Cybersecurity
1,610 publications classified by Officially as Cybersecurity, judged from each publication's own title and summary.
Our reading, not the publisher's. An organization that has claimed its profile can say what its own publications are about, and that will take precedence here. See everything published by organizations filed under Cybersecurity instead.
-
We tested our own WAF with frontier AI models. Here’s what we found
We built a WAF tester that adapted each request based on what the WAF blocked or passed. This helped us explore variations that a fixed test might miss. We ran it across six attack categories on an...
-
Building a post-quantum certificate authority with Merkle Tree Certificates
As post-quantum signatures threaten to inflate TLS handshakes and certificate transparency logs, Merkle Tree Certificates offer a path to compact, auditable authentication. Cloudflare’s new certifi...
-
Adaptive application security for the AI era: how Cloudflare connects code, traffic, and intelligence to stop attacks
Cloudflare introduces an adaptive security framework connecting risk discovery, agent governance, runtime protection, and AI-powered response in a continuous learning loop.
-
Building a certificate authority for the whole Internet
Twelve years after launching Universal SSL, Cloudflare is applying to become a certificate authority. By combining an established root, an ACME-first approach, and Merkle Tree Certificates, we are ...
-
Podatność w oprogramowaniu MyPresta Google Merchant Center Feed
W oprogramowaniu MyPresta Google Merchant Center Feed wykryto podatność typu External control of file name or path (CVE-2026-85520).
Announcement Cybersecurity -
WatchGuard security advisory (AV26-972)
Serial number: AV26-972Date: September 29, 2026 As of September 28, 2026, WatchGuard is affected by vulnerabilities in the following product: WatchGuard AP Prior to 3.4.8 The Cyber Centre encourage...
-
Assetmanagers moeten ICT-recovery verder versterken
Financiële ondernemngen zijn steeds afhankelijker van digitale systemen. Tegelijkertijd nemen de risico's op verstoringen toe door cyberaanvallen, geopolitieke spanningen en de groeiende complexite...
-
Apple security advisory (AV26-971)
Serial number: AV26-971Date: September 29, 2026 As of September 28, 2026, Apple is affected by a vulnerability in the following products: iOS and iPadOS Prior to 27.0.1 Prior to 26.7.1 macOS Golden...
-
JFrog: rilevato sfruttamento in rete della CVE-2026-82329 relativa ad Artifactory
Rilevato lo sfruttamento attivo in rete della CVE-2026-82329 con gravità "critica", relativa al prodotto JFrog Artifactory. Tale vulnerabilità potrebbe consentire a un utente malintenzionato remoto...
Advisory Cybersecurity -
eu-LISA and ENISA strengthen cooperation with new Memorandum of Understanding
eu-LISA and the European Union Agency for Cybersecurity (ENISA) signed a new Memorandum of Understanding (MoU) in Tallinn on 16 September 2026, further strengthening cooperation between the two Age...
Announcement Cybersecurity -
Tres nuevos avisos de seguridad
Múltiples vulnerabilidades en TPVEnlanube Múltiples vulnerabilidades en WatchGuard AP de WatchGuard Múltiples vulnerabilidades en T-CPE301K 4G Mini WiFi Router de Shenzhen Dbit Network Equipment IN...
Advisory Cybersecurity -
Un nuevo aviso de SCI
ABB Automation Builder, versiones anteriores a la 2.9.1. Todos los productos AC500 V3 (PM5xxx) con versiones de firmware anteriores a la 3.9.1. ABB Protection and Control IED Manager PCM600, versio...
Advisory Cybersecurity -
Podatność w oprogramowaniu Ghostscript
W oprogramowaniu Ghostscript wykryto podatność typu Untrusted Search Path (CVE-2026-19547).
Announcement Cybersecurity -
Nytt system vil gjøre Norge mindre avhengig av tidssignaler fra GPS – viktig for samfunnssikkerheten
Regjeringen foreslår å bruke nesten 100 millioner kroner til en nasjonal tjeneste for presis tid. Bortfall av presis og sporbar tid fra satellitter kan nemlig sette hele vår digitale infrastruktur ...
Announcement Cybersecurity -
Podatność w oprogramowaniu Das U-Boot
W oprogramowaniu DENX Software Engineering Das U-Boot wykryto podatność zapisu poza dozwolonym zakresem pamięci (CVE-2026-15390).
Announcement Cybersecurity -
Rilevate vulnerabilità in FreePBX
Rilevate 6 vulnerabilità con gravità “alta” in diversi moduli di FreePBX, piattaforma open source per la configurazione e la gestione grafica di centralini telefonici basati su Asterisk.
