174Articles
9Categories
2026-03-26Date
🚨
TeamPCP Supply Chain Campaign: Update 001 ? Checkmarx Scope Wider Than Reported, CISA KEV Entry, and Detection Tools Available, (Thu, Mar 26th)This is the first update to the TeamPCP supply chain campaign threat intelligence report, “When the Security Scanner Became the Weapon” (v3.0, March 25, 2026). That report covers the full campaign from the February 28 initial access through …
KEV
🚨
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2026-33634 Aqua Security Trivy Embedded Malicious Code Vulnerability This type of vulnerability is a frequent attack vector for malicious cybe…
KEV
πŸ›
Cisco Secure Firewall Vulnerability Exposes Systems to Remote Code Execution by Attackers
πŸ›
Microsoft Unveils New Guidance to Detect and Defend Against Trivy Supply Chain Attack
πŸ›
CVE-2026-2297 SourcelessFileLoader does not use io.open_code()
πŸ›
CVE-2025-66413 Git for Windows leaks NTLM hash when cloning from an attacker-controlled server
πŸ›
CVE-2026-29111 systemd: Local unprivileged user can trigger an assert
πŸ›
CVE-2026-23382 HID: Add HID_CLAIMED_INPUT guards in raw_event callbacks missing them
πŸ›
CVE-2026-23391 netfilter: xt_CT: drop pending enqueued packets on template removal
πŸ›
CVE-2026-23377 ice: change XDP RxQ frag_size from DMA write length to xdp.frame_sz
πŸ›
CVE-2026-23359 bpf: Fix stack-out-of-bounds write in devmap
πŸ›
CVE-2026-23325 wifi: mt76: mt7996: Fix possible oob access in mt7996_mac_write_txwi_80211()
πŸ›
CVE-2026-23313 i40e: Fix preempt count leak in napi poll tracepoint
πŸ›
CVE-2026-23306 scsi: pm8001: Fix use-after-free in pm8001_queue_command()
πŸ›
CVE-2026-23383 bpf, arm64: Force 8-byte alignment for JIT buffer to prevent atomic tearing
πŸ›
CVE-2026-23307 can: ems_usb: ems_usb_read_bulk_callback(): check the proper length of a message
πŸ›
CVE-2026-23348 cxl: Fix race of nvdimm_bus object when creating nvdimm objects
πŸ›
CVE-2026-23378 net/sched: act_ife: Fix metalist update behavior
πŸ›
CVE-2026-23352 x86/efi: defer freeing of boot services memory
πŸ›
CVE-2026-23298 can: ucan: Fix infinite loop from zero-length messages
πŸ›
CVE-2026-23371 sched/deadline: Fix missing ENQUEUE_REPLENISH during PI de-boosting
πŸ›
CVE-2026-23340 net: sched: avoid qdisc_reset_all_tx_gt() vs dequeue race for lockless qdiscs
πŸ›
CVE-2026-23351 netfilter: nft_set_pipapo: split gc into unlink and reclaim phase
πŸ›
CVE-2026-23319 bpf: Fix a UAF issue in bpf_trampoline_link_cgroup_shim
πŸ›
CVE-2026-23300 net: ipv6: fix panic when IPv4 route references loopback IPv6 nexthop
πŸ›
CVE-2026-23293 net: vxlan: fix nd_tbl NULL dereference when IPv6 is disabled
πŸ›
CVE-2026-23343 xdp: produce a warning when calculated tailroom is negative
πŸ›
CVE-2026-23389 ice: Fix memory leak in ice_set_ringparam()
πŸ›
CVE-2026-23324 can: usb: etas_es58x: correctly anchor the urb in the read bulk callback
πŸ›
CVE-2026-23365 net: usb: kalmia: validate USB endpoints
πŸ›
CVE-2026-23284 net: ethernet: mtk_eth_soc: Reset prog ptr to old_prog in case of error in mtk_xdp_setup()
πŸ›
CVE-2026-33186 gRPC-Go has an authorization bypass via missing leading slash in :path
πŸ›
CVE-2026-33412 Vim affected by Command injection via newline in glob()
πŸ›
CVE-2026-23370 platform/x86: dell-wmi-sysman: Don't hex dump plaintext password data
πŸ›
CVE-2026-23333 netfilter: nft_set_rbtree: validate open interval overlap
πŸ›
CVE-2026-23372 nfc: rawsock: cancel tx_work before socket teardown
πŸ›
CVE-2026-23315 wifi: mt76: Fix possible oob access in mt76_connac2_mac_write_txwi_80211()
