Cybersecurity 1,758 records

Cybersecurity

1,758 publications classified by Officially as Cybersecurity, judged from each publication's own title and summary.

Our reading, not the publisher's. An organization that has claimed its profile can say what its own publications are about, and that will take precedence here. See everything published by organizations filed under Cybersecurity instead.

  1. Microsoft and Adobe Patch Tuesday, September 2026 Security Update Review

    Microsoft kicks off September with its monthly Patch Tuesday release, delivering fixes for security vulnerabilities affecting its products. The security updates are packed with security f...

  2. Microsoft’s September 2026 Patch Tuesday addresses 964 CVEs (CVE-2026-81963, CVE-2026-85880)

    Microsoft addresses 964 CVEs, smashing July’s release as the largest Patch Tuesday release. This month’s updates include patches for two zero-days that were exploited in the wild. Microsoft patched...

    Cybersecurity 2 versions
  3. Claude Mythos 5 is coming to Tenable One, powering the new “Adversary View”

    Tenable is bringing Anthropic’s Claude Mythos 5 into our enterprise security offerings. Adding frontier adversarial reasoning to the Tenable One Exposure Management Platform will help customers bet...

    Cybersecurity 2 versions
  4. NSA and Others Warn China-Based AI Companies are Distilling U.S. Frontier AI Models

    FORT MEADE, Md. — Today, the National Security Agency (NSA), Federal Bureau of Investigation (FBI), and Cybersecurity and Infrastructure Security Agency (CISA) released the Cybersecurity ...

    Announcement Cybersecurity
  5. September 2026 Monthly Patch

    Microsoft has released security patches to address multiple vulnerabilities in their software and products.

    Announcement Cybersecurity
  6. Active Exploitation of Vulnerability in N-Able N-Central

    Attackers are exploiting a critical vulnerability in N-Able N-Central remote management and monitoring tool to execute code remotely without authentication. Patch immediately.

    Announcement Cybersecurity
  7. Active Exploitation of Vulnerability in Adobe Products

    Attackers are exploiting a critical vulnerability in Adobe Commerce, Adobe Commerce B2B and Adobe Magento to execute arbitrary code. Patch immediately.

    Announcement Cybersecurity
  8. Critical Vulnerabilities in SAP Products

    Attackers can exploit multiple vulnerabilities in SAP Products to execute arbitrary commands, obtain sensitive credentials, replace or delete tenant data and perform unauthorised actions. Patch imm...

    Announcement Cybersecurity
  9. High-Severity Vulnerability in PostgreSQL

    Attackers can exploit a high-severity vulnerability in PostgreSQL to execute arbitrary code on the affected system. Patch promptly.

    Announcement Cybersecurity
  10. 4 Questions to Ask When Evaluating an Exposure Management Platform

    Executive Summary Exposure management platforms are increasingly evaluated based on post-detection actions rather than detection itself. …

  11. VU#718077: UEFI Shell module embedded in SPI Flash can be used to bypass Secure Boot

    The UEFI Shell program may expose raw memory access capabilities that, if present in platform firmware for debugging or advanced support use cases, could be abused to undermine UEFI Secure Boot pro...

    Advisory Cybersecurity 3 versions
  12. Microsoft 製品の脆弱性対策について(2026年9月)

    情報処理推進機構(IPA)の「Microsoft 製品の脆弱性対策について(2026年9月)」に関する情報です。

    Announcement Cybersecurity
  13. VU#859658: Skullcandy Dime 3 wireless earbuds contain an unauthenticated Bluetooth pairing vulnerability

    Skullcandy Dime 3 wireless earbuds, running firmware version 1.0.0.28, accept a new Bluetooth Classic (BR/EDR) pairing request from an unpaired device without requiring the earbuds to be placed int...

    Advisory Cybersecurity 3 versions
  14. VU#943094: ONLYOFFICE ownCloud integration plugin contains a Server-Side Request Forgery (SSRF) vulnerability

    A Server-Side Request Forgery (SSRF) vulnerability exists in Ascensio System SIA's ONLYOFFICE ownCloud integration plugin (version 9.12). The plugin’s backend endpoint does not adequately validate ...

    Advisory Cybersecurity 3 versions
  15. StyleSmuggler (CVE-2026-75650): Frequently asked questions about Adobe Commerce and Magento zero-day

    A critical unauthenticated remote code execution (RCE) zero-day in Adobe Commerce and Magento Open Source, dubbed StyleSmuggler, has been actively exploited since September 4 with attacks observed ...

    Cybersecurity 2 versions
  16. Automatic Key Exchange: faster, post-quantum secure origin handshakes for 45 billion daily connections (and counting)

    Automatic Key Exchange probes TLS 1.3-capable customer origins to learn which key agreement algorithms they support. We then lead with the most secure algorithm when connecting to the origin, prefe...

