Security intelligence
All coverage
Security signals, without the noise.
Current reporting from security alerts, threat intelligence, incident response, fraud, practitioner blogs, community feeds, and watch-and-listen sources.
[Virtual Event] Cybersecurity Outlook 2027
darkreading · 1h ago ↗sources
Citrix confirms two NetScaler RCE zero-days exploited in attacks
CISA Adds Two Known Exploited Vulnerabilities to CatalogAlerts · All coverage / Alerts
↗
Microsoft SharePoint Flaw CVE-2026-65660 Now Exploited in AttacksSecurityWeek · All coverage / Incidents
↗
Week in review: Gyazo breach exposes 23.6M user data, TASK#STOMP steals documentsHelp Net Security · All coverage
↗
Showing 180 of 886 loaded entries. Search and all-headlines view include all available entries in this section. Browse the feed archive.
Complete index
Recent stories
Every loaded article, grouped by its original feed. Search scans source names and headlines.
Density
Sort
Citrix confirms two NetScaler RCE zero-days exploited in attacks
Two unpatched Citrix NetScaler zero-day vulnerabilities are reportedly being exploited in attacks, with cybersecurity agencies, security researchers, and IT providers privately wa…
Cloudflare fixes Containers cross-tenant flaw exposing customer data
Cloudflare has fixed a vulnerability in Containers and Sandboxes that allowed customers with a Workers Paid account to recover residual data from other customers' containers on th…
Anthropic turns Claude into an AI marketplace with 2,000+ plugins and connectors
Anthropic has just announced a new Claude Marketplace, and it brings all AI-related tools into one place, including plugins, connectors, agents, and more.
ShinyHunters uses WAF bypass trick in Oracle PeopleSoft attacks
The ShinyHunters extortion gang is using a URL-encoding trick to bypass web application firewall rules that mitigate the Oracle PeopleSoft CVE-2026-35273 flaw, allowing the threat…
CISA Adds Two Known Exploited Vulnerabilities to Catalog
Critical Zero-Day Vulnerabilities Exploited in Citrix NetScaler ADC, Gateway
CISA Adds One Known Exploited Vulnerability to Catalog
CISA has added one new vulnerability to its KEV Catalog, based on evidence of active exploitation.
CISA Adds Two Known Exploited Vulnerabilities to Catalog
CISA has added two new vulnerabilities to its KEV Catalog, based on evidence of active exploitation.
CISA Adds Two Known Exploited Vulnerabilities to Catalog
Critical Zero-Day Vulnerabilities Exploited in Citrix NetScaler ADC, Gateway
CISA Adds One Known Exploited Vulnerability to Catalog
CISA has added one new vulnerability to its KEV Catalog, based on evidence of active exploitation.
CISA Adds Two Known Exploited Vulnerabilities to Catalog
CISA has added two new vulnerabilities to its KEV Catalog, based on evidence of active exploitation.
CyberCodex v3.2: Zero-dependency CLI engine unifying 22 free Threat Intel, Infostealer, and OSINT feeds (EPSS, CISA KEV, HIBP, Hudson Rock, Shodan InternetDB, RIPE BGP) with an offline APT & Incident Codex
NIST SP 800-82 Rev. 4 (Initial Public Draft) Guide to Operational Technology (OT) Security
Considerations for Critical Infrastructure Operators Working With Third-Party ICS Integrators
apk-reverse: Suitable for Android APK reverse engineering analysis - AI skill
Microsoft SharePoint Flaw CVE-2026-65660 Now Exploited in Attacks
China and US Agree to Establish AI Safety Channel and Continue Trade and Military Talks
New x47.c Windows Botnet Weaponizes xAI Grok, AI API Draining
OpenAI Says Its Models Engaged With US Government Websites in New Model Misbehavior Disclosure
Week in review: Gyazo breach exposes 23.6M user data, TASK#STOMP steals documents
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Know what was tested before your SAP ECC migration goes
Threat detection dashboards are masking security coverage gaps
Research on 14,652 threat detections found 47% need fixing, with coverage gaps in one in three relevant MITRE ATT&CK techniques.
MacSync info-stealing malware hides malicious commands in an iCloud calendar
The latest version of the MacSync info-stealing malware for macOS can hide its malicious commands inside a public iCloud calendar.
Docker introduces OCI-based Kits to package agents and their guardrails
Docker launches Cloud Sandboxes for secure, scalable AI agent execution in the cloud, plus next-gen Kits built on the open OCI standard.
