Administrators should verify the full platform-hotfix level, not only the major firmware branch. SonicWall says these vulnerabilities are unrelated to other reported vulnerabilities in other SonicWall ...
A critical authentication bypass vulnerability in JFrog Artifactory, tracked as CVE-2026-82329, is under active exploitation, posing an immediate threat to self-managed software supply chains ...
The extortion group shinyhunters claimed Jack Henry & Associates as a victim on August 30, 2026. Jack Henry & Associates is a critical provider of financial technology infrastructure, operating with ...
PaperCut disclosed two vulnerabilities in PaperCut NG and PaperCut MF that can be chained into a pre-authentication Remote Code Execution (RCE) path against vulnerable Application Servers. The flaws ...
Teletek Structures Inc., a Canadian technology company operating via teletekstructures[.]com, has been listed as a victim on the settra ransomware group’s dark web portal as of September 3, 2026.
Attackers are exploiting two separate critical vulnerabilities affecting Langflow and Ruby on Rails. CVE-2026-0768 allows unauthenticated attackers to execute Python code on affected Langflow ...
FalconFlank is an alleged privilege escalation zero-day vulnerability in CrowdStrike Falcon Sensor for Windows, published with working Proof-of-Concept (PoC) code by researcher Chaotic Eclipse. The ...
On August 27, 2026, SCA Logistik & Fulfillment GmbH, a German company specializing in supply chain and fulfillment services, was listed as a victim of the Aurora ransomware group. The listing was ...
An issue was identified in which CSRF tokens were generated using a predictable method, potentially reducing their effectiveness as a security control. This has been addressed by improving the ...
SOCRadar is proud to be attending RSA Conference (RSAC) 2026, taking place March 23–26, 2026, at the Moscone Center in San Francisco, CA — one of the world’s premier cybersecurity events that brings ...
STRU found threat actors using FTP banners as Dead Drop Resolvers – legitimate services or protocols abused to host C2 addresses and commands, so the stager never carries them itself. Live since early ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results