threat-intel GoCaracal Malware Uses Ethereum Smart Contract to Fetch Replacement C2 Address Threat actors linked to Dark Caracal have deployed a new Go-based malware framework, GoCaracal, utilizing an Ethereum smart contract to dynamically update its command-and-control (C2) address. This allows operators to change the malware's C2 server without requiring a new binary deployment, adding a layer of sophistica… The Hacker News · 3d ago Medium BRECCHethereumsmart contractc2
vulnerability Rently Smart Home Rently Smart Home versions 20.1.0 and earlier are vulnerable to an insufficient credentials issue, potentially allowing an attacker to access sensitive information and override user permissions. Rently has released a pat… CISA Advisories · 5d ago Medium CVE-2026-75960USINvulnerabilitycwe-522industrial control systems
vulnerability Siemens Siveillance Video Siemens has released security advisories addressing a Remote Code Execution (RCE) vulnerability in its Siveillance Video Management Servers. Versions V2023 R3 through V2025 are affected, allowing users with edit permissi… CISA Advisories · Aug 13, 2026 High CVE-2026-3014rcecve-2026-3014industrial control systems
threat-intel Claude Code puts auto mode in the driver's seat Several security incidents and developments are highlighted, including a vulnerability in Joomla extensions, a Microsoft SharePoint issue leading to a zero-day attack, and ongoing efforts to combat Iranian propaganda and… The Register · Aug 10, 2026 Medium IRUSvulnerabilityphishingransomware
vulnerability ABB Ability Zenon ABB has issued a security advisory regarding multiple vulnerabilities in its Ability Zenon industrial automation platform. These vulnerabilities, primarily related to MongoDB, could allow attackers to bypass security, cr… CISA Advisories · Aug 6, 2026 High CVE-2025-14847CVE-2020-7928CVE-2020-7921WOvulnerabilitydata-breachmalware
threat-intel Semiconductor Firm Analog Devices Discloses Data Breach Analog Devices suffered a data breach in June, with an external investigation revealing unauthorized access to systems. While the company claims the incident didn't disrupt operations and no data was leaked, a separate g… SecurityWeek · Jul 30, 2026 Medium data breachcybersecuritydata theft
threat-intel Russia Charges Telegram Founder Pavel Durov With Aiding Terrorist Activity Russia has charged Telegram founder Pavel Durov with aiding terrorist activity, alleging that the platform was used by Ukrainian special services and terrorist organizations to plan attacks and facilitate cybercrime with… The Hacker News · Jul 29, 2026 High RUUArussiaukraineintelligence
vulnerability Vatican's Official Prayer App Leaks 700K+ Global Users' PII The Vatican's official prayer app, Click to Pray, is leaking the personal information of over 700,000 users due to an unsecured API endpoint. The vulnerability allows anyone to access names, email addresses, locations, a… Dark Reading · Jul 24, 2026 High ESidorsvulnerabilitydata breach
vulnerability Zimbra Patches Critical SNMP Command Injection and Four XSS Vulnerabilities Zimbra has released patches to address nine security vulnerabilities, including a critical SNMP command injection flaw and several XSS vulnerabilities. These fixes are vital to mitigate potential code execution and email… The Hacker News · Jul 21, 2026 Medium CVE-2026-50055snmpxsscommand-injection
vulnerability Siemens CADRA Siemens CADRA is affected by multiple vulnerabilities within the zlib library, primarily stemming from improper input validation and integer overflows. These vulnerabilities could lead to denial-of-service crashes, heap… CISA Advisories · Jul 21, 2026 High CVE-2005-2096CVE-2016-9840CVE-2016-9841zlibvulnerabilitybuffer overflow
threat-intel Improve Router Hygiene to Protect Against Russian State-Sponsored Targeting Russian state-sponsored actors are exploiting poorly configured and vulnerable networking devices, primarily routers, across critical infrastructure sectors worldwide. This joint cybersecurity advisory, released by numer… CISA Advisories · Jul 13, 2026 High CVE-2018-0171CVE-2008-4128RUsnmpcverouter
vulnerability Zimbra Patches Critical Code Execution Vulnerability A critical cross-site scripting (XSS) vulnerability in Zimbra’s Classic Web Client could allow attackers to execute code on a victim’s system simply by opening a specially crafted email. Zimbra has released version 10.1.… SecurityWeek · Jul 13, 2026 Critical xssvulnerabilityzimbra
vulnerability Schneider Electric PowerChute Serial Shutdown Schneider Electric PowerChute Serial Shutdown versions 1.4 and earlier contain multiple vulnerabilities that could allow attackers to overwrite critical files, inject malicious data, gain unauthorized access, or trigger… CISA Advisories · Jul 9, 2026 High CVE-2026-2399CVE-2026-2404CVE-2026-2405vulnerabilitypatchsecurity advisory
vulnerability Digi International PortServer TS, Digi One SP IA Digi International has issued a security advisory regarding critical vulnerabilities (CVE-2026-12948) in its PortServer TS, Digi One SP, Digi One SP IA, and Digi One IA devices. These vulnerabilities allow an unauthentic… CISA Advisories · Jul 7, 2026 High CVE-2026-12352CVE-2026-12948xsscveweb-management
threat-intel Labcenter Proteus 9 CISA has issued an advisory regarding critical vulnerabilities in Labcenter Proteus 9, a software used in critical infrastructure sectors such as communications, defense industrial base, and energy. These vulnerabilities… CISA Advisories · Jul 7, 2026 High CVE-2026-42953CVE-2026-49033CVE-2026-42958vulnerabilityremote code executioncritical infrastructure
threat-intel Anthropic's AI Finds Bugs. IBM Bets $5B It Can Fix Them. This article reports on a significant investment by IBM and Red Hat into Project Lightwell, a new service designed to address the growing challenge of securing open-source software supply chains. Driven by Anthropic's My… Dark Reading · Jul 2, 2026 High USaivulnerabilityopen source
vulnerability CubeSpace CW0057 Reaction Wheel This CISA advisory details a vulnerability in CubeSpace CW0057 Reaction Wheels, specifically prior to version 5.0.20, which allows an attacker with physical access to upload malicious firmware. The vulnerability stems fr… CISA Advisories · Jul 2, 2026 Low CVE-2026-13743ZXfirmwarecryptographysecure boot
vulnerability ST Engineering iDirect iQ-Series Terminals ST Engineering iDirect has issued a security advisory regarding vulnerabilities in its iQ-Series Terminals, specifically versions through 4.5.2.1. These vulnerabilities allow unauthorized access to device information, in… CISA Advisories · Jul 2, 2026 High CVE-2026-38059CVE-2026-38057USapiauthenticationcsrf
threat-intel NSO Group Hacking WhatsApp Despite Court Order Recent reports indicate that NSO Group, a cybersecurity firm specializing in offensive intelligence, has been found to be utilizing its Pegasus spyware to target WhatsApp users despite a court order restricting its use.… Schneier on Security · Jun 10, 2026 High spywarewhatsappnsogroup
vulnerability ABB B&R Automation Runtime DoS Vulnerability in System Diagnostics Manager (SDM) This advisory details a denial-of-service (DoS) vulnerability in ABB B&R Automation Runtime versions prior to 6.3 and Q4.93, specifically within the System Diagnostics Manager (SDM) component. An unauthenticated network… CISA Advisories · May 26, 2026 High CVE-2025-3450WOdosdenial of serviceresource locking