RSS NOC Intelligence

Decision console · v2.1.0 · refresh 15 min · alert ≥ 50 · critical ≥ 85
DB: /data/rssnoc.db
Articles: 508CRITICAL: 31HIGH: 77MEDIUM: 140LOW: 291Unread: 508Incidents: 505Dupes: 0Feed errors: 0Fetch now
FeedIncidentsSourcesOps

Intelligence Feed

showing 75 items
⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router Backdoors
The Hacker News · Cybersecurity · src 8 · Mon, 10 Aug 2026 20:30:29 +0530 · HIGH 100
A lot of security problems still begin with someone doing a completely normal thing. Cloning a repo. Answering a call. Leaving a box exposed. Trusting the default. That pretty much covers the mood this week. Old bugs are back, supply chains are getting stranger, and some exploit paths are so short you wonder what was supposed to stop them in the first place. That’s only part of it. Here’s
Match: 0-day, cyber-boost, exploit, supply chain · mark read
Gunra Ransomware Exploits Fortinet FortiOS, FortiProxy Flaws to Breach Networks
The Hacker News · Cybersecurity · src 8 · Tue, 11 Aug 2026 14:46:24 +0530 · HIGH 100
Cybersecurity and intelligence agencies from South Korea and the U.S. warned of Gunra ransomware attacks targeting critical infrastructure sectors and organizations across the world. Targets of these attacks include healthcare and public health, financial services, government services and facilities, and professional and nonprofit services. "Gunra is another variant in the ongoing trend of
Match: critical, cyber-boost, exploit, ransomware · mark read
OpenAI Launches GPT-5.6-Cyber with Reduced Safeguards for Exploit Development
The Hacker News · Cybersecurity · src 8 · Tue, 11 Aug 2026 18:41:23 +0530 · HIGH 100
OpenAI on Monday unveiled a new cybersecurity-focused model called GPT‑5.6‑Cyber that it said is focused on vulnerability research, penetration testing, and incident response. "Built on GPT‑5.6 Sol, it is trained to improve capabilities on several specialized cybersecurity tasks (e.g., finding zero-day vulnerabilities and developing exploit chains) and to reduce refusals for certain higher-risk
Match: cyber-boost, exploit, openai, zero-day · mark read
Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE
The Hacker News · Cybersecurity · src 8 · Tue, 11 Aug 2026 22:17:44 +0530 · HIGH 100
Security researchers found a way to enter Microsoft SharePoint servers as any user, including an administrator, with no valid account. A significant part of the work that found it was done through an AI agent. The flaw, tracked as CVE-2026-55040 (CVSS 9.1), affects SharePoint Server Subscription Edition, SharePoint Server 2019, and SharePoint Server 2016. Microsoft's
Match: ai agent, cve-, cve-pattern, cyber-boost, exploit, rce · mark read
Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack
The Hacker News · Cybersecurity · src 8 · Wed, 12 Aug 2026 01:40:55 +0530 · HIGH 100
Microsoft released its monthly security updates on Tuesday, and one of the flaws it closed is already being used in attacks. The bug sits in a core Windows kernel driver that handles network socket operations. An attacker with code already running on a machine can use it to escalate to SYSTEM. That patch goes out first. The flaw is tracked as CVE-2026-68820 (CVSS score: 7.0) and is the only
Match: cve-, cve-pattern, cyber-boost, zero-day · mark read
ShieldBreak Zero-Day PoC Claims Microsoft Defender Patch Bypass With SYSTEM Access
The Hacker News · Cybersecurity · src 8 · Wed, 12 Aug 2026 12:11:38 +0530 · HIGH 100
The security researcher going by the name Chaotic Eclipse (aka INFINITE NIGHTMARE, MSNightmare, and Nightmare-Eclipse) has released a proof-of-concept (PoC) for a new Microsoft zero-day called ShieldBreak. The vulnerability, rooted in Microsoft Defender for Windows, demonstrates a patch bypass for CVE-2026-50656 (CVSS score: 7.8), otherwise known as RoguePlanet. RoguePlanet has been described
Match: cve-, cve-pattern, cyber-boost, exploit-maturity, zero-day · mark read
SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code
The Hacker News · Cybersecurity · src 8 · Wed, 12 Aug 2026 13:01:40 +0530 · HIGH 100
SAP has released patches to address a maximum-severity security flaw impacting Commerce Cloud (Data Hub Adapter) that could result in arbitrary code execution. The vulnerability, assigned the CVE identifier CVE-2026-58231, is rated 10.0 on the CVSS scoring system. It has been described as a case of insufficient authorization checks and input validation. "SAP Commerce Cloud allows an
Match: cve-, cve-pattern, cyber-boost, rce · mark read
Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access
The Hacker News · Cybersecurity · src 8 · Wed, 12 Aug 2026 14:31:54 +0530 · HIGH 100
Threat actors have begun to actively exploit a recently patched critical security flaw in Broadcom VMware vCenter, according to new findings from QUIRSO. The vulnerability in question is CVE-2026-59310 (CVSS score: 9.8), a directory-traversal vulnerability in the VMware vCenter server that a malicious actor with network access can exploit to execute arbitrary code. Patches for the flaw were
Match: critical, cve-, cve-pattern, cyber-boost, exploit · mark read
Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws
The Hacker News · Cybersecurity · src 8 · Wed, 12 Aug 2026 16:43:03 +0530 · HIGH 100
Adobe has shipped updates to address multiple critical security vulnerabilities impacting ColdFusion, Commerce, and Campaign Classic that, if successfully exploited, could result in arbitrary code execution and privilege escalation. The most severe of the flaws are listed below - CVE-2026-48362 (CVSS score: 10.0) - An operating system command injection vulnerability in ColdFusion that could
Match: critical, cve-, cve-pattern, cyber-boost, exploit, privilege escalation, rce · mark read
Attackers Exploit SharePoint Authentication Bypass After Public PoC Release
The Hacker News · Cybersecurity · src 8 · Thu, 13 Aug 2026 11:39:48 +0530 · HIGH 100
Threat actors have begun to exploit a newly disclosed Microsoft SharePoint vulnerability following the release of a proof-of-concept (PoC) code. The vulnerability in question is CVE-2026-55040 (CVSS score: 9.1), which refers to a critical security feature bypass that stems from weak authentication. It was patched by Microsoft as part of its July 2026 Patch Tuesday updates. "The authentication
Match: authentication bypass, critical, cve-, cve-pattern, cyber-boost, exploit, exploit-maturity · mark read
GeoServer Zero-Day Targeted in Active Exploitation Attempts, Can Lead to RCE
The Hacker News · Cybersecurity · src 8 · Fri, 14 Aug 2026 00:15:12 +0530 · HIGH 100
A newly disclosed zero-day flaw in GeoServer is seeing active exploitation efforts, per watchTowr. The vulnerability, which has yet to be assigned a CVE identifier, is an SQL injection vulnerability in the open-source platform that can lead to remote code execution (RCE). The security defect remains unpatched. It was first disclosed on August 12, 2026, at 10:46 UTC, by a researcher named @
