CyberIntel ⬡ News
★ Saved ◆ Cyber Reads

// Cyber
Intel Feed

cyberintel.kalymoon.com  ·  39236 articles  ·  updated every 4 hours · grows forever

39236Total
28596Full Text
Jul 27, 2026Latest
◈ Women in Cyber ◉ Threat Intelligence ◎ How-To & Tutorials ⬡ Vulnerabilities & CVEs 🔍 Digital Forensics ◍ Incident Response & DFIR ◆ Security Tools & Reviews ◇ Industry News & Leadership ✉ Email Security 🛡 Active Threats ⚠ Critical CVEs ◐ Insider Threat & DLP ◌ Quantum Computing ◬ AI & Machine Learning
🔥 Trending Topics · Last 48h
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-8759 | xiandafu beetl up to 3.20.2 SpELFunction SpELFunction.java expression language injection (IIYAWC)

A vulnerability was found in xiandafu beetl up to 3.20.2 . It has been rated as critical . Affected is an unknown function of the file beetl-classic-integration/beetl-spring-classic/src/main/java/org/…

VulDB Read →
◇ Industry News & Leadership May 16, 2026
Funnel Builder Flaw Under Active Exploitation Enables WooCommerce Checkout Skimming

A critical security vulnerability impacting the Funnel Builder plugin for WordPress has come under active exploitation in the wild to inject malicious JavaScript code into WooCommerce checkout pages w…

The Hacker News Read →
🔍 Digital Forensics May 16, 2026
Cellebrite Announces Participation in Upcoming Investor Conferences - Sahm

Cellebrite Announces Participation in Upcoming Investor Conferences Sahm

Sahm Read →
🛡 Active Threats May 16, 2026
Illuminate wins another round in court, but it may not all be over

The Supreme Court of California has ruled in J.M. v. Illuminate Education, Inc., a case closely watched by those concerned about holding edtech vendors liable in the event of a data breach. As backgro…

DataBreaches.net Read →
🛡 Active Threats May 16, 2026
Welcome to BlackFile: Inside a Vishing Extortion Operation

Google’s Threat Intelligence Group writes: Google Threat Intelligence Group (GTIG) has continued to track an expansive extortion campaign by UNC6671, a threat actor operating under the “BlackFile” bra…

DataBreaches.net Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-8743 | Open5GS up to 2.7.6 AMF/MME src/amf/context.c ran_ue_find_by_amf_ue_ngap_id improper authorization (Issue 4498)

A vulnerability was found in Open5GS up to 2.7.6 . It has been rated as critical . This impacts the function ran_ue_find_by_amf_ue_ngap_id of the file src/amf/context.c of the component AMF/MME . Perf…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-8744 | Open5GS up to 2.7.7 NRF /lib/sbi/context.c denial of service (4465/4466)

A vulnerability categorized as problematic has been discovered in Open5GS up to 2.7.7 . Affected is the function ogs_sbi_subscription_data_add/ogs_sbi_nf_service_add in the library /lib/sbi/context.c …

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-8745 | Open5GS up to 2.7.7 AUSF nausf-handler.c ogs_timer_add denial of service (Issue 4472)

A vulnerability identified as problematic has been detected in Open5GS up to 2.7.7 . Affected by this vulnerability is the function ogs_timer_add in the library /src/ausf/nausf-handler.c of the compon…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-8746 | Open5GS up to 2.7.7 NRF nghttp2-server.c discover_handler use after free (Issue 4476)

A vulnerability labeled as problematic has been found in Open5GS up to 2.7.7 . Affected by this issue is the function discover_handler in the library /lib/sbi/nghttp2-server.c of the component NRF . T…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-8747 | Z-BlogPHP 1.7.4.3430 Commend Approval c_system_event.php CheckComment improper authorization

A vulnerability marked as critical has been reported in Z-BlogPHP 1.7.4.3430 . This affects the function CheckComment of the file zb_system/function/c_system_event.php of the component Commend Approva…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2025-4202 | multicollab Plugin up to 5.2 on WordPress cf_add_comment authorization (EUVD-2025-209886)

