Threat Intelligence Feed
150 articles
🔎
No articles match your filters.
darkreading
25/09/2026, 02:34:03
NEW
'Salesbleed' Exploits Salesforce Agents to Enable Slack Phishing
BleepingComputer
25/09/2026, 02:23:35
NEW
MacSync malware uses public iCloud calendars to deliver new payloads
Security Affairs
25/09/2026, 02:20:17
NEWHigh
Ryuk Member Karen Vardanyan Sentenced to Two Years in U.S. Prison
BleepingComputer
25/09/2026, 01:40:48
NEW
New Carbonato malware uses AI agents to hijack exposed Docker hosts
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
25/09/2026, 00:28:54
SCOUTz Prospect Intelligence Platform Launches for MSPs with 30-Day Beta
Security Affairs
24/09/2026, 23:46:27
CVE-2026-86060Critical
AI Helps Uncover MikroTrick Attack Chain in MikroTik RouterOS
The Hacker News
24/09/2026, 23:22:43
ThreatsDay: AI Search Poisoning, AI Coding Tool Leaking Repos, One-Click Code Execution and 13 More Stories
Cyber Security News
24/09/2026, 23:18:12
Researchers Found a New Way to Break RSA that Doesn’t Require Factoring the Key
BleepingComputer
24/09/2026, 23:17:44
Exposed GitLab project email addresses let attackers push code
SecurityWeek
24/09/2026, 21:22:00
Kontext Security Emerges With $4 Million for AI Agent Runtime Controls
The Hacker News
24/09/2026, 20:57:32
Placeholder third-party[.]com Referenced Across 1,700+ Repositories Now Serves Malicious Content
SOC Prime
24/09/2026, 20:28:13
Measuring MITRE ATT&CK detection coverage: what the percentage counts and what it hides
SOC Prime
24/09/2026, 20:27:33
Free vs. Curated Detection Rules: What Actually Changes When You Pay
SOC Prime
24/09/2026, 20:25:26
Multi-Tenant Detection Operations for MSSP and MDR Providers
darkreading
24/09/2026, 20:14:12
High
3 Cyber Threats That Defined the Summer of 2026
The Hacker News
24/09/2026, 19:59:06
Hacked Ukrainian Sites Serve Fake Cloudflare ClickFix Lures for Psychedelic Stealer
Cyber Security News
24/09/2026, 19:09:18
Fake PDF Files Hide Konni Malware Campaign Targeting Ukraine Organizations
Kimsuky
BleepingComputer
24/09/2026, 18:57:57
Critical
Hackers now exploit critical Roundcube flaw in code injection attacks
SOC Prime
24/09/2026, 18:55:46
CVE-2026-94545Critical
CVE-2026-94545: Critical Next.js ImageResponse Flaw Enables Remote Code Execution
SOC Prime
24/09/2026, 18:49:13
Cribl LogTotal Sanitizer: Pseudonymize Sensitive Log Data Inside Cribl Stream
darkreading
24/09/2026, 18:30:00
Prompt-Injection Bug Hits $4B Agentic AI App 'Manus'
SecurityWeek
24/09/2026, 18:18:14
AI-Powered Campaign Targets Hundreds of Online Retailers
Cyber Security News
24/09/2026, 17:37:32
AvisLoader Windows Malware That Learned to Survive Even After Its Servers Are Taken Down
All CISA Advisories
24/09/2026, 17:30:00
CVE-2026-7891
Siemens Mendix Runtime (Update A)
All CISA Advisories
24/09/2026, 17:30:00
CVE-2026-5430Critical
CISA Adds Two Known Exploited Vulnerabilities to Catalog
The Hacker News
24/09/2026, 16:30:00
Secrets Sprawl Is an Identity Problem That AI Just Made Impossible to Ignore
BleepingComputer
24/09/2026, 16:12:37
High
CISA: Ransomware gangs now exploiting critical TeamCity flaw
SecurityWeek
24/09/2026, 16:10:40
CVE-2026-28324High
SolarWinds Patches Critical RCE Flaws in Observability Self-Hosted
Security Affairs
24/09/2026, 16:01:52
OpenAI Agent Bypassed an Australian Government Health Portal During Internal Research
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
24/09/2026, 15:26:01
CVE-2026-48842Critical
