Latest news
-
Vulnerabilities via Microsoft Security Response Center
CVE-2026-69719 Microsoft Office Word Information Disclosure Vulnerability
Microsoft is announcing the availability of the security updates for Microsoft Office for Mac. Customers running affected Mac software should install the update for…
-
Vulnerabilities via Microsoft Security Response Center
CVE-2026-69739 Microsoft Office Information Disclosure Vulnerability
Microsoft is announcing the availability of the security updates for Microsoft Office for Mac. Customers running affected Mac software should install the update for…
-
Vulnerabilities via Microsoft Security Response Center
CVE-2026-69759 Microsoft Office Word Remote Code Execution Vulnerability
Microsoft is announcing the availability of the security updates for Microsoft Office for Mac. Customers running affected Mac software should install the update for…
-
Vulnerabilities via Microsoft Security Response Center
CVE-2026-69767 Microsoft Office PowerPoint Remote Code Execution Vulnerability
Microsoft is announcing the availability of the security updates for Microsoft Office for Mac. Customers running affected Mac software should install the update for…
-
Vulnerabilities via Microsoft Security Response Center
CVE-2026-78510 Microsoft Outlook and Word Remote Code Execution Vulnerability
Microsoft is announcing the availability of the security updates for Microsoft Office for Mac. Customers running affected Mac software should install the update for…
-
via Infosecurity Magazine
CISA Urges Critical Infrastructure to Plant Decoys Inside Networks
CISA released guidance on using cyber decoys to detect & disrupt malicious activity inside networks
-
Threat Intel via Huntress
Operational Resilience: Turning Your IR Plan Into a Resilient Team
An incident response plan only works if it’s tested. Learn the 5 pillars of operational resilience and how to turn your plan into muscle memory before an attack hits.
-
Vulnerabilities via Qualys
CISA Warns of Cisco Identity Services Engine Authentication Bypass Vulnerability (CVE-2026-76460)
Cisco released security updates to address a critical severity vulnerability in Cisco Identity Services Engine. Tracked as CVE-2026-76460, successful exploitation of the…
-
Threat Intel via CyberScoop
Authorities seize popular, long-running DDoS-for-hire service domains
Authorities seized the primary domain and other websites linked to NightmareStresser, one of the longest-running and most popular distributed denial-of-service…
-
Breaches via Help Net Security
Iranian strikes on AWS facilities left customer data beyond recovery in Bahrain, UAE
Six months after Iranian drone strikes tore through its Middle East infrastructure, Amazon Web Services (AWS) has acknowledged the permanent loss of customer data in…
-
Threat Intel via Kaspersky Securelist
The Odyssey and trojans again: MovieReaper attacks users in multiple countries via compromised torrents
Introduction Torrent trackers have long been abused for distributing malicious software, disguised as popular films, games, and other content. Our previous research has…
-
Breaches via Bishop Fox
MikroTrick: Inside the RouterOS Takeover Chain
Attackers were exploiting MikroTik routers before fixes went public. Bishop Fox reproduced the full unauthenticated takeover chain, found persistence artifacts on real…
-
Threat Intel via Infosecurity Magazine
New Chinese-Made ‘RatHat’ Android Malware Leverages AI to Steal Financial Data
Researchers at Zimperium have uncovered a new Android malware strain, dubbed RatHat, with spyware and backdoor capabilities
-
Ransomware via Huntress
Ready, Settra, Go: New Settra Ransomware Variant Deploys MeshAgent RMM
Huntress has recently seen two incidents involving Settra, a ransomware variant that was first publicly reported in June 2026.
-
Vulnerabilities via SOCRadar
CVE-2026-76460: Cisco ISE Flaw Actively Exploited
CVE-2026-76460: Cisco ISE Flaw Actively Exploited CVE-2026-76460 represents a critical security flaw in Cisco’s Identity Services Engine (ISE) and ISE Passive Identity…
-
Vulnerabilities via The Register
Cisco drops another exploited zero-day, this time a perfect 10
Cisco admins who have spent their week patching email gateways now face a perfect-10 Identity Services Engine flaw under active attack. Cisco disclosed CVE-2026-76460 on…
-
Vulnerabilities via The Hacker News
Critical Unbound DNSSEC Validator Flaw Could Allow RCE via a Malicious DNS Zone
Every release of the Unbound DNS resolver before 1.26.1 has a critical heap overflow in its DNSSEC validator, maintainer NLnet Labs said in an advisory on Wednesday. An…
-
via Infosecurity Magazine
Cyber Essentials Has Record Year but Takeup Remains Low
New government figures reveal a 20% annual increase in certifications
-
Vulnerabilities via CISA
ABB Ability Edgenius
View CSAF Summary ABB is aware of public reports of a vulnerability CVE‑2026‑31431 (Copy Fail) in the product versions listed as affected in the advisory. An update is…
-
Vulnerabilities via CISA
Mitsubishi Electric CC-Link IE TSN Communication Protocol (Update A)
View CSAF Summary Successful exploitation of this vulnerability could allow an attacker with access to the same network segment to tamper with communication data in the…
