vulnerability Zero-Day Exploit Against Windows BitLocker A new zero-day exploit, dubbed YellowKey, has been discovered targeting Windows BitLocker encryption. The vulnerability allows attackers to bypass BitLocker's security measures with physical access to the affected device… Schneier on Security · May 18, 2026 High zero-dayencryptionbitlocker
threat-intel Patch Tuesday, May 2026 Edition This article reports on Patch Tuesday, May 2026, highlighting a significant increase in security vulnerabilities addressed by major software vendors like Microsoft, Apple, Google, Mozilla, and Oracle. The updates, spurre… Krebs on Security · May 12, 2026 Critical CVE-2026-41089CVE-2026-41096CVE-2026-41103USpatch tuesdayaivulnerability
vulnerability Microsoft Patch Tuesday for May 2026 — Snort rules and prominent vulnerabilities Microsoft released its May 2026 Patch Tuesday update, addressing 137 vulnerabilities across its product suite. The update includes a significant number of critical vulnerabilities, primarily remote code execution (RCE) f… Cisco Talos · May 12, 2026 High CVE-2026-32161CVE-2026-33109CVE-2026-33844rcebuffer overflowuse after free
threat-intel Exploits and vulnerabilities in Q1 2026 This Securelist report analyzes vulnerability trends and exploitation activity during Q1 2026, focusing on the expansion of exploit kits targeting Microsoft Office, Windows, and Linux operating systems. The report highli… Securelist · May 7, 2026 High CVE-2018-0802CVE-2017-11882CVE-2017-0199USvulnerabilityexploitationrce
threat-intel CloudZ RAT potentially steals OTP messages using Pheno plugin Cisco Talos identified an intrusion campaign initiated in January 2026 involving the deployment of the CloudZ remote access tool (RAT) alongside a new plugin called ‘Pheno.’ This campaign leveraged the Microsoft Phone Li… Cisco Talos · May 5, 2026 High USotpphone linkcredential theft
threat-intel Smashing Security podcast #465: This developer wanted to cheat at Roblox. It cost millions This podcast episode discusses a recent corporate hack stemming from an individual attempting to cheat at the Roblox game. The incident involved a developer gaining unauthorized access to a Microsoft 365 tenant, disablin… Graham Cluley · Apr 29, 2026 High microsoft 365security breachcorporate hack
apt Alleged Silk Typhoon hacker extradited to the United States to face charges A Chinese national, Xu Zewei, has been extradited to the United States to face charges related to his alleged involvement with the Hafnium hacking group, also known as Silk Typhoon. He is accused of attempting to steal c… Graham Cluley · Apr 29, 2026 Critical CHUSstate-sponsoredcyber espionageexchange server
threat-intel Five defender priorities from the Talos Year in Review This Cisco Talos report, part of their Year in Review, highlights five key priorities for cybersecurity defenders in the current threat landscape. The report emphasizes the increasing ease of attack due to readily availa… Cisco Talos · Apr 28, 2026 High USidentityvulnerabilityanomaly detection
apt GopherWhisper: A burrow full of malware ESET researchers have identified a new China-aligned Advanced Persistent Threat (APT) group, dubbed GopherWhisper, that targeted a Mongolian governmental entity. The group utilizes a diverse toolkit primarily built in Go… WeLiveSecurity · Apr 23, 2026 High MNaptchinago
threat-intel Patch Tuesday, April 2026 Edition Microsoft released a substantial update, Patch Tuesday, addressing 167 vulnerabilities across its operating systems and software, including several zero-days. This update focused on critical flaws in SharePoint Server, W… Krebs on Security · Apr 14, 2026 High CVE-2026-32201CVE-2026-33825CVE-2026-34621zero-daypatch tuesdayvulnerability
threat-intel Russia Hacked Routers to Steal Microsoft Office Tokens Russian military intelligence, operating under the ‘Forest Blizzard’ (APT28/Fancy Bear) moniker, has been conducting a sophisticated cyber espionage campaign targeting over 18,000 routers globally. The attackers exploite… Krebs on Security · Apr 7, 2026 High USUKRUdns hijackingauthentication tokensmicrosoft office
threat-intel Virtual machines, virtually everywhere – and with real security gaps This article discusses the growing problem of virtual machine (VM) sprawl in cloud environments, particularly within multi-cloud setups utilizing AWS, Azure, and GCP. The ease with which new VMs can be provisioned, coupl… WeLiveSecurity · Mar 25, 2026 High USvm sprawlcloud securitymulti-cloud
threat-intel Bypassing Administrator Protection by Abusing UI Access Google Project Zero researchers have identified a significant bypass in Windows' Administrator Protection feature, a security enhancement designed to prevent privilege escalation. The core issue stems from the UI Access… Google Project Zero · Feb 12, 2026 High uacprivilege escalationsecurity vulnerability
threat-intel Bypassing Windows Administrator Protection Microsoft has introduced Administrator Protection in Windows 11 to replace UAC, aiming to create a more secure boundary for administrator privileges. However, research by Google Project Zero revealed nine separate vulner… Google Project Zero · Jan 26, 2026 High uacadministratorbypass