Cybersecurity
1,125 publications classified by Officially as Cybersecurity, judged from each publication's own title and summary.
Our reading, not the publisher's. An organization that has claimed its profile can say what its own publications are about, and that will take precedence here. See everything published by organizations filed under Cybersecurity instead.
-
This month in security with Tony Anscombe – September 2026 edition
Autonomous AI agents go on a hacking spree, and Microsoft ships what used to be a year's worth of security patches in one go – here's how to keep pace
-
Risolte vulnerabilità in Joomla!
Aggiornamenti di sicurezza sanano molteplici vulnerabilità, di cui 7 con gravità "alta", nel noto CMS Joomla!.
Advisory Cybersecurity -
Berlin Group legt Arbeitspapier zu Confidential Cloud Computing vor
Die von der Bundesbeauftragten für den Datenschutz und die Informationsfreiheit (BfDI) geleitete internationale Arbeitsgruppe für technologischen Datenschutz (International Working Group on Data Pr...
Announcement Cybersecurity -
Spain, Denmark and the Netherlands win Europol 2026 Excellence Awards in Innovation
At the European Police Chiefs Convention on 29 September 2026, Europol announced the winners of its 2026 Excellence Awards in Innovation. Law enforcement teams from Spain, Denmark and the Netherlan...
Announcement Cybersecurity -
Dolibarr: rilevato sfruttamento in rete della CVE-2026-89013
Rilevato lo sfruttamento attivo in rete della vulnerabilità CVE-2026-89013 - già sanata dal vendor - relativa a Dolibarr, soluzione open source per la gestione di documenti e processi aziendali. Ta...
Advisory Cybersecurity -
Boletín de pruebas Certificados
Múltiples vulnerabilidades en TPVEnlanube INCIBE ha coordinado la publicación de 3 vulnerabilidades de severidad media que afectan a TPVEnlanube, un software para la gestión de inventarios, almacen...
Advisory Cybersecurity -
Determined Attacker Uploads Malicious Webshells to Parks and Rec Management Platform Servers
Huntress SOC found a threat actor exploiting a file upload flaw in recreation management to breach 3 municipal servers and steal payment data.
-
Commission proposes a new EU Critical Communication System for first responders
European Commission Press release Brussels, 30 Sep 2026 Today, the European Commission proposed to establish a new EU Critical Communication System to provide Europe's first responders with secure ...
Press release Cybersecurity -
Questions and answers on the European Union Critical Communication System
European Commission Questions and answers Brussels, 30 Sep 2026 What is the European Union Critical Communication System? The European Union Critical Communication System (EUCCS) connects national ...
Press release Cybersecurity -
Boletín de vulnerabilidades
Vulnerabilidades con productos recientemente documentados: No hay vulnerabilidades nuevas para los productos a los que está suscrito. Otras vulnerabilidades de los productos a los que usted está su...
Advisory Cybersecurity -
TeamViewer security advisory (AV26-977)
Serial number: AV26-977Date: September 29, 2026 As of September 29, 2026, TeamViewer is affected by vulnerabilities in the following products: TeamViewer Full Client (Windows/Linux/MacOS) Multiple ...
-
Mozilla security advisory (AV26-976)
Serial number: AV26-976Date: September 29, 2026 As of September 29, 2026, Mozilla is affected by vulnerabilities in the following products: Firefox ESR Versions prior to 153.4 Versions prior to 140...
-
Boletín de vulnerabilidades
Boletín de vulnerabilidades Vulnerabilidades con productos recientemente documentados:No hay vulnerabilidades nuevas para los productos a los que está suscrito.Otras vulnerabilidades de los product...
Advisory Cybersecurity -
Your data, your storage, your rules: a 2026 guide to storing Unity Catalog managed tables
Unity catalog managed tables allow you to control the placement of your data when...
-
Meet Athena: Huntress' Agentic SOC Analyst
Learn how Huntress' Athena brings agentic AI to the SOC, investigating signals end-to-end while human analysts own the final call.
-
[Control systems] Hitachi security advisory (AV26-975)
Serial number: AV26-975Date: September 29, 2026 As of September 29, 2026, Hitachi is affected by vulnerabilities in the following product: RTU500 series CMU firmware Prior to 12.7.8, 13.9.1 or late...
