Cybersecurity
1,806 publications classified by Officially as Cybersecurity, judged from each publication's own title and summary.
Our reading, not the publisher's. An organization that has claimed its profile can say what its own publications are about, and that will take precedence here. See everything published by organizations filed under Cybersecurity instead.
-
Selection Result Announced for the Cybersecurity-specialized AI Foundation Model Development Project
- The NAVER Cloud consortium has been selected for the project. 【Relevant National Tasks】21. Becoming the world’s most AI-literate country23. Realizing a “Universal Basic AI Society” to en...
Announcement Cybersecurity -
ESAs call for vigilance over external dependencies, cyber threats and private credit risks
The European Supervisory Authorities (EBA, EIOPA and ESMA – the ESAs) have identified external dependencies, emerging technologies and private credit as key vulnerabilities for the EU financia...
-
DarkMe RAT: A VB6 APT Trojan Turned Conventional Infostealer
DarkMe, an APT-linked VB6 RAT known for using zero day exploits, turned up in two Huntress incidents stripped down to a plain .pif infostealer malware.
Cybersecurity 2 versions -
Check Point security advisory (AV26-902) – Update 2
Serial Number: AV26-902Date: September 9, 2026Updated: September 22, 2026 As of September 9, 2026, Check Point is affected by vulnerabilities in the following products: Security Gateway Multiple ve...
Cybersecurity 3 versions -
F5 security advisory (AV26-949) - Update 1
Serial number: AV26-949Date: September 22, 2026 As of September 22, 2026, F5 is affected by a vulnerability in the following product: BIG-IP APM Versions 21.1.0 prior to Hotfix-BIGIP-21.1.0.2.0.30....
Cybersecurity 3 versions -
Arista Networks security advisory (AV26-947) – Update 1
Serial number: AV26-947Date: September 22, 2026 As of September 22, 2026, Arista Networks is affected by a vulnerability in the following product: VeloCloud Orchestrator (VCO) On-Prem Versions 5.2....
Cybersecurity 2 versions -
CVE-2026-11400 and CVE-2026-11401
Security notice Cybersecurity -
CVE-2026-13769 – Insecure file permissions in AWS CLI
Security notice Cybersecurity -
AL26-022 - Vulnerability impacting F5 BIG-IP Access Policy Manager (APM) – CVE-2026-94127
Number: AL26-022Date: September 22, 2026 This Alert is intended for IT professionals and managers. An Alert is used to raise awareness of a recently identified cyber threat that may impact cyb...
Cybersecurity 2 versions -
VU#738147: Vendor-signed UEFI Shell applications allow Secure Boot bypass
Vendor-signed UEFI Shell applications may allow an attacker to bypass Secure Boot protections by abusing commands such as mm (Memory Modify). …
-
Kwetsbaarheid in F5 Networks BIG-IP APM met actief misbruik
Er is een ernstige kwetsbaarheid gevonden in F5 Networks BIG-IP Access Policy Manager (APM) met een CVSS-score van 9,8. Deze kwetsbaarheid wordt actief misbruikt en kan aanzienlijke schade veroorza...
-
CVE-2026-94384 - Missing Authorization in AmazonConnectSalesforceLambda sfExecuteAWSService
Bulletin ID: 2026-115-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/22/2026 10:00 AM PDT Description: Amazon Connect Salesforce Lambda (AmazonConnectSalesforceLam...
Security notice Cybersecurity -
2026-013: Critical Vulnerability in F5 BIG-IP APM
On 22 September 2026, F5 published an advisory addressing a critical vulnerability affecting its BIG-IP APM product. The vendor confirmed active exploitation in the wild. CERT-EU recommends taking ...
Advisory Cybersecurity -
Security Bulletin 23 Sep 2026 [PDF, 2.6MB]
Announcement Cybersecurity -
Multiple Vulnerabilities in Synology DiskStation Manager (DSM)
Attackers can exploit multiple vulnerabilities in Synology DiskStation Manager (DSM) to read or write arbitrary files and conduct denial-of-service attacks. Patch immediately.
