Cybersecurity
1,878 publications from 84 organizations filed under Cybersecurity.
Filed by publisher, not by subject — these are everything those organizations published, not everything published about Cybersecurity. See the 1,758 publications Officially classified as Cybersecurity instead.
-
CVE-2026-18428 - OpenSearch SQL Plugin - Async Query Validation Bypass
Bulletin ID: 2026-081-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/13/2026 10:30 AM PDT Description: OpenSearch SQL plugin is a plugin that enables SQL and PPL q...
-
CVE-2026-85781 - Unverified access point ownership in Amazon EFS CSI Driver
Bulletin ID: 2026-099-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/04/2026 11:45 AM PDT Description: The Amazon EFS CSI Driver is an open-source Kubernetes Conta...
-
Issue with FreeRTOS-Kernel - CVE-2026-77234, CVE-2026-77235, CVE-2026-77236, CVE-2026-77237
Bulletin ID: 2026-086-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/21/2026 10:30 AM PDT Description: FreeRTOS-Kernel is a real-time operating system kernel for m...
-
CVE-2026-85012 - OS command injection in the Amazon CodeCatalyst blueprints SDK
Bulletin ID: 2026-095-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/03/2026 10:00 AM PDT Description: Amazon CodeCatalyst blueprints are reusable project template...
-
CVE-2026-19311- Missing Authorization in OpenSearch Alerting Plugin
Bulletin ID: 2026-078-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/12/2026 11:30 AM PDT Description: OpenSearch is a community-driven, open-source search and ana...
-
AL26-019 - Vulnerabilities impacting Citrix NetScaler ADC and NetScaler Gateway - CVE-2026-19490 and CVE-2026-19489 - Update 1
Number: AL26-019Date: September 4, 2026Updated: September 9, 2026 Audience This Alert is intended for IT professionals and managers. Purpose An Alert is used to raise awareness of a recen...
-
Citrix security advisory (AV26-833) - Update 1
Serial Number: AV26-833Date: August 19, 2026Updated: September 9, 2026 As of August 19, 2026, Citrix is affected by vulnerabilities in the following products: NetScaler ADC and NetScaler Version 13...
-
Cisco security advisory (AV26-197) – Update 3
Serial number: AV26-197Date: March 5, 2026Updated: September 9, 2026 On March 4, 2026, Cisco published security advisories to address vulnerabilities in the following products. Included w...
-
Fortinet security advisory (AV26-023) - Update 1
Serial number: AV26-023Date: January 13, 2026Updated: September 9, 2026 On January 13, 2026, Fortinet published security advisories to address vulnerabilities in multiple products. Includ...
-
Google security advisory (AV26-904)
Serial Number: AV26-904Date: September 9, 2026 As of September 8, 2026, Google is affected by vulnerabilities in the following product: Chrome Prior to 153.0.8010.37 Google is aware that an exploit...
-
Two zones or three? A design framework for zone-resilient Azure workloads
Zone resiliency isn't a single number you apply to a whole workload. The useful question isn't “how many zones?” but “how many zones does each component need to survive the loss of one?” Decide zon...
-
Active exploitation of Cisco Secure Firewall Management Center vulnerabilities
Cisco Talos is actively tracking the exploitation of two vulnerabilities in Cisco’s Secure Firewall Management Center (FMC) Software.
-
2026-09-09, Version 26.8.2 (Current), @aduh95
Notable Changes [616bd3fa26] - doc: deprecate Server.prototype._listen2 in node:net (Antoine du Hamel) #65593 [ae1801eb55] - meta: refine the security vuln posture for experimental features (James ...
-
Credentialed Pre-Port Discovery: Don't Probe the Host, Ask it
If your scan engine already holds credentials for a host, it can ask that host which ports are open instead of probing for them. Every scan begins with the same question: which ports on this host a...
Cybersecurity 2 versions -
The Models That Found 10,000 Zero-Days Broke Into Three Companies Using Weak Passwords
The question of whether a Frontier AI model could find vulnerabilities that no human researcher had found was settled in April. Claude Mythos Preview identified thousands of previously unknown flaw...
