threat-intel Compromise kids online safety bill unveiled by House leaders, with key omission A revised version of the Kids Online Safety Act (KOSA) has been unveiled by the House Energy and Commerce Committee, aiming for bipartisan support. However, a key element – a ‘duty of care’ provision requiring platforms… The Record · Jun 23, 2026 Medium USonline safetychildren's privacyai regulation
threat-intel Fake AI Agent Skill Passed Security Scans and Reportedly Reached 26,000 Agents This article details an experiment conducted by AIR Security to demonstrate the vulnerabilities within current skill-scanning methods for AI agent skills within popular marketplaces. The firm created a seemingly harmless… The Hacker News · Jun 23, 2026 Medium USaiagentskills
threat-intel Trump Order Sets 2030 Deadline for Federal Post-Quantum Crypto Migration This article reports on a new executive order issued by President Trump setting deadlines for federal agencies to migrate to post-quantum cryptography. The order prioritizes protecting U.S. data from future decryption by… The Hacker News · Jun 23, 2026 High USpost-quantumcryptographyquantum computing
threat-intel The Exploit Doesn't Exist. You Can Still Prove It Works Against You This BleepingComputer article discusses the rapidly decreasing timeframes for vulnerabilities to be exploited, driven by advancements in AI like Anthropic’s Mythos model. Traditional patching strategies are becoming inef… BleepingComputer · Jun 23, 2026 High CVE-2025-29824USaivulnerabilityexploitation
threat-intel SocGholish Takedown Highlights Malicious TDS Threats A coordinated international law enforcement operation, part of Operation Endgame, successfully disrupted SocGholish, a decade-old malware framework used as an initial-access broker by cybercriminal groups like Evil Corp.… Dark Reading · Jun 23, 2026 High NLtdssmalwareaffiliate
threat-intel Two Scattered Spider members plead guilty over cyberattack that crippled London transit Two members of the Scattered Spider cybercrime gang have pleaded guilty to a prolonged cyberattack against London's transport authority, resulting in significant disruption and data exposure. The attack, which occurred i… The Record · Jun 23, 2026 High UKUScyberattacklondondata breach
threat-intel CISO Conversations: Carl Froggett – Combining CISO and CIO at Deep Instinct This SecurityWeek article details Carl Froggett’s career transition from a technology engineering background at Citi to becoming a CISO, highlighting his combined CISO and CIO role. Froggett emphasizes the interconnected… SecurityWeek · Jun 23, 2026 Medium cisociocybersecurity
threat-intel FortiBleed Attackers Turn Firewalls Into Credentials Stealers as Heist Persists The FortiBleed campaign, spearheaded by threat actors likely originating from Russia, has compromised over 430,000 FortiGate firewalls globally, resulting in the theft of more than 110 million credentials. Attackers util… Dark Reading · Jun 23, 2026 High USRUINcredential theftfirewallauthentication
threat-intel Siemens SINEC INS This CISA advisory details a critical vulnerability affecting Siemens SINEC INS versions prior to V1.0 SP2 Update 6. The vulnerability stems from improper input sanitization, allowing for command injection, path traversa… CISA Advisories · Jun 23, 2026 Critical CVE-2026-46746CVE-2026-46747CVE-2026-46748DEcommand injectionpath traversalpassword cracking
threat-intel Agentic AI: The Weapon That No Longer Needs a Warrior This article discusses the rise of "Agentic AI" in offensive cyber operations, where AI systems autonomously execute attacks without direct human control. Previously, AI acted as a tool assisting humans in crafting attac… The Hacker News · Jun 23, 2026 High USaiautomationphishing
