Cybersecurity
1,877 publications from 84 organizations filed under Cybersecurity.
Filed by publisher, not by subject — these are everything those organizations published, not everything published about Cybersecurity. See the 1,855 publications Officially classified as Cybersecurity instead.
-
AL26-021 - Vulnerabilities Impacting Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) - CVE-2026-20192, CVE-2026-76423 and CVE-2026-76460
Number: AL26-021Date: September 17, 2026 Audience This Alert is intended for IT professionals and managers. Purpose An Alert is used to raise awareness of a recently identified cyber threat th...
-
Active Exploitation of Critical Vulnerability in Cisco AsyncOS
Attackers are exploiting a critical vulnerability in Cisco AsyncOS to execute arbitrary commands with root privileges. Patch immediately.
Announcement Cybersecurity -
Cisco security advisory (AV26-932)
Serial number: AV26-932Date: September 17, 2026 As of September 16, 2026, Cisco is affected by vulnerabilities in the following products: Cisco Secure Firewall Threat Defense (FTD) Software Pr...
-
VU#280377: Dokploy is vulnerable to OS command injection
Dokploy versions 0.29.8 and 0.29.11, as well as commit 24b02f5 on the canary branch, are vulnerable to OS command injection during the backup creation and restoration processes. The vulnerability s...
-
AI Threat Landscape Digest: July–August 2026
The defining development of the period came not from attackers but from the AI labs themselves, whose models broke out of controlled evaluations and reached real systems. …
-
Seven arrests in Brazil during crackdown on South America-Europe cocaine pipeline
Europol has supported law enforcement agencies from Italy and Brazil in dismantling a major drug trafficking and money laundering network linked to the Italian ‘Ndrangheta. The operation, code-name...
Announcement Sanctions -
Revolut phishing texts appear days after data breach
Revolut customers received phishing texts only days after the digital bank acknowledged disclosing customer data to a government impostor.
-
Erfaringsopsamling fra den nationale krisestyringsøvelse
Styrelsen for Samfundssikkerhed har gennemført en erfaringsopsamling fra den nationale krisestyringsøvelse, som blev gennemført i efteråret 2025. På baggrund af erfaringerne er uddraget syv anbefal...
Announcement Disasters -
Operational Resilience: Turning Your IR Plan Into a Resilient Team
An incident response plan only works if it’s tested. Learn the 5 pillars of operational resilience and how to turn your plan into muscle memory before an attack hits.
Cybersecurity 3 versions -
Cisco publicerar säkerhetsuppdateringar för flera sårbarheter
Den 16 september publicerade Cisco säkerhetsuppdateringar för flera sårbarheter, där några av dessa utnyttjas aktivt enligt Cisco. [1, 2] Ett exempel är CVE-2026-76460, en sårbarhet i ett API för C...
Announcement Cybersecurity -
The Odyssey and Trojans again: MovieReaper attacks users in multiple countries through compromised torrents
Kaspersky experts have discovered a new MovieReaper campaign. The multi-stage Trojan spreads through movie torrents, such as The Odyssey, and uses the Solana blockchain to hide its C2 infrastructure.
Cybersecurity 2 versions -
Ready, Settra, Go: New Settra Ransomware Variant Deploys MeshAgent RMM
Huntress has recently seen two incidents involving Settra, a ransomware variant that was first publicly reported in June 2026.
Cybersecurity 3 versions -
12 celebrity deepfake websites seized by Manhattan DA
The largest known celebrity deepfake seizure has taken 12 websites offline, disrupting access to videos depicting some 1,200 people.
-
Kiberdrošības mēneša epicentrā - konference “CyberChess 2026”
Oktobrī, Eiropas kiberdrošības mēneša laikā, Rīga atkal kļūs par tikšanās vietu Latvijas, Baltijas un ārvalstu kiberdrošības kopienai. 14. un 15. oktobrī norisināsies starptautiskā kiberdrošības ko...
Announcement Cybersecurity -
T-Mobile rewards points expiry texts are a phishing scam
A large phishing campaign is using fake T-Mobile rewards points and looming expiry dates to pressure recipients into clicking malicious links.
-
Ransomware incidents in Japan in the first half of 2026: Investigation of The Gentlemen’s infrastructure and evidence of Qilin's AI use
Ransomware incidents in Japan rose 4.7% year over year. The Gentlemen was the most active group, with leak-site listings more than doubling from January to July. Qilin ranked second and appeared to...
