Alleged Brooks, Keepcool, Truecaller Bot, DAMAC, and US Resume Data Cl...
Alleged Brooks, Keepcool, Truecaller Bot, DAMAC, and US Resume Data Claims SOCRadar Dark Web Team identified several new underground posts, including the resurfacing of an alleged legacy Brooks Intern...
How HalluSquatting Could Fuel Agentic Botnets
How HalluSquatting Could Fuel Agentic Botnets AI agents can make software development and automation faster, but they can also introduce a new supply chain risk. HalluSquatting, also known as adversar...
Top 10 MSSPs in Saudi Arabia in 2026
Top 10 MSSPs in Saudi Arabia in 2026 Saudi Arabia’s cybersecurity market is expanding rapidly, with analyst estimates placing it at roughly USD 4 billion in 2025 and heading toward USD 8.9 billion by ...
Top 10 Cyber Threat Exposure Management Platforms
Top 10 Cyber Threat Exposure Management Platforms Cyber Threat Exposure Management (CTEM) has moved from a conceptual framework into a real buying and operating decision. Security teams are trying to ...
MDASH and AI Reshape Windows Patching
MDASH and AI Reshape Windows Patching Microsoft is planning to bring AI deeper into Windows vulnerability management through tools such as MDASH, an internal system designed to identify and validate s...
How WP-SHELLSTORM Exposed 1.4M WordPress Sites
How WP-SHELLSTORM Exposed 1.4M WordPress Sites The SOCRadar Threat Intelligence Team traces an exposed directory back to a Chinese-linked cybercrime operation and details findings from the investigati...
The AI Agent Credential Crisis: From Stealer Log to Source Code
The AI Agent Credential Crisis: From Stealer Log to Source Code AI coding tools now hold credentials that reach into source code repositories, cloud infrastructure, CI/CD pipelines, and connected serv...
RoguePlanet Zero-Day Fixed in Microsoft Defender
RoguePlanet Zero-Day Fixed in Microsoft Defender Microsoft has patched RoguePlanet, a Microsoft Defender elevation-of-privilege zero-day vulnerability tracked as CVE-2026-50656. The flaw affects the M...
Ubiquiti Fixes CVE-2026-50746 in UniFi Connect
Ubiquiti Fixes CVE-2026-50746 in UniFi Connect Ubiquiti has released fixes for multiple vulnerabilities in the UniFi ecosystem under Security Advisory Bulletin 066 (SAB-066). The highest-severity issu...
Accenture Breach Claim: 35GB of Data Stolen
Accenture Breach Claim: 35GB of Data Stolen A threat actor using the handle 888 has claimed to be selling around 35GB of Accenture-related data on a cybercrime forum, making the latest Accenture breac...
BeyondTrust Fixes RS/PRA CVE-2026-40138 and More
BeyondTrust Fixes RS/PRA CVE-2026-40138 and More BeyondTrust has published security advisory BT26-03 for four vulnerabilities in BeyondTrust Remote Support (RS) and Privileged Remote Access (PRA) appl...
Alleged WordPress 0-Day, HMG Patient Data, Astra Files, OnlineSkills L...
Alleged WordPress 0-Day, HMG Patient Data, Astra Files, OnlineSkills Leak, and RDWeb Access SOCRadar Dark Web Team identified several new underground posts, including an alleged WordPress plugin zero-...
What to Expect From the 2026 NATO Summit in Turkiye
What to Expect From the 2026 NATO Summit in Turkiye NATO leaders meet in Ankara, Turkiye on July 7–8 for what Secretary General Mark Rutte has called “maybe even more important than The Hague.” The Ha...
June 2026: FortiBleed Cracks Fortinet Firewalls, Supply Chain Worms Hi...
June 2026: FortiBleed Cracks Fortinet Firewalls, Supply Chain Worms Hit npm and PyPI June 2026 was headlined by FortiBleed, a Russian-attributed credential harvesting campaign that exposed over 86,000...
CISA Flags SharePoint RCE (CVE-2026-45659) for Active Exploitation
CISA Flags SharePoint RCE (CVE-2026-45659) for Active Exploitation CISA has added CVE-2026-45659 to its Known Exploited Vulnerabilities (KEV) catalog as of July 1, 2026, indicating active exploitation...
CVE-2026-8037: Progress Kemp LoadMaster RCE Exploited in the Wild
CVE-2026-8037: Progress Kemp LoadMaster RCE Exploited in the Wild A critical vulnerability tracked as CVE-2026-8037 affects Progress Kemp LoadMaster (Progress ADC / LoadMaster). The issue is a pre-aut...
SOCRadar Links FortiBleed Campaign to INC and Lynx Ransomware Operatio...
SOCRadar Links FortiBleed Campaign to INC and Lynx Ransomware Operations SOCRadar’s Threat Research Unit (STRU) has linked the FortiBleed credential-harvesting campaign to two active ransomware-as-a-s...
Adobe ColdFusion and Campaign Classic: Critical RCE Flaws Among Multip...
Adobe ColdFusion and Campaign Classic: Critical RCE Flaws Among Multiple CVSS 10.0 Issues [Update] July 6, 2026: CVE-2026-48282 Reported as Exploited in the Wild Adobe has published two “Priority 1” s...
2026 SANS CTI Survey Report: Key Findings on CTI's Influence Gap
2026 SANS CTI Survey Report: Key Findings on CTI’s Influence Gap Cyber threat intelligence (CTI) has arrived. It’s embedded in security programs, staffed by dedicated teams, supported by AI, and recog...
CVE-2026-8451 Adds a New NetScaler Memory Overread to the CitrixBleed ...
CVE-2026-8451 Adds a New NetScaler Memory Overread to the CitrixBleed Pattern Citrix has patched CVE-2026-8451, a vulnerability affecting Citrix NetScaler ADC and NetScaler Gateway. The issue is an in...
