CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  46520 articles  ·  updated every 4 hours · grows forever

46520Total
32384Full Text
Aug 22, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-39942 | Directus up to 11.16.x /files/ filename_disk access control (GHSA-393c-p46r-7c95)

A vulnerability classified as critical was found in Directus up to 11.16.x . Impacted is an unknown function of the file /files/ . Such manipulation of the argument filename_disk leads to improper acc…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-39943 | Directus up to 11.16.x information disclosure (GHSA-mvv8-v4jj-g47j)

A vulnerability, which was classified as problematic , has been found in Directus up to 11.16.x . The affected element is an unknown function. Performing a manipulation results in information disclosu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-30479 | OSGeo MapServer up to 7.x injection

A vulnerability, which was classified as critical , was found in OSGeo MapServer up to 7.x . The impacted element is an unknown function. Executing a manipulation can lead to injection. This vulnerabi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-30478 | GatewayGeo MapServer for Windows on Windows injection

A vulnerability has been found in GatewayGeo MapServer for Windows on Windows and classified as critical . This affects an unknown function. The manipulation leads to injection. This vulnerability is …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2025-70797 | LimeSurvey 6.15.20 Box[title]/box[url] cross site scripting

A vulnerability was found in LimeSurvey 6.15.20 and classified as problematic . This impacts an unknown function. The manipulation of the argument Box[title]/box[url] results in cross site scripting. …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-40071 | pyLoad up to 0.5.0b3.dev96 WebUI JSON Endpoint /json/package_order authorization

A vulnerability was found in pyLoad up to 0.5.0b3.dev96 . It has been classified as problematic . Affected is an unknown function of the file /json/package_order of the component WebUI JSON Endpoint .…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-40069 | sgbett bsv-ruby-sdk up to 0.8.1 Transaction BSV::Network txStatus unusual condition

A vulnerability was found in sgbett bsv-ruby-sdk up to 0.8.1 . It has been declared as problematic . Affected by this vulnerability is the function BSV::Network of the component Transaction Handler . …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-40070 | sgbett bsv-ruby-sdk/bsv-sdk/bsv-wallet prior 0.8.2 WalletClient signature verification

A vulnerability was found in sgbett bsv-ruby-sdk, bsv-sdk and bsv-wallet . It has been rated as critical . Affected by this issue is the function BSV::Wallet::WalletClient . Performing a manipulation …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-40072 | Ethereum web3.py up to 7.14.x/8.0.0b1 Backend Service eth_call/call offchain_lookup_payload["urls"] server-side request forgery

A vulnerability categorized as critical has been discovered in Ethereum web3.py up to 7.14.x/8.0.0b1 . This affects the function eth_call/call of the component Backend Service . Executing a manipulati…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-5329 | Rapid7 Velociraptor up to 0.74.6/0.75.6/0.76.1 Client Monitoring Message handler input validation

A vulnerability identified as critical has been detected in Rapid7 Velociraptor up to 0.74.6/0.75.6/0.76.1 . This vulnerability affects unknown code of the component Client Monitoring Message handler …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-39315 | unjs unhead up to 2.1.12 safe.ts useHeadSafe incomplete blacklist (GHSA-95h2-gj7x-gx9w)

A vulnerability labeled as critical has been found in unjs unhead up to 2.1.12 . This issue affects the function useHeadSafe of the file packages/unhead/src/plugins/safe.ts . The manipulation results …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-39911 | hashgraph guardian up to 3.5.0 Environment Variable exposure of resource

A vulnerability marked as critical has been reported in hashgraph guardian up to 3.5.0 . Impacted is an unknown function of the component Environment Variable Handler . This manipulation causes exposu…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-34941 | bytecodealliance wasmtime up to 24.0.6/36.0.6/42.0.1/44.0.0 out-of-bounds (GHSA-hx6p-xpx3-jvvv)

