A use-after-free bug in Linux's KVM hypervisor can be triggered from a guest virtual machine to corrupt the shadow-page state of the host kernel that runs it. Dubbed 'Januscape' and tracked as...
Threat actors have been observed attempting to exploit a recently patched critical security flaw in Gitea Docker images, according to Sysdig. The vulnerability in question is CVE-2026-20896 (CVSS...
Campaigners demand investigation and long-delayed action on PEGA Committee recommendations
Qualcomm security advisory – July 2026 monthly rollup (AV26-661)
A streaming box should not need a threat model. Neither should a username field, a demo repo, a reset flow, or a browser permission prompt. That is the irritating part this week: the risky pieces...
BeyondTrust security advisory (AV26-660)
Building a shortlist for an AI SOC evaluation can be tough. SIEM, SOAR, and pureplay AI SOC vendors are all saying the same thing. But behind the identical label sit very different products, from...
A suspected China-nexus threat activity cluster has been observed targeting Indian taxpayers, tax professionals, and corporate finance teams to deliver a remote access trojan designed to steal...
Microsoft Edge security advisory (AV26-659)
The AI agent didn’t accomplish every step in the late June 2026 attack, but it allowed the threat actor to significantly reduce complexity, speed up the tempo and gain operational advantages. The...
Introduction Authors: Max Hirschberger & Ogulcan Ugur Process Parameter Poisoning (P3) is an attack technique we developed that is used to inject code in foreign processes, without triggering...
Up to 150 more stores to get the 'Orwellian' tech by year's end
Researchers at Shandong University have shown a fast new way to pull data off computers that are cut off from every network. The technique, called TrojPix, tweaks on-screen pixels in ways the eye...
OpenSSH security advisory (AV26-658)
During a recent security alert, the LevelBlue MDR SOC successfully triaged and contained a structured, multi-stage infection chain designed to deliver the CrySome remote access trojan (RAT). The...
As Space Force leaders push for more orbital warfighting capabilities and even potential moon operations, senators want to make sure they have enough space-focused military lawyers for future...
Roundcube security advisory (AV26-657)
A year after catastrophic flooding in Texas Hill Country exposed critical gaps in emergency warning systems, state and local officials are expanding efforts in flood detection technology, outdoor...
IBM security advisory (AV26-656)
Cybersecurity researchers have flagged a novel Java-based remote access trojan (RAT) called QuimaRAT that's capable of targeting Windows, Linux, and macOS environments. According to LevelBlue, the...
After more than a year without a formal framework for government-industry coordination on critical infrastructure cybersecurity, the Department of Homeland Security (DHS) finally unveiled the...
Each year, more than half of all international trade travels by sea, flowing along established routes that converge at strategically critical “chokepoints” where disruptions can cascade across...
[Control systems] CISA ICS security advisories (AV26–655)
Slightly more than half of cybersecurity professionals think AI is helping attackers more than defenders, the security firm Bitdefender found in a new report. Malware improvements,...
Ubuntu security advisory (AV26-653)
Dell security advisory (AV26-654)
Physicist Ronald Koopman appeared at a Southern California Air District meeting in 2018 to talk about what seemed like an arcane scientific topic: hydrofluoric acid dispersion and water mitigation...
Red Hat security advisory (AV26-652)
The soaring temperatures pushed the Mid-Atlantic’s electrical grid to the brink on Thursday, when it was feared that air-conditioning units across 13 states – combined with data centers’...
Russian hackers are suspected of gaining access to Foreign Office and council systems using stolen logins. The cybercriminals breached security firewalls provided by Fortinet, a cyber security...