Cybersecurity
1,882 publications from 84 organizations filed under Cybersecurity.
Filed by publisher, not by subject — these are everything those organizations published, not everything published about Cybersecurity. See the 1,761 publications Officially classified as Cybersecurity instead.
-
Kritieke SQL-injectie in GeoTools open source Java-bibliotheek: update onmiddellijk
Er is een ernstige kwetsbaarheid ontdekt in GeoTools. Deze kwetsbaarheid betreft een ZeroDay SQL-injectie met een hoge CVSS-score van 9.8. Het NCSC beoordeelt de kans op misbruik als medium en de m...
-
Meerdere kwetsbaarheden in Adobe Commerce: update onmiddellijk
Er zijn meerdere kwetsbaarheden gevonden in Adobe Commerce. Onder de kwetsbaarheden is er één met een CVSS-score van 9.1. Deze heeft het kenmerk CVE-2026-71362. Er is momenteel geen melding van act...
-
Thousands of Hacked WordPress Sites, One Operation: Unmasking StopAndProtect
Research by: Jaromír Hořejší (@JaromirHorejsi) Key points Introduction We first noticed a ransomware family called StopAndProtect in the middle of May 2026. Further analysis of the infrastructure r...
-
New Report: AI threats are here. Why Q2 2026 signals the end of traditional patch cycles
You can’t patch everything. So what do you fix first? Findings in Q2 2026 have changed traditional answers. The latest Quarterly Threat Landscape Report from Rapid7 Labs shows vulnerability disclos...
Cybersecurity 2 versions -
ATENȚIE! STISC atenționează despre atacuri phishing!
ATENȚIE! STISC atenționează despre atacuri phishing! ion.buga Mar, 08/18/2026 - 14:37
Announcement Cybersecurity -
Podatność w oprogramowaniu Carbone
W oprogramowaniu Carbone wykryto podatność typu Improper handling of highly compressed data (data amplification) (CVE-2026-18929).
Announcement Cybersecurity -
17th August – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 17th August, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Colombia’s Ministry of Justice has experien...
-
Reviewing the Arms Trade Treaty
Announcement -
Operation ASTERIX: Anatomy of a Crypto Fraud Pipeline
Operation ASTERIX overviewRapid7 researchers identified an exposed web directory on infrastructure used to support a cryptocurrency fraud operation. The server contained raw phone-number datasets, ...
-
How QR-code phishing can slip past corporate security measures
Quishing has become a popular alternative to traditional phishing. Here’s how businesses can close the gap.
-
Africa’s Cybersecurity Challenge Is Bigger Than Access to Technology
Gopan Sivasankaran is Rapid7's Regional Director, Middle East & Africa.Across Egypt, Nigeria, and Kenya, organizations are expanding their use of cloud infrastructure, artificial intelligence, ...
-
MacSync Stealer: How a Google Search for Claude Led to a macOS Infostealer
Huntress SOC analysts reverse engineer MacSync Stealer, a macOS infostealer spread through fake Claude Code download pages. Watch the full analysis.
-
A heap of overflow in August’s Patch Tuesday haul
421 CVEs, a relatively small set of Edge patches, and two spicy stragglers
-
A New Way to Navigate GreyNoise
Today, we’re introducing a redesigned GreyNoise Visualizer that makes it easier to navigate those capabilities and brings related workflows together in one place.
-
Cyberbeveiligingswet en Wet weerbaarheid kritieke entiteiten vanaf vandaag van kracht
De Cyberbeveiligingswet (Cbw) en de Wet weerbaarheid kritieke entiteiten (Wwke) zijn op 15 augustus 2026 in werking getreden. Lees wat dit betekent voor 8.000 organisaties.
-
Cyberbeveiligingswet en Wet weerbaarheid kritieke entiteiten van kracht
Vanaf 15 augustus 2026 gelden de Cyberbeveiligingswet (Cbw) en de Wet weerbaarheid kritieke entiteiten (Wwke). Deze wetten versterken de digitale en fysieke weerbaarheid van organisaties in Nederla...
Announcement Cybersecurity -
De Cyberbeveiligingswet treedt vandaag, 15 augustus 2026, in werking
De Cyberbeveiligingswet (Cbw) is vandaag, 15 augustus, in werking getreden. De Cbw is bedoeld om Nederland digitaal weerbaarder en veiliger te maken.
Announcement Cybersecurity -
Metasploit Wrap Up: Lot of summer shells and fit http profiles
This wrap-up brings a full-on shell parade. Thirteen shiny new modules landed, starting with a buffet of RCEs. WordPress WP2Shell, Ghost CMS, Joomla JCE, Langflow, OpenCATS, Pterodactyl Panel, Soni...
-
The Good, the Bad and the Ugly in Cybersecurity – Week 33 (2026)
Courts sentence Com member for sextorting 117 minors, joint advisory warns of Gunra ransomware, and ShieldBreak bypasses MS Defender for SYSTEM access.
-
How Cloudflare detects MCP traffic and helps secure it
Cloudflare Gateway identifies MCP requests using protocol-level heuristics. Security teams can use that signal to find shadow MCP traffic, enforce Portal-only access for approved servers, and block...
-
Secure all your internal vibe-coded applications — in one click
Introducing Cloudflare Access for Workers. Attach an Access policy directly to a Worker and it applies everywhere that Worker runs — routes, custom domains, workers.dev, and previews — automatically.
