.1.7 to address high-severity RCE, command injection, and buffer overflow flaws.

Runtime Rebel Intel
3 min read · Mar 17, 2026
Warlock Ransomware: BYOVD Techniques and Post-Exploitation Analysis
HIGH
Threat Intel

Warlock Ransomware: BYOVD Techniques and Post-Exploitation Analysis

The Warlock ransomware group has evolved its tactics, utilizing BYOVD techniques and stealthy cross-network activity to bypass EDR and security controls.

Runtime Rebel Intel
3 min read · Mar 17, 2026
MEDIUM
Threat Intel

Hiding Malicious Commands from AI via Font-Rendering Manipulation

Learn how attackers use font-rendering tricks to bypass AI safety filters and execute prompt injection attacks against LLM-powered assistants.

Runtime Rebel Intel
4 min read · Mar 17, 2026
MEDIUM
Vulnerabilities

Windows 11 24H2 Samsung Galaxy Book C: Drive Access Fix

Microsoft releases technical guidance to resolve C: drive access denied errors and application failures on Samsung Galaxy Book devices running Windows 11.

Runtime Rebel Intel
4 min read · Mar 17, 2026
CVE-2025-47813: CISA Warns of Wing FTP Server Path Leakage Exploitation
MEDIUM
Vulnerabilities

CVE-2025-47813: CISA Warns of Wing FTP Server Path Leakage Exploitation

CISA adds CVE-2025-47813 to its KEV catalog, highlighting active exploitation of a Wing FTP Server information disclosure flaw that leaks internal server paths.

Runtime Rebel Intel
3 min read · Mar 17, 2026
HIGH
Vulnerabilities

CVE-2025-47813: Wing FTP Server Information Disclosure Added to KEV

CISA adds CVE-2025-47813 to the Known Exploited Vulnerabilities catalog, signaling active exploitation of Wing FTP Server. Immediate patching is required.

Runtime Rebel Intel
4 min read · Mar 16, 2026
CRITICAL
Vulnerabilities

CVE-2024-50498: Wing FTP Server Exploited in RCE Chains — Patch Now

CISA adds CVE-2024-50498 to its KEV catalog after reports of active exploitation. Learn how to secure Wing FTP Server versions prior to 7.5.0 from RCE chains.

Runtime Rebel Intel
4 min read · Mar 16, 2026
HIGH
Threat Intel

2025 Ransomware TTP Analysis: Virtualization and Data Theft Trends

Analysis of shifting ransomware TTPs in 2025, highlighting the surge in data theft extortion, virtualization targeting, and exploitation of edge vulnerabilities.

Runtime Rebel Intel
3 min read · Mar 16, 2026
HIGH
Threat Intel

Oracle EBS Exploitation: Risks to Enterprise Financial Integrity

Analysis of the Oracle EBS hack affecting major corporations and the technical risks associated with unpatched ERP systems and financial data theft.

Runtime Rebel Intel
3 min read · Mar 16, 2026
Chrome Zero-Days and Router Botnets: Weekly Threat Intel Recap
HIGH
Threat Intel

Chrome Zero-Days and Router Botnets: Weekly Threat Intel Recap

Analysis of the latest Chrome zero-day vulnerabilities, router botnet infrastructure risks, and AWS cloud security breaches from March 2026.

Runtime Rebel Intel
3 min read · Mar 16, 2026
HIGH
Vulnerabilities

Windows 11 24H2 RRAS RCE: Microsoft Issues OOB Hotpatch Fix

Microsoft releases an out-of-band hotpatch for Windows 11 24H2 to address critical RRAS remote code execution vulnerabilities CVE-2024-43513 and CVE-2024-49053.

Runtime Rebel Intel
3 min read · Mar 15, 2026
OpenClaw AI Agent Flaws: Prompt Injection and Data Exfiltration Risk
HIGH
Vulnerabilities

OpenClaw AI Agent Flaws: Prompt Injection and Data Exfiltration Risk

CNCERT warns of critical security flaws in OpenClaw AI agents, enabling prompt injection and data exfiltration due to weak default configurations.