A vulnerability described as problematic has been identified in bytecodealliance wasmtime up to 24.0.6/36.0.6/42.0.1/44.0.0 . The affected element is an unknown function. Such manipulation leads to ou…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-34942 | bytecodealliance wasmtime up to 24.0.6/36.0.6/42.0.1/44.0.0 array index (GHSA-jxhv-7h78-9775)

A vulnerability classified as problematic has been found in bytecodealliance wasmtime up to 24.0.6/36.0.6/42.0.1/44.0.0 . The impacted element is an unknown function. Performing a manipulation results…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-35207 | linuxdeepin dde-control-center/deepin-deepinid-plugin prior 5.9.9/6.1.80 Deepinid Cloud Service certificate validation (GHSA-jf2h-4vqc-3jgc)

A vulnerability classified as critical was found in linuxdeepin dde-control-center and deepin-deepinid-plugin . This affects an unknown function of the component Deepinid Cloud Service . Executing a m…

VulDB Read →
◇ Industry News & Leadership Apr 09, 2026
Bug Management in the Mythos Era: 'Assume You're Unpatched'

Start Here: Strong Monitoring, Behavior-Based Controls, Virtual Patching Thanks to Anthropic's Mythos presaging a world in which zero-day exploits are common, one cybersecurity expert says the new man…

Data Breach Today Read →
◇ Industry News & Leadership Apr 09, 2026
Cryptohack Roundup: Bithumb's Recovery Plan

Also: Cambodia Moves to Combat Online Scam Networks Every week, ISMG rounds up cybersecurity incidents in digital assets. This week, Bithumb's recovery plan, Circle criticized, a new Cambodian law to …

Data Breach Today Read →
◇ Industry News & Leadership Apr 09, 2026
Who Controls AI on Battlefields - the Military or the Model?

Former DoD CIO Beavers on Ethics, Reliability and AI as a National Security Tool As AI is increasingly used in defense operations, a critical question emerges: Who controls the system - the military o…

Data Breach Today Read →
◇ Industry News & Leadership Apr 09, 2026
Cloudflare ‘actively adjusting’ quantum priorities in wake of Google warning

Google’s accelerated post-quantum encryption deadline has spurred other leaders in the industry, including Cloudflare, to consider pushing forward their own plans. The US National Institute of Standar…

CSO Online Read →
◇ Industry News & Leadership Apr 09, 2026
Mallory brings contextual threat intelligence to security operations

Mallory is launching an AI-native threat intelligence platform, purpose-built to answer the questions CISOs and their teams are asking every day: What are the real threat vectors for our organization?…

Help Net Security Read →
◇ Industry News & Leadership Apr 09, 2026
Claude helps researcher dig up decade-old Apache ActiveMQ RCE vulnerability (CVE-2026-34197)

In the latest demonstration of how AI assistants can help with bug hunting, Horizon3.ai researcher Naveen Sunkavally used Claude to unearth CVE-2026-34197, a remote code execution vulnerability in Apa…

Help Net Security Read →
◇ Industry News & Leadership Apr 09, 2026
113,000 explicit prompts from AI girlfriend platform exposed, many linked to user IDs

MyLovely.AI, an AI girlfriend platform, suffered a data breach that exposed over 100,000 users. MyLovely.AI allows people to create personalized not safe for work (NSFW) content and engage in real-tim…

Help Net Security Read →
◇ Industry News & Leadership Apr 09, 2026
Claude Managed Agents bring execution and control to AI agent workflows

Anthropic’s Claude Managed Agents are a suite of composable APIs for building and deploying cloud-hosted agents at scale, handling sandboxed code execution, checkpointing, credential management, scope…

Help Net Security Read →
◇ Industry News & Leadership Apr 09, 2026
Do Ceasefires Slow Cyberattacks? History Suggests Not

The cybersecurity community is waiting with bated breath to see if Iranian hackers will honor a ceasefire that doesn't actually name or directly involve them.

Dark Reading Read →
← Prev 1441 / 1939 Next →