-
Beware the SparroWock: The backdoor that bites, the commands that catch
ESET researchers document SparroWocky, the new flagship backdoor of the FamousSparrow APT group
-
Transparency data: May 2026 OMR and premises in BDUK plans (England and Wales)
May 2026 Open Market Review (OMR) and premises in Building Digital UK (BDUK) plans (England and Wales)
-
Official Statistics: BDUK delivery performance, quarterly: April 2026 to June 2026
Breakdowns of how many premises in the UK have received gigabit-capable broadband coverage as a result of Building Digital UK (BDUK) subsidy.
-
SIRIUS SPoC network meets as EU enters new era for electronic evidence
The 7th SIRIUS Single Point of Contact (SPoC) Network Meeting, organised by Europol’s EU Internet Referral Unit (EU IRU) together with the German Federal Criminal Police Office (Bundeskriminalamt),...
Announcement Cybersecurity -
The Windows update released on March 10 resolves issues affecting the use of new Thales ID cards
The Windows update released on March 10 resolves an issue with new ID-cards that prevented the DigiDoc4 app from recognizing them. RIA recommends downloading and installing the latest Windows softw...
Announcement Cybersecurity -
CrowdStrike SafeMind: When the Best Offense Builds the Best Defense
SafeMind is a closed-loop system where offense and defense continuously sharpen each other, resulting in a defense that's been forged against the best possible attacks. Learn more!
-
CrowdStrike Named a Leader in The Forrester Wave™: External Threat Intelligence Service Providers, Q3 2026
CrowdStrike has been named a Leader in The Forrester Wave™: External Threat Intelligence Service Providers, Q3 2026, receiving the highest scores in both Strength of Offering and Strength of Strate...
-
Mozilla Products Multiple Vulnerabilities
Announcement Cybersecurity -
Cisco Products Multiple Vulnerabilities
Announcement Cybersecurity -
CVE-2026-86831: Improper validation of pod identifier uniqueness in aws-network-policy-agent in Amazon EKS
Bulletin ID: 2026-113-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/16/2026 12:30 PM PDT Description: Network Policy Agent is an EKS Policy management feature. We...
-
When scanners miss the attack: how Cloudflare Client-Side Security protects storefronts
A modern storefront can look healthy while malicious JavaScript quietly siphons revenue, hijacks clicks, or rewrites analytics. See how Cloudflare's machine learning models surface evasive client-s...
-
ISC BIND security advisory (AV26-931)
Serial Number: AV26-931Date: September 16, 2026 As of September 16, 2026, ISC is affected by vulnerabilities in the following product: ISC BIND 9 Prior to or equal to 9.18.50 Prior to or equal...
-
Apple security advisory (AV26-930)
Serial Number: AV26-930Date: September 16, 2026 As of September 14, 2026, Apple is affected by vulnerabilities in the following products: iOS and iPadOS Prior to 27 Prior to 26.7 macOS Golden ...
-
Oracle Corporation security advisory (AV26-929)
Serial number: AV26-929Date: September 16, 2026 As of September 15, 2026, Oracle Corporation is affected by vulnerabilities in the following products: Helidon Oracle Access Manager Oracle Agile Eng...
-
Scans Targeting Hospitality Applications, (Wed, Sep 16th)
Earlier today, I noted an odd request showing up in our "First Seen" report:
-
HPE security advisory (AV26-928)
Serial number: AV26-928Date: September 16, 2026 As of September 15, 2026, Hewlett Packard Enterprise (HPE) is affected by vulnerabilities in the following products: HPE Networking EdgeConnect ...
-
2026-09-16, Version 26.9.0 (Current), @aduh95
Notable Changes [d414624dce] - (SEMVER-MINOR) crypto: add a generic MAC API (Filip Skokan) #65553 [7ac458f802] - (SEMVER-MINOR) crypto: discover ciphers from OpenSSL providers (Filip Skokan) #65484...
-
[Control Systems] Phoenix Contact security advisory (AV26-927)
Serial number: AV26-927Date: September 16, 2026 As of September 16, 2026, Phoenix Contact is affected by vulnerabilities in the following products: ICE2-8IOL-G65L-V1D Prior to 1.7.4 ICE2-8IOL-...
