Cybersecurity
1,876 publications from 84 organizations filed under Cybersecurity.
Filed by publisher, not by subject — these are everything those organizations published, not everything published about Cybersecurity. See the 1,343 publications Officially classified as Cybersecurity instead.
-
Frequently asked questions about reported Citrix NetScaler zero-day vulnerabilities
Update September 27: Citrix published security bulletin CTX697096, confirming CVE-2026-88771 and CVE-2026-88772 as the two zero-day RCE vulnerabilities and releasing patches. Post updated with CVE ...
Cybersecurity 3 versions -
Critical vulnerabilities in Citrix NetScaler Gateway & ADC
Announcement 1 document -
Boletín de vulnerabilidades
Boletín de vulnerabilidades Vulnerabilidades con productos recientemente documentados:No hay vulnerabilidades nuevas para los productos a los que está suscrito.Otras vulnerabilidades de los product...
Advisory Cybersecurity -
3 Consulting Myths Debunked by Unit 42 Experts
Unit 42 security experts address critical cybersecurity misconceptions, offering practical insights to help your organization reinforce its enterprise defenses. The post 3 Consulting Myths Debunked...
-
Zimbra security advisory (AV26-964)
Serial Number: AV26-964Date: September 25, 2026 As of September 25, 2026, Zimbra is affected by vulnerabilities in the following product: Zimbra Collaboration Suite (ZCS) (Daffodil) Prior to 10.1.2...
-
VU#699627: Readwise Reader for Android, version 8.7.2, contains multiple XSS vulnerabilities
Three cross-site scripting (XSS) vulnerabilities identified in Readwise Reader for Android version 8.7.2 are disclosed. An attacker with the ability to craft malicious documents or metadata can exp...
Advisory Cybersecurity -
NSA Launches 13th Annual Codebreaker Challenge
FORT MEADE, Md. — The National Security Agency (NSA) officially announced the launch of its 13th Annual Codebreaker Challenge today, inviting college and university students across the United ...
Announcement -
LinkedIn adds new checks for fake profiles and work histories
The platform is adding new checks as AI makes profiles easier to forge. But scammers can still invent a company to recruit for.
-
Kothamine malware uses Tailscale’s tailcat to evade network detection
Kothamine uses a legitimate Tailscale tool to receive attackers’ commands through an encrypted connection with no malicious domain to block.
-
Case Study: How Does IBM Turn Open Source Participation Into Enterprise and Career Value?
IBM’s Jamie Thomas explains how intentional participation in open source communities and OpenSSF drives business strategy, improves software supply chain security, and creates career growth opportu...
Cybersecurity 2 versions -
Risolte vulnerabilità in prodotti Elastic
Elastic ha rilevato nuove vulnerabilità nei propri prodotti, di cui una con gravità "alta", in Kibana. Tale vulnerabilità, qualora sfruttata, potrebbe consentire ad un utente malintenzionato di ele...
Advisory Cybersecurity -
Averting a darker biological weapons future
The threat of biological weapons has received renewed attention following the publication of Anthropic’s threat report on 10 September 2026, which provided five case studies on biological misuse. T...
Announcement AI -
Culture at Speed: Protecting What Makes Huntress Work
As Huntress scales past 800 teammates, Chief People Officer Kristin Dean reflects on protecting culture and not just letting it happen.
-
Agents can now set up your website’s security with Turnstile Spin
Misconfiguring Turnstile by skipping backend validation leaves sites exposed to bots. Turnstile Spin fixes incomplete setups by using your preferred AI coding agent to wire up server-side verificat...
-
ServiceNow security advisory (AV26-963)
Serial number: AV26-963Date: September 25, 2026 As of September 24, 2026, ServiceNow is affected by vulnerabilities in the following product: ServiceNow AI Platform Versions prior to Australia Patc...
-
Criminals turn placeholder domain into ClickFix trap
A domain used in software examples—third-party[.]com—now serves up a fake verification page that tells Windows users to run a PowerShell command.
-
GitLab security advisory (AV26-962)
Serial number: AV26-962Date: September 25, 2026 As of September 23, 2026, GitLab is affected by vulnerabilities in the following product: GitLab Prior to 19.2.7 Prior to 19.3.3 Prior to 19.4.1 The ...
-
Wazuh: PoC pubblico per lo sfruttamento della CVE-2026-71540
Disponibile un Proof of Concept (PoC) per lo sfruttamento della CVE-2026-71540 – già sanata dal vendor – presente in Wazuh, piattaforma open-source con funzionalità di Security Information and Even...
Advisory Cybersecurity -
Risolte vulnerabilità in prodotti Dell
Aggiornamenti di sicurezza Dell risolvono molteplici vulnerabilità, di cui 5 con gravità "alta" nei prodotti Boot Optimized Server Storage (BOSS), Rugged Control Center (RCC), Trusted Device Client...
Advisory Cybersecurity -
HO Asset Recovery IT (ARIT) Alpha reassessment report
HO's Asset Recovery IT (ARIT) Alpha reassessment report
-
That shipping rebate offer may come with a monthly charge
Customers say they signed up for shipping rebates, then found recurring charges they didn’t expect.
-
Risolte vulnerabilità in ServiceNow
Rilasciati aggiornamenti di sicurezza che risolvono 5 vulnerabilità, di cui 2 con gravità "critica" e 3 con gravità "alta", in ServiceNow AI Platform, piattaforma di intelligenza artificiale e auto...
Advisory Cybersecurity -
Rilevate vulnerabilità in prodotti MongoDB
MongoDB ha rilasciato aggiornamenti di sicurezza per risolvere 5 vulnerabilità con gravità "alta" nei prodotti Python Driver (PyMongo), C Driver, Compass e Laravel MongoDB. Tali vulnerabilità, qual...
