Exposing AnonyMousKIT: AI-Powered PhaaS Supply Chain
Exposing AnonyMousKIT: AI-Powered PhaaS Supply Chain The SOCRadar Threat Research Unit (STRU) has conducted an “inside-out” analysis of AnonyMousKIT, an AI-powered Phishing-as-a-Service (PhaaS) ecosys...
Imobiliare.ro, Klark.ai, Fortinet VPN, E-Commerce Skimming, and Solimu...
Imobiliare.ro, Klark.ai, Fortinet VPN, E-Commerce Skimming, and Solimut SQLi SOCRadar Dark Web Team identified several new underground posts involving alleged database leaks, exposed remote access, an...
Cisco Crosswork, Secure Workload CVEs Patched
Cisco Crosswork, Secure Workload CVEs Patched Cisco released security updates for Cisco Crosswork and Cisco Secure Workload, addressing nine vulnerabilities across the two product families. The update...
CVE-2026-19478: GitLab GraphQL Flaw Exploited
CVE-2026-19478: GitLab GraphQL Flaw Exploited GitLab has patched CVE-2026-19478, a critical code injection vulnerability affecting self-managed Community Edition (CE) and Enterprise Edition (EE) insta...
CVE-2026-69836: Microsoft Entra ID RCE Fixed
CVE-2026-69836: Microsoft Entra ID RCE Fixed Microsoft recently disclosed CVE-2026-69836, a critical Remote Code Execution (RCE) vulnerability in Microsoft Entra ID (formerly Azure Active Directory). ...
ShinyHunters Claims ReliaQuest Breach
ShinyHunters Claims ReliaQuest Breach A ShinyHunters-associated leak site listed ReliaQuest on August 23, 2026, raising questions about a potential data extortion attempt against the cybersecurity pro...
CVE-2026-73570: Zimbra RCE Exploited
CVE-2026-73570: Zimbra RCE Exploited Zimbra Collaboration Suite (ZCS) faces an actively exploited command-injection vulnerability, identified as CVE-2026-73570. This flaw affects the suite’s SNMP noti...
CVE-2026-19490: NetScaler Auth Bypass Patched
CVE-2026-19490: NetScaler Auth Bypass Patched Cloud Software Group released a critical security bulletin for customer-managed NetScaler ADC and NetScaler Gateway deployments, fixing two vulnerabilitie...
SOCRadar Ranks No. 542 on the 2026 Inc. 5000 List of America's Fastest...
SOCRadar Ranks No. 542 on the 2026 Inc. 5000 List of America’s Fastest-Growing Private Companies SOCRadar Is Recognized for 645% Three-Year Revenue Growth, Marking Its Second Consecutive Year on the L...
FTP Banners: The New Dead Drop Resolver Delivering Novel RATs
FTP Banners: The New Dead Drop Resolver Delivering Novel RATs STRU found threat actors using FTP banners as Dead Drop Resolvers – legitimate services or protocols abused to host C2 addresses and comma...
Windows IKE CVE-2026-33824 Added to CISA KEV
Windows IKE CVE-2026-33824 Added to CISA KEV Windows IKE CVE-2026-33824 is now in CISA’s Known Exploited Vulnerabilities catalog, giving defenders a short deadline to verify patching and exposure. CIS...
July 2026: OpenAI Agent Incident, KDDI Breach
July 2026: OpenAI Agent Incident, KDDI Breach July 2026 brought a mix of large scale data exposures, supply chain access risks, credential-driven activity, and a new kind of AI-related incident respon...
Telegram Applied for .gram: What It Means for the Threat Landscape
Telegram Applied for .gram: What It Means for the Threat Landscape ...
Can NVD Modernization Keep Pace With AI?
Can NVD Modernization Keep Pace With AI? AI can help security teams find vulnerabilities faster. That sounds entirely positive until we consider what happens after those vulnerabilities are found. Eve...
Italy RDWeb Access, GBCSA Data Sale, SCHUFA Claim, and FLY Firebase Ex...
Italy RDWeb Access, GBCSA Data Sale, SCHUFA Claim, and FLY Firebase Exposure SOCRadar Dark Web Team identified several new underground posts involving alleged initial access sales and large-scale data...
From Blackwater to Cyber-Privateers: When States Outsource Force
From Blackwater to Cyber-Privateers: When States Outsource Force On August 12, 2026, President Donald Trump signed a National Security Presidential Memorandum titled “Expanding Capabilities to Combat ...
LiteLLM Supply Chain Attack: Inside the AI Breach That Exposed 2,500+ ...
LiteLLM Supply Chain Attack: Inside the AI Breach That Exposed 2,500+ Companies ...
August 2026 Patch Tuesday: 421 Flaws, 3 Zero-Days
August 2026 Patch Tuesday: 421 Flaws, 3 Zero-Days Microsoft’s August 2026 Patch Tuesday release addresses 421 vulnerabilities, including three zero-days. One zero-day was exploited in the wild, while ...
SAP Commerce Cloud CVE-2026-58231 Requires Urgent Patching
SAP Commerce Cloud CVE-2026-58231 Requires Urgent Patching SAP has addressed CVE-2026-58231, a maximum-severity improper authorization vulnerability in the Data Hub Adapter for SAP Commerce Cloud. The...
Cisco ASA and FTD CVE-2026-20349 Exploited
Cisco ASA and FTD CVE-2026-20349 Exploited Cisco has confirmed active exploitation of CVE-2026-20349, a High-severity denial-of-service (DoS) vulnerability affecting the Remote Access SSL VPN service ...