πŸ›
CVE-2026-23312 net: usb: kaweth: validate USB endpoints
πŸ›
CVE-2026-23330 nfc: nci: complete pending data exchange on device close
πŸ›
CVE-2026-23361 PCI: dwc: ep: Flush MSI-X write before unmapping its ATU entry
πŸ›
CVE-2026-23285 drbd: fix null-pointer dereference on local read error
πŸ›
CVE-2026-23296 scsi: core: Fix refcount leak for tagset_refcnt
πŸ›
CVE-2026-23392 netfilter: nf_tables: release flowtable after rcu grace period on error
πŸ›
CVE-2026-23318 ALSA: usb-audio: Use correct version for UAC3 header validation
πŸ›
CVE-2026-23388 Squashfs: check metadata block offset is within range
πŸ›
CVE-2026-23286 atm: lec: fix null-ptr-deref in lec_arp_clear_vccs
πŸ›
CVE-2026-23368 net: phy: register phy led_triggers during probe to avoid AB-BA deadlock
πŸ›
CVE-2026-23390 tracing/dma: Cap dma_map_sg tracepoint arrays to prevent buffer overflow
πŸ›
CVE-2026-23292 scsi: target: Fix recursive locking in __configfs_open_file()
πŸ›
CVE-2026-23364 ksmbd: Compare MACs in constant time
πŸ›
CVE-2026-23346 arm64: io: Extract user memory type in ioremap_prot()
πŸ›
CVE-2026-23334 can: usb: f81604: handle short interrupt urb messages properly
πŸ›
CVE-2026-23303 smb: client: Don't log plaintext credentials in cifs_set_cifscreds
πŸ›
CVE-2026-23304 ipv6: fix NULL pointer deref in ip6_rt_get_dev_rcu()
πŸ›
CVE-2026-23320 usb: gadget: f_ncm: align net_device lifecycle with bind/unbind
πŸ›
CVE-2026-23290 net: usb: pegasus: validate USB endpoints
πŸ›
CVE-2026-23339 nfc: nci: free skb on nci_transceive early error paths
πŸ›
CVE-2026-23335 RDMA/irdma: Fix kernel stack leak in irdma_create_user_ah()
πŸ›
CVE-2026-23302 net: annotate data-races around sk->sk_{data_ready,write_space}
πŸ›
CVE-2026-23386 gve: fix incorrect buffer cleanup in gve_tx_clean_pending_packets for QPL
πŸ›
CVE-2026-23308 pinctrl: equilibrium: fix warning trace on load
πŸ›
CVE-2026-23291 nfc: pn533: properly drop the usb interface reference on disconnect
πŸ›
CVE-2026-23357 can: mcp251x: fix deadlock in error path of mcp251x_open
πŸ›
CVE-2026-23287 irqchip/sifive-plic: Fix frozen interrupt due to affinity setting
πŸ›
CVE-2026-23336 wifi: cfg80211: cancel rfkill_block work in wiphy_unregister()
πŸ›
CVE-2026-23281 wifi: libertas: fix use-after-free in lbs_free_adapter()
πŸ›
CVE-2026-23381 net: bridge: fix nd_tbl NULL dereference when IPv6 is disabled
πŸ›
CVE-2026-23395 Bluetooth: L2CAP: Fix accepting multiple L2CAP_ECRED_CONN_REQ
πŸ›
CVE-2026-23374 blktrace: fix __this_cpu_read/write in preemptible context
πŸ›
CVE-2026-23289 IB/mthca: Add missed mthca_unmap_user_db() for mthca_create_srq()
πŸ›
CVE-2026-23317 drm/vmwgfx: Return the correct value in vmw_translate_ptr functions
πŸ›
CVE-2026-23347 can: usb: f81604: correctly anchor the urb in the read bulk callback
πŸ›
CVE-2026-23310 bpf/bonding: reject vlan+srcmac xmit_hash_policy change when XDP is loaded
πŸ›
CVE-2026-23356 drbd: fix "LOGIC BUG" in drbd_al_begin_io_nonblock()
πŸ›
CVE-2026-23327 cxl/mbox: validate payload size before accessing contents in cxl_payload_from_user_allowed()
πŸ›
CVE-2026-23367 wifi: radiotap: reject radiotap with unknown bits
πŸ›
CVE-2026-23279 wifi: mac80211: fix NULL pointer dereference in mesh_rx_csa_frame()
πŸ›
CVE-2026-23379 net/sched: ets: fix divide by zero in the offload path
πŸ›
CVE-2026-23393 bridge: cfm: Fix race condition in peer_mep deletion
πŸ›
IDrive for Windows Vulnerability Allows Attackers to Escalate Privileges and Gain Unauthorized Access
πŸ›
CISA Issues Urgent Warning on Langflow Code Injection Vulnerability Actively Exploited in Attacks