Match: cyber-boost, exploit, rce, remote code execution, zero-day · mark read
Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner
The Hacker News · Cybersecurity · src 8 · Sat, 15 Aug 2026 12:54:04 +0530 · HIGH 100
A recently patched security flaw in Apple macOS has come under active exploitation in the wild to deploy a cryptocurrency miner, the Netherlands National Cyber Security Centre (NCSC) has warned. The vulnerability in question is CVE-2026-65400 (CVSS score: 9.8), a critical authentication issue impacting the Screen Sharing component that could allow an attacker already on the network to
Match: critical, cve-, cve-pattern, cyber-boost, exploit · mark read
SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After Patch
The Hacker News · Cybersecurity · src 8 · Sat, 15 Aug 2026 14:08:46 +0530 · HIGH 100
A maximum-severity security vulnerability impacting SAP Commerce Cloud is witnessing active exploitation efforts. The vulnerability, tracked as CVE-2026-58231, is rated 10.0 on the CVSS scoring system. It relates to an instance of insufficient authorization checks and input validation. "SAP Commerce Cloud allows an unauthenticated attacker to abuse a default authentication client and submit
Match: cve-, cve-pattern, cyber-boost, exploit, rce · mark read
Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware
The Hacker News · Cybersecurity · src 8 · Mon, 17 Aug 2026 13:06:19 +0530 · HIGH 100
Cybersecurity researchers have attributed the exploitation of a newly patched security flaw in Broadcom VMware vCenter to a suspected China-nexus advanced persistent threat (APT). The attacks involve the exploitation of CVE-2026-59310 (CVSS score: 9.8), a severe directory-traversal vulnerability in the VMware vCenter server that could be weaponized by a malicious actor to execute arbitrary code
Match: cve-, cve-pattern, cyber-boost, exploit, exploit-maturity, ransomware · mark read
Max severity SAP Commerce Cloud flaw now targeted in attacks
BleepingComputer · Cybersecurity · src 9 · Fri, 14 Aug 2026 09:45:18 -0400 · HIGH 100
A maximum-severity SAP Commerce Cloud remote code execution vulnerability patched three days ago is already being targeted in attacks, according to threat intelligence company Defused. [...]
Match: cyber-boost, rce, remote code execution · mark read
Microsoft working on Defender patch for ShieldBreak zero-day
BleepingComputer · Cybersecurity · src 9 · Mon, 17 Aug 2026 05:05:33 -0400 · HIGH 100
Microsoft is working on a security patch for the "ShieldBreak" zero-day vulnerability disclosed last week by security researcher "Nightmare Eclipse" and now tracked as CVE-2026-69414. [...]
Match: cve-, cve-pattern, cyber-boost, zero-day · mark read
Microsoft Plugs Nearly 400 Security Holes
Krebs on Security · Cybersecurity · src 10 · Tue, 11 Aug 2026 21:28:35 +0000 · HIGH 95
Microsoft today released updates to remedy at least 398 security vulnerabilities in its Windows operating systems and supported software, including one weakness that is already being actively exploited and two others that were publicly detailed prior to today.
Match: actively exploited, cyber-boost, exploit · mark read
DeadLock Ransomware Uses Polygon Smart Contracts to Make Extortion Infra Harder to Disrupt
The Hacker News · Cybersecurity · src 8 · Tue, 11 Aug 2026 22:05:27 +0530 · HIGH 93
The ransomware group known as DeadLock has been observed using decentralized infrastructure to facilitate victim communications and data leak operations in a bid to improve operational resilience. "Its recovery ecosystem combines the Session messaging network with blockchain-backed services that store and deliver resources used throughout the extortion process," the Microsoft Threat
Match: cyber-boost, ransomware, rce · mark read
Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
The Hacker News · Cybersecurity · src 8 · Wed, 12 Aug 2026 23:09:27 +0530 · HIGH 93
The North Korean threat actor known as Lazarus Group has been attributed to the zero-day exploitation of a newly patched security flaw impacting Microsoft Windows to deliver a never-before-seen backdoor targeting defense and aerospace companies across France, Germany, Brazil, and India. The activity, per Check Point Research, is part of Operation Dream Job, a long-running cyber espionage and
Match: cyber-boost, exploit, zero-day · mark read
BdThemes Supply Chain Attack Poisons JSON to Create Rogue WordPress Admins
The Hacker News · Cybersecurity · src 8 · Tue, 11 Aug 2026 11:18:44 +0530 · HIGH 88
Cybersecurity researchers have warned of a supply chain compromise impacting WordPress plugin vendor BdThemes, prompting the content management systems (CMS) platform's plugins team to temporarily disable their downloads. "Unlike traditional software supply chain attacks, zero source code files were modified within the official WordPress.org repository," Wordfence researcher Paolo Tresso said.
Match: cyber-boost, rce, supply chain · mark read
Cisco ASA and FTD Flaw Exploited in the Wild Can Trigger Remote DoS
The Hacker News · Cybersecurity · src 8 · Wed, 12 Aug 2026 11:45:58 +0530 · HIGH 88
Cisco has warned that a new vulnerability impacting Secure Firewall Adaptive Security Appliance (ASA) Software and Secure Firewall Threat Defense (FTD) Software has been exploited in the wild. The high-severity flaw, tracked as CVE-2026-20349 (CVSS score: 8.6), is a case of insufficient error checking when processing HTTP requests that could allow an unauthenticated, remote attacker to trigger
Match: cve-, cve-pattern, cyber-boost, exploit · mark read
Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies
The Hacker News · Cybersecurity · src 8 · Mon, 17 Aug 2026 14:59:55 +0530 · HIGH 88
Cybersecurity researchers have flagged a previously undocumented Linux botnet family dubbed Evooo1Bot that derives its core functionality from the Mirai botnet source code and is equipped to turn internet-facing devices into SOCKS proxies. "While the malware reuses the DDoS engine from the publicly leaked Mirai source code, it extends the original framework with numerous capabilities, including
Match: cyber-boost, exploit, rce · mark read
Hackers exploit macOS Screen Sharing flaw to deploy Monero miner
BleepingComputer · Cybersecurity · src 9 · Fri, 14 Aug 2026 10:59:55 -0400 · HIGH 84
The Netherlands' National Cyber Security Centre (NCSC) is warning that hackers are actively exploiting a macOS authentication bypass vulnerability after public exploit code emerged. [...]
Match: authentication bypass, cyber-boost, exploit · mark read
SafePal data breach impacts 39,798 customers, stolen info for sale
BleepingComputer · Cybersecurity · src 9 · Sun, 16 Aug 2026 19:47:06 -0400 · HIGH 74