threat-intel OpenAI Refocuses Cybersecurity Efforts on Patching Over Discovery OpenAI is shifting its cybersecurity strategy from solely discovering vulnerabilities to accelerating the process of patching them, recognizing the overwhelming volume of findings generated by AI. The company is deployin… SecurityWeek · Jun 23, 2026 Medium USaicybersecuritypatching
threat-intel Anthropic’s Fable 5 Model Jailbroken Within Days Anthropic’s Fable 5 model, designed as a safer alternative to their Mythos Preview, was quickly compromised by researchers. The model’s built-in safeguards against generating malicious code were bypassed within a short t… Schneier on Security · Jun 23, 2026 High aijailbreakmodel
threat-intel Russian Initial Access Broker Behind FortiBleed Campaign A Russian initial access broker (IAB) is targeting over 430,000 FortiGate firewalls globally as part of the FortiBleed campaign, harvesting credentials and selling access to other malicious actors. The campaign utilizes… SecurityWeek · Jun 23, 2026 High USGBNLcredential harvestingfirewallsupply chain
threat-intel OpenAI Expands Daybreak With GPT-5.5-Cyber to Help Defenders Patch Security Flaws OpenAI is expanding its Daybreak initiative with GPT-5.5-Cyber, an AI model designed to accelerate vulnerability discovery and patching within software. This expansion includes a new plugin for streamlining the vulnerabi… The Hacker News · Jun 23, 2026 High CVE-2026-47729CVE-2026-4890CVE-2026-4891CAaivulnerabilitypatching
threat-intel CVE-2024-40766: The Patch Fixed the Bug. Nobody Fixed the Configuration., (Tue, Jun 23rd) This report details a significant ongoing cyber threat targeting SonicWall firewalls exploiting CVE-2024-40766, a critical access control vulnerability. Ransomware groups, notably Akira and Fog, have been actively levera… SANS Internet Storm Center · Jun 23, 2026 Critical CVE-2024-40766CVE-2024-12802USGBvpncredential theftransomware
threat-intel ISC Stormcast For Tuesday, June 23rd, 2026 https://isc.sans.edu/podcastdetail/9982, (Tue, Jun 23rd) The SANS Internet Storm Center's Stormcast for June 23rd, 2026, reported a heightened level of online threats and potential disruptions. The broadcast highlighted several ongoing campaigns and emerging vulnerabilities th… SANS Internet Storm Center · Jun 23, 2026 Medium stormcastthreat intelligencephishing
threat-intel The Global Namespace Risk: Universal Bucket Hijacking Technique for Cloud Data Exfiltration This report details a newly discovered bucket hijacking technique impacting major cloud service providers (CSPs) like Google Cloud, AWS, and Microsoft Azure. The vulnerability exploits a shared namespace design where glo… Palo Alto Unit 42 · Jun 22, 2026 High cloud securitydata exfiltrationbucket hijacking
threat-intel FFmpeg fixes PixelSmash flaw in widely used video decoder A vulnerability, dubbed ‘PixelSmash’ (CVE-2026-8461), has been identified in FFmpeg’s MagicYUV decoder, allowing for remote code execution (RCE) on vulnerable systems. The flaw stems from an out-of-bounds write in the de… BleepingComputer · Jun 22, 2026 High CVE-2026-8461USsupply-chainremote-code-executionheap-overflow
threat-intel FortiBleed campaign used custom FortiGate sniffer to steal credentials The FortiBleed campaign, targeting Fortinet FortiGate devices, utilized a custom Golang tool called "FortigateSniffer" to steal credentials from compromised firewalls. This campaign, active since at least February 2026,… BleepingComputer · Jun 22, 2026 Critical UScredential theftfirewallgpu cracking
threat-intel Researchers Detail DifyTap Flaws in Dify That Could Expose AI Chats Across Tenants Researchers have identified four critical vulnerabilities in the open-source Dify agentic workflow platform, dubbed DifyTap, allowing unauthorized access to AI conversations and data across tenants. These flaws include a… The Hacker News · Jun 22, 2026 Critical CVE-2024-5846CVE-2026-41947CVE-2026-41948aivulnerabilitytenant