CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  47865 articles  ·  updated every 4 hours · grows forever

47865Total
33005Full Text
Aug 27, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-32145 | gleam-wisp up to 2.2.1 multipart_body allocation of resources

A vulnerability was found in gleam-wisp wisp up to 2.2.1 and classified as problematic . Affected is the function multipart_body . Such manipulation leads to allocation of resources. This vulnerabilit…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-33614 | MB connect line mbCONNECT24/mymbCONNECT24 up to 2.19.4 Getinfo Endpoint sql injection (VDE-2026-030)

A vulnerability was found in MB connect line mbCONNECT24 and mymbCONNECT24 up to 2.19.4 . It has been classified as critical . Affected by this vulnerability is an unknown functionality of the compone…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-33615 | MB connect line mbCONNECT24/mymbCONNECT24 up to 2.19.4 Setinfo Endpoint sql injection (VDE-2026-030)

A vulnerability was found in MB connect line mbCONNECT24 and mymbCONNECT24 up to 2.19.4 . It has been declared as critical . Affected by this issue is some unknown functionality of the component Setin…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-33616 | MB connect line mbCONNECT24/mymbCONNECT24 up to 2.19.4 mb24api Endpoint sql injection (VDE-2026-030)

A vulnerability was found in MB connect line mbCONNECT24 and mymbCONNECT24 up to 2.19.4 . It has been rated as critical . This affects an unknown part of the component mb24api Endpoint . The manipulat…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-33617 | MB connect line mbCONNECT24/mymbCONNECT24 up to 2.19.4 Configuration File exposure of sensitive system information to an unauthorized control sphere (VDE-2026-030)

A vulnerability categorized as problematic has been discovered in MB connect line mbCONNECT24 and mymbCONNECT24 up to 2.19.4 . This vulnerability affects unknown code of the component Configuration Fi…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-5417 | Dataease SQLbot up to 1.6.0 Elasticsearch es_engine.py get_es_data_by_http address server-side request forgery

A vulnerability identified as critical has been detected in Dataease SQLbot up to 1.6.0 . This issue affects the function get_es_data_by_http of the file backend/apps/db/es_engine.py of the component …

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-5418 | appsmithorg appsmith up to 1.97 Dashboard WebClientUtils.java computeDisallowedHosts server-side request forgery (GHSA-9m89-5jw7-q5cr)

A vulnerability labeled as critical has been found in appsmithorg appsmith up to 1.97 . Impacted is the function computeDisallowedHosts of the file app/server/appsmith-interfaces/src/main/java/com/app…

VulDB Read →
⬡ Vulnerabilities & CVEs Apr 02, 2026
CVE-2026-5420 | Shinrays Games Goods Triple App up to 1.200 cats.goods.sort.sorting.games jRwTX.java AES_IV/AES_PASSWORD hard-coded key

A vulnerability marked as problematic has been reported in Shinrays Games Goods Triple App up to 1.200 . The affected element is an unknown function of the file jRwTX.java of the component cats.goods.…

VulDB Read →
◇ Industry News & Leadership Apr 02, 2026
New WhatsApp Attack Chain Uses VBS Scripts, Cloud Downloads, and MSI Backdoors

A new malware campaign is actively using WhatsApp to deliver harmful files directly to Windows users, exploiting the widespread trust placed in everyday messaging apps. The threat actors send maliciou…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
Microsoft Copilot Terms of Service Label Copilot is for Entertainment Purposes Only

Microsoft’s terms of service for its Copilot AI assistant include a notable disclaimer that has sparked renewed scrutiny from security and enterprise communities: the product is intended solely for en…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
TA416 Expands Espionage Operations Across Europe With Web Bug Recon and Malware Delivery

TA416 has returned to Europe with a fresh wave of espionage emails aimed at government and diplomatic staff. The campaign mixes quiet reconnaissance with malware delivery, showing how a patient threat…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
FBI Warns of Chinese Mobile Apps May Expose User Data to Cyberattacks

Millions of Americans use mobile apps daily without thinking much about where their data actually goes. The Federal Bureau of Investigation has stepped forward to address that. On March 31, 2026, the …

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
Critical PX4 Autopilot Vulnerability Let Attackers Gain Control Over the Drones

A newly discovered critical vulnerability in the widely used PX4 Autopilot software could allow malicious actors to take complete control over drone operations. The Cybersecurity and Infrastructure Se…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
Oracle Lays Off 30,000 Employees to Ramp Up Investment in AI Technologies

Oracle has executed a massive workforce reduction, eliminating between 20,000 and 30,000 employees globally to free up cash flow for its aggressive artificial intelligence infrastructure investments. …

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
Cisco Smart Software Manager Vulnerability Let Attackers Execute Arbitrary Commands

Cisco has issued an urgent security warning regarding a critical vulnerability in its Smart Software Manager On-Prem (SSM On-Prem) platform. Enterprise organizations widely use this tool to manage the…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
WhatsApp Warns Users Targeted by Spyware Attack via Weaponized Version of the App

Meta has officially alerted approximately 200 WhatsApp users, primarily located in Italy, that their devices were compromised by a weaponized, fraudulent version of the messaging application. This mal…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
New ZAP PTK Add-On Maps Browser-Based Security Findings as Native Alert Into ZAP

The OWASP Zed Attack Proxy (ZAP) team has rolled out version 0.3.0 of the OWASP PenTest Kit (PTK) add-on, introducing a transformative workflow upgrade for application security testing. This new relea…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
Apple Expands iOS 18.7.7 Update to More Devices to Shield Users from DarkSword Exploit

Apple has taken the rare step of expanding the availability of iOS 18.7.7 and iPadOS 18.7.7 to a broader set of devices on April 1, 2026, pushing critical backported security patches to millions of us…

Cybersecurity News Read →
◇ Industry News & Leadership Apr 02, 2026
Most CNI Firms Face Up to £5m in Downtime from OT Attacks

E2e-assure says 80% of critical infrastructure providers could face millions in downtime from cyber-attacks

Infosecurity Magazine Read →
◇ Industry News & Leadership Apr 02, 2026
Cybersecurity in the age of instant software

AI is rapidly changing how software is written, deployed, and used. Trends point to a future where AIs can write custom software quickly and easily: “instant software.” Taken to an extreme, it might b…

CSO Online Read →
◇ Industry News & Leadership Apr 02, 2026
Variance Raises $21.5M for Compliance Investigation Platform Powered by AI Agents

Variance has raised a total of $26 million in funding and the latest investment will fuel platform growth. The post Variance Raises $21.5M for Compliance Investigation Platform Powered by AI Agents ap…

Security Week Read →
◇ Industry News & Leadership Apr 02, 2026
Sophisticated CrystalX RAT Emerges

The malware can spy on victims, steal their information, and make configuration changes on devices. The post Sophisticated CrystalX RAT Emerges appeared first on SecurityWeek .

Security Week Read →
◇ Industry News & Leadership Apr 02, 2026
Mercor Hit by LiteLLM Supply Chain Attack

The AI recruiting firm is investigating the incident as Lapsus$ claimed the theft of 4TB of Mercor data. The post Mercor Hit by LiteLLM Supply Chain Attack appeared first on SecurityWeek .

Security Week Read →
◇ Industry News & Leadership Apr 02, 2026
250,000 Affected by Data Breach at Nacogdoches Memorial Hospital

In January 2026, a threat actor hacked the hospital’s internal network and stole personal and health information. The post 250,000 Affected by Data Breach at Nacogdoches Memorial Hospital appeared fir…

Security Week Read →
← Prev 1604 / 1995 Next →