65Articles
9Categories
2026-01-09Date
🚨
CISA flags max-severity bug in HPE OneView amid active exploitationA max-severity remote code execution (RCE) flaw in HPE’s OneView management platform has been flagged by the Cybersecurity & Infrastructure Security Agency (CISA) for active exploitation. The flaw, tracked as CVE-2025-37164 , has been added to CISA’s Known Exploited Vulnerabi…
KEV
🚨
CISA Closes 10 Emergency Directives as Vulnerability Catalog Takes OverThe Emergency Directives were retired because they achieved objectives or targeted vulnerabilities included in the KEV catalog. The post CISA Closes 10 Emergency Directives as Vulnerability Catalog Takes Over appeared first on SecurityWeek .
KEV
🐛
Cisco identifies vulnerability in ISE network access control devices
🐛
Trend Micro Apex Central RCE Flaw Scores 9.8 CVSS in On-Prem Windows Versions
🐛
Ni8mare: Kritische n8n-Lücke bedroht 100.000 Server
🐛
Chromium: CVE-2026-0628 Insufficient policy enforcement in WebView tag
🐛
OWASP CRS Vulnerability Enables Charset Validation Bypass
⚠️
Enterprises still aren’t getting IAM right
⚠️
Window's Blue Screen of Death Vulnerability
⚠️
Microsoft Mandates MFA for Microsoft 365 Admin Center Access
⚠️
Jamie Norton’s journey to CISO started with an early interest in computers
⚠️
Trend Micro warns of critical Apex Central RCE vulnerability
⚠️
Exploit for VMware Zero-Day Flaws Likely Built a Year Before Public Disclosure
⚠️
CrowdStrike to acquire SGNL for $740M, expanding real-time identity security
⚠️
VMware ESXi zero-days likely exploited a year before disclosure
⚠️
Trend Micro Patches Critical Code Execution Flaw in Apex Central
⚠️
Fog Ransomware Targets U.S. Organizations via Compromised VPN Credentials
⚠️
Attackers Use Over 240 Exploits Ahead of Ransomware Attacks
⚠️
Trend Micro Apex Central Flaw Enable Remote Code Execution Attacks
⚠️
Piracy's Game of Whack-a-Mole
⚠️
China-Linked Hackers Exploit VMware ESXi Zero-Days to Escape Virtual Machines
⚠️
Beyond “Is Your SOC AI Ready?” Plan the Journey!
KEV
⚠️
ZombieAgent ChatGPT attack shows persistent data leak risks of AI agents
📋
CISA Retires 10 Emergency Cybersecurity Directives Issued Between 2019 and 2024
📢
FBI Warns North Korean Hackers Using Malicious QR Codes in Spear-Phishing
📢
Microsoft Introduces Teams External Collaboration Administrator Role
📢
[Control Systems] Moxa security advisory (AV26-013)
📢
Microsoft may soon allow IT admins to uninstall Copilot
🔥
Palo Alto Crosswalk Signals Had Default Passwords
🔥
377,000 Impacted by Data Breach at Texas Gas Station Firm
🔥
‘ZombieAgent’ Attack Let Researchers Take Over ChatGPT
🔥
Your KnowBe4 Fresh Content Updates from December 2025
🔥
Illinois Department of Human Services data breach affects 700K people
🔥
In Other News: 8,000 Ransomware Attacks, China Hacked US Gov Emails, IDHS Breach Impacts 700k
🔥
The Role of Initial Access Markets in Ransomware Campaigns Targeting Australia and New Zealand
🕵️
ISC Stormcast For Friday, January 9th, 2026 https://isc.sans.edu/podcastdetail/9760, (Fri, Jan 9th)
🕵️
New “Ghost Tap” Attack Hijacks Android Phones to Drain Bank Accounts
🕵️
Malicious Process Environment Block Manipulation, (Fri, Jan 9th)
🕵️
Funk von kritischer Infrastruktur leicht abhörbar
🕵️
New Malware Automatically Send to Contacts via WhatsApp Web Attacks Windows Systems
🕵️
Preparing for Post-Quantum Cryptography | Wiz Blog
🕵️
Fake WinRAR downloads hide malware behind a real installer | Malwarebytes
🕵️
FBI warns about Kimsuky hackers using QR codes to phish U.S. orgs
🕵️
China-Linked UAT-7290 Targets Telecoms with Linux Malware and ORB Nodes
🕵️
Illinois state agency exposed personal data of 700,000 people | The Record from Recorded Future News
🕵️
Personal data taken in Kensington and Chelsea council cyber hack
🕵️
FBI: North Korean Spear-Phishing Attacks Use Malicious QR Codes
🕵️
Tim Kosiba Named NSA Deputy Director
🕵️
Russian APT28 Runs Credential-Stealing Campaign Targeting Energy and Policy Organizations
🕵️
xRAT Malware Targets Windows Users via Fake Adult Game
🕵️
Best Ways to Learn Everything About Investing in Bitcoin
🕵️
50 Best Free Cyber Threat Intelligence Tools – 2026
🕵️
CrowdStrike Acquires Identity Security Startup SGNL in $740 Million Deal
🕵️
Hackers target misconfigured proxies to access paid LLM services
🕵️
ConsentFix Attacks Fake Cloudflare Prompts
🕵️
Friday Squid Blogging: The Chinese Squid-Fishing Fleet off the Argentine Coast
🕵️
Nudification, Spying, Ni8mare, Cisco, Chat-GPT, Chrome, SaaS, CES, Josh Marpet & More - SWN #545
🕵️
Cisco Switch Reboot Chaos
🕵️
Practitioners Reveal What Makes Threat Intelligence Programs Mature
🌐
pcTattletale founder pleads guilty in rare stalkerware prosecution
🌐
Email security needs more seatbelts: Why click rate is the wrong metric
📡
Cybersecurity Predictions 2026: The Hype We Can Ignore (And the Risks We Can't)
📡
Illinois man charged with hacking Snapchat accounts to steal nude photos
📡
ChatGPT tests a new feature to find jobs, improve your resume, and more
📡
Anthropic: Viral Claude “Banned and reported to authorities” message isn’t real