Warning: Two Unpatched Citrix NetScaler RCE Zero-Days Under Active Exploitation
Lunex Stealer Abuses AMD Driver to Disable Security Monitoring and Steal Browser Credentials
Attackers Bypass WAFs to Exploit Oracle PeopleSoft Flaw and Deploy Web Shells
Zero Trust for AI Agents Starts With Fixing Zero Visibility
EDR Evasion: Process Injection Without WriteProcessMemory
Revealing the details of how OpenAI agents hacked Hugging Face
AI on Kubernetes: Default Helm Chart Security Configurations and Lateral Movement Risks
A header-level look at 4,688 small-business websites: 0.17% passed a header-only script-CSP rule [methods, parser rules, data]
Reverse-engineering the vintage Intel 8087's tangent algorithm: more than CORDIC
Reverse-engineered 8BitDo firmware encryption
FlowName – AST-guided JS identifier recovery(85% faster, 36% cheaper)
My projector commited click-fraud: Reverse engineering Badbox malware in the Wielo Smart Mini projector AT-M269 H713 to clean it.
Army soldier sentenced for spree of attacks on AT&T, Snowflake and other major companies
Supreme Court permits states to use SAVE database for citizenship checks
House and Senate members propose legislation for CISA to step up cyber defenses for biotech
New bill would create federal investigative body for AI-driven hacks
Kiteworks urges customers to stop using platform after warning from federal intelligence agencies
Labcorp to overhaul data security practices, pay $2.3 million fine for cybersecurity failings
Crypto CEO accuses North Korea of stealing $387 million from Bitget platform
Cyberattack hits Welsh police force, may have affected staff data
Your uncle’s frozen Mac says it’s infected after viewing a Google ad. Now what?
There's a new way to break RSA that's faster than anything we've seen before
FBI rushes to investigate if ShinyHunters hack of thousands of employees is real
Microsoft disrupts AI-assisted platform that compromised 12,000 accounts
Storm-3168: Agentic-driven cloud attacks using compromised service principals
Microsoft details JADEPUFFER-linked Azure reconnaissance, resource deletion, and credential access using compromised service principals, identifying the activity as associated wit…
Beyond the ransomware: Tracking Storm-2570’s consistent tradecraft across deployments
Storm-2570 is a ransomware affiliate that uses consistent post-compromise tools and techniques across deployments involving Qilin, DragonForce, Anubis, and BERT ransomware, and pr…
What’s new in Microsoft Security: September 2026
Discover September 2026 updates across Microsoft Defender, data compliance, endpoint management, and AI agent security.
Introducing the new Copilot with Home, Code and Autopilot
Building the system for AI at work
There's no shortage of sound and fury in AI right now.
Introducing Microsoft 365 G7: Intelligence + Trust for the mission ahead
Microsoft 365 G7 brings AI, Copilot, agent governance, security, and compliance together to help government agencies modernize securely.
Using Threat Intelligence to Stop Ransomware Attacks
Learn how ransomware threat intelligence empowers your team to actively follow adversary infrastructure, monitor dark web chatter and prevent attacks.
Russia Escalating Hybrid Attacks Across Europe
Explore Insikt Group's analysis on Russia's escalation of hybrid and New Generation Warfare (NGW) tactics across Europe since 2022, including cyber attacks, physical sabotage, and…
The Lure Isn't The Malware. It's Your Logo.
Recorded Future's Insikt GroupⓇ has been tracking ClickFix, a social engineering technique that turns a familiar logo or verification prompt into the entry point for an attack. He…
News alert: SCOUTz gives MSPs security evidence to help turn prospects into customers
PHOENIX, Sept. 24, 2026, CyberNewswire — SCOUTz, a prospect intelligence platform built for managed service provider (MSP) security sales, is now available in open beta. The pla…
Black Hat Fireside Chat: As AI agents spread, the network shifts from traffic mover to policy enforcer
The network’s job has always been simple: watch the traffic. Authority stopped there. Related: AI agents have a Lord Of The Flies problem For decades, network traffic came from…
BLACK HAT FIRESIDE CHAT: Nobody picked the web browser to run work — now pick a boundary
Nobody picked the browser to run the workplace. It just happened. Related: The year of the enterprise browser HTML5 matured. SaaS spread. One business application after another mo…
Cisco Identity Services Engine Authentication Bypass Vulnerabilities
Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a remote attacker to access or manipulate data, obt…
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SSL VPN Denial of Service Vulnerability
Update for September 16, 2026: The original 1.0 version of this advisory was specific to the Cisco Adaptive Security Virtual Appliance (ASAv) and Cisco Secure Firewall Threat Defe…
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Logging Denial of Service Vulnerability
A vulnerability in the system rate-limiting process for syslog message 419002 of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat…
MacSync under the microscope: new delivery methods and a new payload
We look at a new version of the MacSync macOS stealer with a backdoor module that targets crypto enthusiasts and developers.