Roundcube Webmail Flaw Lets Attackers Trigger SQL Injection Without Authentication
BleepingComputer
24/09/2026, 15:08:53
OpenAI hacked Australian Medicare govt site, probed data providers
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
24/09/2026, 15:04:36
Operation Conflict Compass Deploys VelvetCake PowerShell Malware Through Malicious LNK Files
The Hacker News
24/09/2026, 14:44:21
17,000 URLs Reveal How ClickFix Turns Trusted Websites Into Malware Traps: Report by CTM360
SecurityWeek
24/09/2026, 14:08:29
High
US Court Sentences Armenian Man to Prison for Ryuk Ransomware Attacks
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
24/09/2026, 14:06:41
New Windows Malware Built to Survive Takedowns With a Hidden P2P Command Network
Cyber Security News
24/09/2026, 13:38:44
High
New Galago Ransomware Operation Emerges With Links to Panzer Group
Cyber Security News
24/09/2026, 13:31:49
OpenAI Agent Hacked Australian Government Medicare Portal in World’s First Rogue AI Breach
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
24/09/2026, 13:25:06
Microsoft Rebuilds the SOC With AI Agents to Fight Machine-Speed Cyberattacks
Cyber Security News
24/09/2026, 13:07:03
CVE-2026-48842Critical
Roundcube Webmail SQL Injection Vulnerability Exploited in the Wild
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
24/09/2026, 12:51:59
RemControl Android Malware Targets 30+ Banking Apps to Steal PINs and Credentials
Play
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
24/09/2026, 12:38:28
CVE-2026-68490
cPanel Permissions Flaw Allows Local Users to Read Other Accounts’ Calendar Data
The Hacker News
24/09/2026, 12:02:03
TeamFiltration Campaign Compromises Seven Microsoft 365 Accounts Using Default Passwords
SANS Internet Storm Center, InfoCON: green
24/09/2026, 11:55:06
One URL, Three Different Tricks, (Thu, Sep 24th)
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
24/09/2026, 11:36:25
High
New Galago Ransomware Operation Emerges With Links to Panzer Extortion Group
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
24/09/2026, 11:27:33
GitLab Email Token Lets Attackers Push Code to Main and Execute CI/CD Jobs
The Hacker News
24/09/2026, 11:06:18
CVE-2026-87902High
Attackers Exploit WordPress CVE-2026-87902 Within Hours of Disclosure
BleepingComputer
24/09/2026, 04:16:01
Placeholder domain used in dev docs now serves ClickFix attacks
BleepingComputer
24/09/2026, 02:55:13
New RemControl Android banking malware targets users in Europe and Canada
darkreading
24/09/2026, 02:23:38
GitLab Email Addresses Can Be Weaponized for Supply Chain Attacks
BleepingComputer
24/09/2026, 00:01:22
CVE-2026-87902
Hackers start exploiting critical WordPress flaw for code execution
Security Affairs
23/09/2026, 23:42:15
CVE-2026-94127Critical
F5 BIG-IP APM Zero-Day Exploited in Zero-Day RCE Attacks
The Hacker News
23/09/2026, 23:36:30
Attackers Use Malicious Terraform Providers to Deliver Go Malware via HashiCorp Registry
The Hacker News
23/09/2026, 22:23:10
A Leaked GitLab Issue Email Address Lets Anyone Push Code and Run CI Jobs as You
BleepingComputer
23/09/2026, 21:50:54
Malicious AI agents steal 600K credit cards, infect 100+ sites with skimmers
SANS Internet Storm Center, InfoCON: green
23/09/2026, 21:44:37
Macfinger ClickFix campaign, (Tue, Sep 22nd)
The Hacker News
23/09/2026, 21:36:41
CVE-2026-67279
MikroTrick Chain Let Attackers Take Over MikroTik Routers Without a Password or SSH Key
darkreading
23/09/2026, 21:31:00
UAE, Saudi Arabia Face Onslaught of Increasingly Complex Cyberattacks