Announcement Cybersecurity -
Erlang security advisory (AV26-948)
Serial Number: AV26-948Date: September 22, 2026 As of September 22, 2026, Erlang is affected by vulnerabilities in the following product: OTP 17.0 Prior to 27.3.4.18 21b8a1b Prior to afec515, ...
-
F5 BIG-IP: rilevato sfruttamento in rete della CVE-2026-94127
Rilevato lo sfruttamento in rete di una vulnerabilità, identificata tramite la CVE-2026-94127, presente in BIG-IP APM. Tale vulnerabilità, qualora sfruttata, potrebbe consentire a utenti malintenzi...
Advisory Cybersecurity -
Some cheap smart glasses are a security disaster
Tests found that some cheap smart glasses can be hijacked over Bluetooth, exposing their owners’ photos, videos, and personal data.
-
What’s in the SOSS? Podcast #73 – S3E25 Securing the Source: Navigating AI Velocity, CRA Compliance, and Dependency Debt with Abby Kearns
In this episode of What’s in the SOSS, ActiveState CEO Abby Kearns breaks down the rapidly evolving open source security landscape. The conversation explores why reactive post-build scanning fails,...
-
CheckPoint: rilevato sfruttamento in rete della CVE-2026-93616
Rilevato lo sfruttamento in rete di una vulnerabilità, identificata tramite la CVE-2026-93616, presente in Check Point Management Server. La vulnerabilità potrebbe consentire a utenti malintenziona...
Advisory Cybersecurity -
MikroTrick: analiza techniczna, proces ujawnienia i zastosowanie agentów LLM
Opisujemy techniczne szczegóły łańcucha MikroTrick, złożonego z podatności CVE-2026-67279 i CVE-2026-86060, które w połączeniu pozwalały przejąć pełną kontrolę nad urządzeniem bez uwierzytelnienia....
Announcement Cybersecurity -
AI Attacks Move Faster. Huntress’ Agentic SOC Keeps Up
AI hasn't changed attacker tradecraft, just the speed. See how Huntress built Athena, an agentic SOC partner, to help analysts keep pace.
Cybersecurity 2 versions -
Detenciones relacionadas con los ciberataques contra la Agencia Tributaria francesa
En junio y julio de 2026, la Dirección General de Finanzas Públicas de Francia (DGFiP) sufrió varios accesos no autorizados basados en la suplantación de los identificadores de un agente y de un te...
-
LausivLoader analysis, or how to pass data between malware stages, (Thu, Sep 17th)
At the end of August, a malspam message was caught in the quarantine of a mail gateway operated by one of my customers. The message was not especially remarkable – it asked the recipient to revie...
Cybersecurity 2 versions -
Risolte vulnerabilità in MISP
Aggiornamenti di sicurezza MISP risolvono molteplici vulnerabilità, tra cui sei con gravità "alta", in MISP, nota piattaforma collaborativa open source per la condivisione e l'analisi di informazio...
Advisory Cybersecurity -
EDPB harmonizuje metodiku ukládání pokut a schválil pokyny ke vztahu nařízení o digitálních službách a GDPR
Na svém posledním plenárním zasedání přijal Evropský sbor pro ochranu osobních údajů (EDPB) pokyny k uplatňování pravomoci ukládat správní pokuty ve vztahu k jiným nápravným pravomocem podle GDPR a...
Announcement Cybersecurity -
Extradited Nigerian National Pleads Guilty to Money Laundering in Connection with Sextortion and Romance Scams
Olamide Shanu, 35, a Nigerian national, pleaded guilty yesterday in the District of Idaho to charges related to his role in several cyber-enabled schemes that defrauded approximately 150 American v...
Announcement Cybersecurity -
Extradited Nigerian National Pleads Guilty To Money Laundering In Connection With Sextortion And Romance Scams
Olamide Shanu, 35, a Nigerian national, pleaded guilty in the District of Idaho to charges related to his role in several cyber-enabled schemes that defrauded approximately 150 American victims and...
