CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  46541 articles  ·  updated every 4 hours · grows forever

46541Total
32388Full Text
Aug 22, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-5444 | Orthanc DICOM Server up to 1.12.10 PAM Image Parser integer overflow

A vulnerability labeled as critical has been found in Orthanc DICOM Server up to 1.12.10 . This vulnerability affects unknown code of the component PAM Image Parser . Executing a manipulation can lead…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-5439 | Orthanc DICOM Server up to 1.12.10 ZIP Archive size allocation of resources

A vulnerability marked as problematic has been reported in Orthanc DICOM Server up to 1.12.10 . This issue affects some unknown processing of the component ZIP Archive Handler . The manipulation of th…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-5441 | Orthanc DICOM Server up to 1.12.10 Image Parser DicomImageDecoder.cpp DecodePsmctRle1 out-of-bounds

A vulnerability described as problematic has been identified in Orthanc DICOM Server up to 1.12.10 . Impacted is the function DecodePsmctRle1 of the file DicomImageDecoder.cpp of the component Image P…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-5442 | Orthanc DICOM Server up to 1.12.10 DICOM Image Parser integer overflow

A vulnerability classified as critical has been found in Orthanc DICOM Server up to 1.12.10 . The affected element is an unknown function of the component DICOM Image Parser . This manipulation causes…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-5443 | Orthanc DICOM Server up to 1.12.10 DICOM Image Parser integer overflow

A vulnerability classified as critical was found in Orthanc DICOM Server up to 1.12.10 . The impacted element is an unknown function of the component DICOM Image Parser . Such manipulation leads to in…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-5445 | Orthanc DICOM Server up to 1.12.10 Image Parser DicomImageDecoder.cpp DecodeLookupTable out-of-bounds

A vulnerability, which was classified as problematic , has been found in Orthanc DICOM Server up to 1.12.10 . This affects the function DecodeLookupTable of the file DicomImageDecoder.cpp of the compo…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-33005 | Apache OpenMeetings up to 8.x FileWebService insufficient permissions or privileges

A vulnerability, which was classified as problematic , was found in Apache OpenMeetings up to 8.x . This impacts an unknown function of the component FileWebService . Executing a manipulation can lead…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-33266 | Apache OpenMeetings up to 8.x a one-way hash with a predictable salt

A vulnerability has been found in Apache OpenMeetings up to 8.x and classified as problematic . Affected is an unknown function. The manipulation leads to use of a one-way hash with a predictable salt…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 09, 2026
CVE-2026-34020 | Apache OpenMeetings up to 8.x REST Login Endpoint username/password information disclosure

A vulnerability was found in Apache OpenMeetings up to 8.x and classified as problematic . Affected by this vulnerability is an unknown functionality of the component REST Login Endpoint . The manipul…

VulDB Read →
◉ Threat Intelligence Apr 09, 2026
Intent redirection vulnerability in third-party SDK exposed millions of Android wallets to potential risk

A severe Android intent‑redirection vulnerability in a widely deployed SDK exposed sensitive user data across millions of apps. Microsoft researchers detail how the flaw works, why it matters, and how…

Microsoft Security Read →
◉ Threat Intelligence Apr 09, 2026
Investigating Storm-2755: “Payroll pirate” attacks targeting Canadian employees

Microsoft Incident Response – Detection and Response Team (DART) researchers observed an emerging, financially motivated threat actor, tracked as Storm-2755, compromising Canadian employee accounts to…

Microsoft Security Read →
◉ Threat Intelligence Apr 09, 2026
Third-Party Risk Is an Intelligence Operation. It's Time We Treated It Like One.

Recorded Future sees its inclusion in the 2026 Forrester Wave™ for Cybersecurity Risk Ratings Platforms as a reflection of a broader truth: the era of ratings-only vendor risk management is over.

Recorded Future Read →
◇ Industry News & Leadership Apr 09, 2026
Hackers Use Fake Security Software to Deliver LucidRook Malware in Taiwan Attacks

A newly identified malware called LucidRook has been spotted targeting organizations across Taiwan, hiding inside what appears to be legitimate security software. The attackers went out of their way t…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 09, 2026
New STX RAT Uses Hidden Remote Desktop and Infostealer Features to Evade Detection

A newly discovered remote access trojan called STX RAT has emerged as a serious cybersecurity threat in 2026, combining hidden remote desktop access with credential-stealing features to quietly compro…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 09, 2026
Hackers Use ClickFix and Malicious DMG Files to Deliver notnullOSX on macOS

A new macOS info-stealer named notnullOSX has surfaced, targeting crypto holders with wallets above $10,000. Written in Go, it uses two parallel attack paths — ClickFix social engineering and maliciou…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 09, 2026
New ClickFix Campaign Uses macOS Script Editor to Deliver Atomic Stealer

A newly discovered ClickFix campaign is targeting macOS users through a technique that completely bypasses Terminal, using Script Editor to drop the Atomic Stealer infostealer onto compromised systems…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 09, 2026
Bitcoin Depot Reports $3.6m Crypto Theft After System Breach

Bitcoin Depot has disclosed a cyber-attack that led to the theft of more than 50 Bitcoin, worth $3.66m, after hackers accessed its internal systems

Infosecurity Magazine Read →
◇ Industry News & Leadership Apr 09, 2026
STX RAT Targets Finance Sector With Advanced Stealth Tactics

STX RAT, a newly identified remote access trojan, attempted deployment in finance, showing advanced C2 and stealthy delivery methods

Infosecurity Magazine Read →
◇ Industry News & Leadership Apr 09, 2026
Weak at the seams

Before I ever held a security title, I was a software engineer implementing vertically integrated automation systems for industrial manufacturing, warehouse-scale conveyor networks, robotic material h…

CSO Online Read →
◇ Industry News & Leadership Apr 09, 2026
Google API Keys in Android Apps Expose Gemini Endpoints to Unauthorized Access

Dozens of such keys can be extracted from apps’ decompiled code to gain access to all Gemini endpoints. The post Google API Keys in Android Apps Expose Gemini Endpoints to Unauthorized Access appeared…

Security Week Read →
◇ Industry News & Leadership Apr 09, 2026
Can we Trust AI? No – But Eventually We Must

From hallucinations and bias to model collapse and adversarial abuse, today’s AI is built on probability rather than truth, yet enterprises are deploying it at speed without fully understanding the ri…

Security Week Read →
◇ Industry News & Leadership Apr 09, 2026
Apple Intelligence AI Guardrails Bypassed in New Attack

RSAC researchers hacked Apple Intelligence using the Neural Exect method and Unicode manipulation. The post Apple Intelligence AI Guardrails Bypassed in New Attack appeared first on SecurityWeek .

Security Week Read →
◇ Industry News & Leadership Apr 09, 2026
ThreatsDay Bulletin: Hybrid P2P Botnet, 13-Year-Old Apache RCE and 18 More Stories

Thursday. Another week, another batch of things that probably should've been caught sooner but weren't. This one's got some range — old vulnerabilities getting new life, a few "why was that even possi…

The Hacker News Read →
◇ Industry News & Leadership Apr 09, 2026
Webinar: From noise to signal - What threat actors are targeting next

Threat actors often signal their intentions before launching attacks, from dark web chatter to access-broker listings and credential requests. Join our upcoming webinar with Flare Systems to learn how…

Bleeping Computer Read →
← Prev 1445 / 1940 Next →