Cybersecurity
1,758 publications classified by Officially as Cybersecurity, judged from each publication's own title and summary.
Our reading, not the publisher's. An organization that has claimed its profile can say what its own publications are about, and that will take precedence here. See everything published by organizations filed under Cybersecurity instead.
-
GCP-2026-043
Published: 2026-06-24Description Description Severity Notes A vulnerability was found in Firebase Studio where the GetSignedGcsUrl RPC allowed authenticated users to list buckets and download deplo...
-
GCP-2026-044
Published: 2026-06-25Description Description Severity Notes A vulnerability was detected in Application Integration's JavaScript task, which was using the Rhino JavaScript engine. This only impacte...
-
GCP-2026-045
Published: 2026-06-29Description Description Severity Notes A vulnerability was detected in Envoy Proxy where blocked QPACK decoding can cause a Denial-of-Service Attack against the HTTP/3 stack. F...
-
GCP-2026-046
A virtualization vulnerability has been identified in the KVM x86 shadow paging and nested virtualization configurations. …
-
GCP-2026-047
Published: 2026-07-13Description Description Severity Notes A Missing Authorization vulnerability was discovered in repositories in BigQuery, Dataform, and Colab Enterprise. What should I do? No cu...
-
GCP-2026-048
Published: 2026-07-13Description Description Severity Notes A privilege escalation vulnerability was addressed in Developer Connect. Previously, for GitLab Enterprise and Bitbucket Data Center conn...
-
GCP-2026-049
Published: 2026-07-22Description Description Severity Notes A reflected Cross-Site Scripting (XSS) vulnerability was discovered in Google Cloud Looker. An attacker could craft a malicious URL that,...
-
GCP-2026-050
Published: 2026-07-29Description Description Severity Notes Per advisory VMSA-2026-0006, multiple vulnerabilities in VMware ESXi, and vCenter were privately reported to Broadcom. We are in the proc...
-
GCP-2026-051
2026-08-04 Update: The VMware patch release version is 1.33.1200, not 1.33.1100 as stated in the initial bulletin. The following vulnerabilities have been discovered in containerd (the GDC containe...
-
GCP-2026-052
Published: 2026-08-07Description Description Severity Notes A security vulnerability has been identified in the Kernel-based Virtual Machine (KVM) x86 shadow Memory Management Unit (MMU) impacting ...
-
GCP-2026-053
Published: 2026-08-11Description Description Severity Notes Google is aware of several security vulnerabilities affecting Intel® Trust Domain Extensions (TDX) firmware that can compromise confident...
-
GCP-2026-054
Published: 2026-08-11Description Description Severity Notes A vulnerability (CVE-2026-6726, also known as TCGVRT0010) has been identified in the Trusted Computing Group's TPM 2.0 reference implemen...
-
GCP-2026-055
Published: 2026-08-25Description Description Severity Notes A critical unauthenticated Remote Code Execution (RCE) vulnerability exists in Next.js and libheif when processing malicious image files....
-
GCP-2026-056
Published: 2026-08-26Description Description Severity Notes An Improper Input Validation vulnerability was discovered in the JDBC driver in BigQuery Data Transfer Service versions prior to May 1, 2...
-
GCP-2026-057
Published: 2026-08-26Description Description Severity Notes A series of vulnerabilities were discovered in Envoy Proxy. For instructions and more details, see the Cloud Service Mesh security bullet...
-
GCP-2026-058
Published: 2026-09-02Description Description Severity Notes A missing project permission check in GKE Multi-Cloud (CreateAttachedCluster, CreateAwsCluster, CreateAzureCluster) APIs allowed an attac...
-
GCP-2026-059
Published: 2026-09-04Description Description Severity Notes A Missing Authorization vulnerability was discovered in the HTTP Connector in Integration Connectors versions prior to December 11, 2025....