-
Kwetsbaarheden in Adobe Photoshop Desktop met risico op misbruik: update direct
Er zijn meerdere kwetsbaarheden gevonden in Adobe Photoshop Desktop met een CVSS-score tot 8,6. Deze kwetsbaarheden zijn beoordeeld als van normale urgentie om te handelen. Er zijn geen meldingen v...
-
Kwetsbaarheden in Adobe Commerce met risico op misbruik: update onmiddellijk
Er zijn meerdere kwetsbaarheden gevonden in Adobe Commerce. Het NCSC beoordeelt de kans op misbruik als middelmatig en de mogelijke schade als hoog. Het advies is om de beschikbare updates van Adob...
-
Grand Theft Auto VI hype leads to malware
Threat actors are exploiting GTA6 hype with fake leaked downloads spread via SEO poisoning, packed with RATs, infostealers, and wiper ransomware. Here’s what Huntress found.
Cybersecurity 3 versions -
Srednjeevropsko sodelovanje za močnejšo kibernetsko varnost v Evropi
Urad Vlade Republike Slovenije za informacijsko varnost (URSIV) je v Mariboru gostil srečanje predstavnikov pristojnih nacionalnih organov za kibernetsko varnost držav, povezanih v Srednjeevropsko ...
Announcement Cybersecurity -
2026-011: Critical Vulnerabilities in SAP Kernel and NetWeaver Message Server
On 8 September 2026, as part of its September Security Patch Day, SAP released Security Notes addressing two critical vulnerabilities affecting a broad range of SAP products[3]. The most severe, CV...
-
Phishing Attacks Serve Browser-in-the-Browser Pages, Rogue RMM Persistence
See how a browser-in-the-browser phishing attack led to rogue ScreenConnect persistence and evasion tactics Huntress caught in the act.
Cybersecurity 3 versions -
Introducing the CyberAgents Exchange AI Inspector: Rigorous review for community-built AI
Open-source registries for AI agents are only effective when they include a rigorous, transparent security review process for community submissions. That’s why for its new CyberAgents Exchange regi...
-
How we rebuilt Cloudflare Workers’ module registry for Node.js compatibility
Workers now enables Node.js compatibility by default, supports applications up to 64 mebibytes, and adds a URL-based module registry with import.meta, lazy compilation, shared code caches, and clea...
-
Actief misbruik zero-day kwetsbaarheid in Google Chrome V8 - update nu
Er is een zero-day kwetsbaarheid gevonden in de V8 JavaScript engine van Google Chrome. Deze kwetsbaarheid, bekend als CVE-2026-87491, wordt actief misbruikt en kan ernstige schade veroorzaken. Het...
-
eu-LISA Industry Roundtable puts data management in focus
eu-LISA brings together representatives from Member States, EU institutions and agencies, academia and industry in Strasbourg on 9–10 September for its 2026 Industry Roundtable on Data Management.&...
Announcement -
Opening speech by eu-LISA Executive Director Tillmann Keber at the Industry Roundtable 2026: Data Management
On 9 September 2026 in Strasbourg, eu-LISA Executive Director Tillmann Keber opened the eu-LISA Industry Roundtable 2026: Data Management, bringing together representatives from industry, Member St...
Announcement -
Untracked Nightmares: The Threats Hiding Behind Commodity Infrastructure
An investigation into how cybercriminals used YouTube gaming lures and SEO poisoning to deliver multi-payload malware to enterprise networks. The post Untracked Nightmares: The Threats Hiding Behin...
-
Safe word: What is it and why do you need one?
AI scams are now hyper-realistic. But there’s one simple way to see through them.
-
Microsoft verhelpt ernstige kwetsbaarheden in Windows en Office
Deze Patch Tuesday heeft Microsoft een groot aantal kwetsbaarheden verholpen in verschillende producten. Microsoft meldt dat twee kwetsbaarheden in Windows worden misbruikt. Een aanvaller moet hier...
