Cybersecurity
1,759 publications classified by Officially as Cybersecurity, judged from each publication's own title and summary.
Our reading, not the publisher's. An organization that has claimed its profile can say what its own publications are about, and that will take precedence here. See everything published by organizations filed under Cybersecurity instead.
-
Disrupting supply chain attacks on npm and GitHub Actions
Explore the changes we've shipped across npm and GitHub Actions over the past few months to disrupt supply chain attack techniques and limit their impact. The post Disrupting supply chain attacks o...
Security notice Cybersecurity -
Aggiornamenti di sicurezza Apple
Apple ha rilasciato aggiornamenti di sicurezza per risolvere diverse vulnerabilità presenti nei propri prodotti.
Advisory Cybersecurity -
Apple heeft meerdere kwetsbaarheden in macOS opgelost: installeer de updates zo snel mogelijk
Apple heeft beveiligingsupdates uitgebracht voor meerdere kwetsbaarheden in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8 en macOS Tahoe 26.x. Onder de verholpen kwetsbaarheden bevindt zich CVE-2026-39...
-
Credential Stuffing Campaign Hits SonicWall | Huntress SOC Tracking
The Huntress SOC is tracking an active credential stuffing campaign targeting SonicWall devices, compromising dozens of organizations since July 25.
-
Multiple charges laid in deceptive online passport service scam
Multiple charges laid in deceptive online passport service scam July 28, 2026 – GATINEAU (Québec), Competition Bureau
Announcement Cybersecurity -
Meerdere kwetsbaarheden in Apple iOS en iPadOS: update je apparaten zo snel mogelijk
Apple heeft beveiligingsupdates uitgebracht voor meerdere kwetsbaarheden in iOS en iPadOS, waaronder CVE-2026-3783, CVE-2026-3784 en CVE-2026-43723. De kwetsbaarheden hebben CVSS-scores tot 7.8 en ...
-
Sichere Ladeinfrastruktur: BSI veröffentlicht Eckpunktepapier und startet mit beteiligten Ressorts die Maßnahmenumsetzung
Die Elektromobilität in Deutschland entwickelt sich immer dynamischer. Damit steigen auch die Anforderungen an Cybersicherheit und Resilienz. Das BSI hat aufbauend auf einer Studie ein Eckpunktepap...
Announcement Cybersecurity -
Rethinking security for the age of AI
Editor’s note: Updates with additional details on the model’s crash score. Why security needs a new cyber stack — Introducing Project Perception The physics of cybersecurity are changing. Autonomou...
-
What Our AI SOC Analyst Can Do (and What We Won’t Let It Do)
See agentic security operations governance in action: Huntress' AI SOC lets Athena investigate and act autonomously within guardrails our human analysts set.
-
BTK Başkanı Karagözoğlu: Dijital Çağda Asıl Güç, Güvenli ve Bilinçli Toplumlar İnşa Etmektir
Bilgi Teknolojileri ve İletişim Kurumu (BTK) ile Bilgi Teknolojileri ve İnternet Güvenliği Derneği (BTİDER) ortaklığında yürütülen, Avrupa Birliği Dijital Avrupa Programı kapsamında desteklenen "Tü...
Announcement Cybersecurity -
Call to Action for 6G Leadership and Security
Call to Action for 6G Leadership and Security Off Date Monday, July 27, 2026 - 12:00 [email protected] Mon, 07/27/2026 - 08:40 Call to Action for 6G Leadership and Security Do not feature on home pag...
Announcement Cybersecurity -
CMMC Updates: DoW Pause and Huntress Hits 50% of Requirements
DoW paused the CMMC Phase II deadline in July, but the underlying compliance obligations didn't move. Meanwhile, Huntress Managed ISPM pushes our NIST SP 800-171 coverage to 55 of 110 requirements....
-
The Good, the Bad and the Ugly in Cybersecurity – Week 30 (2026)
Authorities arrest Kratos's developer, HollowGraph hides C2 in 2050 calendar events, and OpenAI's models breach Hugging Face to steal benchmark answers.
