CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  42405 articles  ·  updated every 4 hours · grows forever

42405Total
30227Full Text
Aug 07, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6995 | BDCOM P3310D 0.4.2 10.1.0F Build 86345 New User Page /index.asp User name cross site scripting

A vulnerability was found in BDCOM P3310D 0.4.2 10.1.0F Build 86345 . It has been classified as problematic . The impacted element is an unknown function of the file /index.asp of the component New Us…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6996 | BDCOM P3310D 0.4.2 10.1.0F Build 86345 rmon event Tab Description cross site scripting

A vulnerability was found in BDCOM P3310D 0.4.2 10.1.0F Build 86345 . It has been declared as problematic . This affects an unknown function of the component rmon event Tab . Executing a manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6997 | BDCOM P3310D 0.4.2 10.1.0F Build 86345 New RMON History Page Owner cross site scripting

A vulnerability was found in BDCOM P3310D 0.4.2 10.1.0F Build 86345 . It has been rated as problematic . This impacts an unknown function of the component New RMON History Page . The manipulation of t…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6998 | BDCOM P3310D 0.4.2 10.1.0F Build 86345 New RMON Statistics Page Owner cross site scripting

A vulnerability categorized as problematic has been discovered in BDCOM P3310D 0.4.2 10.1.0F Build 86345 . Affected is an unknown function of the component New RMON Statistics Page . The manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6999 | BIVOCOM TR321 21.1.1.50 Wireless Setting Network Name SSID cross site scripting

A vulnerability identified as problematic has been detected in BIVOCOM TR321 21.1.1.50 . Affected by this vulnerability is an unknown functionality of the component Wireless Setting . This manipulatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-7000 | Datacom DM4100 1.3.6.1.4.1.3709 VLAN Page VLAN Name cross site scripting

A vulnerability labeled as problematic has been found in Datacom DM4100 1.3.6.1.4.1.3709 . Affected by this issue is some unknown functionality of the component VLAN Page . Such manipulation of the ar…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-7001 | Datacom DM4100 1.3.6.1.4.1.3709 Ethernet Configuration Page Name cross site scripting

A vulnerability marked as problematic has been reported in Datacom DM4100 1.3.6.1.4.1.3709 . This affects an unknown part of the component Ethernet Configuration Page . Performing a manipulation of th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-7002 | KLiK SocialMediaWebsite up to 1.0.1 Private Message get_message_ajax.php c_id sql injection

A vulnerability described as critical has been identified in KLiK SocialMediaWebsite up to 1.0.1 . This vulnerability affects unknown code of the file /includes/get_message_ajax.php of the component P…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-41475 | bacnet-stack BACnet Stack up to 1.4.2 WritePropertyMultiple Service wpm_decode_object_property out-of-bounds (GHSA-cvv4-v3g6-4jmv / EUVD-2026-25621)

A vulnerability classified as problematic has been found in bacnet-stack BACnet Stack up to 1.4.2 . This issue affects the function wpm_decode_object_property of the component WritePropertyMultiple Se…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-41502 | bacnet-stack BACnet Stack up to 1.4.2 ReadPropertyMultiple Service src/bacnet/rpm.c rpm_decode_object_id out-of-bounds (GHSA-7545-3fpx-4xw3 / EUVD-2026-25624)

A vulnerability classified as problematic was found in bacnet-stack BACnet Stack up to 1.4.2 . Impacted is the function rpm_decode_object_id of the file src/bacnet/rpm.c of the component ReadPropertyM…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-41503 | bacnet-stack BACnet Stack up to 1.4.2 ReadPropertyMultiple Service src/bacnet/rpm.c rpm_decode_object_property out-of-bounds (GHSA-5w2v-mwqj-pr2c / EUVD-2026-25625)

A vulnerability, which was classified as problematic , has been found in bacnet-stack BACnet Stack up to 1.4.2 . The affected element is the function rpm_decode_object_property of the file src/bacnet/…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-41476 | Deskflow up to 1.26.0.138 IClipboard.cpp ClipboardChunk::assemble buffer overflow (GHSA-3jp5-g964-cgmh / EUVD-2026-25622)

