95Articles
7Categories
2026-03-12Date
πŸ›
CISA Flags Actively Exploited n8n RCE Bug as 24,700 Instances Remain Exposed
KEV
πŸ›
β€œZombie ZIP”: Neue Angriffstechnik tΓ€uscht Virenscanner
πŸ›
CVE-2026-25679 Incorrect parsing of IPv6 host literals in net/url
πŸ›
CVE-2026-23868
πŸ›
CVE-2026-3783 token leak with redirect and netrc
πŸ›
CVE-2026-23239 espintcp: Fix race condition in espintcp_close()
πŸ›
CVE-2026-23240 tls: Fix race condition in tls_sw_cancel_work_tx()
πŸ›
CVE-2026-1965 bad reuse of HTTP Negotiate connection
πŸ›
CVE-2026-3784 wrong proxy connection reuse with credentials
πŸ›
Splunk RCE Vulnerability Exposes Systems to Arbitrary Shell Command Execution by Attackers
πŸ›
Apple Issues Security Updates for Older iOS Devices Targeted by Coruna WebKit Exploit
πŸ›
Palo Alto Cortex XDR Broker Vulnerability Exposes Systems to Sensitive Information Theft and Modification
πŸ›
CVE-2026-26133 M365 Copilot Information Disclosure Vulnerability
πŸ›
Looking at the SmarterMail API Vulnerability CVE-2026-24423
πŸ›
VU#665416: SGLang (sglang) is vulnerable to code execution attacks via unsafe pickle deserialization
⚠️
Chrome Update Addresses 29 Vulnerabilities, Mitigating Remote Code Execution Threats
⚠️
Cisco IOS XR Vulnerability Exposes Systems to Root Command Execution by Attackers
⚠️
AI use is changing how much companies pay for cyber insurance
⚠️
Splunk, Zoom Patch Severe Vulnerabilities
⚠️
4,000+ Routers Compromised by KadNap Malware Exploiting Vulnerabilities
⚠️
New ClickFix Attacks Target macOS Users with MacSync Infostealer
⚠️
Hackers Exploit Remote Management Tools to Gain Initial Access to Corporate Networks
⚠️
Hackers Exploit CloudFlare Anti-Security to Steal Microsoft 365 Login Credentials
⚠️
North Korean fake IT worker tradecraft exposed
⚠️
CISA orders feds to patch n8n RCE flaw exploited in attacks
⚠️
Apple patches older iPhones and iPads against Coruna exploits
⚠️
How Do I Send a Secure Email in Outlook?
⚠️
Apple Updates Legacy iOS Versions to Patch Coruna Exploits
⚠️
Google paid $17.1 million for vulnerability reports in 2025
⚠️
A Nerd's Life: Weeks of Firmware Teardown to Prove We Were Right
⚠️
US disrupts SocksEscort proxy network powered by Linux malware
⚠️
Law enforcement shuts down botnet made of tens of thousands of hacked routers
⚠️
Veeam warns of critical flaws exposing backup servers to RCE attacks
⚠️
Rust-Based VENON Malware Targets 33 Brazilian Banks with Credential-Stealing Overlays
⚠️
Hive0163 Uses AI-Assisted Slopoly Malware for Persistent Access in Ransomware Attacks
⚠️
Vulnerability Mis-Management - PSW #917
⚠️
Fraudsters are using public planning records to target permit applicants
⚠️
VU#907705: Graphql-upload-minimal has a prototype pollution vulnerability.