Cryptocurrency hardware wallet provider SafePal is warning of a data breach affecting about 39,798 customers after a flaw was exploited to steal customer order information, and a threat actor is now claiming to be selling the stolen data. [...]
Match: cyber-boost, data breach, exploit · mark read
Felons, Fraudsters Flog Offensive Cybersecurity Startup
Krebs on Security · Cybersecurity · src 10 · Wed, 08 Jul 2026 12:31:39 +0000 · HIGH 70
A cybersecurity startup dangling millions of dollars to acquire zero-day security vulnerabilities in popular software is run by a pair of far-right conspiracy theorists and convicted felons whose most recent ventures included fake intelligence companies and a now-defunct AI-based lobbying platform they operated under assumed names.
Match: cyber-boost, zero-day · mark read
LG to Ban Residential Proxies from Smart TV Apps
Krebs on Security · Cybersecurity · src 10 · Wed, 22 Jul 2026 01:10:38 +0000 · HIGH 65
The home appliance giant LG Electronics USA said this week it plans to suspend any apps built for its smart TVs that turn one's television into an always-on residential proxy node. The move comes less than a month after researchers found that more than 42 percent of games and other apps available for download on LG's webOS store allow unknown third-parties to route their Internet traffic through a user's TV.
Match: cyber-boost, rce · mark read
Malicious MCP Servers Can Split Instructions to Make AI Coding Agents Exfiltrate Secrets
The Hacker News · Cybersecurity · src 8 · Tue, 11 Aug 2026 15:54:00 +0530 · HIGH 63
A malicious tool server connected to an AI coding assistant can quietly walk off with SSH keys, environment secrets, source code, and customer data without ever sending one obviously harmful instruction. The trick can work even after a blunt version of the same theft is refused: split the request into fragments that each look routine, place them in channels the assistant already uses, and let
Match: cyber-boost, rce · mark read
737 Chrome VPN Extensions Caught Routing Traffic Through Proxies. Check If You Have One
The Hacker News · Cybersecurity · src 8 · Wed, 12 Aug 2026 19:39:50 +0530 · HIGH 63
A massive set of 737 free VPN and proxy extensions have been found to mainly target Russian-speaking users seeking access to blocked services with an aim to intercept browser traffic and route them through a proxy infrastructure. The extensions, published across at least 40 Chrome Web Store developer accounts, racked up 75,486 installs. Of those identified, 274 have been found to impersonate 66
Match: cyber-boost, rce · mark read
Apple Warns Users in 110 Countries They May Be Targets of Mercenary Spyware
The Hacker News · Cybersecurity · src 8 · Fri, 14 Aug 2026 16:14:34 +0530 · HIGH 63
Apple on Thursday sent a fresh batch of notifications to customers whom it suspects may have been targeted by mercenary spyware attacks. In a statement shared with TechCrunch, the iPhone maker said it alerted an unspecified number of users targeted in 110 countries and that it has notified customers in over 150 countries to date. Apple began sending threat notifications to users in late 2021.
Match: cyber-boost, rce · mark read
IAM Compliance Requirements and Best Practices
The Hacker News · Cybersecurity · src 8 · Fri, 14 Aug 2026 22:49:49 +0530 · HIGH 63
IAM compliance is the practice of demonstrating that identity and access controls are not only documented but actually enforced across users, applications, infrastructure, and non-human identities. This guide explains what IAM compliance requires, which regulations matter, and how organizations move from periodic access reviews toward continuous, evidence-backed verification that auditors can
Match: cyber-boost, rce · mark read
Hackers arrested over €30M bank fraud exploiting service provider flaw
BleepingComputer · Cybersecurity · src 9 · Fri, 14 Aug 2026 14:04:26 -0400 · MEDIUM 49
Four cybercriminals were arrested in Brazil, and three others were charged in Europe over allegations that they exploited a vulnerability at a service provider, allowing them to withdraw funds from Commerzbank customers' bank accounts. [...]
Match: cyber-boost, exploit · mark read
TrueConf Server Flaws Exploited to Replace Client Installers with PhantomCore
The Hacker News · Cybersecurity · src 8 · Mon, 10 Aug 2026 17:03:41 +0530 · MEDIUM 48
The threat actor known as Head Mare has been observed weaponizing security flaws in unpatched TrueConf servers once again in attacks targeting Russian companies spanning instrumentation, electronics, transport, energy, IT, and software development sectors. Russian cybersecurity vendor Kaspersky said it detected the attacks in July 2026. The activity involves exploiting a vulnerability chain
Match: cyber-boost, exploit · mark read
New PATCHCORD Backdoor Targets Afghan Telecom and Indian Critical Infrastructure
The Hacker News · Cybersecurity · src 8 · Thu, 13 Aug 2026 20:30:29 +0530 · MEDIUM 48
Afghan telecom providers and South Asian critical infrastructure organizations have emerged as the target of a new ongoing campaign that delivers a previously undocumented backdoor called PATCHCORD. According to Acronis Threat Research Unit (TRU), the backdoor is a compiled C/C++ implant delivered by means of sector-specific lures, including fake VPN installers impersonating Afghan Telecom (
Match: critical, cyber-boost · mark read
Chrome DevTools Technique Enables Authenticated Session Hijacking in Live Windows Browsers
The Hacker News · Cybersecurity · src 8 · Fri, 14 Aug 2026 16:37:45 +0530 · MEDIUM 48
Cybersecurity researchers have detailed a post-exploitation technique that enables the Chrome DevTools Protocol (CDP) inside a running Google Chrome or Microsoft Edge process on Windows, allowing an operator to access cookies, saved data, and authenticated browser sessions. The technique assumes that an operator already has code execution on the Windows host and does not involve
Match: cyber-boost, exploit · mark read
Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations
The Hacker News · Cybersecurity · src 8 · Wed, 12 Aug 2026 13:34:52 +0530 · MEDIUM 44
Two malicious LiteLLM releases sat on PyPI for about 40 minutes in March carrying credential-stealing code capable of harvesting cloud keys, SSH keys, Kubernetes tokens, database passwords, and other secrets from systems that installed them. Threat intelligence firm CloudSEK now says a dataset it obtained, built from roughly 434,000 files the attackers captured, maps potential exposure to more
Match: kubernetes, llm · mark read
Shell investigates 'potential incident' after Clop data theft claims
BleepingComputer · Cybersecurity · src 9 · Fri, 14 Aug 2026 07:55:45 -0400 · MEDIUM 39
Oil giant Shell has confirmed it is investigating a potential security incident after the Clop ransomware gang claimed it stole 89GB of data. [...]
Match: ransomware · mark read
Philips and GE investigating Clop ransomware data theft claims