-
AI legt de vinger op de kwetsbare plek
Deze blog gaat niet over doemscenario’s of de vraag welke spectaculaire aanval AI straks mogelijk maakt. De vraag is veel praktischer, wat betekenen deze ontwikkelingen voor de digitale weerbaarhei...
-
Your Best Analyst Shouldn't Be a Person. It Should Be a Capability Everyone Can Summon.
Transform expert SOC analysis into an on-demand AI capability to empower all analysts and accelerate threat resolution.
-
Letter from the Governor to the Daily Mail
Letter from Governor Andrew Bailey to the Daily Mail on the subject of AI and cyber-attacks
Statement Cybersecurity -
Russische hackersgroep Laundry Bear hackt Zimbra mailservers
De Russische hackersgroep Laundry Bear is verantwoordelijk voor het hacken van Zimbra mailservers. Een groot aantal defensiebedrijven, onderaannemers, ICT-dienstverleners en andere organisaties in ...
Announcement Cybersecurity -
NSA and Partners Alert Zimbra Collaboration Suite Users of a Russian State-Supported Phishing Campaign
FORT MEADE, Md. (July 23, 2026) — Today, the National Security Agency (NSA) in collaboration with partners, is releasing a Cybersecurity Advisory (CSA) titled, “Russian State-Supported Cyber Actors...
Announcement Cybersecurity -
Employee Spotlight: Andrew Schlemmer
Meet Channel Account Manager Andrew Schlemmer, and learn how his personal experience with cybercrime fueled his mission to make enterprise-grade security attainable and accessible for businesses of...
-
Vernieuwd NCSC klaar voor de toekomst
Het Nationaal Cyber Security Centrum (NCSC) heeft een beslissende stap gezet om beter te voldoen aan de groeiende maatschappelijke behoefte aan digitale weerbaarheid. Met een vernieuwd directieteam...
-
Cyber Weather for June 2026
The global FortiBleed attack campaign brought dark clouds to the Cyber Weather in June, but Finland has so far avoided the storm. The month also saw the return of scams that are typical of the summ...
Announcement Cybersecurity -
2026-009: Critical Vulnerabilities in Microsoft SharePoint
[UPDATED] On 14 July 2026, Microsoft released security updates addressing critical remote code execution (RCE) vulnerabilities in Microsoft SharePoint Server. On 20 July 2026, WatchTowr identified ...
-
Inside FakeAgent: How a Claude Desktop Malvertising Campaign Hit 29 Organizations with SectopRAT
On July 21 and July 22, Huntress observed a number of attacks that started with a malicious public Claude Artifact hosted on a legitimate Claude domain, and ended in organizations being infected by...
-
Next chapter: Restructuring GitHub’s bug bounty program
GitHub is making some significant changes to its bug bounty program, shifting its focus to give researchers a better experience working with the GitHub team. The post Next chapter: Restructuring Gi...
Security notice Cybersecurity -
Bundeskabinett stärkt mit „CyberGovSecure" die Cybersicherheit der Bundesverwaltung
Das Programm „CyberGovSecure“ setzt einen verbindlichen politischen und organisatorischen Rahmen. Das Programm setzt sich zum Ziel, die Cybersicherheit und Cyberresilienz der Bundesverwaltung resso...
Announcement Cybersecurity -
ENISA objavila orodje za samooceno kibernetske odpornosti za mikro, mala in srednje velika podjetja
Evropska agencija za kibernetsko varnost (ENISA) je objavila SME Cyber Resilience Maturity Assessment Model, praktično orodje za samooceno kibernetske odpornosti. Namenjeno je predvsem mikro, malim...
Announcement Cybersecurity -
UAC-0099: LUNCHPOKE, BURNYBEAR, оновлений MATCHBOIL.V2 та використання Notepad++ 8.8.3
Із середини літа 2026 року CERT-UA відзначено зміну в тактиках, техніках та процедурах кластера кіберзагроз UAC-0099.