-
Rogue ScreenConnect Installations Across Unrelated Hosts Suggest Worm-Like Activity
Huntress is tracking a pattern across multiple customer environments where rogue ScreenConnect clients repeatedly spawn the Windows Script Host to execute a series of four VBScript files.
Cybersecurity 3 versions -
Agents Gone Wild: An AI-Orchestrated Global Campaign Against PaperCut NG/MF
11 organizations compromised in 26 seconds. GreyNoise breaks down the AI-enabled campaign against PaperCut that hit 440 instances across 48 countries.
-
Microsoft Patch Tuesday for September 2026 — Snort rules and prominent vulnerabilities
Microsoft has released its monthly security update for September 2026, which includes 973 vulnerabilities affecting a range of products, including 113 that Microsoft marked as "critical."
-
2026-09-08, Version 24.21.0 'Krypton' (LTS), @aduh95
Notable Changes [71106e1f17] - crypto: update root certificates to NSS 3.126 (Node.js GitHub Bot) #65495 [afca0a912d] - (SEMVER-MINOR) crypto: support loading private keys through STORE loaders (Fi...
-
Patch Tuesday - September 2026
Microsoft is publishing 974 own-product vulnerabilities on September 2026 Patch Tuesday, including 723 vulnerabilities in Windows. Along with Microsoft fixes for 25 non-Microsoft CVEs, that brings ...
Cybersecurity 2 versions -
Beyond the benchmark: How an adaptive approach drives scientific discovery
For research and development (R&D) organizations, the promise of agentic AI is not a better one-time answer. It is a new way to explore complex scientific and engineering problems: pursuing mul...
-
Microsoft patchetirsdag september 2026
Microsoft har offentliggjort sine månedlige sikkerhetsoppdateringer1.
Announcement Cybersecurity -
Microsoft and Adobe Patch Tuesday, September 2026 Security Update Review
Microsoft kicks off September with its monthly Patch Tuesday release, delivering fixes for security vulnerabilities affecting its products. The security updates are packed with security f...
-
Microsoft’s September 2026 Patch Tuesday addresses 964 CVEs (CVE-2026-81963, CVE-2026-85880)
Microsoft addresses 964 CVEs, smashing July’s release as the largest Patch Tuesday release. This month’s updates include patches for two zero-days that were exploited in the wild. Microsoft patched...
Cybersecurity 2 versions -
Claude Mythos 5 is coming to Tenable One, powering the new “Adversary View”
Tenable is bringing Anthropic’s Claude Mythos 5 into our enterprise security offerings. Adding frontier adversarial reasoning to the Tenable One Exposure Management Platform will help customers bet...
-
NSA and Others Warn China-Based AI Companies are Distilling U.S. Frontier AI Models
FORT MEADE, Md. — Today, the National Security Agency (NSA), Federal Bureau of Investigation (FBI), and Cybersecurity and Infrastructure Security Agency (CISA) released the Cybersecurity ...
-
Security Bulletin 9 Sep 2026 [PDF, 2051KB]
Announcement Cybersecurity -
September 2026 Monthly Patch
Microsoft has released security patches to address multiple vulnerabilities in their software and products.
Announcement Cybersecurity -
Active Exploitation of Vulnerability in N-Able N-Central
Attackers are exploiting a critical vulnerability in N-Able N-Central remote management and monitoring tool to execute code remotely without authentication. Patch immediately.
Announcement Cybersecurity -
Active Exploitation of Vulnerability in Adobe Products
Attackers are exploiting a critical vulnerability in Adobe Commerce, Adobe Commerce B2B and Adobe Magento to execute arbitrary code. Patch immediately.
Announcement Cybersecurity -
Critical Vulnerabilities in SAP Products
Attackers can exploit multiple vulnerabilities in SAP Products to execute arbitrary commands, obtain sensitive credentials, replace or delete tenant data and perform unauthorised actions. Patch imm...
Announcement Cybersecurity