BleepingComputer · Cybersecurity · src 9 · Mon, 17 Aug 2026 07:25:02 -0400 · MEDIUM 39
Tech giants General Electric (GE) and Philips have also confirmed they're investigating claims that the Clop ransomware gang breached their systems and stole data. [...]
Match: ransomware · mark read
China-Linked Hackers Deploy New StormEncryptor Ransomware, Likely via N-central Flaw
The Hacker News · Cybersecurity · src 8 · Mon, 10 Aug 2026 22:08:37 +0530 · MEDIUM 38
Microsoft has disclosed that Storm-1175, a financially motivated threat actor linked to China, has deployed a previously undocumented ransomware strain called StormEncryptor. The use of StormEncryptor marks a shift from the adversary's previous use of Medusa ransomware, the Microsoft Threat Intelligence Team said. "StormEncryptor is written in C++ and appends the file name extension .encrypted
Match: ransomware · mark read
RingCentral data breach exposed info of 1.6 million accounts
BleepingComputer · Cybersecurity · src 9 · Fri, 14 Aug 2026 06:52:05 -0400 · MEDIUM 34
The ShinyHunters extortion group stole personal information from 1.6 million RingCentral accounts after hacking the company in July, according to the data breach notification service Have I Been Pwned. [...]
Match: data breach · mark read
French tax authority data breach affects 678,000 individuals
BleepingComputer · Cybersecurity · src 9 · Mon, 17 Aug 2026 06:09:48 -0400 · MEDIUM 34
The French Ministry of the Economy and Finance has disclosed a data breach after an attacker accessed the General Directorate of Public Finances (DGFiP) systems and stole data belonging to 678,000 individuals. [...]
Match: data breach · mark read
ThreatsDay: GhostJacking AI Attacks, EtherHiding ClickFix, Cursor CLI Flaw + 17 More Stories
The Hacker News · Cybersecurity · src 8 · Thu, 13 Aug 2026 23:47:10 +0530 · MEDIUM 33
Some weeks have one big security story. Others bring many smaller updates that are easy to miss but still matter. This week has plenty of them, covering cloud services, AI tools, malware, data breaches, scams, and new attack methods. The latest ThreatsDay Bulletin puts all of these short updates in one place, so you can quickly catch up on what happened, what changed, and what security teams
Match: data breach · mark read
OpenAI, Anthropic, Google API Flaw Let Weaker AI Models Decode Stronger Models' Reasoning
The Hacker News · Cybersecurity · src 8 · Wed, 12 Aug 2026 17:17:38 +0530 · MEDIUM 20
A newly disclosed flaw in the way OpenAI, Anthropic, and Google carried hidden AI reasoning between API calls let researchers recover internal reasoning and secrets from session logs, including API keys and passwords. The weakness affected encrypted reasoning objects used by the providers' reasoning APIs, where a block created in one session could be replayed into another and, during testing,
Match: openai · mark read
Scattered Spider Hackers Plead Guilty on Day 1 of Trial
Krebs on Security · Cybersecurity · src 10 · Tue, 23 Jun 2026 16:12:49 +0000 · LOW 10
Two men pleaded guilty in the United Kingdom this week to criminal charges stemming from an August 2024 cyberattack that crippled Transport for London, the entity responsible for the public transport network in the Greater London area. The duo were key members of a prolific cybercrime group known as Scattered Spider, and their guilty pleas came on the first day of what was expected to be a six-week trial.
Match: none · mark read
FBI Seizes NetNut Proxy Platform, Popa Botnet
Krebs on Security · Cybersecurity · src 10 · Thu, 02 Jul 2026 19:27:33 +0000 · LOW 10
The Federal Bureau of Investigation (FBI) said today it worked with industry partners to seize hundreds of domains associated with NetNut, a sprawling residential proxy service operated by the publicly-traded Israeli company Alarum Technologies [NASDAQ: ALAR]. The action comes roughly two weeks after KrebsOnSecurity published findings from multiple security firms connecting NetNut to the Popa botnet, a collection of
Match: none · mark read
Lessons Learned from CISA’s Recent GitHub Leak
Krebs on Security · Cybersecurity · src 10 · Mon, 13 Jul 2026 15:03:28 +0000 · LOW 10
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a postmortem on a data leak in which a contractor published dozens of internal CISA credentials -- including AWS Govcloud keys -- in a public GitHub repository for almost six months before being notified by KrebsOnSecurity. Experts say the gaps identified in the agency's initial response provide important lessons that all security teams should abs
Match: none · mark read
Microsoft Patches a Record 570 Security Flaws
Krebs on Security · Cybersecurity · src 10 · Tue, 14 Jul 2026 19:22:42 +0000 · LOW 10
Microsoft Corp. today released software updates to plug at least 570 security holes in its Windows operating systems and other software, almost triple the number of vulnerabilities the software giant fixed in its record-smashing Patch Tuesday release last month. Microsoft attributed the burgeoning patch counts to vulnerability discoveries aided by artificial intelligence.
Match: none · mark read
Read This Before You Buy That TV Streaming Stick
Krebs on Security · Cybersecurity · src 10 · Thu, 30 Jul 2026 16:49:00 +0000 · LOW 10
Security experts have been sounding the alarm for years about the risks of using generic TV boxes that promise unlimited content streaming for a one-time fee, warning that they secretly rent the user's Internet connection out to strangers. But a groundbreaking new analysis finds these devices also routinely spoof themselves as mobile phones clicking ads on AI-generated websites as part of sprawling operation that see
Match: none · mark read
Canadian Man Pleads Guilty in Snowflake Extortions
Krebs on Security · Cybersecurity · src 10 · Thu, 06 Aug 2026 17:00:56 +0000 · LOW 10
A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded guilty to computer fraud and conspiracy to hack and extort more than 165 organizations that used the cloud data storage provider Snowflake. Connor Riley Moucka, of Kitchener, Ontario, also admitted to stealing call and text history records of more than 100 million AT&T customers.
Match: none · mark read
Who’s Tracking You? Use This New Service to Find Out
Krebs on Security · Cybersecurity · src 10 · Fri, 14 Aug 2026 11:24:35 +0000 · LOW 10
It can be daunting to determine who's responsible for showing ads on the websites we visit, or who's harvesting data from the mobile apps we use every day. That information is already semi-public, but it is not easily parsed and traditionally much of it has remained walled away in the hands of large advertising platforms. Not anymore: A powerful and free new service called DecryptAds scrapes and correlates this adtec
Match: none · mark read
The Modern Attack Chain: Rethinking Google Workspace Security in the Age of AI
