Cybersecurity
1,875 publications from 84 organizations filed under Cybersecurity.
Filed by publisher, not by subject — these are everything those organizations published, not everything published about Cybersecurity. See the 1,133 publications Officially classified as Cybersecurity instead.
-
Boletín de pruebas Certificados
Múltiples vulnerabilidades en TPVEnlanube INCIBE ha coordinado la publicación de 3 vulnerabilidades de severidad media que afectan a TPVEnlanube, un software para la gestión de inventarios, almacen...
Advisory Cybersecurity -
Determined Attacker Uploads Malicious Webshells to Parks and Rec Management Platform Servers
Huntress SOC found a threat actor exploiting a file upload flaw in recreation management to breach 3 municipal servers and steal payment data.
-
Mozilla Firefox Multiple Vulnerabilities
Announcement -
Google Chrome Multiple Vulnerabilities
Announcement -
Apache 제품 보안 업데이트 권고
Announcement -
Piolink 제품 보안 업데이트 권고
Announcement -
Vulnérabilité dans CPython (30 septembre 2026)
Une vulnérabilité a été découverte dans CPython. Elle permet à un attaquant de provoquer une atteinte à l'intégrité des données.
Announcement -
Multiples vulnérabilités dans GitLab (30 septembre 2026)
De multiples vulnérabilités ont été découvertes dans GitLab. Elles permettent à un attaquant de provoquer une atteinte à la confidentialité des données et un contournement de la politique de sécuri...
Announcement -
Multiples vulnérabilités dans OpenSSL (30 septembre 2026)
De multiples vulnérabilités ont été découvertes dans OpenSSL. Certaines d'entre elles permettent à un attaquant de provoquer un déni de service à distance, une atteinte à la confidentialité des don...
Announcement -
Multiples vulnérabilités dans Google Chrome (30 septembre 2026)
De multiples vulnérabilités ont été découvertes dans Google Chrome. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.
Announcement -
Multiples vulnérabilités dans les produits Mozilla (30 septembre 2026)
De multiples vulnérabilités ont été découvertes dans les produits Mozilla. Certaines d'entre elles permettent à un attaquant de provoquer une élévation de privilèges, un déni de service à distance ...
Announcement -
Multiples vulnérabilités dans HPE Aruba Networking Instant On (30 septembre 2026)
De multiples vulnérabilités ont été découvertes dans HPE Aruba Networking Instant On. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une...
Announcement -
Point de situation de l’opération REACTIV – septembre 2026 (30 septembre 2026)
Face à l’intensification des attaques cybercriminelles liées à des violations de données affectant les services de l’État, le Premier ministre a demandé le 1er septembre 2026 à l’Agence nationale d...
Announcement -
Boletín de vulnerabilidades
Vulnerabilidades con productos recientemente documentados: No hay vulnerabilidades nuevas para los productos a los que está suscrito. Otras vulnerabilidades de los productos a los que usted está su...
Advisory Cybersecurity -
TeamViewer security advisory (AV26-977)
Serial number: AV26-977Date: September 29, 2026 As of September 29, 2026, TeamViewer is affected by vulnerabilities in the following products: TeamViewer Full Client (Windows/Linux/MacOS) Multiple ...
-
Mozilla security advisory (AV26-976)
Serial number: AV26-976Date: September 29, 2026 As of September 29, 2026, Mozilla is affected by vulnerabilities in the following products: Firefox ESR Versions prior to 153.4 Versions prior to 140...
-
Boletín de vulnerabilidades
Boletín de vulnerabilidades Vulnerabilidades con productos recientemente documentados:No hay vulnerabilidades nuevas para los productos a los que está suscrito.Otras vulnerabilidades de los product...
Advisory Cybersecurity -
SQL Server on Azure Local is now generally available
With SQL Server on Azure Local, customers can modernize where their data resides while maintaining control over infrastructure, connectivity, and data placement. The post SQL Server on Azure Local ...
-
Meet Athena: Huntress' Agentic SOC Analyst
Learn how Huntress' Athena brings agentic AI to the SOC, investigating signals end-to-end while human analysts own the final call.
-
Security Bulletin 30 Sept 2026 [PDF, 1 MB]
Announcement 1 document -
Advisory on CARBONATO Botnet Campaign Targeting Exposed Docker Daemons
Security researchers have identified a botnet campaign known as CARBONATO targeting Docker hosts with unauthenticated Docker Remote APIs exposed to the Internet. Organisations operating Docker envi...
Announcement -
High-Severity Vulnerability in Apple Products
Attackers can exploit a high-severity vulnerability in Apple products to execute arbitrary code on affected devices. Patch immediately.
Announcement -
[Control systems] Hitachi security advisory (AV26-975)
Serial number: AV26-975Date: September 29, 2026 As of September 29, 2026, Hitachi is affected by vulnerabilities in the following product: RTU500 series CMU firmware Prior to 12.7.8, 13.9.1 or late...
Cybersecurity 2 versions -
CVE-2026-100308 - GluonTS arbitrary command execution during model deserialization
Bulletin ID: 2026-119-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/29/2026 08:00 AM PDT Description: GluonTS is an open source library for deep learning based ti...
Security notice Cybersecurity -
Autonomous Remediation Is Already Running at Enterprise Scale
The following is a guest blog by ITSPmagazine, based on their interview of Qualys President & CEO Sumedh Thakar at Black Hat USA 2026. Sumedh Thakar has watched the same clock compress for 23 y...
-
Risolte vulnerabilità in prodotti Mozilla
Aggiornamenti di sicurezza sanano molteplici vulnerabilità, di cui 6 con gravità “critica” e 51 con gravità “alta”, nei prodotti Firefox, Firefox ESR e Thunderbird.
