Cybersecurity
1,875 publications from 84 organizations filed under Cybersecurity.
Filed by publisher, not by subject — these are everything those organizations published, not everything published about Cybersecurity. See the 1,189 publications Officially classified as Cybersecurity instead.
-
eu-LISA and ENISA strengthen cooperation with new Memorandum of Understanding
eu-LISA and the European Union Agency for Cybersecurity (ENISA) signed a new Memorandum of Understanding (MoU) in Tallinn on 16 September 2026, further strengthening cooperation between the two Age...
Announcement Cybersecurity -
Tres nuevos avisos de seguridad
Múltiples vulnerabilidades en TPVEnlanube Múltiples vulnerabilidades en WatchGuard AP de WatchGuard Múltiples vulnerabilidades en T-CPE301K 4G Mini WiFi Router de Shenzhen Dbit Network Equipment IN...
Advisory Cybersecurity -
Un nuevo aviso de SCI
ABB Automation Builder, versiones anteriores a la 2.9.1. Todos los productos AC500 V3 (PM5xxx) con versiones de firmware anteriores a la 3.9.1. ABB Protection and Control IED Manager PCM600, versio...
Advisory Cybersecurity -
Podatność w oprogramowaniu Ghostscript
W oprogramowaniu Ghostscript wykryto podatność typu Untrusted Search Path (CVE-2026-19547).
Announcement Cybersecurity -
Podatność w oprogramowaniu Das U-Boot
W oprogramowaniu DENX Software Engineering Das U-Boot wykryto podatność zapisu poza dozwolonym zakresem pamięci (CVE-2026-15390).
Announcement Cybersecurity -
Rilevate vulnerabilità in FreePBX
Rilevate 6 vulnerabilità con gravità “alta” in diversi moduli di FreePBX, piattaforma open source per la configurazione e la gestione grafica di centralini telefonici basati su Asterisk.
Advisory Cybersecurity -
Update your iPhone, iPad, or Mac: Flaw could run attackers’ code
A malicious file could trigger the vulnerability. Apple says it may already have been used against iPhone users.
-
CRA Tech Talk, 09/07/2026
This CRA Tech Talk was hosted by the OpenSSF Global Cyber Policy Working group on Monday, 7 September at 4:00 PM CEST. High-level Agenda: Introduction to the CRA reporting obligations SUSE’s journe...
-
OperTraitors: How Kubernetes Operators Betray Your Security Posture
We introduce OperTraitor, a tool to audit privileges of Kubernetes operators, identify excessive RBAC risks, and secure non-human identities. The post OperTraitors: How Kubernetes Operators Betray ...
-
Securing the keys to the kingdom: Announcing Executive Threat Detection
This new proactive service joins the suite of retainer offerings to provide dedicated, intelligence-led hunting specifically for your organization’s most high-value IT assets.
-
Fake iPhone Duo preorder scam triggers DarkSword attack
A fake iPhone Duo preorder page promises a $500 voucher. Open it on a vulnerable iPhone, and it tries to break in before you fill out the form.
-
Progress Software: sanate vulnerabilità in Progress Telerik Fiddler Everywhere
Rilasciati aggiornamenti di sicurezza per sanare due vulnerabilità, di cui una con gravità “alta”, in Progress Telerik Fiddler Everywhere.
Advisory Cybersecurity -
eu-LISA Management Board reviews implementation of key EU IT systems and future interoperability roadmap
The Management Board of eu-LISA met in Strasbourg on 23–24 September 2026 to review progress across the Agency’s portfolio of large-scale IT systems, discuss the implementation of the interoperabil...
Announcement Cybersecurity -
Humans are reviewing Copilot users’ bizarre and abusive image-editing requests
Copilot users asked for upskirt images and sexualized edits of people in uploaded photos. Human contractors were asked to judge the results.
-
Aggiornamenti disponibili per WatchGuard AP
Aggiornamenti di sicurezza WatchGuard sanano 3 vulnerabilità, 2 con gravità “critica” e una con gravità “alta”, in WatchGuard AP, dispositivi di accesso wireless utilizzati per la connettività e la...