BleepingComputer · Cybersecurity · src 9 · Fri, 14 Aug 2026 10:00:10 -0400 · LOW 9
Google Workspace attacks do not always begin with phishing. Stolen OAuth tokens can provide another path into Gmail, Drive, and connected systems. Material Security explains why organizations need defenses that cover the entire Workspace attack chain. [...]
Match: none · mark read
How Anthropic plans to watermark Claude's AI-generated text
BleepingComputer · Cybersecurity · src 9 · Fri, 14 Aug 2026 19:24:17 -0400 · LOW 9
It could soon become easier to identify AI-generated content, even if it's not the usual "It's Not X, it's Y" type of post you'd come across on LinkedIn and other socials. [...]
Match: none · mark read
New Evooo1Bot Linux botnet turns routers into traffic relay nodes
BleepingComputer · Cybersecurity · src 9 · Sat, 15 Aug 2026 10:14:38 -0400 · LOW 9
A new Mirai-based modular Linux botnet malware called Evooo1Bot has been targeting internet-facing gateway devices, turning them into SOCKS5 traffic relay nodes. [...]
Match: none · mark read
New AmnesiaStealer macOS malware hijacks browser sessions via remote control
BleepingComputer · Cybersecurity · src 9 · Sun, 16 Aug 2026 11:07:44 -0400 · LOW 9
A new information-stealing malware called AmnesiaStealer, which targets macOS users via ClickFix attacks, includes a streaming module that allows the attacker to interactively control the victim's web browser. [...]
Match: none · mark read
Large-scale DDoS attacks disrupted Threema secure messaging service
BleepingComputer · Cybersecurity · src 9 · Sun, 16 Aug 2026 13:29:52 -0400 · LOW 9
Multiple distributed denial-of-service (DDoS) attacks targeted the Threema secure messaging service earlier this week, causing severe disruptions to communications. [...]
Match: none · mark read
Anthropic confirms Claude is down in major outage affecting multiple services
BleepingComputer · Cybersecurity · src 9 · Sun, 16 Aug 2026 18:28:57 -0400 · LOW 9
Claude is experiencing a major outage, with users reporting login problems and degraded performance across several Anthropic services. [...]
Match: none · mark read
New Passkey Attacks Can Recover Synced Private Keys or Bypass Phishing-Resistant MFA
The Hacker News · Cybersecurity · src 8 · Mon, 10 Aug 2026 17:55:04 +0530 · LOW 8
Three separate research efforts last week demonstrated ways to defeat passkey protections without breaking the cryptography they rest on. Passkeys are designed to replace reusable passwords and resist phishing. The attacks instead reused signed authentication material that Windows had exposed, abused a cloud-synced passkey system from malware already on the victim's machine, and used a 
Match: none · mark read
Kimsuky Builds Offline AI Stack to Boost Phishing and Automate Malware Development
The Hacker News · Cybersecurity · src 8 · Mon, 10 Aug 2026 18:49:58 +0530 · LOW 8
North Korea's state hackers are no longer content to type prompts into public chatbots. One of the country's main espionage groups has begun running artificial intelligence (AI) offline on its own servers, connecting document-search tools to files in its possession, and collecting the software parts needed to build AI into its malware. South Korean security firm Genians says it uncovered the
Match: none · mark read
Shipping 10–50× More Code? Watch This Webinar on Securing AI-Speed Development
The Hacker News · Cybersecurity · src 8 · Mon, 10 Aug 2026 22:59:17 +0530 · LOW 8
AI is helping development teams produce far more code, far faster. But security teams still have to review vulnerabilities, manage dependencies, prioritize fixes, and control risk at human speed. When software output jumps 10 to 50 times, the problem is no longer just finding vulnerabilities. It is keeping security from becoming the bottleneck, or worse, losing control of what gets shipped.
Match: none · mark read
Hackers Breach Polish Power Plant Controls via Private Cellular Network and Shut Turbine
The Hacker News · Cybersecurity · src 8 · Tue, 11 Aug 2026 12:25:45 +0530 · LOW 8
Attackers shut down a steam turbine and the process-water treatment system at a Polish combined heat and power plant by coming in over the private cellular network the local grid operator uses to reach remote equipment. The plant supplies heat to roughly 50,000 residents. Recovery began at about 7:30 a.m. while the intruders were still active inside the network, and customers lost neither heat
Match: none · mark read
Researchers Turn USB Auto-Install Into a Full SYSTEM Takeover on Windows 11
The Hacker News · Cybersecurity · src 8 · Tue, 11 Aug 2026 16:18:26 +0530 · LOW 8
Windows Plug and Play can be abused to fetch signed vendor software for an emulated USB device and execute privileged installation components that researchers chained to SYSTEM access on a fully updated Windows 11 machine. The same PnP path can be triggered over Remote Desktop without physical hardware when supported Plug and Play or low-level USB redirection is enabled; Microsoft says that
Match: none · mark read
Researchers Built a Fake Crypto Startup and Hired Three Suspected North Korean IT Workers
The Hacker News · Cybersecurity · src 8 · Tue, 11 Aug 2026 17:05:03 +0530 · LOW 8
Security researchers invented a cryptocurrency startup, advertised developer jobs, and hired three people they believe were North Korean operatives. Every virtual machine the company issued was recording. The onboarding paperwork is the part hiring teams can use. The first hire claimed to live in Pasadena, Texas, then sent a California driver's license and a New York bank account. The
Match: none · mark read
Mozilla Revokes Firefox and Thunderbird Linux Signing Key After Key Lands in Private Repo
The Hacker News · Cybersecurity · src 8 · Tue, 11 Aug 2026 17:34:51 +0530 · LOW 8
Mozilla has scrapped the cryptographic key behind Firefox and Thunderbird downloads for Linux after an unencrypted copy of it was committed by mistake to one of the company's own private code repositories. That key is how a user, or a Linux distribution packaging the browser, confirms a downloaded Firefox tarball came from Mozilla and was not tampered with. That decision carries a cost for
Match: none · mark read
A Malicious SIM Card Can Run Attacker Code Inside the Modems Behind Cellular IoT Devices
The Hacker News · Cybersecurity · src 8 · Tue, 11 Aug 2026 17:35:03 +0530 · LOW 8
A malicious SIM card can order the device it sits in to run commands of the attacker's choosing. On the cellular modules built into electric-vehicle chargers, industrial routers, and car telematics units, that is enough to take the whole device over. Researchers at the University of Birmingham and the security firm Fuzzware tested 26 phones and cellular modules for the capability, found it
Match: none · mark read
Sandworm-Linked UAC-0145 Uses Fake Job Interviews to Push VPN That Can Run Commands
