Latest news

  1. Threat Intel via Palo Alto Networks Unit 42

    Atomic macOS (AMOS) Stealer Activity

    Modern macOS malware uses deceptive setup guides to steal credentials and sensitive user data. Learn how to identify and block these threats.

  2. Vulnerabilities via Infosecurity Magazine

    Zero-Day Flaw in TP-Link Cameras Enables Eavesdropping

    OPSWAT researchers find two zero-days in TP-Link cameras

  3. via Infosecurity Magazine

    Major Cyber Vendors Turn to New UK Testing Program as MITRE Evaluations Face Changes

    A group of cyber threat detection providers, including CrowdStrike, Palo Alto Networks and Sophos, have joined SE Labs’ PIVOT program

  4. AI Security via ESET WeLiveSecurity

    Cyberthreats are moving faster than SMBs: Readiness must accelerate

    As AI adoption expands the attack surface and adds to the security workload, businesses need automation backed by experts

  5. AI Security via Malwarebytes Labs

    AI helps scammers build convincing antivirus renewal pages

    Antivirus renewal scams often begin with a message claiming that your subscription has automatically renewed. When you follow the instructions to cancel it, you are…

  6. Threat Intel via Infosecurity Magazine

    NCSC and Allies Warn of Iranian Spyware Campaign

    The UK’s National Cyber Security Centre says Iranian Chosen Brick spyware is designed to snoop on dissidents

  7. Vulnerabilities via The Register

    Mythos has made 2026 patching hell. It might make 2027 a breeze

    When Microsoft delivered over 970 patches last week, many saw a nightmare for beleaguered security staff. Gartner research vice president Craig Lawson thinks infosec…

  8. Threat Intel via Group-IB

    The Adversary We Are Fighting Is Now a Full-Force Industry: Inside cybercrime’s new economy

    Attacks now are cheap, fast, and outsourced. The recent research shows what it changes and how organizations should strategy defense.

  9. Vulnerabilities via Zero Day Initiative

    ZDI-26-713: GIMP APNG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this vulnerability in…

  10. Vulnerabilities via Zero Day Initiative

    ZDI-26-712: NoMachine nxhtd Server-Side Request Forgery Information Disclosure Vulnerability

    This vulnerability allows remote attackers to initiate arbitrary server-side requests on affected installations of NoMachine. Authentication is not required to exploit…

  11. Vulnerabilities via Zero Day Initiative

    ZDI-26-711: NoMachine Redis Improper Authentication Local Privilege Escalation Vulnerability

    This vulnerability allows local attackers to escalate privileges on affected installations of NoMachine. An attacker must first obtain the ability to execute…

  12. Vulnerabilities via Zero Day Initiative

    ZDI-26-710: NoMachine mDNS Heap-based Buffer Overflow Remote Code Execution Vulnerability

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NoMachine. Authentication is not required to exploit this…

  13. Vulnerabilities via Zero Day Initiative

    ZDI-26-709: Cisco Secure Firewall Management Center CommandSinkRmi Deserialization of Untrusted Data Remote Code Execution Vulnerability

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cisco Secure Firewall Management Center. Authentication is not required…

  14. Vulnerabilities via Zero Day Initiative

    ZDI-26-708: (0Day) Microsoft Windows HTTP Proxy Privilege Escalation Vulnerability

    This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute…

  15. Vulnerabilities via Zero Day Initiative

    ZDI-26-707: (0Day) MindsDB OpenBBtable Code Injection Remote Code Execution Vulnerability

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of MindsDB. Authentication is required to exploit this vulnerability. The…

  16. Vulnerabilities via Zero Day Initiative

    ZDI-26-706: (0Day) CrewAI crewAI Framework Agent Loading Unsafe Reflection Remote Code Execution Vulnerability

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of CrewAI crewAI. User interaction is required to exploit this…

  17. Vulnerabilities via Zero Day Initiative

    ZDI-26-705: (0Day) BusyBox libarchive Symlink Directory Traversal Arbitrary File Creation Vulnerability

    This vulnerability allows remote attackers to create arbitrary files on affected installations of BusyBox. User interaction is required to exploit this vulnerability in…

  18. Vulnerabilities via Zero Day Initiative

    ZDI-26-704: (0Day) Airbyte OneDrive Connector _get_shared_drive_object Server-Side Request Forgery Information Disclosure Vulnerability

    This vulnerability allows remote attackers to initiate arbitrary server-side requests on affected installations of Airbyte. Authentication is required to exploit this…

  19. Vulnerabilities via Zero Day Initiative

    ZDI-26-703: (0Day) Airbyte SharePoint Connector _get_shared_drive_object Server-Side Request Forgery Information Disclosure Vulnerability

    This vulnerability allows remote attackers to initiate arbitrary server-side requests on affected installations of Airbyte. Authentication is required to exploit this…

  20. Threat Intel via SANS Internet Storm Center

    ISC Stormcast For Wednesday, September 16th, 2026 https://isc.sans.edu/podcastdetail/10096, (Wed, Sep 16th)

    (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.