Announcement Cybersecurity -
Oracle Java の脆弱性対策について(2026年7月)
Announcement Cybersecurity -
SI-CERT 2026-04 / Kritična ranljivost v WordPress jedru – WP2Shell
Kritična veriga ranljivosti CVE-2026-63030 in CVE-2026-60137 v jedru sistema WordPress lahko napadalcu brez prijave omogoči popoln prevzem spletnega mesta. The post SI-CERT 2026-04 / Kritična ranlj...
Announcement Cybersecurity -
Уязвимост wp2shell засягащa WordPress
wp2shell представлява комбинация от 2 уязвимости за WordPress, които като бъдат екслоатирани водят до unauthenticated remote code execution (RCE) и могат да доведат до компрометирането на уязвими у...
Announcement Cybersecurity -
Now Available: Intelligence Dashboard in the GreyNoise Platform
With the new Intelligence Dashboard, pin any combination of CVEs, tags, countries, IPs, and GNQL queries into one persistent, always-current view.
-
Kritische Sicherheitslücken in WordPress - Updates verfügbar
In WordPress existieren zwei Sicherheitslücken. Eine SQL-Injection-Schwachstelle im Parameter „author__not_in“ von „WP_Query“ betrifft WordPress ab Version 6.8. Ab WordPress 6.9 lässt sich diese la...
Announcement Cybersecurity -
Are More Than 500 Million WordPress Websites at Risk? A New Critical “wp2shell” Vulnerability Allows Complete Remote Server Compromise!
A critical new vulnerability, dubbed “wp2shell,” has been discovered in WordPress, one of the world’s most widely used content management systems (CMS). If successfully exploited, this flaw allows ...
Announcement Cybersecurity -
Introducing Gemini 3.5 Flash Cyber
Google introduces Gemini 3.5 Flash Cyber, a lightweight cybersecurity model to find and patch vulnerabilities.
Research Cybersecurity -
Attention Fortinet FortiSandbox Users! CISA Warns of Critical Vulnerabilities Actively Exploited in Real-World Cyberattacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two dangerous vulnerabilities affecting the Fortinet FortiSandbox platform to its Known Exploited Vulnerabilities (KEV) Ca...
Announcement Cybersecurity -
Is Your Telegram Account Really Secure? Hackers Are Hijacking Active Sessions to Compromise Even 2FA-Protected Accounts!
A newly discovered macOS information-stealing (infostealer) malware poses a serious security threat to Telegram Desktop users. According to security researchers, this malware steals Telegram Deskto...
Announcement Cybersecurity -
Strengthening Cyber Resilience in the SACCO Industry
The Authority is participating in the ongoing 2026 The International Credit Union Regulators’ Network (ICURN) Annual Conference, being held from 15 to 17 July 2026 at the Taj Palace in Mumbai, Indi...
Announcement Cybersecurity -
Is Your NGINX Server Truly Secure? F5 Warns of Critical Vulnerabilities That Could Lead to Remote Code Execution!
F5 has issued an official security advisory regarding several high-risk vulnerabilities affecting NGINX Plus and NGINX Open Source. According to security experts, successful exploitation of these v...
Announcement Cybersecurity -
NSA joins CISA and Others in Releasing the Cybersecurity Information Sheet “Establishing a Coordinated Vulnerability Disclosure Program to Work with Security Researchers”
FORT MEADE, Md. (July 16, 2026) — The National Security Agency (NSA), in partnership with the Cybersecurity and Infrastructure Security Agency (CISA), Japan Computer Emergency Response Team Coordin...
Announcement Cybersecurity -
Is Your Organization at Risk? Microsoft Confirms Active Exploitation of a 0-Day Vulnerability in Active Directory Federation Services (AD FS)
As part of its July 2026 Patch Tuesday security updates, Microsoft has addressed a 0-day vulnerability in Active Directory Federation Services (AD FS), tracked as CVE-2026-56155. The most concernin...
Announcement Cybersecurity -
Is Windows BitLocker Protection No Longer Enough? Microsoft Fixes a 0-Day Vulnerability That Could Bypass Disk Encryption
As part of its July 2026 Patch Tuesday security updates, Microsoft has fixed a new zero-day (0-day) vulnerability affecting Windows BitLocker. Tracked as CVE-2026-50661, the flaw could allow an att...
Announcement Cybersecurity