The Hacker News · Cybersecurity · src 8 · Wed, 12 Aug 2026 00:06:47 +0530 · LOW 8
The Computer Emergency Response Team of Ukraine (CERT-UA) has disclosed details of a new social engineering campaign orchestrated by Russian nation-state threat actors targeting IT workers in the country by masquerading as recruiters to trick them into installing malware. CERT-UA pinned the activity on a threat cluster it tracks as UAC-0145, which is a subgroup within Sandworm (aka APT44,
Match: none · mark read
Zoom Annotation Flaws Could Let a Meeting Participant Hijack Another Attendee's Client
The Hacker News · Cybersecurity · src 8 · Wed, 12 Aug 2026 00:38:47 +0530 · LOW 8
Anyone sharing their screen on a Zoom call could have taken over the computers of everyone watching, and anyone watching could have taken over the presenter's. The flaw sat in the annotation tool, the feature that lets participants draw and type on a shared screen, and it asked nothing of the victim beyond being in the meeting. No click, no download, no prompt, and nothing on screen to show it
Match: none · mark read
Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing
The Hacker News · Cybersecurity · src 8 · Wed, 12 Aug 2026 01:06:37 +0530 · LOW 8
Cybersecurity researchers have discovered a new version of the Kimwolf/AISURU Android and Internet of Things (IoT) botnet that comes with significant improvements to improve its operational resilience and conduct distributed denial-of-service (DDoS) attacks. The new version, tracked as Kimwolf v7, was discovered by Palo Alto Networks Unit 42 in February 2026. "Kimwolf v7 adds an HTTP/2-based
Match: none · mark read
Enterprise Defenses Recovered at the Edge and Collapsed Inside
The Hacker News · Cybersecurity · src 8 · Wed, 12 Aug 2026 17:11:34 +0530 · LOW 8
Enterprise defenses are tuned to catch the attacks that make noise. This year's data shows attackers winning by making none. According to Picus Labs' new Blue Report 2026, which measured more than 338 million real attack simulations across actual client production environments in the first half of 2026, defenses are having one of their strongest years yet. Average prevention effectiveness
Match: none · mark read
North Korean Remote Workers Are Infiltrating Government and Businesses: How to Expose Them Before Hiring
The Hacker News · Cybersecurity · src 8 · Thu, 13 Aug 2026 17:15:00 +0530 · LOW 8
Companies are used to thinking about attackers as outsiders trying to break in. North Korean IT workers flip that model. They apply for jobs, pass interviews, receive legitimate credentials, and can end up inside the same systems companies spend millions trying to protect. That risk is no longer theoretical. The FBI is now investigating a North Korean remote IT worker who reportedly worked for
Match: none · mark read
WindRelay Android Malware Turns Victims' Phones Into NFC Relays for Payment Fraud
The Hacker News · Cybersecurity · src 8 · Thu, 13 Aug 2026 17:23:14 +0530 · LOW 8
A previously unseen Android near field communication (NFC) relay malware family dubbed WindRelay is being deployed in conjunction with a known remote access trojan (RAT) called SpyNote as part of a contactless payment fraud scheme. The purpose-built malware, according to Group-IB, is designed to capture live card data via NFC and transmit it to fraudsters in real time. It was first detected in
Match: none · mark read
AmnesiaStealer Hijacks Chromium Sessions to Give Attackers Live Browser Control on macOS
The Hacker News · Cybersecurity · src 8 · Thu, 13 Aug 2026 19:13:14 +0530 · LOW 8
Cybersecurity researchers have disclosed details of a new macOS-oriented, Rust-based information stealer called AmnesiaStealer that's capable of hijacking Chromium web browsers to steal session data. The multi-stage stealer is spread via a counterfeit GitHub download page titled "Download for macOS" and claims to be from a verified publisher. The page employs a ClickFix-style lure that
Match: none · mark read
China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud
The Hacker News · Cybersecurity · src 8 · Fri, 14 Aug 2026 13:24:18 +0530 · LOW 8
The China-linked threat actor known as Jewelbug has been observed carrying out cyber espionage operations targeting governments and militaries, while simultaneously engaging in cryptocurrency fraud. "Both missions are administered from a single control panel, XG-Web, a browser-centric remote-access and information-stealing framework that turns a victim's browser into a full remote-control
Match: none · mark read
Trump Memo Paves Way for U.S. Firms to Hack and Disrupt Foreign Crime Groups
The Hacker News · Cybersecurity · src 8 · Fri, 14 Aug 2026 15:08:56 +0530 · LOW 8
A new White House memo signed by U.S. President Donald Trump has instructed the National Coordination Center (NCC) to establish a program that would allow private sector companies to take advantage of their "innovative capabilities" to break into foreign Transnational Criminal Organizations (TCOs) and disrupt them. "By partnering with vetted United States companies subject to the direction and
Match: none · mark read
CTM360 Uncovers Over 3,000 Recruitment Phishing URLs Using Browser-in-the-Browser (BitB) Credential Traps
The Hacker News · Cybersecurity · src 8 · Fri, 14 Aug 2026 16:27:00 +0530 · LOW 8
Cybersecurity researchers have uncovered a large-scale, global recruitment-themed phishing campaign that uses fake interview scheduling pages and Browser-in-the-Browser (BitB) windows to steal Google and Facebook credentials and, in more advanced cases, relay multi-factor authentication (MFA) prompts in real time. CTM360, which detailed the activity in a new report titled RecruitTrap, said it
Match: none · mark read
Mustang Panda Adds Signed Windows Rootkit to CoolClient Backdoor for Stealth
The Hacker News · Cybersecurity · src 8 · Fri, 14 Aug 2026 18:38:56 +0530 · LOW 8
The threat actor known as HoneyMyte (aka Mustang Panda) has been observed deploying an updated version of the CoolClient backdoor with a signed Windows kernel-mode rootkit that can hide and protect malicious processes, files, registry objects, and command-and-control (C2) network information. Russian cybersecurity vendor Kaspersky said it identified victims in Myanmar, Mongolia, Pakistan,
Match: none · mark read
Hackers Spend Nearly $7 Million on Expired Domains to Redirect Traffic to Scams and Malware
The Hacker News · Cybersecurity · src 8 · Sat, 15 Aug 2026 00:18:46 +0530 · LOW 8
Threat actors are acquiring expired domains to inherit website traffic and reputation to redirect victims to scams and malware on a large scale. DNS threat intelligence firm Infoblox has given the name dropcatch domains to those that get a second chance, where an expired domain becomes available for registration and is then snapped up by another party. During the first half of 2026, 50,400
Match: none · mark read