-
GCP-2026-060
Published: 2026-09-04Updated: 2026-09-08Description Description Severity Notes 2026-09-08 Update: Added link to the Cluster Toolkit security bulletin. A security flaw in the Slurm sbcast tool (CVE-...
-
GCP-2026-061
Published: 2026-09-09Description Description Severity Notes A security vulnerability (GHSA-p7v4-vr35-mj6f, CVE assignment pending) in containerd's CRI implementation allows a container restored fro...
-
GCP-2026-062
Published: 2026-09-11Description Description Severity Notes Multiple security vulnerabilities were discovered in Slurm that affect Cluster Toolkit blueprints that reference specific image versions....
-
MongoDB security advisory (AV26-911)
Serial Number: AV26-911Date: September 11, 2026 As of September 10, 2026, MongoDB is affected by vulnerabilities in the following products: Java Driver Prior to 5.11.1 Laravel MongoDB (PHP) Prior t...
-
Metasploit Wrap Up: This One Goes to Sixteen!
Another banger from Metasploit with sixteen new modules, including ten exploit modules, with five on the CISA KEV list. Cisco, Papercut, Sonicwall, Jetbrains, and Langflow all have exploit modules,...
Cybersecurity 2 versions -
The Fraud Ecosystem: A Transition From Known Marketplaces to a Fragmented Environment
The surge in emerging threat actors directly correlates with the rapid escalation of victim counts and stolen financial resources. Simultaneously, this growth has spurred the proliferation of speci...
Cybersecurity 2 versions -
Spēkā stājas Kibernoturības aktā noteiktās ziņošanas prasības ražotājiem
No 2026. gada 11. septembra ražotājiem ir spēkā pienākums ziņot par ievainojamībām un nopietniem incidentiem, kas ietekmē Eiropas Savienības tirgū laistos produktus ar digitāliem elementiem.
Announcement Cybersecurity -
HashiCorp security advisory (AV26-910)
Serial Number: AV26-910Date: September 11, 2026 As of September 10, 2026, HashiCorp is affected by vulnerabilities in the following products: Consul Prior to 2.0.4 Consul Enterprise 1.0 Prior to 1....
-
CYBER_CON 2026 přivedl do Brna stovky odborníků. Hlavním tématem letošního ročníku byla kybernetická odolnost
Téměř 900 účastníků, bezmála 70 řečníků, desítky odborných přednášek, workshopů a diskusí. Takový byl 12. …
Announcement Cybersecurity -
CERT.LV kopā ar partneriem stiprinās Latvijas kiberdrošības ekosistēmu
Aizsardzības ministrija sadarbībā ar partneriem – Centrālo finanšu un līgumu aģentūru, Rīgas Tehnisko universitāti un Kiberincidentu novēršanas institūciju CERT.LV – septembrī ir uzsākusi īstenot p...
Announcement Cybersecurity -
Introducing automatic remediation policies with Cloudflare CASB
Cloudflare CASB policies introduce a native automation engine built directly on the Cloudflare developer platform to remediate SaaS risks automatically. Security teams can now design event-driven l...
-
CERT-SE:s veckobrev v.37
I veckans brev kan du läsa om EU:s Cyber Resilience Act (CRA), där de första kraven träder i kraft idag. Du kan även läsa om cybersäkerhetskonferensen Svensk cyber 2026 som arrangeras av NCSC i nov...
Announcement Cybersecurity -
Stärkt brottsbekämpning genom särskilda provokativa åtgärder
Regeringen har beslutat om en lagrådsremiss med förslag som ger brottsbekämpande myndigheter bättre möjligheter att utreda och lagföra svårutredd och allvarlig brottslighet. Förslagen innebär bland...
Announcement Cybersecurity -
Android malware creates a hidden copy of your banking app
The Gigabud banking Trojan can clone a banking app into a separate work profile on an Android device to help hide fraudulent transactions.
