Network security has taken another hard hit. Two previously unknown malware strains have emerged, quietly turning routers, IoT devices, and enterprise network equipment into weapons for large-scale di…
cyberintel.kalymoon.com · 54399 articles · updated every 4 hours · grows forever
Network security has taken another hard hit. Two previously unknown malware strains have emerged, quietly turning routers, IoT devices, and enterprise network equipment into weapons for large-scale di…
A serious operational security failure by Russian state-linked hacking group FancyBear has given security researchers an unusually clear view into an active espionage campaign targeting government and…
ConnectWise has issued an urgent security advisory for its ScreenConnect remote desktop software, disclosing a critical cryptographic vulnerability that could allow unauthenticated attackers to extrac…
A ransomware group known as LeakNet has been quietly building a more dangerous attack strategy. Until recently, the group averaged about three victims per month — but new evidence shows it is scaling …
A critical buffer overflow vulnerability in the GNU Inetutils telnetd daemon. Tracked as CVE-2026-32746, this flaw allows an unauthenticated remote attacker to execute arbitrary code and gain root acc…
A new malware campaign tracked as ForceMemo is quietly compromising hundreds of GitHub accounts and injecting hidden malicious code into Python repositories, leaving almost no visible trace. The earli…
On February 28, 2026, a joint US-Israeli military operation launched strikes inside Iran, opening a conflict that rapidly extended into cyberspace. Iran responded with ballistic missiles and drone str…
A very popular target of attackers scanning our honeypots is "phpmyadmin". phpMyAdmin is a script first released in the late 90s, before many security concepts had&#;x26;#;xc2;&#;x26;#;xa0;been discov…
Introduction Google Threat Intelligence Group (GTIG) has identified a new iOS full-chain exploit that leveraged multiple zero-day vulnerabilities to fully compromise devices. Based on toolmarks in rec…
A vulnerability labeled as problematic has been found in nicolargo glances up to 4.5.1 . This impacts the function as_dict_secure of the file /api/v4/config of the component Endpoint . Such manipulati…
A vulnerability identified as critical has been detected in Shinetheme Traveler Plugin 3.2.2/3.2.3/3.2.6/3.2.8 on WordPress. This affects an unknown function. This manipulation causes deserialization.…
A vulnerability categorized as problematic has been discovered in LibreChat 0.8.1-rc2 . The impacted element is an unknown function of the component LibreChat API/RAG API . The manipulation results in…
A vulnerability was found in OpenText ZENworks Service Desk 25.2/25.3 . It has been rated as problematic . The affected element is an unknown function. The manipulation leads to cross site scripting. …
A vulnerability was found in danny-avila LibreChat 0.8.1-rc2 . It has been declared as critical . Impacted is an unknown function of the component JWT Secret Handler . Executing a manipulation can lea…
A vulnerability was found in Canonical Juju up to 3.6.18 . It has been classified as critical . This issue affects some unknown processing of the component Vault Secrets Back-End . Performing a manipu…
A vulnerability was found in Canonical Juju up to 3.6.18 and classified as very critical . This vulnerability affects unknown code of the component secret-set Tool . Such manipulation leads to incorre…
A vulnerability has been found in Canonical Juju up to 3.6.18 and classified as problematic . This affects an unknown part. This manipulation causes incorrect ownership assignment. The identification …
A vulnerability, which was classified as problematic , was found in Canonical Juju up to 3.6.18 . Affected by this issue is some unknown functionality. The manipulation results in predictable value ra…
LeakNet Ransomware Uses ClickFix and Deno Runtime for Stealthy Attacks ReliaQuest researchers have documented a significant tactical evolution by the LeakNet ransomware operation — a group active sinc…
A new analyst report identifies 14 key vendors that offer a platform ready to handle autonomous IT operations (detection, diagnosis, remediation) for observability. The end goal: IT operations that wi…
The predictive window has collapsed. In 2025, high-impact vulnerabilities weren’t quietly accumulating risk. They were operationalized, and often within days. Today, Rapid7 Labs released the 2026 Glob…