Iran vs. Israel & US Cyber War 2026: Operation Epic Fury Threat Intell...
Iran vs. Israel & US Cyber War 2026: Operation Epic Fury Threat Intelligence On February 28, 2026, the US and Israel launched Operation Epic Fury, striking Iran’s military command, missile infrast...
Iranian APT MuddyWater Uses Dindoor Malware to Target U.S. Networks
Iranian APT MuddyWater Uses Dindoor Malware to Target U.S. Networks A recently uncovered cyber espionage campaign attributed to the Iranian state-linked threat group MuddyWater has drawn attention fro...
Cisco Catalyst SD-WAN Manager (CVE-2026-20122 & CVE-2026-20128) Flaws ...
Cisco Catalyst SD-WAN Manager (CVE-2026-20122 & CVE-2026-20128) Flaws Exploited Cisco has confirmed active exploitation targeting two vulnerabilities in Cisco Catalyst SD-WAN Manager (formerly vMa...
CISA Flags Hikvision Camera & Rockwell Logix Vulnerabilities as Active...
CISA Flags Hikvision Camera & Rockwell Logix Vulnerabilities as Actively Exploited Two long-standing vulnerabilities affecting Hikvision cameras and Rockwell Automation Logix environments are now ...
FBI Seizes LeakBase Cybercrime Forum, Data of 142,000 Members
FBI Seizes LeakBase Cybercrime Forum, Data of 142,000 Members [Update] March 13, 2026: “Russia Seizes New LeakBase Domain Following Earlier Takedown” So, LeakBase. Here’s what most miss in the threat ...
CVE-2026-22719: VMware Aria Operations Command Injection Added to CISA...
CVE-2026-22719: VMware Aria Operations Command Injection Added to CISA KEV Broadcom previously disclosed and patched CVE-2026-22719, a command injection issue in VMware Aria Operations (formerly vReal...
CVE-2026-0628: Chrome “Gemini Live” Side Panel Injection Bug
CVE-2026-0628: Chrome “Gemini Live” Side Panel Injection Bug CVE-2026-0628 is a high-severity Google Chrome and Chromium vulnerability caused by insufficient policy enforcement in the <webview> ...
OpenClaw’s ClawJacked Vulnerability Explained, What Organizations Need...
OpenClaw’s ClawJacked Vulnerability Explained, What Organizations Need to Know? OpenClaw, along with its recent exploitation technique called ClawJacked, has raised concerns about how cloud-based deve...
Claude Code Security: What It Is, What It Isn't?
Claude Code Security: What It Is, What It Isn’t? When Anthropic released Claude Code Security on February 20, 2026, cybersecurity stocks dropped almost immediately. A few days later, Anthropic announc...
CVE-2026-20127: Cisco Catalyst SD-WAN Auth Bypass Exploited In The Wil...
CVE-2026-20127: Cisco Catalyst SD-WAN Auth Bypass Exploited In The Wild Cisco recently disclosed a zero-day, tracked as CVE-2026-20127, warning that the issue is already being actively exploited in re...
SolarWinds Serv-U 15.5.4 Fixes Four Privileged RCE Vulnerabilities
SolarWinds Serv-U 15.5.4 Fixes Four Privileged RCE Vulnerabilities SolarWinds has released Serv-U 15.5.4 to address four high-impact vulnerabilities affecting Serv-U 15.5. While these issues require a...
Critical Elasticsearch Exposure: 544M Plain-Text Credentials Found Pub...
Critical Elasticsearch Exposure: 544M Plain-Text Credentials Found Publicly Accessible SOCRadar’s AI-powered Sensitive Data Exposure Monitoring service identified a publicly accessible and misconfigur...
Severe VS Code Extension CVEs Expose Developers to RCE and File Exfilt...
Severe VS Code Extension CVEs Expose Developers to RCE and File Exfiltration A recent report highlighted a coordinated disclosure affecting four popular Visual Studio Code (VS Code) extensions: Live S...
Public Elasticsearch Instances Expose 43M+ Records Including Credentia...
Public Elasticsearch Instances Expose 43M+ Records Including Credentials, Credit Cards, and Customer Data SOCRadar’s AI-powered Sensitive Data Exposure Monitoring service has identified three publicly...
CVE-2026-2441: Chrome Zero-Day Enables In-Sandbox Code Execution
CVE-2026-2441: Chrome Zero-Day Enables In-Sandbox Code Execution Google has patched CVE-2026-2441, noting that it is “aware that an exploit for CVE-2026-2441 exists in the wild” as of the Stable Chann...
January 2026: Instagram, BreachForums, SoundCloud Leaks, Trust Wallet ...
January 2026: Instagram, BreachForums, SoundCloud Leaks, Trust Wallet Backdoor January 2026 incident disclosures spanned consumer platforms, enterprise identity workflows, and the cybercrime ecosystem...
February 2026 Patch Tuesday: Six Active Zero-Days & 53 Other Flaws Add...
February 2026 Patch Tuesday: Six Active Zero-Days & 53 Other Flaws Addressed Microsoft released its February 2026 Patch Tuesday security updates, resolving a total of 59 vulnerabilities across Win...
CVE-2026-1731: RCE Risk in BeyondTrust RS and PRA
CVE-2026-1731: RCE Risk in BeyondTrust RS and PRA BeyondTrust has disclosed CVE-2026-1731, a vulnerability that enables Remote Code Execution (RCE) in BeyondTrust Remote Support (RS) and Privileged Re...
CVE-2026-25049: n8n Expression Sandbox Escape Enables RCE
CVE-2026-25049: n8n Expression Sandbox Escape Enables RCE n8n is widely used to automate business workflows, which also means it often sits close to credentials, internal APIs, and sensitive data. A n...
CVE-2025-11953 (Metro4Shell) in React Native Metro Server Enables RCE
CVE-2025-11953 (Metro4Shell) in React Native Metro Server Enables RCE A critical security flaw in the React Native Community CLI Metro development server has drawn attention following confirmed real-w...