Advisory Cybersecurity -
Update your iPhone, iPad, or Mac: Flaw could run attackers’ code
A malicious file could trigger the vulnerability. Apple says it may already have been used against iPhone users.
-
CRA Tech Talk, 09/07/2026
This CRA Tech Talk was hosted by the OpenSSF Global Cyber Policy Working group on Monday, 7 September at 4:00 PM CEST. …
-
OperTraitors: How Kubernetes Operators Betray Your Security Posture
We introduce OperTraitor, a tool to audit privileges of Kubernetes operators, identify excessive RBAC risks, and secure non-human identities. The post OperTraitors: How Kubernetes Operators Betray ...
-
Securing the keys to the kingdom: Announcing Executive Threat Detection
This new proactive service joins the suite of retainer offerings to provide dedicated, intelligence-led hunting specifically for your organization’s most high-value IT assets.
-
Fake iPhone Duo preorder scam triggers DarkSword attack
A fake iPhone Duo preorder page promises a $500 voucher. Open it on a vulnerable iPhone, and it tries to break in before you fill out the form.
-
Progress Software: sanate vulnerabilità in Progress Telerik Fiddler Everywhere
Rilasciati aggiornamenti di sicurezza per sanare due vulnerabilità, di cui una con gravità “alta”, in Progress Telerik Fiddler Everywhere.
Advisory Cybersecurity -
eu-LISA Management Board reviews implementation of key EU IT systems and future interoperability roadmap
The Management Board of eu-LISA met in Strasbourg on 23–24 September 2026 to review progress across the Agency’s portfolio of large-scale IT systems, discuss the implementation of the interoperabil...
Announcement Cybersecurity -
Atbalsta papildu 1,6 miljonu eiro no Atveseļošanas fonda Iekšlietu ministrijas digitālās infrastruktūras stiprināšanai
Otrdien, 29. septembrī, Ministru kabinets atbalstīja papildu 1,6 miljonu eiro novirzīšanu no Atveseļošanas fonda Iekšlietu ministrijas Informācijas centra …
Announcement Cybersecurity -
Daily News 29 / 09 / 2026
European Commission Daily news Brussels, 29 Sep 2026 Commission proposes 5-point plan to strengthen resilience and security of EU external borders Today, the European Commission is proposing a 5-po...
Press release Cybersecurity -
Aggiornamenti disponibili per WatchGuard AP
Aggiornamenti di sicurezza WatchGuard sanano 3 vulnerabilità, 2 con gravità “critica” e una con gravità “alta”, in WatchGuard AP, dispositivi di accesso wireless utilizzati per la connettività e la...
Advisory Cybersecurity -
Latvijas kibertelpas apskats pirmsvēlēšanu nedēļā un vēlēšanu laikā
CERT.LV aktuālā informācija par kiberdrošības situāciju nedēļā pirms 15. Saeimas vēlēšanām un vēlēšanu laikā.
Announcement Cybersecurity -
Research: Cyber security skills in the UK labour market 2026
Research detailing skills needs and job vacancies across the UK cyber security sector.
Announcement Cybersecurity -
Lessons from Microsoft Patch KB5002907: Two Layers of Patch Control in Qualys TruRisk Eliminate
How reliability scoring keeps risky patches out of zero-touch jobs, and how one blocking rule stops a paused update across your environment. Executive Summary Microsoft has paused the rollout of KB...
-
Apple: rilevato sfruttamento in rete della CVE-2026-86950
Rilevato lo sfruttamento attivo in rete della vulnerabilità CVE-2026-86950 – già sanata dal vendor - che interessa i prodotti Apple iOS, iPadOS, macOS Tahoe e macOS Sequoia. Tale vulnerabilità, qua...
Advisory Cybersecurity -
Foreign Minister Tsahkna: Estonia is a challenging target for Russia’s hybrid attacks
Today, 29 September, Foreign Minister Margus Tsahkna said that the arson attack on Milrem Robotics proves that Estonia is a challenging target for Russia’s acts of sabotage because our security age...
Announcement Cybersecurity -
Over 100 millioner svindelforsøk stoppet
De siste to årene har over 100 millioner svindelforsøk med norske telefonnumre blitt stanset før de nådde norske kunder. Resultatet viser at tett samarbeid mellom myndighetene og mobiloperatørene e...