Announcement Cybersecurity -
Meta’s Muse AI assistant has a zero-day that can turn it into a Mac backdoor
A simple terminal command can hijack Muse and use its extensive permissions to spy on Mac users and control their connected accounts.
-
The Closed Quorum: Inside the first reported autonomous AI C2 implant
CLOSEDQUORUM, a malware binary discovered through Cisco Talos’ CAIRN project, exhibits fully autonomous command and control (C2). It represents a shift in effort displacement for attackers, in whic...
-
Introducing CAIRN: Frontier tracking for AI-integrated malware
Talos is releasing CAIRN, a research toolkit for hunting, classifying, and tracking emerging AI-integrated malware.
-
Researchers used Claude to hack OpenAI
Claude helped researchers break into OpenAI in under 72 hours, and exposed how quickly AI is lowering the bar for sophisticated hacking.
-
Looking for free Robux? Here’s what’s real, and what’s a scam
Fake giveaways, free Robux generators and lookalike login pages all target the same thing – your Roblox account
-
Mælt fyrir heildarlögum um netöryggisvottun á sviði upplýsinga- og fjarskiptatækni
Innviðaráðherra mælti á Alþingi í gær fyrir frumvarpi að heildarlögum um netöryggisvottun á sviði upplýsinga- og fjarskiptatækni.
Announcement Cybersecurity -
Un nuevo aviso de seguridad
Un nuevo aviso de seguridad Referencia directa a objetos inseguros (IDOR) en Tankuam Places de Kompini Fecha22/09/2026 Importancia5 - Crítica Recursos Afectados Tankuam Places, versiones publicadas...
Advisory Cybersecurity -
Inyección de comandos en R95 de D-Link
D-Link R95, revisión de hardware Ax y versión de firmware BE9500_1.00.16. D-Link continúa verificando si otras revisiones de hardware o versiones de firmware también están afectadas. …
-
Un nuevo aviso de SCI
Un nuevo aviso de SCI Inyección CRLF en VPN Client de Lenze Fecha22/09/2026 Importancia5 - Crítica Recursos Afectados Lenze VPN Client, versiones 1.0.0 y posteriores, pero anteriores a la 1.4.7, ut...
-
EDPB harmonises fining methodology and adopts final DSA-GDPR guidelines
EDPB harmonises fining methodology and adopts final DSA-GDPR guidelines 22 September 2026 During its latest plenary, the EDPB has adopted guidelines on the application of the power to i...
Announcement Cybersecurity -
WordPress Multiple Vulnerabilities
Announcement Cybersecurity -
WordPress 제품 보안 업데이트 권고
Announcement Cybersecurity -
金管會「不會」以LINE聯繫民眾,請民眾慎防二次詐騙
近日有不肖人士偽冒金融監督管理委員會(下稱金管會)名義,製作不實文書公告,以辦理「沒收犯罪所得返還予受害民眾」、「退款」等名義,誘使民眾掃描文件所附QR Code加入指定LINE帳號,並提供姓名、聯絡電話、身分證明文件及相關憑證等資料。金管會未曾且不會發出上述通知,提醒民眾慎防詐騙。 金管會鄭重提醒,金管會「不會」以LINE聯繫民眾辦理相...
Announcement Cybersecurity -
21st September – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 21st September, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Japan’s Digital Agency, which operates the Go...
-
Roundcube security advisory (AV26-503) – Update 1
Serial number: AV26-503Date: May 25, 2026Updated: September 21, 2026 On May 24, 2026, Roundcube published security advisories to address vulnerabilities in the following product: Roundcube We...
-
Zyxel security advisory (AV26-603) – Update 1
Serial number: AV26-603Date: June 16, 2026Updated: September 21, 2026 On June 16, 2026, Zyxel published a security advisory to address vulnerabilities in the following products: GS1900 se...