KEV
πŸ›
CISA: New Langflow flaw actively exploited to hijack AI workflows
KEV
πŸ›
Coruna: the framework used in Operation Triangulation
⚠️
Delve did the security compliance on LiteLLM, an AI project hit by malware
⚠️
Sound Radix - 292,993 breached accounts
⚠️
Node.js Releases Urgent Patches for Multiple Vulnerabilities Exposing Systems to DoS and Crashes
⚠️
Fake VS Code Security Alerts on GitHub Spread Malware in Massive Phishing Attack
⚠️
LeakBase Forum Admin Arrested by Russian Authorities in Global Cybercrime Operation
⚠️
Fake npm Install Messages Conceal RAT Malware in New Open Source Supply Chain Attack
⚠️
Preventing Account Takeovers: A Practical Guide to Detection and Response
⚠️
Synology DiskStation Manager Vulnerability Puts Users at Risk of Remote Command Execution Attacks
⚠️
WebRTC Skimmer Bypasses CSP to Steal Payment Data from E-Commerce Sites
⚠️
Coruna iOS Kit Reuses 2023 Triangulation Exploit Code in New Mass Attacks
⚠️
Critical NVIDIA Vulnerabilities Risk Remote Code Execution and Denial-of-Service Attacks
⚠️
Silver Fox Tax Audit Phishing Campaign Shifts from RATs to Python Stealers
⚠️
GitHub phishers use fake OpenClaw tokens to drain crypto wallets
⚠️
Critical Ivanti EPMM Vulnerabilities Expose Systems to Arbitrary Code Execution Attacks
KEV
⚠️
Cisco Patches Multiple Vulnerabilities in IOS Software
⚠️
Databricks pitches Lakewatch as a cheaper SIEM β€” but is it really?
⚠️
Coruna iOS exploit framework linked to Triangulation attacks
⚠️
Claude Extension Flaw Enabled Zero-Click XSS Prompt Injection via Any Website
⚠️
University Donor Data Under Attack
⚠️
New ClickFix Attack Exploits Windows Run Dialog and macOS Terminal to Deploy Malware
⚠️
Great Patching Lessons To Learn From The Zero Day Clock
⚠️
In WAF we (should not) trust
⚠️
AI is the Top Cyber Priority for Defenders as Criminals Exploit it - Infosecurity Magazine
⚠️
The CISO’s guide to responding to shadow AI
⚠️
Report: Attackers Can Trick AI Assistants Into Displaying Phishing Messages
⚠️
Ajax football club hack exposed fan data, enabled ticket hijack
⚠️
Scanning The Internet with Linux Tools - PSW #919
⚠️
Uncover prompt injection, insider threats with the Tenable One Model Refusal Detection
⚠️
A year of open source vulnerability trends: CVEs, advisories, and malware
⚠️
Active MagecartΒ CampaignΒ Targets Spain, Steals Card Data viaΒ Hijacked eStores for Bank Fraud
πŸ“’
Alleged RedLine Malware Administrator Extradited to US
πŸ“’
TeamPCP deploys CanisterWorm on NPM following Trivy compromise
πŸ“’
As the US Midterms Approach, AI Is Going to Emerge as a Key Issue Concerning Voters
πŸ“’
Aqua Security security advisory (AV26-283)
πŸ“’
PTC security advisory (AV26-282)
πŸ“’
Squid security advisory (AV26-284)
πŸ“’
Grafana security advisory (AV26-285)
πŸ“’
[Control systems] ABB security advisory (AV26-286)
πŸ“’
Spring security advisory (AV26-288)
πŸ“’
HPE security advisory (AV26-287)
πŸ”₯
Scuf Gaming - 128,683 breached accounts
πŸ”₯
Torg Grabber Malware Shifts from Telegram Exfiltration to Encrypted REST API for C2
πŸ”₯
Russia arrests suspected owner of LeakBase cybercrime forum
πŸ”₯
Ransomware attack disrupts operation at major Spanish fishing port | The Record from Recorded Future News
πŸ”₯
Hightower Holding Data Breach Impacts 130,000
πŸ”₯
UK sanctions Xinbi marketplace linked to Asian scam centers
πŸ”₯
Iran-Linked Pay2Key Ransomware Group Re-Emerges - Infosecurity Magazine
πŸ”₯
Why Financial Firms are Outgrowing Traditional Email Security
πŸ”₯
Your AI Gateway Was a Backdoor: Inside the LiteLLM Supply Chain Compromise