SOC Prime
23/09/2026, 21:18:59
CVE-2026-87902Critical
CVE-2026-87902: Critical WordPress Core Flaw Enables Unauthenticated RCE Under Certain Conditions
SOC Prime
23/09/2026, 21:02:13
CVE-2026-94127Critical
CVE-2026-94127: Critical F5 BIG-IP APM Zero-Day Exploited for Remote Code Execution
darkreading
23/09/2026, 20:17:09
Attackers Manipulate AI Chatbots in Mass Disinformation, Phishing Campaign
BleepingComputer
23/09/2026, 20:05:26
Critical
InfraTrust report warns network management systems under attack
The Hacker News
23/09/2026, 19:47:58
This Windows Malware is Built to Let Up to Four AI Models Vote on Its Next Move
Security Affairs
23/09/2026, 19:26:02
CVE-2026-46817Critical
ShinyHunters claims FBI breach after alleged PeopleSoft zero-day attack
Clop
All CISA Advisories
23/09/2026, 17:30:00
Considerations for Critical Infrastructure Operators Working With Third-Party ICS Integrators
The Hacker News
23/09/2026, 16:42:18
CVE-2026-80521
Exploit Released for Unpatched Ubuntu Linux Flaw Enabling Host-Root Container Escape
Security Affairs
23/09/2026, 16:30:31
EvilTokens made phishing-as-a-service look easy. Then it got taken down
The Hacker News
23/09/2026, 13:59:48
CVE-2026-94127Critical
F5 Patches Critical BIG-IP APM Zero-Day Exploited for Unauthenticated RCE on OAuth Servers
The Hacker News
23/09/2026, 13:59:24
CVE-2026-85046Critical
Chinese Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy CLEANGULP Malware
Security Affairs
23/09/2026, 13:55:27
Fake LastPass on GitHub Led to an Infostealer That Killed 145 Security Tools
Security Affairs
23/09/2026, 13:06:14
CVE-2026-87902High
CVE-2026-87902: how close is your WordPress to remote code execution?
The Hacker News
23/09/2026, 12:34:40
Critical Next.js ImageResponse Flaw Can Lead to Server Code Execution via Crafted SVG Input
darkreading
23/09/2026, 01:29:24
Deception by Design: CISA's Guide to Tricking Cybercriminals
SANS Internet Storm Center, InfoCON: green
23/09/2026, 00:36:15
The Truth about GET and HTTP Standards, (Tue, Sep 22nd)
The Hacker News
22/09/2026, 23:59:39
CVE-2026-93616Critical
Check Point Warns of Management Server Zero-Day Exploited in Targeted Attacks
The Hacker News
22/09/2026, 23:33:10
WordPress Issues Patch for Critical Flaw That Can Enable Code Execution on Some Servers
The Hacker News
22/09/2026, 22:33:31
Microsoft Takes Down EvilTokens Device-Code Phishing Service Tied to 12,000 Inbox Compromises
The Hacker News
22/09/2026, 22:11:12
CVE-2026-90898High
Critical Bifrost AI Gateway Flaw Lets Attackers Run Commands Without Credentials
The Hacker News
22/09/2026, 21:44:04
Critical
Researcher Drops BigDiskBuster Zero-Day PoC That Blocks Microsoft Defender Updates
SANS Internet Storm Center, InfoCON: green
22/09/2026, 18:40:20
LausivLoader analysis, or how to pass data between malware stages, (Thu, Sep 17th)
The Hacker News
22/09/2026, 18:00:00
AI Agents Are Rewriting the Rules of Lateral Movement
All CISA Advisories
22/09/2026, 17:30:00
CVE-2026-89207High
Siemens WTV676 and WTV776
All CISA Advisories
22/09/2026, 17:30:00
CVE-2026-87121
lwIP TCP/IP Stack MQTT Client Application
All CISA Advisories
22/09/2026, 17:30:00
CVE-2026-31431
Siemens SIPLUS and SIMATIC Products
All CISA Advisories
22/09/2026, 17:30:00
CVE-2026-67367High
Siemens SIMOVE Fleetmanager and SIPLANT
All CISA Advisories
22/09/2026, 17:30:00
CVE-2026-18963High
Siemens Industrial Edge Management
The Hacker News
22/09/2026, 17:15:00
DORA Year Two: Can Your SOC Actually See the Attack?
