Desktop Window Manager Core Library 10.0.10240.0 - Privilege Escalation
cyberintel.kalymoon.com · 46885 articles · updated every 4 hours · grows forever
Desktop Window Manager Core Library 10.0.10240.0 - Privilege Escalation
Windows Kernel - Elevation of Privilege
Fortinet FortiWeb v8.0.1 - Auth Bypass
is-localhost-ip 2.0.0 - SSRF
A vulnerability has been found in Mattermost Legal Hold Plugin up to 1.1.4 and classified as critical . Affected is an unknown function of the component API Handler . This manipulation causes missing …
A vulnerability was found in code-projects Online Hotel Booking 1.0 and classified as problematic . Affected by this vulnerability is an unknown functionality of the file /booknow.php of the component…
A viral video circulating in cybersecurity and crypto circles has exposed a novel and surprisingly simple technique for unmasking North Korean state-sponsored IT workers attempting to infiltrate Weste…
North Korea’s cyber program has fundamentally shifted how it builds and deploys malware. Rather than relying on one all-purpose hacking tool, the regime has assembled a fragmented ecosystem of purpose…
A new attack campaign is actively targeting open-source repositories on GitHub by carefully disguising malicious code as completely routine CI build configuration updates. The campaign, prt-scan explo…
The largest decentralized perpetual futures exchange on the Solana blockchain — became the target of a massive and well-orchestrated theft on April 1, 2026, Drift Protocol. Unknown attackers managed t…
A malicious Python package has been discovered on PyPI that disguises itself as a privacy-focused AI inference tool while quietly stealing sensitive user data in the background. Named hermes-px, the p…
DPRK-linked threat actors are preferring stealth over sophistication in targeting South Korean organizations, as researchers report the use of weaponized Windows shortcut ( .LNK ) files and GitHub-bas…
Malicious web content can be used to manipulate, deceive, and exploit autonomous AI agents navigating the internet, Google DeepMind researchers show. The researchers have identified six types of attac…
In recognition of 21 generative AI risks, the standards groups recommends that companies take separate but linked approaches to defending GenAI and agentic AI systems.
Medical professionals are not going to stop using AI tools to manage growing workloads. Organizations should prioritize bolstering security protocols to limit their blast radius.
An emerging threat cluster tracked as UAT-10608 is exploiting vulnerable Web-exposed Next.js apps and using an automated tool to exfiltrate credentials, secrets, and other system data.
The most active piece of enterprise infrastructure in the company is the developer workstation. That laptop is where credentials are created, tested, cached, copied, and reused across services, bots, …
This week had real hits. The key software got tampered with. Active bugs showed up in the tools people use every day. Some attacks didn’t even need much effort because the path was already there. One …
Your attack surface no longer lives on one operating system, and neither do the campaigns targeting it. In enterprise environments, attackers move across Windows endpoints, executive MacBooks, Linux i…
Infostealers are harvesting credentials and session cookies at scale, bypassing traditional defenses. Lunar explains why simple breach monitoring alone can't keep up with modern credential-based attac…
Security Systems Supercharged: 5 Critical AI Threat Detection Shifts in 2026 TechnoSports Media Group
White House Announces The 2026 Cyber Strategy For America Forrester
Daring to dangerously stunning: Every jaw-dropping Dinner Party look from MAFS 2026 9Now
MAFS 2026 Episode 36 Recap: Cameras catch Gia's devious plan to 'out-victim' Scott – as she returns to final Dinner Party 9Now