Runtime Rebel Intel
4 min read · Mar 14, 2026
HIGH
Vulnerabilities

CVE-2024-47460: Critical HPE AOS-CX Password Reset Bypass - Patch Now

HPE Aruba Networking fixes a critical vulnerability (CVE-2024-47460) in AOS-CX switches allowing unauthenticated remote attackers to reset admin passwords.

Runtime Rebel Intel
3 min read · Mar 14, 2026
HIGH
Vulnerabilities

Windows 11 C: Drive Access Failure on Samsung PCs - Mitigation Guide

Microsoft investigates an issue where February 2026 Windows 11 security updates prevent C: drive access on Samsung laptops, blocking all applications.

Runtime Rebel Intel
4 min read · Mar 14, 2026
CRITICAL
Vulnerabilities

CVE-2026-3909 & CVE-2026-3910: Actively Exploited Google Vulnerabilities

CISA added two Google vulnerabilities (Skia Out-of-Bounds Write, Chromium V8 unspecified) to its KEV Catalog due to active exploitation. Patch now.

Runtime Rebel Intel
5 min read · Mar 13, 2026
Cisco SD-WAN vManage RCE: Fake PoCs & CVE-2023-20252 Exploitation
HIGH
Vulnerabilities

Cisco SD-WAN vManage RCE: Fake PoCs & CVE-2023-20252 Exploitation

Threat intelligence reveals fake PoCs for Cisco SD-WAN vManage CVE-2023-20252. Understand actual RCE risks and critical patching for affected systems.

Runtime Rebel Intel
4 min read · Mar 13, 2026
Google Cloud Attacks: Exploitation Outpaces Patching Cycles
HIGH
Cloud Security

Google Cloud Attacks: Exploitation Outpaces Patching Cycles

Vulnerability exploitation, not stolen credentials, is the primary initial compromise vector for Google Cloud environments, often bypassing patching efforts.

Runtime Rebel Intel
4 min read · Mar 13, 2026
HIGH
Threat Intel

N8n Flaw Exploitation, Slopoly Malware, AppArmor LPE: Key Threats

Analysis of recent cybersecurity threats: actively exploited N8n flaw, Slopoly malware, Linux AppArmor root privilege vulnerability, and Telus Digital breach.

Runtime Rebel Intel
5 min read · Mar 13, 2026
INFO
Vulnerabilities

Google's $17M Bug Bounty: Insights on Chrome & Cloud Security

Google paid out $17 million in bug bounties in 2025, with major rewards for Chrome and cloud security flaws. Understand the implications for enterprise defense.

Runtime Rebel Intel
4 min read · Mar 13, 2026
CrackArmor: Nine Linux AppArmor Flaws Enable Root Escalation
HIGH
Vulnerabilities

CrackArmor: Nine Linux AppArmor Flaws Enable Root Escalation

Qualys researchers reveal nine CrackArmor vulnerabilities in the Linux AppArmor module, allowing unprivileged users to bypass container isolation and gain root.

Runtime Rebel Intel
4 min read · Mar 13, 2026
Google Patches Chrome Zero-Days CVE-2026-3909 in Skia and V8
CRITICAL
Vulnerabilities

Google Patches Chrome Zero-Days CVE-2026-3909 in Skia and V8

Google addresses two high-severity Chrome zero-days, including CVE-2026-3909, exploited in the wild via Skia and V8. Learn how to secure your browser now.

Runtime Rebel Intel
4 min read · Mar 13, 2026
CRITICAL
Vulnerabilities

Chrome 146 Patch: Two Exploited Zero-Days CVE-2025-0672 and CVE-2025-0673

Google addresses two actively exploited vulnerabilities in Chrome 146. CVE-2025-0672 and CVE-2025-0673 allow data manipulation and remote code execution.

Runtime Rebel Intel
3 min read · Mar 13, 2026