CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  48770 articles  ·  updated every 4 hours · grows forever

48770Total
33372Full Text
Aug 31, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5153 | Tenda CH22 1.0.0.1 /goform/WriteFacMac FormWriteFacMac mac command injection

A vulnerability described as critical has been identified in Tenda CH22 1.0.0.1 . The affected element is the function FormWriteFacMac of the file /goform/WriteFacMac . Executing a manipulation of the…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5154 | Tenda CH22 1.0.0.1/1.If Parameter /goform/setcfm fromSetCfm funcname stack-based overflow

A vulnerability classified as critical has been found in Tenda CH22 1.0.0.1/1.If . The impacted element is the function fromSetCfm of the file /goform/setcfm of the component Parameter Handler . The m…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5155 | Tenda CH22 1.0.0.1 Parameter /goform/AdvSetWan fromAdvSetWan wanmode stack-based overflow

A vulnerability classified as critical was found in Tenda CH22 1.0.0.1 . This affects the function fromAdvSetWan of the file /goform/AdvSetWan of the component Parameter Handler . The manipulation of …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5156 | Tenda CH22 1.0.0.1 Parameter /goform/QuickIndex formQuickIndex mit_linktype stack-based overflow

A vulnerability, which was classified as critical , has been found in Tenda CH22 1.0.0.1 . This impacts the function formQuickIndex of the file /goform/QuickIndex of the component Parameter Handler . …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5157 | code-projects Online Food Ordering System 1.0 Order /form/order.php cust_id cross site scripting

A vulnerability, which was classified as problematic , was found in code-projects Online Food Ordering System 1.0 . Affected is an unknown function of the file /form/order.php of the component Order M…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-3321 | ON24 Q&A Chat History answer authorization (EUVD-2026-17084)

A vulnerability has been found in ON24 Q&A Chat and classified as problematic . Affected by this vulnerability is an unknown functionality of the file console-survey/api/v1/answer/ of the component Hi…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-28526 | BlueKitchen BTstack up to 1.8.0 AVRCP Controller Count out-of-bounds

A vulnerability was found in BlueKitchen BTstack up to 1.8.0 and classified as problematic . Affected by this issue is the function LIST_PLAYER_APPLICATION_SETTING_ATTRIBUTES/LIST_PLAYER_APPLICATION_S…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-28527 | BlueKitchen BTstack up to 1.8.0 AVRCP Controller out-of-bounds

A vulnerability was found in BlueKitchen BTstack up to 1.8.0 . It has been classified as problematic . This affects the function GET_PLAYER_APPLICATION_SETTING_ATTRIBUTE_TEXT/GET_PLAYER_APPLICATION_SE…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-28528 | BlueKitchen BTstack up to 1.8.0 AVRCP Browsing Target attr_id out-of-bounds

A vulnerability was found in BlueKitchen BTstack up to 1.8.0 . It has been declared as problematic . This vulnerability affects unknown code of the component AVRCP Browsing Target Handler . The manipu…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-30564 | SourceCodester Sales and Inventory System 1.0 Parameter view_payments.php limit cross site scripting

A vulnerability was found in SourceCodester Sales and Inventory System 1.0 . It has been rated as problematic . This issue affects some unknown processing of the file view_payments.php of the componen…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-30566 | SourceCodester Sales and Inventory System 1.0 Parameter view_customers.php limit cross site scripting

A vulnerability categorized as problematic has been discovered in SourceCodester Sales and Inventory System 1.0 . Impacted is an unknown function of the file view_customers.php of the component Parame…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-30565 | SourceCodester Sales and Inventory System 1.0 Parameter view_supplier.php limit cross site scripting

A vulnerability identified as problematic has been detected in SourceCodester Sales and Inventory System 1.0 . The affected element is an unknown function of the file view_supplier.php of the componen…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5165 | virtio-win kvm-guest-drivers-windows VirtIO Block Device expired pointer dereference

