threat-intel When Wi-Fi Encryption Fails: Protecting Your Enterprise from AirSnitch Attacks This report details a novel attack technique, dubbed AirSnitch, that exploits vulnerabilities in Wi-Fi encryption protocols (WPA2 and WPA3-Enterprise) to bypass client isolation and intercept network traffic. The attack… Palo Alto Unit 42 · Apr 22, 2026 High wpa2wpa3wi-fi
threat-intel Threat Brief: Escalation of Cyber Risk Related to Iran (Updated April 17) This report from Palo Alto Unit 42 details a significant escalation of cyber risk originating from Iran following a 47-day internet outage. Iranian threat actors, identified as CL-STA-1128 (Cyber Av3ngers), are now aggre… Palo Alto Unit 42 · Apr 17, 2026 High USIRILoticsphishing
threat-intel Russia Hacked Routers to Steal Microsoft Office Tokens Russian military intelligence, operating under the ‘Forest Blizzard’ (APT28/Fancy Bear) moniker, has been conducting a sophisticated cyber espionage campaign targeting over 18,000 routers globally. The attackers exploite… Krebs on Security · Apr 7, 2026 High USUKRUdns hijackingauthentication tokensmicrosoft office
threat-intel Human vs. AI: Debates Shape RSAC 2026 Cybersecurity Trends This Dark Reading article reports on key discussions at the RSAC 2026 conference, primarily focusing on the increasing prominence of artificial intelligence (AI) in cybersecurity. The article highlights the debate surrou… Dark Reading · Apr 7, 2026 Medium aicybersecurityrsac
threat-intel Security Bosses Are All in on AI: Here's Why This Dark Reading Confidential episode explores the growing adoption of Artificial Intelligence (AI) within cybersecurity organizations, particularly focusing on Large Language Models (LLMs). CISO Fredrick Lee of Reddit… Dark Reading · Apr 2, 2026 Medium aillmautomation
threat-intel Bypassing Administrator Protection by Abusing UI Access Google Project Zero researchers have identified a significant bypass in Windows' Administrator Protection feature, a security enhancement designed to prevent privilege escalation. The core issue stems from the UI Access… Google Project Zero · Feb 12, 2026 High uacprivilege escalationsecurity vulnerability
threat-intel Bypassing Windows Administrator Protection Microsoft has introduced Administrator Protection in Windows 11 to replace UAC, aiming to create a more secure boundary for administrator privileges. However, research by Google Project Zero revealed nine separate vulner… Google Project Zero · Jan 26, 2026 High uacadministratorbypass
vulnerability A 0-click exploit chain for the Pixel 9 Part 3: Where do we go from here? Project Zero researchers discovered a 0-click exploit chain targeting the Pixel 9 and other Android devices, leveraging a vulnerability in the Dolby UDC audio codec. The exploit chain, requiring only two software defects… Google Project Zero · Jan 14, 2026 High CVE-2025-54957CVE-2025-369340-clickaudiodriver
supply-chain A 0-click exploit chain for the Pixel 9 Part 2: Cracking the Sandbox with a Big Wave A Google Project Zero researcher discovered a 0-click exploit chain targeting the Pixel 9, leveraging a BigWave hardware accelerator and a vulnerability in the mediacodec SELinux context. The exploit bypasses sandboxing… Google Project Zero · Jan 14, 2026 Critical kernelsupply-chainarbitrary-read-write
vulnerability A 0-click exploit chain for the Pixel 9 Part 1: Decoding Dolby Google Project Zero discovered a 0-click exploit chain targeting the Dolby Unified Decoder (UDC) within the Google Messages app on Pixel 9 devices. The vulnerability stems from a buffer overrun and a memory leak, allowin… Google Project Zero · Jan 14, 2026 High CVE-2025-49415CVE-2025-54957CVE-2025-369340-clickbuffer overflowmemory leak