Group Policy hijacked: PAYLOAD ransomware weaponizes Active Directory GPO
Kaspersky GERT experts dive into the technical incident analysis of PAYLOAD ransomware: an encryptionless, binary-less operation that abused Active Directory mechanisms for managi…
The Odyssey and Trojans again: MovieReaper attacks users in multiple countries through compromised torrents
Kaspersky experts have discovered a new MovieReaper campaign. The multi-stage Trojan spreads through movie torrents, such as “The Odyssey,” and uses the Solana blockchain to hide…
Proofpoint Breaks Down the Divide Between Data Security and AI Security with the Industry’s First Unified Agentic System
A single system for intent and access to empower organizations to adopt AI without losing data control or missing emerging risks across employees and AI agents Point security tools
Proofpoint Stops the Attacks Traditional Defenses Miss in the AI Era
Intent-based detection and multi-stage AI reasoning identify and stop sophisticated attacks before, during and after they reach people. Stops sophisticated attacks in one connected
Proofpoint Recognizes 2026 Global Partner Award Winners at Flagship Event
The awards presented at Proofpoint Protect 2026 celebrate partners driving customer impact, growth and secure AI adoption worldwide.
Slow is a design principle, not a delay
AI labs are pacing their capability growth. Attackers won't. Here's what that asymmetry means for cybersecurity teams and AI-enabled defense.
AI adoption that pays off is built around keeping humans in the driver’s seat
I’ve spent enough time around AI adoption now to notice a pattern. Ask a business how AI is going for them and the honest answer is, lately, “we’ve got Copilot, and it’s not great…
Phishing in 2026. Latest statistics and analysis
Recent phishing statistics from around the world show that phishing is the most common kind of cybercrime in 2026.
Ransomware: A Continuing Threat for Small Businesses
Ransomware remains one of the most damaging cybersecurity threats facing small businesses. Here are some ways to prevent risk.
AI in Tax Season: Risks, Scams, and How to Protect Your Data
Tax Season Scams to Watch For This Year
Tax season is a busy time for taxpayers and, unfortunately, a busy time for scammers as well. Each year, the Internal Revenue Service continues to warn individuals and businesses…
China-Based Artificial Intelligence Companies Conducting Industrial-Scale Distillation Campaigns Against U.S. AI Companies
A Tale of Two SOCs: Insights From Two Red Team Assessments
Same tactics, very different results. This advisory compares defensive outcomes from two red team assessments. Learn what drove detection and implement key
Defending Against an Active Threat to Siemens S7 Series PLCs
This advisory warns of threat actors targeting Siemens S7 Series programmable logic controllers (PLCs) and includes mitigations to be understood and applied
ISC Stormcast For Wednesday, August 26th, 2026 https://isc.sans.edu/podcastdetail/10068, (Wed, Aug 26th)
ISC Stormcast For Wednesday, August 26th, 2026 https://isc.sans.edu/podcastdetail/10068, Author: Johannes Ullrich
Obfuscating IP Addresses as Hostnames, (Tue, Aug 25th)
ISC Stormcast For Tuesday, August 25th, 2026 https://isc.sans.edu/podcastdetail/10066, (Tue, Aug 25th)
Microsoft Build 2026: Building agentic apps with Microsoft Fabric and Microsoft Databases
Microsoft Build 2026 highlights advancements in app development with Microsoft Fabric and Microsoft Databases, emphasizing a unified data and AI platform.
Azure IaaS: Defense in depth built on secure-by-design principles
Explore how Azure IaaS uses defense in depth and secure-by-design principles to deliver layered, scalable cloud security across compute, network, and data.
Enforcing trust and transparency: Open-sourcing the Azure Integrated HSM
Learn how Microsoft Azure Integrated HSM delivers hardware‑enforced key protection in the cloud, combining FIPS Level 3 assurances with transparency and open‑source collaboration.
No matching sources found.
Showing 180 of 886 loaded entries. Search and all-headlines view include all available entries in this section. Browse the feed archive.