threat-intel Can Laws Stop Deepfakes? South Korea Aims to Find Out This article reports on South Korea's proactive approach to combating deepfakes ahead of upcoming local elections. The country is implementing new laws, including Article 82-8 of the Public Official Election Act and the… Dark Reading · May 18, 2026 Medium KRdeepfakeaielection
vulnerability CISA Adds One Known Exploited Vulnerability to Catalog CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2026-42897 Microsoft Exchange Server Cross-Site Scripting Vulnerability This type… CISA Advisories · May 15, 2026 Medium CVE-2026-42897
threat-intel Bypassing On-Camera Age-Verification Checks This article discusses a research paper detailing a new approach to zero-knowledge proofs that achieves perfect soundness, no interaction, and no setup, effectively addressing key limitations of existing zero-knowledge p… Schneier on Security · May 15, 2026 Medium zero-knowledgefirmwarehardware
threat-intel Why geopolitical turmoil is a gift for scammers, and how to stay safe Geopolitical turmoil is being exploited by scammers to increase the success of their fraudulent schemes. The article details a range of scams – from fake charities and romance fraud to investment scams and sensational fa… WeLiveSecurity · May 15, 2026 Medium IRMIscamsfraudcybercrime
threat-intel [Guest Diary] New Malware Libraries means New Signatures, (Fri, May 15th) This SANS Internet Storm Center diary details a new observation of the long-running mdrfckr campaign, a Shellbot associated with the Outlaw/Dota group. The key finding is the identification of a previously undocumented v… SANS Internet Storm Center · May 15, 2026 Medium USCNshellbotlibsshmdrfckr
threat-intel ISC Stormcast For Friday, May 15th, 2026 https://isc.sans.edu/podcastdetail/9934, (Fri, May 15th) The SANS Internet Storm Center's Stormcast for May 15th, 2026 highlighted a concerning increase in several active threats across the internet landscape. The report detailed a rise in phishing campaigns, malicious email a… SANS Internet Storm Center · May 15, 2026 Medium phishingvulnerabilitythreat intelligence
threat-intel Taiwan Bullet Train Hack Highlights Cybersecurity Gaps in Rail Systems A Taiwanese student exploited vulnerabilities in the Taiwan High Speed Rail (THSR)'s TETRA radio system, causing a 48-minute delay in service by spoofing an emergency alarm. This incident highlights broader cybersecurity… Dark Reading · May 15, 2026 Medium TAPOISrailcyberattacktetra
vulnerability CISA Adds One Known Exploited Vulnerability to Catalog CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2026-20182 Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability Th… CISA Advisories · May 14, 2026 Medium CVE-2026-20182
vulnerability Siemens Ruggedcom Rox This CISA advisory details a vulnerability affecting Siemens Ruggedcom Rox devices. The devices, specifically versions prior to 2.17.1, contain multiple third-party vulnerabilities, including those listed in CVEs from 20… CISA Advisories · May 14, 2026 Medium CVE-2019-13103CVE-2019-13104CVE-2019-13106vulnerabilitypatchingcve
vulnerability Siemens SIMATIC S7 PLC Web Server This CISA advisory details multiple vulnerabilities discovered within Siemens SIMATIC S7 PLCs, specifically within their web servers. These vulnerabilities, identified as CVE-2026-25786 through CVE-2026-25789, allow for… CISA Advisories · May 14, 2026 Medium CVE-2026-25786CVE-2026-25787CVE-2026-25789plcwebserverxss
phishing Simple bypass of the link preview function in Outlook Junk folder, (Thu, May 14th) Besides serving as a place where Microsoft Outlook places suspected spam, the Outlook Junk folder has one additional function that can be quite helpful when it comes to identifying malicious messages. Any e-mail placed i… SANS Internet Storm Center · May 14, 2026 Medium
threat-intel ISC Stormcast For Thursday, May 14th, 2026 https://isc.sans.edu/podcastdetail/9932, (Thu, May 14th) The SANS Internet Storm Center's Stormcast for May 14th, 2026 highlighted a concerning increase in various online threats, including phishing campaigns and malicious activity targeting critical infrastructure. The report… SANS Internet Storm Center · May 14, 2026 Medium phishingddosiot
vulnerability Breaking things to keep them safe with Philippe Laulheret This article details the work of Philippe Laulheret, a Senior Vulnerability Researcher at Cisco Talos, focusing on his unique career path and approach to identifying security flaws. Laulheret’s background includes a stro… Cisco Talos · May 13, 2026 Medium vulnerability researchreverse engineeringctf
threat-intel ISC Stormcast For Wednesday, May 13th, 2026 https://isc.sans.edu/podcastdetail/9930, (Wed, May 13th) The SANS Internet Storm Center's Stormcast for May 13th, 2026 highlighted a concerning increase in several active threats across the internet landscape. The broadcast detailed ongoing campaigns involving phishing attacks… SANS Internet Storm Center · May 13, 2026 Medium phishingddosbotnet
vulnerability Vulnérabilité dans LibreNMS (12 mai 2026) A vulnerability in LibreNMS allows for remote code injection via cross-site scripting (XSS). This affects versions prior to 26.3.0, potentially enabling attackers to execute malicious code on vulnerable systems. Users ar… CERT-FR · May 12, 2026 Medium CVE-2026-2728xssvulnerabilityremote
threat-intel Unplug your way to better code This article from Cisco Talos discusses a shift in threat intelligence strategy, focusing on tracking phone numbers used in sophisticated scam campaigns. Attackers are increasingly utilizing API-driven VoIP numbers for T… Cisco Talos · May 7, 2026 Medium voipscamphone numbers
malware Fake call logs, real payments: How CallPhantom tricks Android users This report details a widespread Android scam, dubbed CallPhantom, where fraudulent apps masquerading as call log retrieval services tricked users into paying for randomly generated data. Twenty-eight apps, collectively… WeLiveSecurity · May 7, 2026 Medium INscamfraudandroid
threat-intel Smashing Security podcast #466: Meta sees everything, Copy Fail, and a deepfake gets hired This Smashing Security podcast episode discusses ongoing cybersecurity challenges, including the persistent issues of AI-related bugs, social engineering attacks, and the dangers of deepfakes. A key topic is Meta’s smart… Graham Cluley · May 6, 2026 Medium UKaiprivacydeepfake
threat-intel Websites with an undefined trust level: avoiding the trap This Securelist article discusses the growing threat of websites with an "undefined trust level," which are not traditional phishing sites but still pose significant risks to users. These sites, often mimicking legitimat… Securelist · May 6, 2026 Medium AFLARUscamfraudonline scams
threat-intel How the Story of a USB Penetration Test Went Viral This Dark Reading Confidential episode recounts the viral 2006 pen test conducted by Steve Stasiukonis at a credit union, focusing on his use of rigged USB drives to observe employee behavior. The story gained traction t… Dark Reading · May 5, 2026 Medium social engineeringusbpen testing