Cybersecurity 1,610 records

Cybersecurity

1,610 publications classified by Officially as Cybersecurity, judged from each publication's own title and summary.

Our reading, not the publisher's. An organization that has claimed its profile can say what its own publications are about, and that will take precedence here. See everything published by organizations filed under Cybersecurity instead.

  1. How Attackers Abuse VSS, and How Huntress Detects It

    Attackers exploit Volume Shadow Copy for credential theft and ransomware defense evasion. See how Huntress spots the difference from routine IT activity.

    Cybersecurity 3 versions
  2. 14th September – Threat Intelligence Report

    For the latest discoveries in cyber research for the week of 14th Setpember, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES IDScan.net, a US identity verification provid...

  3. Revolut gave customer IDs and financial data to a government impostor

    The digital bank was tricked into releasing sensitive customer information, including IDs, to an attacker using a legitimate government email domain.

  4. CVE-2026-85706: Critical GitLab Path Traversal Exploited in the Wild

    On September 10, 2026, GitLab published a critical patch release for GitLab Community Edition (CE) and Enterprise Edition (EE). The release addresses CVE-2026-85706, a critical path traversal vulne...

    Cybersecurity 2 versions
  5. Unmasking Cloud Identities: From Behavioral Clustering to Automated Detection

    We designed a behavioral clustering model to map cloud identity roles from audit logs, enabling continuous threat detection using standard SQL queries. The post Unmasking Cloud Identities: From Beh...

  6. A week in security (September 7 – September 13)

    A list of topics we covered in the week of September 7 to September 13 of 2026

  7. ATT&CK grew a 15th tactic: A practical DFIR field guide to the Stealth / Defense Impairment split

    Artifacts and tooling for the new Enterprise MITRE ATT&CK matrix tactics, distilled from the field.

  8. Millions of people to benefit from simpler, more secure way to sign in to government services

    Passkeys are being rolled out across GOV.UK One Login, giving more than 23 million users a faster and more secure way to access government services.

  9. Kritieke kwetsbaarheid in GitLab wordt actief misbruikt: update nu

    Er is een kritieke kwetsbaarheid in GitLab Community Edition en Enterprise Edition gevonden met het kenmerk CVE-2026-85706. De kwetsbaarheid heeft een CVSS-score van 10.0 en wordt actief misbruikt....

  10. GitLab rättar kritiska sårbarheter

    GitLab har publicerat säkerhetsuppdateringar för flera sårbarheter i GitLab Community Edition (CE) och Enterprise Edition (EE). [1] Två av dessa sårbarheter, CVE-2026-85706 och CVE-2026-87719, klas...

    Announcement Cybersecurity
  11. GitLab security advisory (AV26-917)

    Serial Number: AV26-917Date: September 11, 2026 As of September 10, 2026, GitLab is affected by vulnerabilities in the following product: GitLab Prior to 19.1.8 Prior to 19.2.6 Prior to 19.3.2 On S...

  12. JFrog security advisory (AV26-867) – Update 2

    Serial number: AV26-867Date: September 1, 2026Updated: September 11, 2026 As of August 28, 2026, JFrog is affected by a vulnerability in the following product: Artifactory Prior to 7...

  13. VU#369611: ExLlamaV3 contains Denial of Service vulnerability via insufficient bounds checking on kernel dispatch index

    An out-of-bounds (OOB) memory access vulnerability involving unchecked array indexing has been identified in the exllamav3_ext compute unified device architecture (CUDA) extension. Successful explo...

    Advisory Cybersecurity 3 versions
  14. n8n security advisory (AV26-916)

    Serial Number: AV26-916Date: September 11, 2026 As of September 8, 2026, n8n is affected by a vulnerability in the following product: n8n Prior to 2.37.7 Prior to 2.38.2 Prior to 1.123.76 The Cyber...

  15. ConnectWise security advisory (AV26-903) – Update 1

    Serial number: AV26-903Date: September 9, 2026Updated: September 11, 2026 As of September 8, 2026, ConnectWise is affected by a vulnerability in the following product: ScreenConnect ...

  16. CVE-2026-89332 - Kiro IDE Sensitive Workspace Data Exfiltration via Agent-Written Workspace Configuration

    Bulletin ID: 2026-111-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/11/2026 12:00 PM PDT Description: Kiro IDE is an agentic development environment that makes it...