A vulnerability described as critical has been identified in multicollab Plugin up to 5.2 on WordPress. This vulnerability affects the function cf_add_comment . Such manipulation leads to missing auth…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-46719 | RRWO Net::Statsd::Lite up to 0.8.x on Perl crlf injection

A vulnerability classified as critical has been found in RRWO Net::Statsd::Lite up to 0.8.x on Perl. This issue affects some unknown processing. Performing a manipulation results in crlf injection. Th…

VulDB Read →
◇ Industry News & Leadership May 16, 2026
Russian hackers turn Kazuar backdoor into modular P2P botnet

The Russian hacker group Secret Blizzard has developed its long-running Kazuar backdoor into a modular peer-to-peer (P2P) botnet designed for long-term persistence, stealth, and data collection. [...]

Bleeping Computer Read →
◬ AI & Machine Learning May 16, 2026
OpenAI Launches Daybreak for AI-Powered Vulnerability Detection and Patch Validation - The Hacker News

OpenAI Launches Daybreak for AI-Powered Vulnerability Detection and Patch Validation The Hacker News

The Hacker News Read →
◌ Quantum Computing May 16, 2026
Post-Quantum AI Infrastructure Security: A Complete Guide for 2026 - Security Boulevard

Post-Quantum AI Infrastructure Security: A Complete Guide for 2026 Security Boulevard

Security Boulevard Read →
◇ Industry News & Leadership May 16, 2026
Ransomware Negotiator Pleads Guilty to Aiding BlackCat Attacks in 2023 - The Hacker News

Ransomware Negotiator Pleads Guilty to Aiding BlackCat Attacks in 2023 The Hacker News

The Hacker News Read →
◇ Industry News & Leadership May 16, 2026
News brief: Critical infrastructure, OT cybersecurity attacks - TechTarget

News brief: Critical infrastructure, OT cybersecurity attacks TechTarget

TechTarget Read →
◇ Industry News & Leadership May 16, 2026
NIST cyber center to launch OT ‘visibility’ project - Federal News Network

NIST cyber center to launch OT ‘visibility’ project Federal News Network

Federal News Network Read →
🔍 Digital Forensics May 16, 2026
Cellebrite Announces 20 JUSTYS Award Winners at C2C User Summit 2026 - PR Newswire Canada

Cellebrite Announces 20 JUSTYS Award Winners at C2C User Summit 2026 PR Newswire Canada

PR Newswire Canada Read →
⬡ Vulnerabilities & CVEs May 16, 2026
Critical Android Zero-Click Vulnerability Grants Remote Shell Access - CyberSecurityNews

Critical Android Zero-Click Vulnerability Grants Remote Shell Access CyberSecurityNews

CyberSecurityNews Read →
◉ Threat Intelligence May 16, 2026
NSA and Others Provide Guidance to Counter China State-Sponsored Actors Targeting Critical - National Security Agency (NSA) (.gov)

NSA and Others Provide Guidance to Counter China State-Sponsored Actors Targeting Critical National Security Agency (NSA) (.gov)

National Security Agency (NSA) (.gov) Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-45396 | open-webui WebUI up to 0.9.4 feedback insert_new_feedback server-derived dynamically-determined object attributes (GHSA-rjmp-vjf2-qf4g)

A vulnerability was found in open-webui WebUI up to 0.9.4 . It has been classified as problematic . Affected by this issue is the function insert_new_feedback of the file /api/v1/evaluations/feedback …

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-45397 | open-webui Open WebUI up to 0.9.4 /api/v1/retrieval/ get_admin_user missing authentication (GHSA-65pg-qhhw-mxwg)

A vulnerability was found in open-webui Open WebUI up to 0.9.4 . It has been declared as critical . This affects the function get_admin_user of the file /api/v1/retrieval/ . Executing a manipulation c…

VulDB Read →
⬡ Vulnerabilities & CVEs May 16, 2026
CVE-2026-45347 | open-webui Open WebUI up to 0.5.10 server-side request forgery (GHSA-f776-fp4w-266c)

A vulnerability was found in open-webui Open WebUI up to 0.5.10 . It has been rated as critical . This vulnerability affects unknown code. The manipulation leads to server-side request forgery. This v…

VulDB Read →
← Prev 779 / 1635 Next →