Incident Board

Microsoft working on Defender patch for ShieldBreak zero-day
HIGH 100 · articles 1 · sources ["BleepingComputer"] · last 2026-08-17T11:31:39.555735+00:00
Max severity SAP Commerce Cloud flaw now targeted in attacks
HIGH 100 · articles 1 · sources ["BleepingComputer"] · last 2026-08-17T11:31:39.555735+00:00
Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access
HIGH 100 · articles 2 · sources ["The Hacker News"] · last 2026-08-17T11:31:39.555735+00:00
SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code
HIGH 100 · articles 2 · sources ["The Hacker News"] · last 2026-08-17T11:31:39.555735+00:00
Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner
HIGH 100 · articles 1 · sources ["The Hacker News"] · last 2026-08-17T11:31:39.555735+00:00
GeoServer Zero-Day Targeted in Active Exploitation Attempts, Can Lead to RCE
HIGH 100 · articles 1 · sources ["The Hacker News"] · last 2026-08-17T11:31:39.555735+00:00
Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE
HIGH 100 · articles 2 · sources ["The Hacker News"] · last 2026-08-17T11:31:39.555735+00:00
Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws
HIGH 100 · articles 1 · sources ["The Hacker News"] · last 2026-08-17T11:31:39.555735+00:00
ShieldBreak Zero-Day PoC Claims Microsoft Defender Patch Bypass With SYSTEM Access
HIGH 100 · articles 1 · sources ["The Hacker News"] · last 2026-08-17T11:31:39.555735+00:00
Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack
HIGH 100 · articles 1 · sources ["The Hacker News"] · last 2026-08-17T11:31:39.555735+00:00
OpenAI Launches GPT-5.6-Cyber with Reduced Safeguards for Exploit Development
HIGH 100 · articles 1 · sources ["The Hacker News"] · last 2026-08-17T11:31:39.555735+00:00
Gunra Ransomware Exploits Fortinet FortiOS, FortiProxy Flaws to Breach Networks
HIGH 100 · articles 1 · sources ["The Hacker News"] · last 2026-08-17T11:31:39.555735+00:00