    Security notice Cybersecurity 2 versions
  17. Progress security advisory (AV26-915)

    Serial Number: AV26-915Date: September 11, 2026 As of September 11, 2026, Progress Software is affected by a vulnerability in the following product: Chef Automate Prior to 4.13.520 The Cyber Centre...

  18. CVE-2026-89090 - Denial of service in the event stream header decoder in AWS SDK for Go v2

    Bulletin ID: 2026-110-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/11/2026 10:00 AM PDT Description: An issue exists in the the EventStream header decoder in AWS...

    Security notice Cybersecurity
  19. CVE-2026-18061 - XML External Entity (XXE) in AWS Advanced JDBC Wrapper RemoteQueryCachePlugin

    Bulletin ID: 2026-109-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/11/2026 09:30 AM PDT Description: The AWS Advanced JDBC Wrapper is an open-source library that...

    Security notice Cybersecurity
  20. CVE-2026-89065 and CVE-2026-89066: Issue with projen - Path traversal and OS command injection

    Bulletin ID: 2026-108-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/11/2026 09:00 AM PDT Description: projen is an open-source tool for defining and synthesizing ...

    Security notice Cybersecurity
  21. A Community Guide to the EU CRA September 11 Deadline for Manufacturers

    The EU Cyber Resilience Act (CRA) introduces new cybersecurity requirements for products with digital elements. Discover what the September 11, 2026 reporting deadline for manufacturers means for t...

  22. [Control Systems] National Instruments security advisory (AV26-914)

    Serial number: AV26-914Date: September 11, 2026 As of September 10, 2026, National Instruments is affected by vulnerabilities in the following products: SystemLink Prior to or equal to 20...

  23. [Control systems] GeoVision security advisory (AV26-913)

    Serial number: AV26-913Date: Septembre 11, 2026 As of September 10, 2026, GeoVision is affected by vulnerabilities in the following product:: GV-LPC2011/LPC2211 Firmware version 1.13 The ...

  24. [Control systems] Schneider Electric security advisory (AV26-912)

    Serial number: AV26-912Date: September 11, 2026 As of September 9, 2026, Schneider Electric is affected by vulnerabilities in the following products: EcoStruxure™ IT Data Center Expert (F...

  25. Crypto customers targeted by scammers after email marketing provider breach

    A breach at email marketing company Brevo exposed Trezor, CoinTracking, and BitBox customers to phishing emails, but others may also be at risk.

  26. GCP-2026-033

    Published: 2026-05-14Updated: 2026-07-16Description Description Severity Notes 2026-07-16 Update: The following versions of GKE are updated with code to fix this vulnerability on Ubuntu. …

    Security notice Cybersecurity
  27. GCP-2026-034

    Published: 2026-05-20Description Description Severity Notes A vulnerability was found in Apigee where the IntegrationRegion parameter in the SetIntegrationRequest policy lacks validation, allowing ...

    Security notice Cybersecurity
  28. GCP-2026-035

    Published: 2026-06-08Description Description Severity Notes A vulnerability was found in Envoy where HTTP/2 downstream request processing allow an unauthenticated remote client to trigger excessive...

    Security notice Cybersecurity
  29. GCP-2026-036

    Published: 2026-06-09Description Description Severity Notes ARM has announced CVE-2025-10263, an architectural issue affecting some Arm cores which lets an attacker bypass translation stages or GPT...

    Security notice Cybersecurity
  30. GCP-2026-037

    Published: 2026-06-18Updated: 2026-06-20Description Description Severity Notes 2026-06-20 Update: Added GKE patch versions containing the fixes for Container-Optimized OS node images for minor vers...

    Security notice Cybersecurity
  31. GCP-2026-038

    Published: 2026-06-22Description Description Severity Notes A vulnerability was found in App Engine where the GetDashboardAppStats GraphQL private API operation in the Google Cloud console leaked c...

    Security notice Cybersecurity
  32. GCP-2026-039

    Published: 2026-06-22Description Description Severity Notes A vulnerability in Cloud Logging could have allowed attackers to hijack log sink destinations by recreating the target Cloud Storage buck...