The Hacker News
22/09/2026, 17:08:40
CVE-2026-89775
New Linux Kernel Flaw Gives ARM64 KVM Guests Read-Write Access to Host Memory
The Hacker News
22/09/2026, 16:47:41
CVE-2026-65660High
SharePoint Flaw Initially Listed as Spoofing by Microsoft Enables Authenticated RCE
darkreading
22/09/2026, 15:52:37
Shai-Hulud Attack Nips Cyber-Firm CrowdSec's GitHub Data
The Hacker News
22/09/2026, 15:08:18
Malicious npm Package indexed-btree Hid Its Loader in Runtime Code Before Removal
The Hacker News
22/09/2026, 12:03:57
One Hidden Meta Muse Setting Could Let Attackers Turn the AI Assistant Into a Backdoor
The Hacker News
22/09/2026, 11:33:14
CVE-2026-93485High
WordPress Comment2Shell Flaw Can Turn Anonymous Comment XSS Into RCE via Admin Session
The Hacker News
22/09/2026, 11:01:59
CVE-2026-7273Critical
Zyxel and Veeam Flaws Under Active Exploitation With Command and SYSTEM Access
Proofpoint News Feed
22/09/2026, 11:00:00
Proofpoint Stops the Attacks Traditional Defenses Miss in the AI Era
Check Point Research
22/09/2026, 04:43:07
CVE-2026-91843High
21st September – Threat Intelligence Report
security - Ars Technica
22/09/2026, 03:54:38
Critical
Muse, Meta's extraordinarily privileged AI assistant, has a serious 0-day
darkreading
22/09/2026, 00:41:26
Cybercriminals Are Hiding New Malware in Torrents for Popular Films
The Hacker News
21/09/2026, 19:54:13
Critical
⚡ Weekly Recap: Cisco 0-Day, AI Agent RCE, ClickFix Attacks, ClickFix Surge, and Browser Hijacks
The Hacker News
21/09/2026, 19:45:40
TASK#STOMP PowerShell Backdoor Steals Documents, Wi-Fi Passwords, and Clipboard Data
All CISA Advisories
21/09/2026, 17:30:00
CVE-2026-7273Critical
CISA Adds One Known Exploited Vulnerability to Catalog
SANS Internet Storm Center, InfoCON: green
21/09/2026, 16:03:53
TerminalFix: PNG Steganography, (Mon, Sep 21st)
The Hacker News
21/09/2026, 14:09:38
ClickFix Lures Deploy ChainScript RAT Using Polygon to Rotate C2 Infrastructure
The Hacker News
21/09/2026, 11:36:44
Jade Sleet Linked to Indian IT Provider Breach With FLATROOF and ROOFDECK Backdoors
Elastic Security Labs
21/09/2026, 05:30:00
Cloud Threat Emulation on Autopilot: Context is Everything
Play
The Hacker News
20/09/2026, 00:06:53
Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws
The Hacker News
19/09/2026, 18:58:48
Can You Prove a New CVE Is Exploitable Before Attackers Do? Learn How in This Webinar
The Hacker News
19/09/2026, 15:01:17
CVE-2026-28326High
SolarWinds Patches ARM Hard-Coded Key Flaw Enabling Unauthenticated RCE
SANS Internet Storm Center, InfoCON: green
19/09/2026, 10:21:46
Critical
HTTP QUERY Method: The Grey Zone Between GET And POST., (Fri, Sep 18th)
darkreading
19/09/2026, 01:54:51
Vectra AI Launches Ascent to Help Address New Era of AI-Driven Attacks
darkreading
19/09/2026, 00:56:47
CVE-2026-76460Critical
Cisco Zero-Day Highlights API Endpoint Authentication Issues
All CISA Advisories
18/09/2026, 17:30:00
CVE-2025-39964Critical
CISA Adds Two Known Exploited Vulnerabilities to Catalog
All CISA Advisories
18/09/2026, 17:30:00
CVE-2025-39682Critical
CISA Adds One Known Exploited Vulnerability to Catalog
darkreading
18/09/2026, 12:30:00