NOC Summary

Recent fetch runs

StartStatusFeedsNewDupesErr
2026-08-17T12:02:36.834789+00:00degraded14002
2026-08-17T12:01:39.593647+00:00degraded14002
2026-08-17T11:46:39.555072+00:00degraded14002
2026-08-17T11:31:39.555735+00:00degraded1450802
2026-08-17T11:16:39.561239+00:00degraded14102
2026-08-17T11:01:39.587796+00:00degraded14002
2026-08-17T10:46:39.559599+00:00degraded1450802
2026-08-17T10:31:39.554471+00:00degraded14102

Feed health

CategoryFeedsErrors
AI30
Cloud Native10
Cybersecurity40
Infrastructure10
Kubernetes10
Linux/System20
Software Engineering10
Tech10

Top weights

0-day: 45actively exploited: 45zero-day: 45container escape: 40rce: 40remote code execution: 40authentication bypass: 35privilege escalation: 30ransomware: 30critical: 25data breach: 25exploit: 25

Timeline last 24h

Reconciling the Past: Correcting Records for Unfixed Kubernetes CVEs
Kubernetes Blog · Kubernetes · score 100 · 2026-08-17T11:31:39.555735+00:00
⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router Backdoors
The Hacker News · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
Gunra Ransomware Exploits Fortinet FortiOS, FortiProxy Flaws to Breach Networks
The Hacker News · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
OpenAI Launches GPT-5.6-Cyber with Reduced Safeguards for Exploit Development
The Hacker News · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE
The Hacker News · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack
The Hacker News · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
ShieldBreak Zero-Day PoC Claims Microsoft Defender Patch Bypass With SYSTEM Access
The Hacker News · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code
The Hacker News · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access
The Hacker News · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws
The Hacker News · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
Attackers Exploit SharePoint Authentication Bypass After Public PoC Release
The Hacker News · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
GeoServer Zero-Day Targeted in Active Exploitation Attempts, Can Lead to RCE
The Hacker News · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner
The Hacker News · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After Patch
The Hacker News · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware
The Hacker News · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
Max severity SAP Commerce Cloud flaw now targeted in attacks
BleepingComputer · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
Microsoft working on Defender patch for ShieldBreak zero-day
BleepingComputer · Cybersecurity · score 100 · 2026-08-17T11:31:39.555735+00:00
Microsoft Plugs Nearly 400 Security Holes
Krebs on Security · Cybersecurity · score 95 · 2026-08-17T11:31:39.555735+00:00
DeadLock Ransomware Uses Polygon Smart Contracts to Make Extortion Infra Harder to Disrupt
The Hacker News · Cybersecurity · score 93 · 2026-08-17T11:31:39.555735+00:00
Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
The Hacker News · Cybersecurity · score 93 · 2026-08-17T11:31:39.555735+00:00

Alert history

TimeChannelStatusArticle
No alerts

Source ranking

CatSourceTrustArticlesHighError
KubernetesKubernetes Blog85035
CybersecurityThe Hacker News85023
CybersecurityBleepingComputer9154
AIHugging Face Blog7803
Linux/SystemPhoronix7323
Software EngineeringMartin Fowler8303
CybersecurityKrebs on Security10103
AIOpenAI News8802
TechThe Register6501
AIGoogle DeepMind Blog8800
Linux/SystemLWN Headlines9150
Cloud NativeCNCF Blog7100
InfrastructureServeTheHome760
CybersecurityCISA News1000

Add RSS Feed

Add Keyword Weight

Feeds

CatNameSrcStateError
AIGoogle DeepMind Blog
https://deepmind.google/blog/rss.xml
8ontoggle delete
AIHugging Face Blog
https://huggingface.co/blog/feed.xml
7ontoggle delete
AIOpenAI News
https://openai.com/news/rss.xml
8ontoggle delete
Cloud NativeCNCF Blog
https://www.cncf.io/feed/
7ontoggle delete
CybersecurityBleepingComputer
https://www.bleepingcomputer.com/feed/
9ontoggle delete
CybersecurityCISA News
https://www.cisa.gov/news.xml
10ontoggle delete
CybersecurityKrebs on Security
https://krebsonsecurity.com/feed/
10ontoggle delete
CybersecurityThe Hacker News
https://thehackernews.com/rss.xml
8ontoggle delete
InfrastructureServeTheHome
https://www.servethehome.com/feed/
7ontoggle delete
KubernetesKubernetes Blog
https://kubernetes.io/feed.xml
8ontoggle delete
Linux/SystemLWN Headlines
https://lwn.net/headlines/rss
9ontoggle delete
Linux/SystemPhoronix
https://www.phoronix.com/rss.php
7ontoggle delete
Software EngineeringMartin Fowler
https://martinfowler.com/feed.atom
8ontoggle delete
TechThe Register
https://www.theregister.com/headlines.atom
6ontoggle delete

Keywords

KeywordWeight
0-day45delete
actively exploited45delete
zero-day45delete
container escape40delete
rce40delete
remote code execution40delete
authentication bypass35delete
privilege escalation30delete
ransomware30delete
critical25delete
data breach25delete
exploit25delete
supply chain25delete
openshift22delete
cve-20delete
linux kernel20delete
ai agent18delete
containerd18delete
kubernetes18delete
llm18delete
ollama18delete
podman18delete
agentic15delete
cert-manager15delete
traefik15delete
deepseek12delete
let's encrypt12delete
nvidia12delete
openai12delete
qwen12delete
vector database12delete