-
National Cryptologic Museum to Unveil Historic Exhibit Highlighting NSA’s Role in the Takedown of Osama Bin Laden
FORT MEADE, Md. – The National Cryptologic Museum announces the historic unveiling of never-before-seen artifacts that shed light on the National Security Agency’s (NSA) pivotal role in the takedow...
Announcement Cybersecurity -
Mikrotik security advisory (AV26-887) – Update 2
Serial Number: AV26-887Date: September 8, 2026Updated: September 25, 2026 As of September 3, 2026, Mikrotik is affected by vulnerabilities in the following product: RouterOS Prior to 6.49...
Cybersecurity 2 versions -
Skal sikre smartprodukter bedre – fra nå gjelder nye krav til rapportering
Fra 11. september må sårbarheter i produkter som kan kobles til internett, rapporteres i tråd med EUs Cyber Resilience Act (CRA). Nasjonal kommunikasjonsmyndighet (Nkom) ber både produsenter og imp...
Announcement Cybersecurity -
Nu skal virksomheder i hele EU underrette om digitale sårbarheder i produkter
Fra den 11. september i år skal virksomheder i EU indberette digitale sårbarheder og alvorlige it-sikkerhedshændelser i produkter med digitale elementer. Forordningen for cyberrobusthed (CRA) skal ...
Announcement Cybersecurity -
Kritiskas ievainojamības GitLab programmatūrā
GitLab ir publicējis informāciju par divām kritiskām ievainojamībām - CVE-2026-85706 (ar CVSS novērtējumu 10.0) un CVE-2026-87719 (ar CVSS novērtējumu 9.9).
Announcement Cybersecurity -
Kā sabojāt uzbrucējam dienu? Ar MFA (daudzfaktoru autentifikāciju) | OUCH! septembris 2026
Daudzfaktoru autentifikācija jeb MFA ir vienkāršs veids kā bezmaksas pievienot papildu drošības līmeni saviem kontiem. Tā vietā, lai paļautos tikai uz paroli, daudzpakāpju autentifikācija (MFA) izm...
Announcement Cybersecurity -
Cyber Resilience Act: Meldepflicht startet
Für Hersteller von Produkten mit digitalen Elementen gelten auf dem Binnenmarkt der EU ab dem 11. September 2026 die Meldepflichten des CRA. Hersteller müssen aktiv ausgenutzte Schwachstellen sowie...
Announcement Cybersecurity -
Howyar|WeenyGenius - 4 Vulnerabilities
Announcement Cybersecurity -
The SOC Just Gained a Capability It Never Had
Agentic investigation is the shift your SOC could never staff. Here is how the always-on AI, the evolved analyst, and the expert on call now fit together.
-
“Eye” spy: Cyclops Blink returns with extended capabilities
Upgraded modular malware observed in attacks on Cisco Firewall Management Center (FMC) devices
-
Attorney General Brown pushes FCC to strengthen “Know Your Upstream Provider” rules to combat illegal robocalls
Attorney General Derek Brown and a bipartisan coalition of 48 other attorneys general are urging the Federal Communications Commission (FCC) to strengthen its “Know Your Upstream Provider” (KYUP) r...
Announcement Cybersecurity -
AL26-020 - Vulnerabilities Impacting MikroTik RouterOS - CVE-2026-67276, CVE-2026-67277 and CVE-2026-86060
Number: AL26-020Date: September 10, 2026 Audience This Alert is intended for IT professionals and managers. Purpose An Alert is used to raise awareness of a recently identified cyber threat that ma...
-
Tech Talk Recap: A Practitioner’s Guide to CRA Readiness
The EU Cyber Resilience Act is no longer a distant regulatory concept. With vulnerability reporting obligations to ENISA arriving on September 11 and the full weight of the law landing in December ...
-
September is National Cybersecurity Awareness Month.
Information events for citizens, schoolchildren, university students, business representatives, and professionals are taking place across the country. The focus is on protection against online frau...
Announcement Cybersecurity