-
SUSE Linux security advisory (AV26-974)
Serial number: AV26-974Date: September 29, 2026 As of September 28, 2026, SUSE is affected by vulnerabilities in the following product: Rancher Prior to 0.12.19 Prior to 0.13.15 Prior to 0.13.16 Pr...
-
Disponibili PoC per lo sfruttamento di 7 vulnerabilità in prodotti axios
Disponibili Proof of Concept (PoC) per lo sfruttamento di 7 vulnerabilità con gravità "alta" presenti nel prodotto axios.
Advisory Cybersecurity -
What’s in the SOSS? Podcast #74 – S3E26 Building the Agentic Future with Angie Jones
Discover the future of AI agents with Angie Jones, VP of Developer Experience at the Agentic AI Foundation. Learn about open source standards, MCP, and secure agentic engineering on the OpenSSF pod...
-
Podatność w oprogramowaniu Quick.Cart
W oprogramowaniu Quick.Cart wykryto podatność typu Cross-Site Request Forgery (CSRF) (CVE-2026-41875).
Announcement -
FreePBX security advisory (AV26-973)
Serial number: AV26-973Date: September 29, 2026 As of September 28, 2026, FreePBX is affected by vulnerabilities in the following products: music Prior to 16.0.4 Prior to 17.0.6 ucp Prior to 16.0.3...
-
Scans for Wordfence Protected Websites, (Tue, Sep 29th)
Starting yesterday, our sensors picked up a small number of scans for "wordfence-waf.php". This particular script is used by Wordfence, a solution to protect WordPress sites. During the Wordfence i...
-
Risolte vulnerabilità in prodotti HPE
Rilasciati aggiornamenti di sicurezza per risolvere 3 vulnerabilità, di cui 2 con gravità "alta", che interessano i prodotti HPE OneView e HPE Synergy Composer.
Advisory Cybersecurity -
Risolte vulnerabilità in prodotti HPE Networking
Rilasciati aggiornamenti di sicurezza per risolvere 3 vulnerabilità, di cui 2 con gravità "alta", che interessano i prodotti HPE Networking EdgeConnect SD-WAN Gateways e Orchestrator.
Advisory Cybersecurity -
Preventing quantum downgrade attacks against IPsec
A sophisticated attacker with a quantum computer can exploit a protocol design flaw to downgrade post-quantum IPsec tunnels to classical crypto. We helped the IETF develop a transcript authenticati...
-
Enforce positive security with Cloudflare Application Profiles
Cloudflare learns the structure of your HTTP requests and identifies deviations. You can add a positive security layer that helps reduce attack surface as AI makes it easier for attackers to genera...
-
Is your domain using post-quantum encryption? Now you can see for yourself
Cloudflare has added visibility into post-quantum (PQ) encryption in TLS 1.3 directly into HTTP Analytics, Log Explorer, and Logpush. Learn how to make sure your domain is protected with PQ encrypt...
-
Introducing Threat Signals: agentic skills for open-source threat intelligence, free for every Cloudflare account
We are expanding access to Cloudforce One's Threat Events Platform to every Cloudflare account and introducing Threat Signals. Threat Signals automatically parses open-source threat reporting, extr...
-
We tested our own WAF with frontier AI models. Here’s what we found
We built a WAF tester that adapted each request based on what the WAF blocked or passed. This helped us explore variations that a fixed test might miss. We ran it across six attack categories on an...
-
Building a post-quantum certificate authority with Merkle Tree Certificates
As post-quantum signatures threaten to inflate TLS handshakes and certificate transparency logs, Merkle Tree Certificates offer a path to compact, auditable authentication. Cloudflare’s new certifi...
-
Adaptive application security for the AI era: how Cloudflare connects code, traffic, and intelligence to stop attacks
Cloudflare introduces an adaptive security framework connecting risk discovery, agent governance, runtime protection, and AI-powered response in a continuous learning loop.
-
Building a certificate authority for the whole Internet
Twelve years after launching Universal SSL, Cloudflare is applying to become a certificate authority. By combining an established root, an ACME-first approach, and Merkle Tree Certificates, we are ...
-
Using AI to chart a course for our post-quantum migration
We’re building CryptoLabe, an internal AI-powered tool that discovers cryptography across our codebase, surfaces dependencies, and helps us progress toward a full post-quantum migration by 2029. He...
-
Podatność w oprogramowaniu MyPresta Google Merchant Center Feed
W oprogramowaniu MyPresta Google Merchant Center Feed wykryto podatność typu External control of file name or path (CVE-2026-85520).
Announcement -
WatchGuard security advisory (AV26-972)
Serial number: AV26-972Date: September 29, 2026 As of September 28, 2026, WatchGuard is affected by vulnerabilities in the following product: WatchGuard AP Prior to 3.4.8 The Cyber Centre encourage...
-
Meta’s Muse sent a Facebook Marketplace buyer to a seller’s home
A buyer chatted and negotiated with Muse, which shared the seller’s address and arranged a pickup. The seller knew nothing about it.
-
Apple security advisory (AV26-971)
Serial number: AV26-971Date: September 29, 2026 As of September 28, 2026, Apple is affected by a vulnerability in the following products: iOS and iPadOS Prior to 27.0.1 Prior to 26.7.1 macOS Golden...
-
Cyber Weather August 2026
August’s cyber weather remained rainy, and incident numbers increased after the summer holiday season.
Announcement -
JFrog: rilevato sfruttamento in rete della CVE-2026-82329 relativa ad Artifactory
Rilevato lo sfruttamento attivo in rete della CVE-2026-82329 con gravità "critica", relativa al prodotto JFrog Artifactory. Tale vulnerabilità potrebbe consentire a un utente malintenzionato remoto...
Advisory Cybersecurity