Advisory Cybersecurity -
Is that vibe coded app safe? 5 checks before you download
As AI lets anyone build software, here’s how to vet that shiny new app before it exposes your data
-
HO Asset Recovery IT (ARIT) Alpha amber review report
HO's Asset Recovery IT (ARIT) Alpha amber review report
-
Transparency data: Project Gigabit Social Value Employment update: September 2026
Performance data on suppliers’ reported progress against social value obligations relating to employment under Project Gigabit contracts in England.
-
CERT-SE:s veckobrev v.39
För tionde året genomförs Beredskapsveckan i Sverige vecka 39. I år är det fokus på Sveriges totalförsvar, där samhällets motståndskraft mot cyberhot är en viktig del. Tänk på att ha en radio instä...
Announcement -
Un nuevo aviso de seguridad
API y el panel de gestión de StockAgile. INCIBE ha coordinado la publicación de 7 vulnerabilidades de severidades medias que afecta a la API y el panel de gestión de StockAgile, software para tiend...
Advisory Cybersecurity -
Government-backed broadband rollout plugs thousands into skilled jobs and apprenticeships
Project Gigabit has created more than 3,000 jobs and apprenticeships in England while delivering faster, more reliable broadband to hard-to-reach communities.
-
Dr. Niko Gamulin o kibernetski odpornosti in izvajanju direktive o ukrepih za kibernetsko varnost
Vršilec dolžnosti direktorja Urada Vlade Republike Slovenije za informacijsko varnost (URSIV) dr. Niko Gamulin je sodeloval na konferenci Kibernetska odpornost po zasnovi: od regulativne skladnosti...
Announcement Cybersecurity -
Boletín de vulnerabilidades
Vulnerabilidades con productos recientemente documentados: No hay vulnerabilidades nuevas para los productos a los que está suscrito. Otras vulnerabilidades de los productos a los que usted está su...
Advisory Cybersecurity -
Multiples vulnérabilités dans le noyau Linux de Red Hat (25 septembre 2026)
De multiples vulnérabilités ont été découvertes dans le noyau Linux de Red Hat. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une éléva...
Announcement -
Multiples vulnérabilités dans le noyau Linux de SUSE (25 septembre 2026)
De multiples vulnérabilités ont été découvertes dans le noyau Linux de SUSE. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire, un déni de service à di...
Announcement -
Multiples vulnérabilités dans les produits Elastic (25 septembre 2026)
De multiples vulnérabilités ont été découvertes dans les produits Elastic. Certaines d'entre elles permettent à un attaquant de provoquer une élévation de privilèges, un déni de service à distance ...
Announcement -
Multiples vulnérabilités dans le noyau Linux de Debian LTS (25 septembre 2026)
De multiples vulnérabilités ont été découvertes dans le noyau Linux de Debian LTS. Certaines d'entre elles permettent à un attaquant de provoquer une élévation de privilèges, une atteinte à la conf...
Announcement -
Multiples vulnérabilités dans le noyau Linux d'Ubuntu (25 septembre 2026)
De multiples vulnérabilités ont été découvertes dans le noyau Linux d'Ubuntu. Certaines d'entre elles permettent à un attaquant de provoquer une élévation de privilèges, un déni de service à distan...
Announcement -
Multiples vulnérabilités dans les produits IBM (25 septembre 2026)
De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service...
Announcement -
Boletín de vulnerabilidades
Vulnerabilidades con productos recientemente documentados: No hay vulnerabilidades nuevas para los productos a los que está suscrito. Otras vulnerabilidades de los productos a los que usted está su...
Advisory Cybersecurity -
Inside the OpenSSF Summer Mentorship Showcase: How Emerging Developers Are Strengthening Supply Chain Security
At OpenSSF, securing the open source software supply chain isn’t just about writing code or establishing policies. It is about growing the community of developers who build, maintain, and innovate ...
-
VU#234131: ViewSonic vCast media streaming service allows unauthenticated screen exfiltration and device compromise
ViewSonic vCast software, which is included in ViewBoard smartboard devices, contains multiple vulnerabilities that an attacker can chained to achieve full device compromise. ViewSonic ViewBoards a...
Advisory Cybersecurity -
AI-powered fuzzing with the GitHub Security Lab Taskflow Agent
In this blog post, I explain how to use the new fuzzing taskflow based on the GitHub Security Lab Taskflow Agent AI framework. The post AI-powered fuzzing with the GitHub Security Lab Taskflow Agen...
-
Trust and the enticing consultancy offer
In this week’s newsletter Martin muses over a very suspicious elicitation over social media and the true value of trust within the cyber ecosystem. Hubris might be the real vulnerability that the c...
-
Ship agents faster with expanded model choice, voice agents, and continuous optimization
The best model for your business will keep changing. Adopting it should move your business forward, not send your team back to rebuild the architecture around it. The post Ship agents faster with e...
-
AL26-023 - Vulnerability Impacting Microsoft SharePoint Server - CVE-2026-65660
Number: AL26-023Date: September 24, 2026 This Alert is intended for IT professionals and managers. An Alert is used to raise awareness of a recently identified cyber threat that may impact cyb...
-
Fascículo da Cartilha de Segurança para Internet sobre IA
Novo Fascículo da Cartilha de Segurança para Internet Fascículo Inteligência Artificial IA É ASSISTENTE. O RESPONSÁVEL É VOCÊ! A IA já faz parte do dia a dia, mas os resultados podem conter erros, ...
Guidance Cybersecurity -
VU#676317: Norwegian Cruise Line door access controller contains an improper authentication vulnerability
Door access controllers used on Norwegian Cruise Line (NCL) ships contain an improper authentication vulnerability that permits a replayed unique identifer (UID) from a radio-frequency identificati...