A vulnerability labeled as critical has been found in virtio-win kvm-guest-drivers-windows . The impacted element is an unknown function of the component VirtIO Block Device . Executing a manipulation…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-5164 | virtio-win kvm-guest-drivers-windows RhelDoUnMap buffer overflow

A vulnerability marked as critical has been reported in virtio-win kvm-guest-drivers-windows . This affects the function RhelDoUnMap . The manipulation leads to buffer overflow. This vulnerability is …

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-33373 | Zimbra Collaboration Suite 10.0/10.1 cross-site request forgery

A vulnerability described as problematic has been identified in Zimbra Collaboration Suite 10.0/10.1 . This impacts an unknown function. The manipulation results in cross-site request forgery. This vu…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-30563 | SourceCodester Sales and Inventory System 1.0 POST Request update_details.php Website cross site scripting

A vulnerability classified as problematic has been found in SourceCodester Sales and Inventory System 1.0 . Affected is an unknown function of the file update_details.php of the component POST Request…

VulDB Read →
⬡ Vulnerabilities & CVEs Mar 30, 2026
CVE-2026-30082 | IngEstate Server 11.14.0 Software Package List Page Release note cross site scripting

A vulnerability classified as problematic was found in IngEstate Server 11.14.0 . Affected by this vulnerability is an unknown functionality of the component Software Package List Page . Such manipula…

VulDB Read →
◉ Threat Intelligence Mar 30, 2026
30th March – Threat Intelligence Report

For the latest discoveries in cyber research for the week of 30th March, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Iranian state-affiliated threat group Handala Hack h…

Check Point Research Read →
◉ Threat Intelligence Mar 30, 2026
ChatGPT Data Leakage via a Hidden Outbound Channel in the Code Execution Runtime

Key Takeaways What Happened AI assistants now handle some of the most sensitive data people own. Users discuss symptoms and medical history. They ask questions about taxes, debts, and personal finance…

Check Point Research Read →
◉ Threat Intelligence Mar 30, 2026
TeamPCP Supply Chain Campaign: Update 004 - Databricks Investigating Alleged Compromise, TeamPCP Runs Dual Ransomware Operations, and AstraZeneca Data Released, (Mon, Mar 30th)

This is the fourth update to the TeamPCP supply chain campaign threat intelligence report,&#;x26;#;xc2;&#;x26;#;xa0;"When the Security Scanner Became the Weapon"&#;x26;#;xc2;&#;x26;#;xa0;(v3.0, March …

SANS ISC Read →
◇ Industry News & Leadership Mar 30, 2026
Vim Vulnerability Let Attackers Execute Arbitrary Command Via Weaponized Files

A high-severity security flaw has been discovered in Vim, one of the most widely used text editors among developers. This vulnerability allows attackers to execute arbitrary operating system commands …

Cybersecurity News Read →
◇ Industry News & Leadership Mar 30, 2026
CanisterWorm Malware Attacking Docker/K8s/Redis to Gain Access and Steal Secrets

A financially motivated cybercrime group has been quietly compromising cloud environments since late 2025, and its activities are now drawing serious concern across the security community. The group, …

Cybersecurity News Read →
◇ Industry News & Leadership Mar 30, 2026
Stored XSS Bug in Jira Work Management Could Lead to Full Organization Takeover

A popular collaboration tool within the Atlassian ecosystem is widely used by organizations to track projects, manage approvals, and manage daily tasks. Recently, security researchers at Snapsec uncov…

Cybersecurity News Read →
◇ Industry News & Leadership Mar 30, 2026
BlankGrabber Stealer Uses Fake Certificate Loader to Hide Malware Delivery Chain

A Python-based information stealer known as BlankGrabber has been caught using a deceptive certificate loader trick to hide a multi-stage malware delivery chain. First identified in 2023, this threat …

Cybersecurity News Read →
← Prev 1695 / 2033 Next →