  17. The Shared Clipboard Inside the Sandbox: Cross-Account Data Leakage in ChatGPT

    Research by: Alexey Bukhteyev Key Takeaways Introduction Over the past several years, AI assistants have moved far beyond text generation. Modern systems can execute code, install additional depend...

  18. Kwetsbaarheden in MikroTik RouterOS actief misbruikt: update nu

    Er zijn meerdere ernstige kwetsbaarheden gevonden in MikroTik RouterOS. Deze kwetsbaarheden worden actief misbruikt en is vooral gericht op routers met publiek toegankelijke SSH-diensten. Het NCSC ...

  19. CVE-2026-86206, CVE-2026-86207: N-able N-central Authentication Bypass (FIXED)

    While conducting research into a recent N-able N-central authentication bypass vulnerability (CVE-2026-18577), Rapid7 Labs discovered two new vulnerabilities affecting the latest version of N-centr...

    Cybersecurity 2 versions
  20. ClearFake WebDAV infection chain delivers Amatera stealer, ZigCryptoStealer, and NetSupport Manager

    We assess with moderate confidence that the attacks are not targeted at a particular organization, but are a part of a cryptocurrency and credentials-stealing operation using the Amatera stealer as...

  21. ClickFix moves into the browser: Cryptocurrency theft with Google-hosted C2

    Cisco Talos is tracking a cryptocurrency-stealing campaign that abuses the Google Visualization API for command and control (C2), retrieving obfuscated JavaScript from a publicly published Google S...

  22. Adobe: rilevato sfruttamento in rete della CVE-2026-75650

    Aggiornamenti di sicurezza Adobe sanano una vulnerabilità con gravità “critica” in Adobe Commerce, Adobe Commerce B2B e Magento Open Source, piattaforme per il commercio elettronico utilizzate per ...

    Advisory Cybersecurity
  23. Kritiska ievainojamība Adobe Commerce un Magento e-komercijas platformās

    E-komercijas platformās Adobe Commerce un Magento Open Source ir atklāta kritiska ievainojamība CVE-2026-75650, kas jau tiek aktīvi izmantota uzbrukumos. Tā ļauj neautorizētam uzbrucējam ...

    Announcement Cybersecurity
  24. Ernstige kwetsbaarheid in Adobe Commerce en Magento actief misbruikt: update onmiddellijk

    Er is een zeer ernstige kwetsbaarheid, CVE-2026-75650, gevonden in Adobe Commerce en Magento met een maximale CVSS-score van 10.0. Met deze kwetsbaarheid is het mogelijk voor een aanvaller om op af...

  25. Kiberlaikapstākļi 2026 | Augusts

    Pieejami kiberlaikapstākļi par 2026. gada augustu. Kiberlaikapstākļi ir CERT.LV speciālistu apkopots pārskats īsā un pārskatāmā formā par Latvijas kibertelpā svarīgākajiem notikumiem pagājušajā mēn...

    Announcement Cybersecurity
  26. September 2026 Patch Tuesday: Two Exploited Zero-Days and 113 Critical Vulnerabilities Among 972 CVEs

    Microsoft has released security updates for 972 vulnerabilities, including two exploited zero-days and 113 critical, in its September 2026 Patch Tuesday rollout.

  27. AD Rights Management Service (Part 1): Architecture, Deprecation, and Reconnaissance

    Active Directory Rights Management Services still ships in Windows Server 2025, years after Microsoft began steering customers to the cloud, and it remains fully supported on-premises. …

    Cybersecurity 3 versions
  28. Global standard-setting bodies publish a toolkit for cyber resilience at FMIs and a discussion paper on FMIs’ reliance on third-party service providers

    CPMI-IOSCO are seeking input from stakeholders on a cyber resilience toolkit for financial market infrastructures (FMIs) and on risks to FMIs from third-party service providers. The Cyber resilienc...

    Announcement Cybersecurity
  29. Research: A study of cybersecurity literature on open-source software and AI

    A combined evidence report and systematic review of peer-reviewed academic literature and grey literature.

    Announcement Cybersecurity
  30. 7th September – Threat Intelligence Report

    For the latest discoveries in cyber research for the week of 7th Setpember, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Thomson Reuters, a global information and tech...

  31. AI SIEM Search

    The new Huntress AI SIEM search feature lets you find answers in plain English, with no query language fluency required. Ask questions, get results, and skip the syntax.

    Cybersecurity 3 versions
  32. Microsoft 365 un Azure ierīces koda (Device Code) ļaunprātīga izmantošana

    Ierīces koda (Device Code) autentifikācija ir leģitīma funkcionalitāte, kas risina praktisku problēmu - tā ļauj ērti pieteikties ierīcē, kurai nav pārlūkprogrammas vai pilnvērtīgas tastatūras, izma...

