threat-intel Drupal to Release Urgent Core Security Updates on May 20, Sites Told to Prepare Drupal has announced an upcoming core security release scheduled for May 20, 2026, urging users to prepare and update their systems proactively. The release addresses potential vulnerabilities that could be exploited qui… The Hacker News · May 19, 2026 High drupalsecurityupdate
threat-intel ISC Stormcast For Tuesday, May 19th, 2026 https://isc.sans.edu/podcastdetail/9936, (Tue, May 19th) The SANS Internet Storm Center's Stormcast for May 19th, 2026 highlighted a concerning increase in observed malicious activity across the internet. Specifically, the report detailed heightened phishing campaigns and a no… SANS Internet Storm Center · May 19, 2026 Medium phishingbotnetddos
vulnerability Multiples vulnérabilités dans les produits Mattermost (19 mai 2026) Multiple vulnerabilities have been discovered in Mattermost products, including desktop apps and server versions. These vulnerabilities could allow an attacker to elevate privileges, compromise data confidentiality, and… CERT-FR · May 19, 2026 Medium CVE-2026-3433CVE-2026-6046CVE-2026-6689vulnerabilitypatchsecurity
other Friday Squid Blogging: Bigfin Squid This article is a blog post update from Schneier on Security, serving as a platform for discussing current security news. It directs readers to utilize the post to discuss relevant security stories and highlights the blo… Schneier on Security · May 16, 2026 Info blogsecuritynews
threat-intel Bypassing On-Camera Age-Verification Checks This article discusses a research paper detailing a new approach to zero-knowledge proofs that achieves perfect soundness, no interaction, and no setup, effectively addressing key limitations of existing zero-knowledge p… Schneier on Security · May 15, 2026 Medium zero-knowledgefirmwarehardware
threat-intel Smashing Security podcast #467: How ShinyHunters hacked the world’s biggest universities This episode of Smashing Security discusses a recent incident where ShinyHunters, a known threat actor, compromised the networks of several major universities. The attackers leveraged a vulnerability to gain access, targ… Graham Cluley · May 13, 2026 High universityvulnerabilitythreat-actor
threat-intel Patch Tuesday, May 2026 Edition This article reports on Patch Tuesday, May 2026, highlighting a significant increase in security vulnerabilities addressed by major software vendors like Microsoft, Apple, Google, Mozilla, and Oracle. The updates, spurre… Krebs on Security · May 12, 2026 Critical CVE-2026-41089CVE-2026-41096CVE-2026-41103USpatch tuesdayaivulnerability
threat-intel 20 Leaders Who Built the CISO Era: 2 Decades of Change This Dark Reading article reflects on the 20th anniversary of the publication, highlighting key figures who shaped the evolution of cybersecurity over the past two decades. The piece focuses on the rise of the CISO role,… Dark Reading · May 12, 2026 High UNEAcybercrimecisossecurity
threat-intel LLMs and Text-in-Text Steganography This article discusses attempts to hide text within LLMs using techniques like phonological changes and unconventional formatting (e.g., white text on white backgrounds). The author explores the limitations of these meth… Schneier on Security · May 11, 2026 Low UKsteganographyllmstempeset
phishing One in eight UK workers has sold their company passwords, and bosses think it’s fine A recent survey revealed that approximately one in eight UK workers has disclosed their company login credentials, either directly or through a connection. This practice is compounded by a concerning lack of concern from… Graham Cluley · May 8, 2026 High GBpasswordssecurityuk
vulnerability CVE-2025-68670: discovering an RCE vulnerability in xrdp This report details a remote code execution (RCE) vulnerability, CVE-2025-68670, discovered in the Kaspersky xrdp server. The vulnerability exists within the xrdp_wm_parse_domain_information function due to a buffer over… Securelist · May 8, 2026 Critical CVE-2025-68670buffer_overflowrcexrdp
threat-intel That AI Extension Helping You Write Emails? It’s Reading Them First Palo Alto Unit 42 has identified 18 AI-powered browser extensions posing significant security risks. These extensions, masquerading as productivity tools, are actually delivering malicious payloads such as remote access… Palo Alto Unit 42 · Apr 30, 2026 High USaibrowser extensionsgenai
threat-intel AI-powered honeypots: Turning the tables on malicious AI agents This article details a new approach to cybersecurity utilizing generative AI to create dynamic honeypots. By leveraging AI to simulate vulnerable systems and respond to attacker actions, defenders can actively manipulate… Cisco Talos · Apr 29, 2026 Medium CVE-2014-6271aihoneypotgenerative-ai
malware 108 malicious Chrome extensions caught stealing Google and Telegram data from 20,000 users A coordinated campaign involving 108 malicious Chrome extensions has been discovered, stealing data from approximately 20,000 users. The extensions, disguised as legitimate add-ons for popular apps like Telegram and YouT… Graham Cluley · Apr 15, 2026 High RUbrowser extensionsdata theftcredentials
vulnerability Multiples vulnérabilités dans Roundcube (19 mars 2026) Multiple vulnerabilities have been discovered in Roundcube Webmail, impacting versions 1.5.x through 1.5.14, 1.6.x through 1.6.14, and 1.7.x through 1.7-rc5. These flaws include data confidentiality breaches, SSRF attack… CERT-FR · Mar 19, 2026 Medium CVE-2026-35537CVE-2026-35544CVE-2026-35545roundcubevulnerabilitywebmail
threat-intel Bypassing Windows Administrator Protection Microsoft has introduced Administrator Protection in Windows 11 to replace UAC, aiming to create a more secure boundary for administrator privileges. However, research by Google Project Zero revealed nine separate vulner… Google Project Zero · Jan 26, 2026 High uacadministratorbypass
vulnerability A 0-click exploit chain for the Pixel 9 Part 3: Where do we go from here? Project Zero researchers discovered a 0-click exploit chain targeting the Pixel 9 and other Android devices, leveraging a vulnerability in the Dolby UDC audio codec. The exploit chain, requiring only two software defects… Google Project Zero · Jan 14, 2026 High CVE-2025-54957CVE-2025-369340-clickaudiodriver