Cybersecurity 2 versions -
CVE-2026-100308 - GluonTS arbitrary command execution during model deserialization
Bulletin ID: 2026-119-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 09/29/2026 08:00 AM PDT Description: GluonTS is an open source library for deep learning based ti...
Security notice Cybersecurity -
Autonomous Remediation Is Already Running at Enterprise Scale
The following is a guest blog by ITSPmagazine, based on their interview of Qualys President & CEO Sumedh Thakar at Black Hat USA 2026. Sumedh Thakar has watched the same clock compress for 23 y...
-
Risolte vulnerabilità in prodotti Mozilla
Aggiornamenti di sicurezza sanano molteplici vulnerabilità, di cui 6 con gravità “critica” e 51 con gravità “alta”, nei prodotti Firefox, Firefox ESR e Thunderbird.
-
SUSE Linux security advisory (AV26-974)
Serial number: AV26-974Date: September 29, 2026 As of September 28, 2026, SUSE is affected by vulnerabilities in the following product: Rancher Prior to 0.12.19 Prior to 0.13.15 Prior to 0.13.16 Pr...
-
Disponibili PoC per lo sfruttamento di 7 vulnerabilità in prodotti axios
Disponibili Proof of Concept (PoC) per lo sfruttamento di 7 vulnerabilità con gravità "alta" presenti nel prodotto axios.
Advisory Cybersecurity -
FreePBX security advisory (AV26-973)
Serial number: AV26-973Date: September 29, 2026 As of September 28, 2026, FreePBX is affected by vulnerabilities in the following products: music Prior to 16.0.4 Prior to 17.0.6 ucp Prior to 16.0.3...
-
Scans for Wordfence Protected Websites, (Tue, Sep 29th)
Starting yesterday, our sensors picked up a small number of scans for "wordfence-waf.php". This particular script is used by Wordfence, a solution to protect WordPress sites. During the Wordfence i...
-
Risolte vulnerabilità in prodotti HPE
Rilasciati aggiornamenti di sicurezza per risolvere 3 vulnerabilità, di cui 2 con gravità "alta", che interessano i prodotti HPE OneView e HPE Synergy Composer.
Advisory Cybersecurity -
Risolte vulnerabilità in prodotti HPE Networking
Rilasciati aggiornamenti di sicurezza per risolvere 3 vulnerabilità, di cui 2 con gravità "alta", che interessano i prodotti HPE Networking EdgeConnect SD-WAN Gateways e Orchestrator.
Advisory Cybersecurity -
Preventing quantum downgrade attacks against IPsec
A sophisticated attacker with a quantum computer can exploit a protocol design flaw to downgrade post-quantum IPsec tunnels to classical crypto. We helped the IETF develop a transcript authenticati...
-
Enforce positive security with Cloudflare Application Profiles
Cloudflare learns the structure of your HTTP requests and identifies deviations. You can add a positive security layer that helps reduce attack surface as AI makes it easier for attackers to genera...
-
Is your domain using post-quantum encryption? Now you can see for yourself
Cloudflare has added visibility into post-quantum (PQ) encryption in TLS 1.3 directly into HTTP Analytics, Log Explorer, and Logpush. Learn how to make sure your domain is protected with PQ encrypt...
-
Introducing Threat Signals: agentic skills for open-source threat intelligence, free for every Cloudflare account
We are expanding access to Cloudforce One's Threat Events Platform to every Cloudflare account and introducing Threat Signals. Threat Signals automatically parses open-source threat reporting, extr...
-
We tested our own WAF with frontier AI models. Here’s what we found
We built a WAF tester that adapted each request based on what the WAF blocked or passed. This helped us explore variations that a fixed test might miss. We ran it across six attack categories on an...
-
Building a post-quantum certificate authority with Merkle Tree Certificates
As post-quantum signatures threaten to inflate TLS handshakes and certificate transparency logs, Merkle Tree Certificates offer a path to compact, auditable authentication. Cloudflare’s new certifi...
-
Adaptive application security for the AI era: how Cloudflare connects code, traffic, and intelligence to stop attacks
Cloudflare introduces an adaptive security framework connecting risk discovery, agent governance, runtime protection, and AI-powered response in a continuous learning loop.
-
Building a certificate authority for the whole Internet
Twelve years after launching Universal SSL, Cloudflare is applying to become a certificate authority. By combining an established root, an ACME-first approach, and Merkle Tree Certificates, we are ...