AI Agent Breaches Spanish Organization, Modifies Personal Data
Elastic Security Labs
18/09/2026, 05:30:00
Medium
One SOC, 100 projects: running centralized alert triage on Elastic Security Serverless
Unit 42
18/09/2026, 03:30:33
Inside the Modern SOC: Defending the Cross-Environment Pivot
darkreading
18/09/2026, 00:45:38
China's FamousSparrow APT Spies on US Politics in Latin America
Check Point Research
17/09/2026, 20:11:15
Critical
AI Threat Landscape Digest: July–August 2026
All CISA Advisories
17/09/2026, 17:30:00
CVE-2026-13584
Mitsubishi Electric CC-Link IE TSN Communication Protocol (Update A)
All CISA Advisories
17/09/2026, 17:30:00
CVE-2026-15688
Mitsubishi Electric GX Works3 and Motion Control Settings
All CISA Advisories
17/09/2026, 17:30:00
CVE-2024-4872
Hitachi Energy FACTS Control Platform (FCP)
Blog
17/09/2026, 10:30:00
CrowdStrike SafeMind: When the Best Offense Builds the Best Defense
darkreading
16/09/2026, 22:13:37
BragJack Attack Can Turn a Browser's Agentic AI Against It
All CISA Advisories
16/09/2026, 17:30:00
CVE-2026-76460Critical
CISA Adds Two Known Exploited Vulnerabilities to Catalog
All CISA Advisories
16/09/2026, 17:30:00
Using Cyber Decoys to Strengthen Detection and Response
All CISA Advisories
16/09/2026, 17:30:00
CVE-2026-58704Critical
CISA Adds One Known Exploited Vulnerability to Catalog
SentinelLabs - We are hunters, reversers, exploit developers, and tinkerers shedding light on the world of malware, exploits, APTs, and cybercrime across all platforms.
16/09/2026, 15:30:34
High
Agents at Large | Tracing Illicit OpenAI Agent Activity on Hugging Face
Blog
16/09/2026, 10:30:00
CrowdStrike Accelerates Real-Time Data Classification with On-Device AI
darkreading
16/09/2026, 06:30:00
Cyber Op Targets South Korean Media & Automotive Sectors
darkreading
15/09/2026, 22:15:37
VectraRAT Can Hack Windows Enterprises for $250 per Month
Seqrite Labs
15/09/2026, 16:37:26
What Are the Best Digital Risk Protection Services in 2026
darkreading
15/09/2026, 03:07:28
'Sandworm' Chains Cisco Vulnerabilities to Deploy Cyclops Blink
Sandworm
darkreading
15/09/2026, 01:49:22
CVE-2026-85706
Maximum Severity GitLab Flaw Puts Supply Chains at Risk
Check Point Research
14/09/2026, 17:52:06
CVE-2026-72898Critical
14th September – Threat Intelligence Report
darkreading
11/09/2026, 23:57:28
Critical
SpiderSilk Hunts External Threats With AI-Based Scanner
darkreading
11/09/2026, 21:18:27
Papercut AI Swarm Attack Heralds Changes for Cyber Kill Chain
darkreading
11/09/2026, 06:30:00
Indonesia Hit by Android Banking App-Cloning Campaign
Elastic Security Labs
11/09/2026, 05:30:00
CVE-2026-64600Medium
Linux Detection Engineering - Local Privilege Escalation
Play
darkreading
11/09/2026, 02:06:03
Voice Callers Exploit BYOD to Reach Microsoft 365, Corporate Data
darkreading
10/09/2026, 20:59:12
Critical
Nightmare-Eclipse Strikes Again With 'ShieldCrash' Windows Exploit
Cyble
10/09/2026, 16:15:47
From Infostealer Log to Marketplace Listing: A Technical Walkthrough of the Credential Theft Pipeline
Unit 42
10/09/2026, 15:30:43
The Machine With Many Faces: Post-Exploitation Identity Misuse in SPIFFE/SPIRE