Intel 471 has announced its latest product offering, the Cyber Threat Exposure Bundle, on its Verity471 platform. This new bundle combines Attack Surface Exposure, Third-Party Exposure, and Brand Expo…
cyberintel.kalymoon.com · 54632 articles · updated every 4 hours · grows forever
Intel 471 has announced its latest product offering, the Cyber Threat Exposure Bundle, on its Verity471 platform. This new bundle combines Attack Surface Exposure, Third-Party Exposure, and Brand Expo…
Eon trägt eine große Verantwortung für die Energieversorgung in Deutschland. nitpicker – shutterstock.com Der Energiekonzern Eon sieht eine zunehmende Zahl von Cyberangriffen auf seine Energienetze. M…
CursorJack shows how malicious MCP deeplinks in Cursor IDE can trigger user-approved code execution
A significant security flaw in AWS Bedrock AgentCore Code Interpreter’s “Sandbox” network mode, a feature advertised by AWS as providing complete network isolation that allows outbound DNS queries, en…
At first glance, false positives in cybersecurity seem almost comforting. An alert fires. A SOC analyst investigates. It turns out to be nothing malicious. Case closed. Systems are safe, detection wor…
A financially motivated threat actor known as Storm-2561 has been running a credential theft campaign since May 2025, manipulating search engine rankings to push fake VPN software toward enterprise us…
A path traversal vulnerability has been identified in the Kubernetes Container Storage Interface (CSI) Driver for NFS, potentially allowing attackers to delete or modify unintended directories on NFS …
Microsoft has rolled out an out-of-band update for Windows 11 users to address a frustrating interface bug affecting Bluetooth device visibility. Released on March 16, 2026, this emergency patch resol…
A high-severity Cross-Site Scripting (XSS) vulnerability has been discovered in the widely used Angular framework. Tracked as CVE-2026-32635 and categorized under CWE-79, this flaw affects both the @a…
New York, United States, March 17th, 2026, CyberNewswire Unleash AI adoption securely: discover, attribute, and govern AI agents throughout the enterprise Orchid Security, the company bringing clarity…
UK’s Companies House, the government’s official register of businesses, has revealed a significant security flaw in its WebFiling service. The vulnerability exposed sensitive director data and potenti…
New York, NY, March 17th, 2026, CyberNewswire In 2025, Developer Commits Using Claude Code Show 3.2% Secret Leak Rate vs. 1.5% Baseline. The Human Factor Remains Critical GitGuardian, the security lea…
A high-priority alert has been issued for a critical vulnerability in Wing FTP Server, added to the Known Exploited Vulnerabilities (KEV) catalog on March 16, 2026. This addition confirms that malicio…
New York-Based Startup's AI Agents Analyze Asset Context to Fix Security Gaps Surf AI launched an AI-driven platform designed to automate security hygiene tasks across enterprise environments. Backed …
Yesterday, in my diary about the scans for "/proxy/" URLs, I noted how attackers are using IPv4-mapped IPv6 addresses to possibly obfuscate their attack. These addresses are defined in RFC 4038. These…
A vulnerability classified as problematic was found in Softing Industrial Automation smartLink SW-HT up to 1.43.0 . Affected is an unknown function of the component Webserver Module . The manipulation…
A vulnerability classified as critical has been found in ConnectWise ScreenConnect . This impacts an unknown function. The manipulation leads to improper verification of cryptographic signature. This …
A vulnerability described as critical has been identified in Canonical Ubuntu Linux up to 2.75.0 . This affects an unknown function of the file /tmp of the component snapd . Executing a manipulation c…
A vulnerability marked as critical has been reported in Red Hat Satellite 6 on Red. The impacted element is an unknown function of the file /api/hosts/bootc_images of the component Katello Plugin . Pe…
A vulnerability labeled as critical has been found in GNOME libsoup . The affected element is an unknown function. Such manipulation leads to use after free. This vulnerability is listed as CVE-2026-4…
A vulnerability identified as problematic has been detected in Apache Airflow up to 3.1.7 . Impacted is an unknown function of the component FastAPI DagVersion Listing API . This manipulation causes i…
A vulnerability categorized as problematic has been discovered in HCL Sametime . This issue affects some unknown processing. The manipulation results in basic cross site scripting. This vulnerability …
A vulnerability was found in Apache Airflow up to 3.1.7 . It has been rated as problematic . This vulnerability affects unknown code of the file /ui/dependencies . The manipulation leads to incorrect …