    Announcement Cybersecurity
  33. Upozorenj: kritična ranjivosti u MikroTik RouterOS-u. Preporučuje se hitna nadogradnja.

    Poljski CERT (CERT Polska) identificirao je i koordinirao objavu šest ranjivosti u sustavu MikroTik RouterOS. Kombinacijom dviju od njih (CVE-2026-67276 i CVE-2026-86060), nazvanom “MikroTrick”, na...

    Announcement Cybersecurity
  34. Upozorenje: WhatsApp prijevara “Glasajte za moje dijete”

    Nacionalni CERT zaprimio je prijave o phishing (smishing) prijevari putem preuzetog WhatsApp računa te je prijavio prijevare izvorima incidenta i nadležnim CERT timovima.  Primjer WhatsApp por...

    Announcement Cybersecurity
  35. Kwetsbaarheid in N-central van N-able: update nu

    Er is een ernstige kwetsbaarheid, CVE-2026-86218, gevonden in N-central van N-able met een CVSS-score van 10. Deze kwetsbaarheid maakt het voor onbevoegden mogelijk om op afstand, zonder inloggegev...

  36. PAPILDINĀTS Uzbrucēji pastiprināti cenšas kompromitēt MikroTik maršrutētājus

    Novērota pastiprināta uzbrucēju aktivitāte, kas vērsta pret MikroTik maršrutētājiem (rūteriem), mēģinot tos kompromitēt. Nekavējoties jāuzstāda atjauninājumi izmantotajām MikroTik iekārtām.

    Announcement Cybersecurity
  37. Europol celebrates the International Day of Police Cooperation

    On 7 September, Europol is marking the International Day of Police Cooperation together with its partners to recognise the central role our network plays in tackling the most serious threats agains...

    Announcement Cybersecurity
  38. SI-CERT 2026-05 / Kritična ranljivost v MikroTik RouterOS – MikroTrick

    Veriga kritičnih ranljivosti v RouterOS omogoča popolno kompromitacijo MikroTik naprav, ki imajo dostopno SSH storitev. Ranljivosti se že izkorišča v napadih, zato priporočamo takojšnjo namestitev ...

    Announcement Cybersecurity
  39. MikroTik: rilevato sfruttamento in rete di nuove vulnerabilità

    MikroTik ha rilasciato aggiornamenti di sicurezza al fine di correggere 6 nuove vulnerabilità, di cui 2 con gravità “critica” e 2 con gravità “alta”. …

    Advisory Cybersecurity
  40. Active Exploitation of Vulnerability in NetScaler ADC and NetScaler Gateway

    Attackers are exploiting a critical vulnerability in NetScaler ADC and NetScaler Gateway. Patch immediately.

    Announcement Cybersecurity
  41. Critical N-able N-central Vulnerability and Active Exploitation

    UPDATE: Critical vulnerability in N-able N-central gives attackers unauthenticated, "god-mode" access to the RMM console.

    Cybersecurity 3 versions
  42. Podatności w oprogramowaniu Mikrotik RouterOS

    Zespół CERT Polska znalazł 6 podatności (od CVE-2026-67276 do CVE-2026-67279, CVE-2026-67281 oraz CVE-2026-86060) w oprogramowaniu Mikrotik RouterOS.

    Announcement Cybersecurity
  43. Krytyczne podatności w MikroTik RouterOS są aktywnie wykorzystywane. Zalecana pilna aktualizacja

    Zespół CERT Polska zidentyfikował i skoordynował ujawnienie sześciu podatności w MikroTik RouterOS, w tym dwóch krytycznych. Podatności te są już aktywnie wykorzystywane do przejmowania urządzeń, k...

    Announcement Cybersecurity
  44. OpenSSF at Hacker Summer Camp 2026: Black Hat & DEF CON Highlights and Recap

    Las Vegas was once again the center of the cybersecurity universe from August 1–9 for Black Hat and DEF CON 2026. The Open Source Security Foundation (OpenSSF) had a major presence throughout the w...

  45. Uzbrukumos izmantota ievainojamība Google Chrome

    Google Chrome pārlūkprogrammā ir atklāta ievainojamība CVE-2026-85046, kas  jau pirms drošības "ielāpa" publicēšanas tika aktīvi izmantota uzbrukumos.  Ievainojamība var ļaut izpildīt uzb...

    Announcement Cybersecurity
  46. Kwetsbaarheden in Google Chrome – voer updates uit

    Er zijn meerdere kwetsbaarheden gevonden in Google Chrome, specifiek in versie 152.0.7977.82. Deze kwetsbaarheden, waaronder CVE-2026-85042 en CVE-2026-85047, betreffen verschillende onderdelen van...

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.