Aggregator
CVE-2025-65716 | shd101wyy markdown-preview-enhanced 0.8.18 md File unrestricted upload
CVE-2026-0829 | Frontend File Manager Plugin up to 23.5 on WordPress Uploaded File authorization
CVE-2026-2447 | Mozilla Firefox up to 147.0.3 libvpx heap-based overflow (EUVD-2026-6081 / Nessus ID 299214)
Master XDR Investigations: A Deep Dive into the GravityZone XDR Demo Incident
An attacker’s initial access, whether through phishing, unmanaged devices, exploited vulnerabilities, or a compromised supply chain, marks the beginning of a dangerous chain of events.
The post Master XDR Investigations: A Deep Dive into the GravityZone XDR Demo Incident appeared first on Security Boulevard.
CVE-2024-43872 | Linux Kernel up to 6.10.2 RDMA denial of service (06580b33c183/2fdf34038369 / Nessus ID 212625)
CVE-2024-43870 | Linux Kernel up to 5.15.164/6.1.102/6.6.43/6.10.2 perf do_exit reference count (Nessus ID 210741 / WID-SEC-2024-1888)
CVE-2024-43873 | Linux Kernel up to 5.15.164/6.1.102/6.6.43/6.10.2 vsock seqpacket_allow uninitialized pointer (Nessus ID 207884 / WID-SEC-2024-1888)
CVE-2024-43867 | Linux Kernel up to 6.10.3 drm nouveau_bo_ref reference count (Nessus ID 208245 / WID-SEC-2024-1888)
CVE-2024-43868 | Linux Kernel up to 6.10.3 purgatory riscv_kernel_entry denial of service (5d4aaf16a825/fb197c5d2fd2 / Nessus ID 211777)
CVE-2024-43869 | Linux Kernel up to 5.15.164/6.1.102/6.6.43/6.10.2 perf free_event reference count (Nessus ID 210741 / WID-SEC-2024-1888)
CVE-2024-43866 | Linux Kernel up to 6.6.44/6.10.3 mlx5 null pointer dereference (6b6c2ebd83f2/6048dec75455/1b75da22ed1e / Nessus ID 207884)
Врачи писали абракадабру, пациенты не понимали ничего… пока на помощь не пришел ChatGPT-переводчик
SecureClaw: Dual stack open-source security plugin and skill for OpenClaw
AI agent frameworks are being used to automate work that involves tools, files, and external services. That type of automation creates security questions around what an agent can access, what it can change, and how teams can detect risky behavior. SecureClaw is an open-source project that adds security auditing and rule-based controls to OpenClaw agent environments. The tool is published by Adversa AI and is designed to work with OpenClaw and related agents such as … More →
The post SecureClaw: Dual stack open-source security plugin and skill for OpenClaw appeared first on Help Net Security.
Data Minimization Is Still an Underrated Security Control
Data minimization is often perceived as a constraint on innovation. In reality, it is the ultimate enabler of resilience. It reduces the impact of breaches, weakens ransomware leverage, improves SOC efficiency and secures the AI frontier.
Chatbots, IT Outages, Devices Top 2026 Health Tech Hazards
Kettering Health Notifying Patients of Interlock Breach
Ohio-based Kettering Health is notifying current and former patients and "affiliates" that their personal, health and financial information was potentially compromised in a May 2025 ransomware attack and data theft incident claimed by cybercriminal gang Interlock.
Is Your GRC Program Really Reducing Risk?
As NIST, ISO, SOC 2, NIS2 and DORA expand compliance pressure, many organizations are optimizing for audit success instead of risk reduction. Sean Atkinson warns that “GRC theater” creates false confidence. Adversaries operate continuously and so should GRC engineering, he said.
Cyber Startups to Take Innovation Spotlight at RSAC 2026
Next month in San Francisco, the Innovation Sandbox at RSAC Conference will celebrate its 21st year of choosing key emerging solutions in cybersecurity. Past winners and finalists range from EDR and XDR giant SentinelOne in 2014 to cloud security phenom Wiz in 2021.
GitGuardian Doubles Down on AI Agent Defense With $50M Raise
Backed by a $50 million Series C, GitGuardian plans to accelerate U.S. expansion and enhance secrets detection remediation and non-human identity controls as AI agents multiply across enterprises, increasing exposure to credential abuse and lateral movement.