-
APT group HoneyMyte upgrades CoolClient: the backdoor gets a kernel-level Windows rootkit
Our experts discovered a new CoolClient backdoor variant with a kernel-mode rootkit driver that hides malicious processes, files, and network connections from security tools and threat analysts.
-
CERT-SE:s veckobrev v.33
I veckans veckobrev kan du bland annat läsa om fortsatta utmaningar med AI-modeller som agerar utanför de tänkta testmiljöerna, samt rapporter om en ökning av mer kraftfulla överbelastningsangrepp.
-
Evaluatie beleid commerciële radio afgerond
Het beleid voor commerciële radio van 2016 tot en met 2025 is geëvalueerd. Ook is een viertal FM- en DAB+-veilingen uit deze periode onderzocht: de DAB+ laag 7 (2021), de landelijke commercië...
Announcement Digital Rights -
10 Hacker Summer Camp Standouts at Black Hat and DEF CON
From the panels to the villages, Huntress researchers and SOC analysts were all over Hacker Summer Camp this year. Here’s what stood out at Black Hat and DEF CON.
-
150 rural 4G masts now live so holidaymakers can switch off without being cut off
More than 150 rural 4G mast upgrades are now live, boosting mobile coverage across remote UK areas and helping walkers, visitors and communities stay connected.
-
Total eclipse of the Internet: traffic impacts in Iceland, Spain, and Portugal
Cloudflare's data shows a clear impact on Internet traffic from Iceland to Spain and Portugal, following the path of totality of the total solar eclipse that occurred on August 12, 2026.
-
[release-branch.go1.25] go1.25.13
Change-Id: I4b70d995adc305fd68e4dfc6bc5c42cd001513b5 Reviewed-on: https://go-review.googlesource.com/c/go/+/814722 Reviewed-by: Mark Freeman [email protected] Reviewed-by: Dmitri Shuralyov dmitshur@g...
-
[release-branch.go1.26] go1.26.6
Change-Id: I04258bea694def9a16dd544fba28fea45eeadbbb Reviewed-on: https://go-review.googlesource.com/c/go/+/814840 TryBot-Bypass: Gopher Robot [email protected] Reviewed-by: Mark Freeman mark@golang...
-
Meerdere kwetsbaarheden in GitLab Enterprise en Community Edition
Er zijn meerdere kwetsbaarheden gevonden in GitLab Enterprise Edition (EE) en Community Edition (CE). Twee van de bekende kwetsbaarheden, CVE-2026-15216 en CVE-2026-15217, hebben een hoge CVSS-scor...
-
Meerdere kwetsbaarheden in Autodesk AutoCAD
Er zijn meerdere kwetsbaarheden gevonden in Autodesk AutoCAD. AutoCAD is een softwareprogramma voor het maken van technische tekeningen. De kwetsbaarheden met CVE-2026-16463 (score 7.8), CVE-2026-1...
-
What 50 open source projects taught us about security in the AI era
See how the open source projects in Session 4 of the GitHub Secure Open Source Fund combined AI-assisted workflows, maintainer expertise, GitHub security tools, expert guidance, and funding to impr...
-
Education Under Attack: The Pattern Behind Recent University Breaches
Four university breaches, one root cause: misconfiguration. See the pattern behind 2026's higher ed cyberattacks and how to fix the gap.
-
Black Hat USA 2026: Will vulnerability discovery eventually decline in the AI era?
And will today’s surge in AI-driven vulnerability discovery eventually make tomorrow’s software safer?
-
Fake Refund Scam Hits Shopify Shop App Users
A Shopify fake refund scam has been making the rounds over the past few months, targeting Shopify’s Shop app users directly within the app. Here’s what to know.
-
The State of Ransomware Q2 2026
For the past year, the ransomware conversation has centered on concentration: a handful of dominant RaaS operations controlling most of the damage, and a shrinking pool of active groups fighting ov...
-
Kwetsbaarheden in Zoom Clients en Zoom VDI Client software
Er zijn meerdere kwetsbaarheden gevonden in Zoom Clients en Zoom VDI Client software. Zoom is een veelgebruikte applicatie voor online vergaderen. De kwetsbaarheden met kenmerk CVE-2026-53413 en CV...
-
Black Hat USA 2026: What the Hugging Face hack tells us about human responsibility
The incident involving OpenAI models shows that autonomous hacks make human oversight more important, not less
-
Kwetsbaarheid in macOS Screen Sharing
Er is actief misbruik waargenomen van een kwetsbaarheid (CV-2526-65400) in macOS Screen Sharing applicaties waarbij aanvallers root-toegang kregen en cryptominingsoftware installeerden.
-
Armored Likho expands its cyber-espionage toolkit
Kaspersky experts break down a new Armored Likho campaign that poses as a fundraising efforts and delivers a new Still Toolkit aimed at stealing Telegram data and eavesdropping on victims.
-
GreyNoise Welcomes New SVP of Adversary Operations
Former Google Threat Intelligence leader joins GreyNoise as SVP of Adversary Operations to advance proactive discovery and disruption of cyber threats.
-
Guide to Cybersecurity Budget Planning: How Much + How To | Huntress
Planning your cybersecurity budget shouldn't be a headache. See how to protect your business and get the most out of your security spend without the fluff.
-
Black Hat USA 2026: AI is racing ahead of cybersecurity controls
AI took center stage, but the clearest lesson was less about what AI can do than about who is accountable when something goes wrong
-
Akira Hits Safe Mode: Ransomware Rebooting Around EDR
An Akira affiliate rebooted into Safe Mode to kill EDR and Defender, then Safe Mode broke their own ransomware. Here’s the full attack chain.