WhatsApp Usernames Explained: Privacy Gains and Scam Risks
WhatsApp Usernames Explained: Privacy Gains and Scam Risks How WhatsApp’s shift from phone numbers to usernames changes privacy for users, and the brand and executive impersonation surface it opens fo...
CVE-2026-50522 PoC Fuels SharePoint Attacks
CVE-2026-50522 PoC Fuels SharePoint Attacks Attackers are exploiting CVE-2026-50522, a critical Microsoft SharePoint Server vulnerability, after public proof-of-concept (PoC) exploit code became avail...
OpenAI Models Hacked Hugging Face During a Cyber Test
OpenAI Models Hacked Hugging Face During a Cyber Test [30.07.2026] Update: The Scope Keeps Growing During an internal cybersecurity benchmark in July 2026, OpenAI’s GPT-5.6 Sol and a more capable unre...
CVE-2026-6875 Hits ServiceNow AI Platform
CVE-2026-6875 Hits ServiceNow AI Platform Attackers are reportedly exploiting CVE-2026-6875, a critical pre-authentication vulnerability in the ServiceNow AI Platform. The flaw can allow an unauthenti...
SonicWall SMA Flaws Lead to KNUCKLEBALL Malware
SonicWall SMA Flaws Lead to KNUCKLEBALL Malware SonicWall SMA 1000 appliances were compromised in a zero-day campaign involving custom malware, root-level access, credential gathering, and attempts to...
Who Needs a Job? DPRK ClickFake Interview Campaign Drops PylangGhost a...
Who Needs a Job? DPRK ClickFake Interview Campaign Drops PylangGhost and GolangGhost RATs This article by SOCRadar Threat Research Unit (STRU) analyzes the latest ClickFake Interview campaign, a North...
7-Zip CVE-2026-14266 RCE Risk Explained
7-Zip CVE-2026-14266 RCE Risk Explained CVE-2026-14266 is a heap-based buffer overflow in 7-Zip’s XZ decompression logic. If a user opens or extracts specially crafted compressed content with an affec...
WordPress wp2shell Vulnerability (CVE-2026-63030): Quick FAQ for CISOs
WordPress wp2shell Vulnerability (CVE-2026-63030): Quick FAQ for CISOs Updated July 20, 2026: In-the-wild exploitation confirmed. Public proof-of-concept exploits for the full chain are now circulatin...
FIFA World Cup 2026 Fraud Campaigns
FIFA World Cup 2026 Fraud Campaigns Between April and July 2026, the SOCRadar Threat Research Unit (STRU) tracked the fraud ecosystem built around the FIFA World Cup 2026 spanning counterfeit merchand...
CVE-2026-59208 Enables Cross-Issuer Impersonation in n8n
CVE-2026-59208 Enables Cross-Issuer Impersonation in n8n AI and workflow automation platforms can connect identities directly to actions across email, cloud services, databases, and other business sys...
July 2026 Patch Tuesday: 622 Vulnerabilities, 3 Zero-Days
July 2026 Patch Tuesday: 622 Vulnerabilities, 3 Zero-Days Microsoft released its July 2026 Patch Tuesday security updates on July 14, 2026, addressing 622 CVEs – one of the largest single releases on ...
SAP Security Patch Day July 2026 Fixes Critical NetWeaver CVE-2026-447...
SAP Security Patch Day July 2026 Fixes Critical NetWeaver CVE-2026-44747 On July 14, 2026, SAP released its monthly security updates, delivering 16 new Security Notes and one GitHub security advisory,...
How HalluSquatting Could Fuel Agentic Botnets
How HalluSquatting Could Fuel Agentic Botnets AI agents can make software development and automation faster, but they can also introduce a new supply chain risk. HalluSquatting, also known as adversar...
MDASH and AI Reshape Windows Patching
MDASH and AI Reshape Windows Patching Microsoft is planning to bring AI deeper into Windows vulnerability management through tools such as MDASH, an internal system designed to identify and validate s...
How WP-SHELLSTORM Exposed 1.4M WordPress Sites
How WP-SHELLSTORM Exposed 1.4M WordPress Sites The SOCRadar Threat Intelligence Team traces an exposed directory back to a Chinese-linked cybercrime operation and details findings from the investigati...
RoguePlanet Zero-Day Fixed in Microsoft Defender
RoguePlanet Zero-Day Fixed in Microsoft Defender Microsoft has patched RoguePlanet, a Microsoft Defender elevation-of-privilege zero-day vulnerability tracked as CVE-2026-50656. The flaw affects the M...
Ubiquiti Fixes CVE-2026-50746 in UniFi Connect
Ubiquiti Fixes CVE-2026-50746 in UniFi Connect Ubiquiti has released fixes for multiple vulnerabilities in the UniFi ecosystem under Security Advisory Bulletin 066 (SAB-066). The highest-severity issu...
BeyondTrust Fixes RS/PRA CVE-2026-40138 and More
BeyondTrust Fixes RS/PRA CVE-2026-40138 and More BeyondTrust has published security advisory BT26-03 for four vulnerabilities in BeyondTrust Remote Support (RS) and Privileged Remote Access (PRA) appl...
What to Expect From the 2026 NATO Summit in Turkiye
What to Expect From the 2026 NATO Summit in Turkiye NATO leaders meet in Ankara, Turkiye on July 7–8 for what Secretary General Mark Rutte has called “maybe even more important than The Hague.” The Ha...
June 2026: FortiBleed Cracks Fortinet Firewalls, Supply Chain Worms Hi...
June 2026: FortiBleed Cracks Fortinet Firewalls, Supply Chain Worms Hit npm and PyPI June 2026 was headlined by FortiBleed, a Russian-attributed credential harvesting campaign that exposed over 86,000...