    Security notice Cybersecurity 2 versions
  33. GCP-2026-040

    Published: 2026-06-23Description Description Severity Notes A series of vulnerabilities were discovered in Envoy Proxy. For instructions and more details, see the Cloud Service Mesh security bullet...

    Security notice Cybersecurity 2 versions
  34. GCP-2026-041

    Published: 2026-06-24Description Description Severity Notes A recent security investigation was conducted regarding log4j vulnerabilities (CVE-2026-34480 and CVE-2026-34477) reported in Apigee Edge...

    Security notice Cybersecurity 2 versions
  35. GCP-2026-042

    Published: 2026-06-24Description Description Severity Notes A privilege escalation vulnerability was addressed in Cloud Build. Previously, for GitLab Enterprise and Bitbucket Data Center connection...

    Security notice Cybersecurity 3 versions
  36. GCP-2026-043

    Published: 2026-06-24Description Description Severity Notes A vulnerability was found in Firebase Studio where the GetSignedGcsUrl RPC allowed authenticated users to list buckets and download deplo...

    Security notice Cybersecurity 4 versions
  37. GCP-2026-044

    Published: 2026-06-25Description Description Severity Notes A vulnerability was detected in Application Integration's JavaScript task, which was using the Rhino JavaScript engine. This only impacte...

    Security notice Cybersecurity 3 versions
  38. GCP-2026-045

    Published: 2026-06-29Description Description Severity Notes A vulnerability was detected in Envoy Proxy where blocked QPACK decoding can cause a Denial-of-Service Attack against the HTTP/3 stack. F...

    Security notice Cybersecurity 3 versions
  39. GCP-2026-046

    A virtualization vulnerability has been identified in the KVM x86 shadow paging and nested virtualization configurations. …

    Security notice Cybersecurity 5 versions
  40. GCP-2026-047

    Published: 2026-07-13Description Description Severity Notes A Missing Authorization vulnerability was discovered in repositories in BigQuery, Dataform, and Colab Enterprise. What should I do? No cu...

    Security notice Cybersecurity 3 versions
  41. GCP-2026-048

    Published: 2026-07-13Description Description Severity Notes A privilege escalation vulnerability was addressed in Developer Connect. Previously, for GitLab Enterprise and Bitbucket Data Center conn...

    Security notice Cybersecurity 3 versions
  42. GCP-2026-049

    Published: 2026-07-22Description Description Severity Notes A reflected Cross-Site Scripting (XSS) vulnerability was discovered in Google Cloud Looker. An attacker could craft a malicious URL that,...

    Security notice Cybersecurity 4 versions
  43. GCP-2026-050

    Published: 2026-07-29Description Description Severity Notes Per advisory VMSA-2026-0006, multiple vulnerabilities in VMware ESXi, and vCenter were privately reported to Broadcom. We are in the proc...

    Security notice Cybersecurity 4 versions
  44. GCP-2026-051

    2026-08-04 Update: The VMware patch release version is 1.33.1200, not 1.33.1100 as stated in the initial bulletin. The following vulnerabilities have been discovered in containerd (the GDC containe...

    Security notice Cybersecurity 5 versions
  45. GCP-2026-052

    Published: 2026-08-07Description Description Severity Notes A security vulnerability has been identified in the Kernel-based Virtual Machine (KVM) x86 shadow Memory Management Unit (MMU) impacting ...

    Security notice Cybersecurity 4 versions
  46. GCP-2026-053

    Published: 2026-08-11Description Description Severity Notes Google is aware of several security vulnerabilities affecting Intel® Trust Domain Extensions (TDX) firmware that can compromise confident...

    Security notice Cybersecurity 4 versions
  47. GCP-2026-054

    Published: 2026-08-11Description Description Severity Notes A vulnerability (CVE-2026-6726, also known as TCGVRT0010) has been identified in the Trusted Computing Group's TPM 2.0 reference implemen...

    Security notice Cybersecurity 3 versions
  48. GCP-2026-055

    Published: 2026-08-25Description Description Severity Notes A critical unauthenticated Remote Code Execution (RCE) vulnerability exists in Next.js and libheif when processing malicious image files....

    Security notice Cybersecurity 4 versions

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.