REPORTS
Fresh threat intelligence we ingest from public vendor and research feeds — each report linked to its original source. Search, filter by source, and open the reference.
Reports
Newest first. Search, filter by source, open the original.
89 reports · page 3 of 3
securityweek · tlp:amber · 7/7/2026, 5:17:19 PM
Critical Gitea Flaw Under Active Exploitation, Researchers Warn Attackers are exploiting the critical Gitea vulnerability CVE-2026-20896 to bypass authentication with a single HTTP header and access vulnerable repositories and secrets. The post Critical Gitea Flaw Under Active Exploitation, Researchers Warn appeared first on SecurityWeek . Critical Gitea Flaw Under Active Exploitation, Researchers Warn - SecurityWeek SECURITYWEEK NETWORK: Cybersecurity News Webcasts Virtual…
Read original ↗https://www.securityweek.com/critical-gitea-flaw-under-active-exploitation-researchers-warnsecurityweek · tlp:amber · 7/7/2026, 1:13:02 PM
CISA Reportedly Using Anthropic’s Mythos to Scan Government Software for Flaws The audits are reportedly being spearheaded by CISA’s Attack Surface Evaluation team, a specialized unit tasked with conducting digital defense assessments and simulated hacking exercises. The post CISA Reportedly Using Anthropic’s Mythos to Scan Government Software for Flaws appeared first on SecurityWeek . CISA Reportedly Using Anthropic’s Mythos to Scan Government Software for Flaws - Security…
securityweek · tlp:amber · 7/7/2026, 12:38:34 PM
Critical Adobe ColdFusion Vulnerability Exploited in Attacks Hackers are exploiting a recently patched critical vulnerability (CVE-2026-48282) in Adobe ColdFusion that carries a CVSS score of 10/10. The post Critical Adobe ColdFusion Vulnerability Exploited in Attacks appeared first on SecurityWeek . Critical Adobe ColdFusion Vulnerability Exploited in Attacks - SecurityWeek SECURITYWEEK NETWORK: Cybersecurity News Webcasts Virtual Events ICS: ICS Cybersecurity Conference M…
Read original ↗https://www.securityweek.com/critical-adobe-coldfusion-vulnerability-exploited-in-attackssecurityweek · tlp:amber · 7/7/2026, 12:21:56 PM
Iran-Linked Hackers Using Modular C&C Framework in Cyberattacks Researchers say the Iran-linked threat actor used an adaptable modular malware framework and compromised IT service providers to reach high-value targets in Israel. The post Iran-Linked Hackers Using Modular C&C Framework in Cyberattacks appeared first on SecurityWeek . Iran-Linked Hackers Using Modular C&C Framework in Cyberattacks - SecurityWeek SECURITYWEEK NETWORK: Cybersecurity News Webcasts Virtua…
Read original ↗https://www.securityweek.com/iran-linked-hackers-using-modular-cc-framework-in-cyberattackssecurityweek · tlp:amber · 7/7/2026, 12:00:00 PM
CISO Conversations: Tarah Wheeler, Cybersecurity Leader, Thought Leader and Original Thinker Tarah Wheeler is CISO at TPO Group, a firm that provides cybersecurity consultancy for high-stakes organizations. But despite this elevated position, her journey was far from typical. The post CISO Conversations: Tarah Wheeler, Cybersecurity Leader, Thought Leader and Original Thinker appeared first on SecurityWeek . CISO Conversations: Tarah Wheeler, Cybersecurity Leader, Thought L…
Read original ↗https://www.securityweek.com/ciso-conversations-tarah-wheeler-cybersecurity-leader-thought-leader-and-original-thinkersecurityweek · tlp:amber · 7/7/2026, 10:00:00 AM
Linux Kernel Vulnerability Allows VM Escape on Intel and AMD Systems The 16-year-old Januscape flaw affects Linux's KVM hypervisor, allowing attackers to escape virtual machines and potentially execute code on the underlying host. The post Linux Kernel Vulnerability Allows VM Escape on Intel and AMD Systems appeared first on SecurityWeek . Linux Kernel Vulnerability Allows VM Escape on Intel and AMD Systems - SecurityWeek SECURITYWEEK NETWORK: Cybersecurity News Webcasts Vi…
Read original ↗https://www.securityweek.com/linux-kernel-vulnerability-allows-vm-escape-on-intel-and-amd-systemssecurityweek · tlp:amber · 7/7/2026, 9:30:00 AM
Keyfactor Scores $1 Billion+ Investment for AI, Post-Quantum Security The investment will accelerate Keyfactor's machine identity, PKI, and cryptographic security platform as enterprises prepare for AI-driven and post-quantum threats. The post Keyfactor Scores $1 Billion+ Investment for AI, Post-Quantum Security appeared first on SecurityWeek . Keyfactor Scores $1 Billion+ Investment for AI, Post-Quantum Security - SecurityWeek SECURITYWEEK NETWORK: Cybersecurity News Webca…
Read original ↗https://www.securityweek.com/keyfactor-scores-1-billion-investment-for-ai-post-quantum-securitysecurityweek · tlp:amber · 7/6/2026, 7:14:08 PM
Blogspot-Hosted Payloads Delivered in ‘Veil#Drop’ Attacks Securonix says the sophisticated framework abuses compromised websites, Blogspot, PowerShell, and fileless techniques to evade detection and deploy the PureLog information stealer. The post Blogspot-Hosted Payloads Delivered in ‘Veil#Drop’ Attacks appeared first on SecurityWeek . Blogspot-Hosted Payloads Delivered in 'Veil#Drop' Attacks - SecurityWeek SECURITYWEEK NETWORK: Cybersecurity News Web…
Read original ↗https://www.securityweek.com/blogspot-hosted-payloads-delivered-in-veildrop-attackssecurityweek · tlp:amber · 7/6/2026, 3:20:42 PM
The Shift Toward Business-Aligned Risk Management Moving from isolated, technical data to a continuous risk lifecycle can help organizations align security controls with actual business consequences. The post The Shift Toward Business-Aligned Risk Management appeared first on SecurityWeek . The Shift Toward Business-Aligned Risk Management - SecurityWeek SECURITYWEEK NETWORK: Cybersecurity News Webcasts Virtual Events ICS: ICS Cybersecurity Conference Malware & Threats …
Read original ↗https://www.securityweek.com/the-shift-toward-business-aligned-risk-management