Advisory Cybersecurity -
Timeshare exit scams: From fake buyers to recovery fraud
Con artists are targeting timeshare owners who want out – and some victims are hit twice
-
Latvijas kibertelpas apskats pirmsvēlēšanu nedēļā un vēlēšanu laikā
CERT.LV aktuālā informācija par kiberdrošības situāciju nedēļā pirms 15. Saeimas vēlēšanām un vēlēšanu laikā.
Announcement -
Lessons from Microsoft Patch KB5002907: Two Layers of Patch Control in Qualys TruRisk Eliminate
How reliability scoring keeps risky patches out of zero-touch jobs, and how one blocking rule stops a paused update across your environment. Executive Summary Microsoft has paused the rollout of KB...
-
Apple: rilevato sfruttamento in rete della CVE-2026-86950
Rilevato lo sfruttamento attivo in rete della vulnerabilità CVE-2026-86950 – già sanata dal vendor - che interessa i prodotti Apple iOS, iPadOS, macOS Tahoe e macOS Sequoia. Tale vulnerabilità, qua...
Advisory Cybersecurity -
FabCon and SQLCon 2026 in Barcelona: Building the data foundation for Microsoft Copilot and agents
Microsoft Fabric and SQL innovations announced at FabCon and SQLCon Barcelona 2026 help organizations build trusted data foundations for AI. The post FabCon and SQLCon 2026 in Barcelona: Building t...
-
F5 BIG-IP APM OAuth Remote Code Execution Remains a Priority Past Its Federal Deadline (CVE-2026-94127)
F5 BIG-IP APM OAuth Remote Code Execution Remains a Priority Past Its Federal Deadline (CVE-2026-94127) conradNITA Tue, 09/29/2026 - 07:14
Announcement -
Apple Patches CoreGraphics Flaw Possibly Exploited Against Specific Targeted Individuals (CVE-2026-86950)
Apple Patches CoreGraphics Flaw Possibly Exploited Against Specific Targeted Individuals (CVE-2026-86950) conradNITA Tue, 09/29/2026 - 07:14
Announcement -
Citrix NetScaler Two Zero-Day Vulnerabilities Exploited Before Patches Existed (CVE-2026-88771 / CVE-2026-88772)
Citrix NetScaler Two Zero-Day Vulnerabilities Exploited Before Patches Existed (CVE-2026-88771 / CVE-2026-88772) conradNITA Tue, 09/29/2026 - 07:13
Announcement -
Copy, Paste, Compromised: How ClickFix Attacks Work and How CrowdStrike Stops Them
ClickFix attacks trick users into executing malicious commands themselves. Learn how CrowdStrike Falcon Seraphic Enterprise Browser and the Falcon platform help stop attacks across the browser, end...
-
Apple Products Remote Code Execution Vulnerability
A vulnerability has been identified in Apple Products. A remote attacker could exploit this vulnerability to trigger remote code execution on the targeted system. Note: CVE-2026-86950 is being expl...
Announcement -
Apache Tomcat Multiple Vulnerabilities
Announcement -
Boletín de vulnerabilidades
Vulnerabilidades con productos recientemente documentados: No hay vulnerabilidades nuevas para los productos a los que está suscrito. Otras vulnerabilidades de los productos a los que usted está su...
Advisory Cybersecurity -
Adobe 제품 보안 업데이트 권고
Announcement -
Citrix 제품 보안 업데이트 권고
Announcement -
공공기관 사칭 해킹메일을 통한 사기 시도 사례 보고
Announcement -
Vulnérabilité dans les produits Apple (29 septembre 2026)
Une vulnérabilité a été découverte dans les produits Apple. Elle permet à un attaquant de provoquer une exécution de code arbitraire à distance. Apple indique que la vulnérabilité CVE-2026-86950 es...
Announcement -
Building Agents Backwards from Evaluation
Learn why building reliable AI security agents requires co-designing modular system architectures alongside rigorous, domain-expert evaluation suites.
-
Apple Emergency Patch for iOS 26, macOS26, macOS15 (CVE-2026-86950), (Mon, Sep 28th)
Apple today released patches for all of its operating systems. However, only patches for older branches include a security fix. The vulnerability being addressed in iOS 26, macOS 26 and macOS 15 is...
-
Boletín de vulnerabilidades
Vulnerabilidades con productos recientemente documentados: No hay vulnerabilidades nuevas para los productos a los que está suscrito. Otras vulnerabilidades de los productos a los que usted está su...