-
WatchGuard security advisory (AV26-972)
Serial number: AV26-972Date: September 29, 2026 As of September 28, 2026, WatchGuard is affected by vulnerabilities in the following product: WatchGuard AP Prior to 3.4.8 The Cyber Centre encourage...
-
Assetmanagers moeten ICT-recovery verder versterken
Financiële ondernemngen zijn steeds afhankelijker van digitale systemen. Tegelijkertijd nemen de risico's op verstoringen toe door cyberaanvallen, geopolitieke spanningen en de groeiende complexite...
-
Apple security advisory (AV26-971)
Serial number: AV26-971Date: September 29, 2026 As of September 28, 2026, Apple is affected by a vulnerability in the following products: iOS and iPadOS Prior to 27.0.1 Prior to 26.7.1 macOS Golden...
-
JFrog: rilevato sfruttamento in rete della CVE-2026-82329 relativa ad Artifactory
Rilevato lo sfruttamento attivo in rete della CVE-2026-82329 con gravità "critica", relativa al prodotto JFrog Artifactory. Tale vulnerabilità potrebbe consentire a un utente malintenzionato remoto...
Advisory Cybersecurity -
eu-LISA and ENISA strengthen cooperation with new Memorandum of Understanding
eu-LISA and the European Union Agency for Cybersecurity (ENISA) signed a new Memorandum of Understanding (MoU) in Tallinn on 16 September 2026, further strengthening cooperation between the two Age...
Announcement Cybersecurity -
Tres nuevos avisos de seguridad
Múltiples vulnerabilidades en TPVEnlanube Múltiples vulnerabilidades en WatchGuard AP de WatchGuard Múltiples vulnerabilidades en T-CPE301K 4G Mini WiFi Router de Shenzhen Dbit Network Equipment IN...
Advisory Cybersecurity -
Un nuevo aviso de SCI
ABB Automation Builder, versiones anteriores a la 2.9.1. Todos los productos AC500 V3 (PM5xxx) con versiones de firmware anteriores a la 3.9.1. ABB Protection and Control IED Manager PCM600, versio...
Advisory Cybersecurity -
Rilevate vulnerabilità in FreePBX
Rilevate 6 vulnerabilità con gravità “alta” in diversi moduli di FreePBX, piattaforma open source per la configurazione e la gestione grafica di centralini telefonici basati su Asterisk.
Advisory Cybersecurity -
Update your iPhone, iPad, or Mac: Flaw could run attackers’ code
A malicious file could trigger the vulnerability. Apple says it may already have been used against iPhone users.
-
CRA Tech Talk, 09/07/2026
This CRA Tech Talk was hosted by the OpenSSF Global Cyber Policy Working group on Monday, 7 September at 4:00 PM CEST. High-level Agenda: Introduction to the CRA reporting obligations SUSE’s journe...
-
OperTraitors: How Kubernetes Operators Betray Your Security Posture
We introduce OperTraitor, a tool to audit privileges of Kubernetes operators, identify excessive RBAC risks, and secure non-human identities. The post OperTraitors: How Kubernetes Operators Betray ...
-
Securing the keys to the kingdom: Announcing Executive Threat Detection
This new proactive service joins the suite of retainer offerings to provide dedicated, intelligence-led hunting specifically for your organization’s most high-value IT assets.
-
Fake iPhone Duo preorder scam triggers DarkSword attack
A fake iPhone Duo preorder page promises a $500 voucher. Open it on a vulnerable iPhone, and it tries to break in before you fill out the form.
-
Progress Software: sanate vulnerabilità in Progress Telerik Fiddler Everywhere
Rilasciati aggiornamenti di sicurezza per sanare due vulnerabilità, di cui una con gravità “alta”, in Progress Telerik Fiddler Everywhere.
Advisory Cybersecurity -
eu-LISA Management Board reviews implementation of key EU IT systems and future interoperability roadmap
The Management Board of eu-LISA met in Strasbourg on 23–24 September 2026 to review progress across the Agency’s portfolio of large-scale IT systems, discuss the implementation of the interoperabil...
Announcement Cybersecurity -
Daily News 29 / 09 / 2026
European Commission Daily news Brussels, 29 Sep 2026 Commission proposes 5-point plan to strengthen resilience and security of EU external borders Today, the European Commission is proposing a 5-po...
Press release Cybersecurity