πŸ•΅οΈ
Hackers Use Fake Resumes to Steal Enterprise Credentials and Deploy Crypto Miner
πŸ•΅οΈ
ISC Stormcast For Thursday, March 26th, 2026 https://isc.sans.edu/podcastdetail/9866, (Thu, Mar 26th)
πŸ•΅οΈ
Thousands of websites are accidentally broadcasting sensitive data
πŸ•΅οΈ
Thousands of websites are accidentally broadcasting sensitive data
πŸ•΅οΈ
Thousands of websites are accidentally broadcasting sensitive data
πŸ•΅οΈ
Kiss Loader Malware Targets with Early Bird APC Injection in New Attack Campaign
πŸ•΅οΈ
Dell and HP Roll Out Quantum-Resistant Device Security and AI-Era Cyber Resilience
πŸ•΅οΈ
Fake Screenshot Lures Target Web3 Support Staff with Multi-Stage Malware Attack
πŸ•΅οΈ
[Webinar] Stop Guessing. Learn to Validate Your Defenses Against Real Attacks
πŸ•΅οΈ
Hackers claim to have accessed data tied to millions of crime tipsters
πŸ•΅οΈ
PyPI warns developers after LiteLLM malware found stealing cloud and CI/CD credentials | CSO Online
πŸ•΅οΈ
GlassWorm Malware Uses Solana Dead Drops to Deliver RAT and Steal Browser, Crypto Data
πŸ•΅οΈ
Enterprise Cybersecurity Software Fails 20% of the Time, Warns Report - Infosecurity Magazine
πŸ•΅οΈ
TP-Link warns users to patch critical router auth bypass flaw
πŸ•΅οΈ
Chinese Hackers Caught Deep Within Telecom Backbone Infrastructure
πŸ•΅οΈ
GhostClaw AI Malware Targets macOS Users with Credential-Stealing Payloads
πŸ•΅οΈ
New Torg Grabber infostealer malware targets 728 crypto wallets
πŸ•΅οΈ
BIND Updates Patch High-Severity Vulnerabilities
πŸ•΅οΈ
VoidLink Rootkit Leverages eBPF and Kernel Modules to Stealthily Infiltrate Linux Systems
πŸ•΅οΈ
TikTok for Business accounts targeted in new phishing campaign
πŸ•΅οΈ
Leak Bazaar Converts Stolen Corporate Data Into Organized Criminal Marketplace
πŸ•΅οΈ
Scammers Abuse Calendar Invites to Plant Phony Subscription Notices
πŸ•΅οΈ
Google bumps up Q Day deadline to 2029, far sooner than previously thought
πŸ•΅οΈ
A nearly undetectable LLM attack needs only a handful of poisoned samples - Help Net Security
πŸ•΅οΈ
China-Linked Red Menshen Uses Stealthy BPFDoor Implants to Spy via Telecom Networks
πŸ•΅οΈ
LLMs Solve Firmware Upgrade Chaos
πŸ•΅οΈ
ANY.RUN Recognized for Innovations and Market LeadershipΒ atΒ GlobalΒ InfoSecΒ AwardsΒ 2026
🌐
Pawn Storm Campaign Deploys PRISMEX, Targets Government and Critical Infrastructure Entities
🌐
How scammers use legitimate surveys to link to malicious sites | Kaspersky official blog
🌐
Suspected RedLine infostealer malware admin extradited to US
🌐
Apple made strides with iOS 26 security, but leaked hacking tools still leave millions exposed to spyware attacks
🌐
Illuminating VoidLink: Technical analysis of the VoidLink rootkit framework
🌐
An AI gateway designed to steal your data
πŸŽ™οΈ
Smashing Security podcast #460: Never knock on the door of a nuclear submarine base and ask for a selfie
πŸ“‘
Masters of Imitation: How Hackers and Art Forgers Perfect the Art of Deception
πŸ“‘
ThreatsDay Bulletin: PQC Push, AI Vuln Hunting, Pirated Traps, Phishing Kits & 20 More Stories
πŸ“‘
Conntour raises $7M from General Catalyst, YC to build an AI search engine for security video systems
πŸ“‘
Inside a Modern Fraud Attack: From Bot Signups to Account Takeovers
πŸ“‘
WhatsApp rolls out more AI features, iOS multi-account support
πŸ“‘
A major hacking tool has leaked online, putting millions of iPhones at risk. Here’s what you need to know
πŸ“‘
World Leaks data extortion: What you need to know
πŸ“‘
Preparing for agentic AI: A financial services approach