A vulnerability was found in WWBN AVideo up to 26.0 . It has been classified as critical . This affects the function isSSRFSafeURL of the file plugin/LiveLinks/proxy.php of the component IPv6 Address …
cyberintel.kalymoon.com · 50868 articles · updated every 4 hours · grows forever
A vulnerability was found in WWBN AVideo up to 26.0 . It has been classified as critical . This affects the function isSSRFSafeURL of the file plugin/LiveLinks/proxy.php of the component IPv6 Address …
A vulnerability was found in WWBN AVideo up to 26.0 . It has been declared as critical . This impacts the function isValidURLOrPath of the file /objects/aVideoEncoder.json.php of the component Endpoin…
A vulnerability was found in Pixarra Liquid Studio 2.17 . It has been rated as problematic . Affected is an unknown function of the component Keyboard Interface . Performing a manipulation results in …
A vulnerability categorized as critical has been discovered in WWBN AVideo up to 26.0 . Affected by this vulnerability is the function eval of the file saveSort.json.php of the component Session Cooki…
A vulnerability identified as critical has been detected in WWBN AVideo up to 26.0 . Affected by this issue is the function LiveTransmitionHistory::getLatest/LiveTransmition::keyExists of the file plu…
A vulnerability labeled as problematic has been found in Pixarra Blob Studio 2.17 . This affects an unknown part. The manipulation results in improper validation of specified index, position, or offse…
A vulnerability marked as critical has been reported in WWBN AVideo up to 26.0 . This vulnerability affects unknown code of the file clones.json.php . This manipulation causes os command injection. Th…
For the latest discoveries in cyber research for the week of 23rd March, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Navia Benefit Solutions, a United States-based emplo…
Every year, the cyber threat landscape forces defenders to adapt to evolving adversary tactics, techniques, and procedures (TTPs). In 2025, Mandiant observed a clear divergence in adversary pacing tha…
A financially motivated data theft and extortion group is attempting to inject itself into the Iran war, unleashing a worm that spreads through poorly secured cloud services and wipes data on infected…
A supply chain attack targeting Trivy, the widely used open-source vulnerability scanner, has grown well beyond its initial scope. What started as a GitHub Actions compromise has now extended to Docke…
A newly discovered Android remote access trojan known as Oblivion RAT has emerged on cybercrime networks as a complete malware-as-a-service (MaaS) platform, turning fake Google Play Store update pages…
New Trivy Docker images 0.69.5 and 0.69.6 compromised with TeamPCP infostealer, impacting CI/CD scans
High tech was the most frequently targeted industry in Mandiant investigations in 2025, overtaking financial services which led in 2023 and 2024
Mandiant’s M-Trends 2026 report, released today at the RSA Conference, shows that attackers are moving faster, operating more collaboratively, and increasingly focusing on the systems organizations re…
Rubrik has unveiled its Semantic AI Governance Engine (SAGE), designed to secure and control autonomous agents in real time. SAGE powers Rubrik Agent Cloud, replacing static, manual oversight with int…
Black Duck has announced the general availability of Black Duck Signal, an agentic AI application security solution purpose-built to secure AI-generated code in autonomous development workflows. As ag…
Straiker has launched Discover AI and expanded Defend AI to secure coding agents, productivity agents, and custom-built agent platforms. Agents are operating across enterprise systems with broad acces…
Astrix Security has revealed a major expansion of its AI agent security platform, covering every layer where AI agents operate in the enterprise: from managed AI platforms to shadow deployments runnin…
Anvilogic has launched Blueprints, a workflow automation capability that captures expert analyst practices and turns them into scalable, repeatable workflows across security teams. Instead of requirin…
Apiiro has announced AI Threat Modeling, a new capability within Apiiro Guardian Agent that automatically generates architecture-aware threat models to identify security and compliance risks before co…
RSAC 2026 Conference is taking place at the Moscone Center in San Francisco March 23 – 26. With hundreds of booths, countless product demos, and nonstop buzz, navigating RSAC can be overwhelming. That…