CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  20893 articles  ·  updated every 4 hours · grows forever

20893Total
18166Full Text
May 18, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-43939 | YAFNET YetAnotherForum.NET up to 3.2.11/4.0.4 cross site scripting

A vulnerability categorized as problematic has been discovered in YAFNET YetAnotherForum.NET up to 3.2.11/4.0.4 . This impacts an unknown function. The manipulation results in cross site scripting. Th…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-43983 | pocket-id Pocket ID up to 2.5.x Refresh Token createTokenFromRefreshToken improper authorization

A vulnerability identified as critical has been detected in pocket-id Pocket ID up to 2.5.x . Affected is the function createTokenFromRefreshToken of the component Refresh Token Handler . This manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-5061 | HashiCorp Tooling up to 0.41.x link following

A vulnerability labeled as critical has been found in HashiCorp Tooling up to 0.41.x . Affected by this vulnerability is an unknown functionality. Such manipulation leads to link following. This vulne…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-7431 | Ivanti Secure Access Client up to 22.8R5 permission assignment

A vulnerability marked as problematic has been reported in Ivanti Secure Access Client up to 22.8R5 . Affected by this issue is some unknown functionality. Performing a manipulation results in incorre…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-42260 | Aas-ee open-webSearch up to 2.1.6 server-side request forgery

A vulnerability described as critical has been identified in Aas-ee open-webSearch up to 2.1.6 . This affects an unknown part. Executing a manipulation can lead to server-side request forgery. This vu…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-8043 | Ivanti Xtraction up to 2026.1 HTML File file inclusion

A vulnerability classified as critical has been found in Ivanti Xtraction up to 2026.1 . This vulnerability affects unknown code of the component HTML File Handler . The manipulation leads to file inc…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-8368 | OALDERS LWP::UserAgent up to 6.82 on Perl insufficiently protected credentials

A vulnerability classified as problematic was found in OALDERS LWP::UserAgent up to 6.82 on Perl. This issue affects some unknown processing. The manipulation results in insufficiently protected crede…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-8051 | Ivanti Virtual Traffic Manager up to 22.9r3 os command injection

A vulnerability, which was classified as critical , has been found in Ivanti Virtual Traffic Manager up to 22.9r3 . Impacted is an unknown function. This manipulation causes os command injection. The …

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-8111 | Ivanti Endpoint Manager up to 2024 SU5 Web Console sql injection

A vulnerability, which was classified as critical , was found in Ivanti Endpoint Manager up to 2024 SU5 . The affected element is an unknown function of the component Web Console . Such manipulation l…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-8109 | Ivanti Endpoint Manager up to 2024 SU5 Core Server routine

A vulnerability has been found in Ivanti Endpoint Manager up to 2024 SU5 and classified as problematic . The impacted element is an unknown function of the component Core Server . Performing a manipul…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-8401 | Mozilla Firefox up to 150.0.2 Profile Backup sandbox

A vulnerability was found in Mozilla Firefox up to 150.0.2 and classified as critical . This affects an unknown function of the component Profile Backup Component . Executing a manipulation can lead t…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-7432 | Ivanti Secure Access Client up to 22.8R5 race condition

A vulnerability was found in Ivanti Secure Access Client up to 22.8R5 . It has been classified as critical . This impacts an unknown function. The manipulation leads to race condition. This vulnerabil…

VulDB Read →
⬡ Vulnerabilities & CVEs May 12, 2026
CVE-2026-8110 | Ivanti Endpoint Manager up to 2024 SU5 permission assignment

A vulnerability was found in Ivanti Endpoint Manager up to 2024 SU5 . It has been declared as critical . Affected is an unknown function. The manipulation results in incorrect permission assignment. T…

VulDB Read →
◇ Industry News & Leadership May 12, 2026
Critical “Cline” AI Agent Vulnerability Enables RCE Attacks

A critical security flaw has been identified in the Cline Kanban server that allows threat actors to exfiltrate workspace data and execute arbitrary code silently and remotely. Security researcher The…

Cybersecurity News Read →
◇ Industry News & Leadership May 12, 2026
North Korean Hackers Weaponize Git Hooks to Deploy Cross-Platform Malware

North Korean hackers have found a new way to hide malware inside the tools that software developers rely on every single day. Instead of sending phishing emails or planting fake links, they are now bu…

Cybersecurity News Read →
◇ Industry News & Leadership May 12, 2026
Hackers Hijack Microsoft Teams Accounts to Deliver ModeloRAT

A new wave of cyberattacks is putting Microsoft Teams users on high alert across organizations worldwide. Hackers have been found hijacking Teams accounts to impersonate IT support staff and push a da…

Cybersecurity News Read →
◇ Industry News & Leadership May 12, 2026
SAP Patches Critical SQL injection Vulnerability in SAP S/4HANA

On May 12, 2026, SAP released its highly anticipated monthly Security Patch Day updates, addressing numerous severe security flaws across its entire enterprise software portfolio. The most alarming di…

Cybersecurity News Read →
◇ Industry News & Leadership May 12, 2026
New Stealthy Vidar Stealer Campaign Bypass EDR and Steal Credentials

A new and highly stealthy campaign distributing Vidar Stealer has surfaced, targeting Windows users with a sophisticated attack chain designed to slip past endpoint defenses and harvest sensitive cred…

Cybersecurity News Read →
◇ Industry News & Leadership May 12, 2026
Zoom Rooms and Workplace Vulnerabilities Allow Attackers to Escalate Privileges

A series of newly discovered vulnerabilities in Zoom’s software ecosystem could hand local attackers the keys to your system. As organizations continue to rely heavily on virtual meetings, threat acto…

Cybersecurity News Read →
◇ Industry News & Leadership May 12, 2026
Threat Actors Leverage Vercel’s AI Tools to Mass‑Produce Realistic Phishing Sites

A new and growing wave of phishing attacks is making credential theft easier than ever before. Threat actors are now using Vercel, a legitimate AI-powered web development platform, to build convincing…

Cybersecurity News Read →
◇ Industry News & Leadership May 12, 2026
End‑to‑End Encrypted RCS Messaging Arrives Across iPhone and Android

Apple begins rolling out end-to-end encrypted RCS messaging between iPhone and Android in iOS 26.5

Infosecurity Magazine Read →
◇ Industry News & Leadership May 12, 2026
Mini Shai-Hulud Hits TanStack npm Packages

Mini Shai-Hulud compromises TanStack npm packages and spreads across PyPI

Infosecurity Magazine Read →
◇ Industry News & Leadership May 12, 2026
OpenAI Launches 'Daybreak' to Help Build Secure By Design Software

With Daybreak, OpenAI wants its frontier AI models to be used to deploy secure by design software from the ground up

Infosecurity Magazine Read →
◇ Industry News & Leadership May 12, 2026
OpenAI introduces Daybreak cyber platform, takes on Anthropic Mythos

OpenAI has unveiled Daybreak, its answer to Anthropic’s Claude Mythos, amid a growing market for frontier AI-powered cyber defense platforms. The initiative combines OpenAI’s large language models, Co…

CSO Online Read →
← Prev 67 / 871 Next →