πŸ“’
Six Android Malware Families Target Pix Payments, Banking Apps, and Crypto Wallets
πŸ“’
Splunk security advisory (AV26-227)
πŸ“’
Palo Alto Networks security advisory (AV26-228)
πŸ“’
Veeam security advisory (AV26-229)
πŸ“’
Zoom security advisory (AV26-231)
πŸ“’
GitHub security advisory (AV26-230)
πŸ“’
[Control systems] ABB security advisory (AV26-232)
πŸ“’
Apple security advisory (AV26-233)
πŸ“’
Medical giant Stryker crippled after Iranian hackers remotely wipe computers
πŸ“’
HPE security advisory (AV26-234)
πŸ“’
iPhones and iPads Approved for NATO Classified Data
πŸ“’
FBI: Phishing Attacks Are Impersonating City and County Officials
πŸ“’
Aruba Switch Auth Bypass Risk
πŸ“’
How to manage the lifecycle of Amazon Machine Images using AMI Lineage for AWS
πŸ”₯
Stryker Faces Cyber Attack as Hackers Report System Breach and Device Destruction
πŸ”₯
Ericsson US Hit by Cyber Attack, Hackers Steal Personal Data of Employees and Customers
πŸ”₯
US charges another ransomware negotiator linked to BlackCat attacks
πŸ”₯
Polyfill Supply Chain Attack Impacting 100k Sites Linked to North Korea
πŸ”₯
Attackers Don't Just Send Phishing Emails. They Weaponize Your SOC's Workload
πŸ”₯
PhantomRaven returns to npm with 88 bad packages
πŸ”₯
INC Ransomware Group Holds Healthcare Hostage in Oceania
πŸ”₯
France's Cybersecurity Agency Reports Ransomware Attack Drop in 2025 - Infosecurity Magazine
πŸ”₯
AI-Driven Phishing Attacks Bypass Email Filters, Land in Inboxes
πŸ”₯
States Can't Handle Nation-State Cyber Attacks
πŸ”₯
Telus Digital confirms breach after hacker claims 1 petabyte data theft
πŸ”₯
ThreatsDay Bulletin: OAuth Trap, EDR Killer, Signal Phishing, Zombie ZIP, AI Platform Hack & More
πŸ”₯
AI-generated Slopoly malware used in Interlock ransomware attack
πŸ”₯
England Hockey investigating ransomware data breach
πŸ”₯
Canadian retail giant Loblaw notifies customers of data breach
πŸ•΅οΈ
When your IoT Device Logs in as Admin, It?s too Late! [Guest Diary], (Wed, Mar 11th)
πŸ•΅οΈ
ISC Stormcast For Thursday, March 12th, 2026 https://isc.sans.edu/podcastdetail/9846, (Thu, Mar 12th)
πŸ•΅οΈ
Google Finalizes $32 Billion Deal to Acquire Wiz, Strengthening Cloud Security
πŸ•΅οΈ
Meta Unveils New Anti-Scam Tools for WhatsApp, Facebook, and Messenger
πŸ•΅οΈ
Iran‑Linked Hackers Tap Criminal Ecosystem to Bolster State Cyber Ops
πŸ•΅οΈ
CastleRAT Attack Leverages Deno JavaScript Runtime to Bypass Enterprise Defenses
πŸ•΅οΈ
The Human IOC: Why Security Professionals Struggle with Social Vetting
πŸ•΅οΈ
Cisco Patches High-Severity IOS XR Vulnerabilities
πŸ•΅οΈ
Critical N8n Vulnerabilities Allowed Server Takeover
πŸ•΅οΈ
Critical flaw in HPE Aruba CX switches lets attackers seize admin control without credentials | CSO Online
πŸ•΅οΈ
SQLi flaw in Elementor Ally plugin impacts 250k+ WordPress sites
πŸ•΅οΈ
Only 24% Of organizations Test Identity Recovery Every Six Months - Infosecurity Magazine
πŸ•΅οΈ
Ally WordPress Plugin Flaw Exposes Over 200,000 Websites to Attacks
πŸ•΅οΈ
Medtech giant Stryker offline after Iran-linked wiper malware attack
πŸ•΅οΈ
Meta Launches New Protection Tools as It Helps Disrupt Scam Centers
πŸ•΅οΈ
Detecting and analyzing prompt abuse in AI tools
πŸ•΅οΈ
Exposing the Kroll Crypto Wallet Scam
πŸ•΅οΈ
From transparency to action: What the latest Microsoft email security benchmark reveals
πŸ•΅οΈ
Storm-2561 uses SEO poisoning to distribute fake VPN clients for credential theft
πŸ•΅οΈ
AMOS and Amatera disguised as AI agents | Kaspersky official blog
πŸŽ™οΈ
Smashing Security podcast #458: How not to steal $46 million from the US government
πŸ“‘
Cyber Security Today Special Report: Attack from Iran
πŸ“‘
Your Signal account is safe – unless you fall for this trick
πŸ“‘
Going the Extra Mile: Travel Rewards Turn into Underground Currency.
πŸ“‘
How to Scale Phishing Detection in Your SOC: 3 Steps for CISOs
πŸ“‘
Cyber fallout from the Iran war: What to have on your radar
πŸ“‘
February 2026 CVE Landscape: 13 Critical Vulnerabilities Mark 43% Drop from January
πŸ“‘
Announcing Cloudflare Account Abuse Protection: prevent fraudulent attacks from bots and humans