A vulnerability, which was classified as critical , was found in Deskflow up to 1.26.0.138 . The impacted element is the function ClipboardChunk::assemble in the library src/lib/deskflow/IClipboard.cp…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6966 | AWS tough/tuftool 0.22.0/up to 0.21 signature verification (EUVD-2026-25627)

A vulnerability has been found in AWS tough and tuftool 0.22.0/up to 0.21 and classified as problematic . This affects an unknown function. Performing a manipulation results in improper verification o…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6968 | AWS tough/tuftool prior 0.22.0 copy_target/link_target path traversal (EUVD-2026-25629)

A vulnerability was found in AWS tough and tuftool and classified as critical . This impacts the function copy_target/link_target . Executing a manipulation can lead to path traversal. This vulnerabil…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-6967 | AWS tough/tuftool up to 0.21.x load_delegations data authenticity (EUVD-2026-25628)

A vulnerability was found in AWS tough and tuftool up to 0.21.x . It has been classified as problematic . Affected is the function load_delegations . The manipulation leads to insufficient verificatio…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 25, 2026
CVE-2026-41477 | deskflow up to 1.20.0/1.26.0.134 missing authentication (GHSA-6rx5-g478-775c / EUVD-2026-25623)

A vulnerability was found in deskflow up to 1.20.0/1.26.0.134 . It has been declared as critical . Affected by this vulnerability is an unknown functionality. The manipulation results in missing authe…

VulDB Read →
◉ Threat Intelligence Apr 25, 2026
TGR-STA-1030: New Activity in Central and South America

Unit 42 research reports that TGR-STA-1030 remains an active threat, particularly in Central and South America. The post TGR-STA-1030: New Activity in Central and South America appeared first on Unit …

Palo Alto Unit 42 Read →
◉ Threat Intelligence Apr 25, 2026
The npm Threat Landscape: Attack Surface and Mitigations

Unit 42 analyzes npm supply chain evolution post-Shai Hulud. Discover wormable malware, CI/CD persistence, multi-stage attacks and more. The post The npm Threat Landscape: Attack Surface and Mitigatio…

Palo Alto Unit 42 Read →
◉ Threat Intelligence Apr 25, 2026
From Overwhelmed to Autonomous: Rethinking Threat Intelligence in 2026

For most security teams today, volume and access to intelligence isn’t the problem. It’s the speed at which they can turn that intelligence into action. .

Recorded Future Read →
◇ Industry News & Leadership Apr 25, 2026
CISA Hunts for Cisco Backdoor Spotted on Federal Network

'Firestarter' Backdoor Can Survive Reboots, Upgrades and Standard Fixes The Cybersecurity and Infrastructure Security Agency issued an emergency directive warning a newly-discovered Cisco backdoor can…

Data Breach Today Read →
◇ Industry News & Leadership Apr 25, 2026
Poor Risk Analysis Cost 4 Firms $1.7 Million in HIPAA Fines

HHS OCR Breach Investigators Again Find All-Too-Common Risk Analysis Failures Faulty or non-existent security risk analyses cost a medical imaging provider, a women's healthcare group, a health plan a…

Data Breach Today Read →
◇ Industry News & Leadership Apr 25, 2026
TekStream Targets Proactive Security With ImagineX Cyber Buy

Acquisition Adds Advisory, GRC and Vulnerability Services to ImagineX's MDR Core TekStream acquired ImagineX’s cyber division to integrate advisory, vulnerability management and GRC with its MDR servi…

Data Breach Today Read →
◇ Industry News & Leadership Apr 25, 2026
New US House privacy bills raise hard questions about enterprise data collection

US House Republicans have introduced two major privacy proposals that would reshape how US companies collect, process, and retain consumer data: the SECURE Data Act for general consumer privacy and th…

CSO Online Read →
◇ Industry News & Leadership Apr 25, 2026
Meta is overhauling how you sign in, manage settings, and protect your accounts

Meta Account gives users of Meta apps and devices a simpler way to access and manage their accounts. Accounts Center will automatically be updated to a Meta Account as part of a gradual rollout over t…

Help Net Security Read →
← Prev 1061 / 1767 Next →