CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  47808 articles  ·  updated every 4 hours · grows forever

47808Total
32978Full Text
Aug 27, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34795 | Endian Firewall 3.3.25 Regular Expression /cgi-bin/logs_log.cgi open Date os command injection

A vulnerability, which was classified as critical , has been found in Endian Firewall 3.3.25 . This affects the function Open of the file /cgi-bin/logs_log.cgi of the component Regular Expression Hand…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34793 | Endian Firewall 3.3.25 Regular Expression logs_firewall.cgi open Date os command injection

A vulnerability, which was classified as critical , was found in Endian Firewall 3.3.25 . This impacts the function Open of the file /cgi-bin/logs_firewall.cgi of the component Regular Expression Hand…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34797 | Endian Firewall 3.3.25 Regular Expression /cgi-bin/logs_smtp.cgi open Date os command injection

A vulnerability has been found in Endian Firewall 3.3.25 and classified as critical . Affected is the function Open of the file /cgi-bin/logs_smtp.cgi of the component Regular Expression Handler . Per…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34801 | Endian Firewall 3.3.25 Parameter fixed_leases remark cross site scripting

A vulnerability was found in Endian Firewall 3.3.25 and classified as problematic . Affected by this vulnerability is an unknown functionality of the file /manage/dhcp/fixed_leases/ of the component P…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-34802 | Endian Firewall 3.3.25 Parameter /cgi-bin/salearn.cgi spam cross site scripting

A vulnerability was found in Endian Firewall 3.3.25 . It has been classified as problematic . Affected by this issue is some unknown functionality of the file /cgi-bin/salearn.cgi of the component Par…

VulDB Read →
◉ Threat Intelligence Apr 02, 2026
vSphere and BRICKSTORM Malware: A Defender's Guide

Written by: Stuart Carrera Introduction Building on recent BRICKSTORM research from Google Threat Intelligence Group (GTIG), this post explores the evolving threats facing virtualized environments. Th…

Mandiant Read →
◉ Threat Intelligence Apr 02, 2026
Latin America and the Caribbean Cybercrime Landscape

This report provides an overview of trends and developments in the cybercriminal ecosystem of Latin America and the Caribbean (LAC) in 2025.

Recorded Future Read →
◉ Threat Intelligence Apr 02, 2026
Attempts to Exploit Exposed "Vite" Installs (CVE-2025-30208), (Thu, Apr 2nd)

From its GitHub repo: "Vite (French word for "quick", pronounced /vi?t/, like "veet") is a new breed of frontend build tooling that significantly improves the frontend development experience" [https:/…

SANS ISC Read →
◇ Industry News & Leadership Apr 02, 2026
Microsoft Details Steps to Mitigate the Axios npm Supply Chain Compromise

A widely used JavaScript library called Axios was at the center of a serious supply chain attack that came to light on March 31, 2026. Two updated versions of the Axios npm package — version 1.14.1 an…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
NoVoice on Google Play with 22 Exploits Attacks Millions of Android Users

A dangerous Android rootkit named NoVoice has been hiding inside over 50 apps on Google Play, compromising more than 2.3 million devices worldwide. Tracked as Operation NoVoice, the malware uses 22 ex…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
CISA Warns of Chrome 0-Day Vulnerability Actively Exploited in Attacks

A critical warning has been issued over a newly discovered zero-day vulnerability in Google Chrome, raising serious concerns for users worldwide. This flaw is actively exploited in the wild, allowing …

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
Hackers Abuse DOCX, RTF, JS, and Python in Stealthy Boeing RFQ Malware Campaign

A seemingly routine procurement email has become the entry point for a sophisticated six-stage malware attack targeting industrial suppliers and procurement teams. The campaign, tracked as NKFZ5966PUR…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
OpenSSH 10.3 Fixes Shell Injection and Multiple SSH Security Issues

The OpenSSH project released version 10.3 and 10.3p1 on April 2, 2026, addressing a shell injection vulnerability and introducing several security-hardening changes that administrators should review b…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
Qilin Ransomware Uses Malicious DLL to Kill Almost Every Vendor’s EDR Solutions

Qilin ransomware group is deploying a sophisticated, multi-stage infection chain via a malicious msimg32.dll that can disable over 300 endpoint detection and response (EDR) drivers from virtually ever…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
GitHub Used as Covert Channel in Multi-Stage Malware Campaign

LNK files use GitHub C2, embedded decoders and PowerShell for persistence and data exfiltration

Infosecurity Magazine Read →
◇ Industry News & Leadership Apr 02, 2026
Researchers Observe Sub-One-Hour Ransomware Attacks

Halcyon says Akira is now capable of carrying out an entire ransomware attack in less than an hour

Infosecurity Magazine Read →
◇ Industry News & Leadership Apr 02, 2026
Apple Expands iOS 18 Security Updates Amid DarkSword Threat

iOS/iPadOS 18.7.7 updates expanded to protect older devices from DarkSword web exploit kit

Infosecurity Magazine Read →
◇ Industry News & Leadership Apr 02, 2026
NCSC Issues Security Alert Over Hackers Targeting WhatsApp and Signal Accounts

The UK’s cybersecurity agency offered advice to “high-risk’ individuals” on how to protect against social engineering and cyber-attacks

Infosecurity Magazine Read →
◇ Industry News & Leadership Apr 02, 2026
New 'Storm' Infostealer Remotely Decrypts Stolen Credentials

This modern infostealer adopted server-side decryption of stolen credentials to bypass security controls

Infosecurity Magazine Read →
◇ Industry News & Leadership Apr 02, 2026
EvilTokens abuses Microsoft device code flow for account takeovers

A new phishing-as-a-service (PhaaS) campaign is abusing Microsoft’s device code authentication flow to gain unauthorized access to user accounts. Sekoia researchers first spotted the toolkit “EvilToke…

CSO Online Read →
◇ Industry News & Leadership Apr 02, 2026
Cisco Patches Critical and High-Severity Vulnerabilities

The bugs could lead to authentication bypass, remote code execution, information disclosure, and privilege escalation. The post Cisco Patches Critical and High-Severity Vulnerabilities appeared first …

Security Week Read →
◇ Industry News & Leadership Apr 02, 2026
Cybersecurity M&A Roundup: 38 Deals Announced in March 2026

Significant cybersecurity M&A deals announced by Airbus, Cellebrite, Databricks, Quantum eMotion, Rapid7, and OpenAI. The post Cybersecurity M&A Roundup: 38 Deals Announced in March 2026 appeared firs…

Security Week Read →
◇ Industry News & Leadership Apr 02, 2026
Bank Trojan 'Casbaneiro' Worms Through Latin America

Augmented Marauder's multipronged banking-Trojan cyber campaigns are targeting Spanish speakers, evading detection, and replicating rapidly.

Dark Reading Read →
◇ Industry News & Leadership Apr 02, 2026
Geopolitics, AI, and Cybersecurity: Insights From RSAC 2026

AI-driven threats, global leadership shifts, and the future of cybersecurity in a rapidly evolving landscape were among the discussions at RSAC 2026 Conference.

Dark Reading Read →
← Prev 1598 / 1992 Next →