Announcement Cybersecurity -
F5 BIG-IP APM OAuth Remote Code Execution Remains a Priority Past Its Federal Deadline (CVE-2026-94127)
F5 BIG-IP APM OAuth Remote Code Execution Remains a Priority Past Its Federal Deadline (CVE-2026-94127) conradNITA Tue, 09/29/2026 - 07:14
Announcement Cybersecurity -
Apple Patches CoreGraphics Flaw Possibly Exploited Against Specific Targeted Individuals (CVE-2026-86950)
Apple Patches CoreGraphics Flaw Possibly Exploited Against Specific Targeted Individuals (CVE-2026-86950) conradNITA Tue, 09/29/2026 - 07:14
Announcement Cybersecurity -
Citrix NetScaler Two Zero-Day Vulnerabilities Exploited Before Patches Existed (CVE-2026-88771 / CVE-2026-88772)
Citrix NetScaler Two Zero-Day Vulnerabilities Exploited Before Patches Existed (CVE-2026-88771 / CVE-2026-88772) conradNITA Tue, 09/29/2026 - 07:13
Announcement Cybersecurity -
Copy, Paste, Compromised: How ClickFix Attacks Work and How CrowdStrike Stops Them
ClickFix attacks trick users into executing malicious commands themselves. Learn how CrowdStrike Falcon Seraphic Enterprise Browser and the Falcon platform help stop attacks across the browser, end...
-
Boletín de vulnerabilidades
Vulnerabilidades con productos recientemente documentados: No hay vulnerabilidades nuevas para los productos a los que está suscrito. …
Advisory Cybersecurity -
Vulnérabilité dans les produits Apple (29 septembre 2026)
Une vulnérabilité a été découverte dans les produits Apple. Elle permet à un attaquant de provoquer une exécution de code arbitraire à distance. Apple indique que la vulnérabilité CVE-2026-86950 es...
Announcement Cybersecurity -
Apple Emergency Patch for iOS 26, macOS26, macOS15 (CVE-2026-86950), (Mon, Sep 28th)
Apple today released patches for all of its operating systems. However, only patches for older branches include a security fix. The vulnerability being addressed in iOS 26, macOS 26 and macOS 15 is...
-
Boletín de vulnerabilidades
Vulnerabilidades con productos recientemente documentados: No hay vulnerabilidades nuevas para los productos a los que está suscrito. …
Advisory Cybersecurity -
Attackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix
Huntress researchers reveal how attackers are exploiting ChatGPT Custom GPTs to spread ClickFix lures and DLL-sideloaded malware. See the full breakdown.
-
Linux security advisory (AV26-970)
Serial Number: AV26-970Date: September 28, 2026 Linux security advisory (AV26-970) As of September 25, 2026, Linux is affected by a vulnerability in the following product: Linux Kernel Version prio...
-
VU#762428: Authlib library contains a signature‑verification bypass vulnerability
Authlib (versions up to and including 1.7.2) contain a signature‑verification bypass in the JSON Web Signature (JWS) general JSON serialization handling. The JsonWebSignature.deserialize_json() fun...
Advisory Cybersecurity -
How we found 24 Android vulnerabilities using our open source AI security agent
A look at the targeted AI taskflows behind these findings, the critical Android bugs they uncovered, and how to run the same open-source agent on your own app. The post How we found 24 Android vuln...
Security notice Cybersecurity -
wolfSSL security advisory (AV26-969)
Serial Number: AV26-969Date: September 28, 2026 As of September 25, 2026, wolfSSL is affected by vulnerabilities in the following product: wolfSSL Prior to or equal to 5.9.4 The Cyber Centre encour...
-
SUSE Linux security advisory (AV26-968)
Serial Number: AV26-968Date: September 28, 2026 As of September 28, 2026, SUSE is affected by a vulnerability in the following product: NeuVector Prior to 5.4.11 Prior to 5.5.4 Prior to 5.6.2 The C...
-
Crime and Justice in a Changing World
Announcement Cybersecurity -
IBM security advisory (AV26-967)
Serial Number: AV26-967Date: September 28, 2026 As of September 25, 2026, IBM is affected by vulnerabilities in the following products: IBM Big Replicate LiveData Migrator Prior to or equal to 3.3 ...
-
Dell security advisory (AV26-966)
Serial Number: AV26-966Date: September 28, 2026 As of September 24, 2026, Dell is affected by vulnerabilities in the following products: Rugged Control Center (RCC) Prior to 5.2.206 Secure Connect ...
-
Privilege Hygiene: Least Privilege Best Practices Guide
Learn what good privilege hygiene looks like, from local admin sprawl to accidental access, plus least privilege best practices you can start today.