Advisory Cybersecurity -
Attackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix
Huntress researchers reveal how attackers are exploiting ChatGPT Custom GPTs to spread ClickFix lures and DLL-sideloaded malware. See the full breakdown.
-
Linux security advisory (AV26-970)
Serial Number: AV26-970Date: September 28, 2026 Linux security advisory (AV26-970) As of September 25, 2026, Linux is affected by a vulnerability in the following product: Linux Kernel Version prio...
-
VU#762428: Authlib library contains a signature‑verification bypass vulnerability
Authlib (versions up to and including 1.7.2) contain a signature‑verification bypass in the JSON Web Signature (JWS) general JSON serialization handling. The JsonWebSignature.deserialize_json() fun...
Advisory Cybersecurity -
How we found 24 Android vulnerabilities using our open source AI security agent
A look at the targeted AI taskflows behind these findings, the critical Android bugs they uncovered, and how to run the same open-source agent on your own app. The post How we found 24 Android vuln...
Security notice Cybersecurity -
wolfSSL security advisory (AV26-969)
Serial Number: AV26-969Date: September 28, 2026 As of September 25, 2026, wolfSSL is affected by vulnerabilities in the following product: wolfSSL Prior to or equal to 5.9.4 The Cyber Centre encour...
-
SUSE Linux security advisory (AV26-968)
Serial Number: AV26-968Date: September 28, 2026 As of September 28, 2026, SUSE is affected by a vulnerability in the following product: NeuVector Prior to 5.4.11 Prior to 5.5.4 Prior to 5.6.2 The C...
-
IBM security advisory (AV26-967)
Serial Number: AV26-967Date: September 28, 2026 As of September 25, 2026, IBM is affected by vulnerabilities in the following products: IBM Big Replicate LiveData Migrator Prior to or equal to 3.3 ...
-
Dell security advisory (AV26-966)
Serial Number: AV26-966Date: September 28, 2026 As of September 24, 2026, Dell is affected by vulnerabilities in the following products: Rugged Control Center (RCC) Prior to 5.2.206 Secure Connect ...
-
Privilege Hygiene: Least Privilege Best Practices Guide
Learn what good privilege hygiene looks like, from local admin sprawl to accidental access, plus least privilege best practices you can start today.
-
Threat Brief: NetScaler Zero Days CVE-2026-88771 and CVE-2026-88772 Exploited in the Wild (Updated September 30)
Unit 42 is aware of possible 0-day activity against NetScaler devices. Citrix reports CVE-2026-88771, CVE-2026-88772 have been exploited in the wild. The post Threat Brief: NetScaler Zero Days CVE-...
Cybersecurity 2 versions -
Enhancing Microsoft Azure Virtual Machine lifecycle
Our Virtual Machine Lifecycle policy guides how we manage these transitions, giving Azure customers transparency, predictability, and guidance. The post Enhancing Microsoft Azure Virtual Machine li...
-
The Developer is the New Perimeter: How Supply Chain Attacks Are Becoming Cloud Breaches
A routine package install can open the door to a cloud breach. Learn how attackers exploit developer credentials. Discover practical steps to contain exposure and protect your cloud environment.
-
Next.js applications, powered by Vite: introducing Vinext 1.0
Vinext 1.0 graduates from an AI experiment to a production-ready framework, letting developers run Next.js apps on Vite. This release brings advanced cache warming, broader compatibility, and an au...
-
Introducing cf: the agentic CLI for the entire Cloudflare API
We are releasing cf, our new command-line tool that mirrors the entire Cloudflare API and supports programmatic TypeScript configuration. We are also open-sourcing Forge, our internal SDK generator.
2 versions -
How fast is the web? Explore billions of real-user measurements with BEACON
Cloudflare is open-sourcing the BEACON dataset, making billions of anonymized Real User Monitoring (RUM) performance records publicly available on Google BigQuery. Explore real-world Core Web Vital...
-
Podatności w oprogramowaniu Dayforce Payroll
W oprogramowaniu Dayforce Payroll wykryto 3 podatności różnego typu (od CVE-2026-73640 do CVE-2026-73642)
Announcement Cybersecurity