-
Google security advisory (AV26-926)
Serial number: AV26-926Date: September 16, 2026 As of September 15, 2026, Google is affected by vulnerabilities in the following product: Chrome Prior to 153.0.8010.48 The Cyber Centre encourages u...
-
VU#369093: MLflow dspy and statsmodels flavors bypass pickle deserialization control
Two vulnerabilities in MLflow’s dspy and statsmodels model flavors allow unauthorized pickle deserialization executions despite a safety control. Specifically, the dspy flavor conditionally applies...
-
Android security advisory – September 2026 monthly rollup (AV26-920) – Update 1
Serial Number: AV26-920Date: September 14, 2026Updated: September 16, 2026 As of September 8, 2026, Android published a security bulletin to address vulnerabilities affecting Android devi...
-
Latvijas kiberdrošības un CERT.LV tehnisko aktivitāšu 2025. gada pārskats
Pārskata mērķis ir sniegt Latvijas kiberdrošības pārvaldniekiem un speciālistiem operacionāli pielietojamu informāciju, analītiķiem izmantojamu apkopojumu par aizvadītā gada notikumiem Latvijas un ...
Announcement Cybersecurity -
Active Exploitation of Critical Vulnerability in GitLab
Attackers are exploiting a critical vulnerability in GitLab to read arbitrary files from the server. Patch immediately.
Announcement Cybersecurity -
Active Exploitation of Vulnerability in Vite Development Servers
Attackers are exploiting a high severity vulnerability in Vite development servers to retrieve restricted system and configuration files over HTTP. Patch immediately.
Announcement Cybersecurity -
Microsoft recognized as a Leader in the 2026 Gartner® Magic Quadrant™ for Distributed Hybrid Infrastructure
Gartner highlighted Microsoft’s unified single-product architecture, flexibility across hyperconverged and disaggregated architectures, and more. The post Microsoft recognized as a Leader in the 20...
-
VU#212479: Sentry Seer vulnerability allows attacker-controlled input to be executed in a privileged environment
A vulnerability exists in Sentry Seer when the system is configured to automatically hand issues to a coding agent for remediation. Successful exploitation results in arbitrary code execution withi...
-
Oracle Critical Security Patch Update, September 2026 Review
Oracle released its September edition of Critical Security Patch Update. The update received patches for 673 security vulnerabilities. Some of the vulnerabilities addressed in this update impa...
-
Diverse kwetsbaarheden in Apple iOS en iPadOS met risico op datalek: updaten aanbevolen
Apple heeft meerdere kwetsbaarheden gevonden in iOS en iPadOS (versies 27 en 26.7). De ernst van deze kwetsbaarheden varieert, met CVSS-scores tot 9,8. Deze kwetsbaarheden kunnen leiden tot ongeaut...
Cybersecurity 2 versions -
Meerdere kwetsbaarheden in Apple macOS: update aanbevolen
Er zijn meerdere kwetsbaarheden gevonden in Apple macOS. De ernst van deze kwetsbaarheden varieert, met CVSS-scores tot 9,8. De kans op misbruik wordt als gemiddeld beoordeeld, maar de mogelijke sc...
-
Podatności w routerach WNC T-Mobile 5G Box IDU
Zespół CERT Polska otrzymał zgłoszenie 6 podatności (CVE-2026-58146, CVE-2026-58147 oraz od CVE-2026-40854 do CVE-2026-40857) wykrytych w oprogramowaniu układowym routerów WNC T-Mobile 5G Box IDU.
Announcement Cybersecurity -
Usposabljanje o kibernetski varnosti in dezinformacijah
Urad Vlade Republike Slovenije za informacijsko varnost (URSIV) je v sodelovanju s Centrom za krepitev kibernetskih zmogljivosti Zahodnega Balkana (WB3C) organiziral strokovno usposabljanje s podro...
Announcement Cybersecurity -
Google Pixel owners urged to patch actively exploited modem flaw
Google’s September Pixel update fixes 110 vulnerabilities, including a modem flaw being used in limited, targeted attacks.
-
Estonian experts develop cyber defence doctrine for the AI era
Experts and researchers from Estonian government agencies, universities, technology companies and banks have developed a comprehensive cyber defence policy paper setting out recommendations for cou...