
Section
Threats, page 4
Vulnerability intelligence, exploited CVEs, malware families and live campaigns — with the detection guidance and mitigations defenders need first.
231 articles
ThreatsIndustrial & OTHighDaniel Okafor
ThreatsCloud & SaaSHighTASK#STOMP Malware Campaign Deploys Living-off-the-Land PowerShell Backdoor with Timestomping and Redundant Task Scheduler Persistence
Daniel Okafor
ThreatsCloud & SaaSCriticalLangflow Custom Component Code Validator Flaw CVE-2026-0768 Weaponized for Remote Code Execution Across AI Pipelines
Mei-Lin Chen
ThreatsCloud & SaaSHighcontainerd CRI Checkpoint Flaw CVE-2026-50195 Enables Local Node Image Cache Poisoning Across Kubernetes Clusters
Aisha Noor
ThreatsIndustrial & OTHighSiemens Desigo CC Building Automation Platform Flaw CVE-2026-34223 Exposes Supervisory Workstations to Arbitrary Script Execution
Priya Raman
ThreatsCloud & SaaSHighAWS Security Agent and MCP Server Flaws CVE-2026-87912 and CVE-2026-87913 Allow S3 Bucket Squatting to Intercept Private Source Code
Aisha Noor
ThreatsCloud & SaaSCriticalvLLM Inference Server Authentication Bypass Flaw CVE-2026-48746 Exposes Enterprise Model Endpoints Without API Keys
Mei-Lin Chen
ThreatsCloud & SaaSHighLMDeploy Vision-Language Model Flaw CVE-2026-33626 Exploited in the Wild to Breach Internal Cloud Networks
Mei-Lin Chen
ThreatsCloud & SaaSHighGoogle Cloud Gemini Agent App Builder Flaw CVE-2026-19486 Leaks Compute Engine Service Account Tokens
Aisha Noor
ThreatsIndustrial & OTCriticalSiemens Industrial Edge Management Flaw CVE-2026-18963 Enables Remote Takeover of Factory Control Systems
Daniel Okafor
ThreatsCloud & SaaSCriticalLiteLLM MCP Server Creation Flaw CVE-2026-30623 Enables Remote Code Execution via Malicious Tool Configurations
Mei-Lin Chen
ThreatsCloud & SaaSCriticalAzure HorizonDB Critical Flaw CVE-2026-48567 Allows Complete Authentication Bypass via Token Spoofing
Aisha Noor
ThreatsIndustrial & OTHighSchneider Electric Modicon M340 PLCs and Ethernet Modules Vulnerable to Remote Denial of Service via FTP Flaw CVE-2025-6625
Daniel Okafor
ThreatsCloud & SaaSHighAmazon ECS Agent Flaw CVE-2026-7461 Permits Command Injection and Host Takeover on Windows Clusters
Mei-Lin Chen
ThreatsCloud & SaaSCriticalCritical Ollama GGUF Loader Flaw CVE-2026-7482 Leaks API Keys and Enterprise Inference Memory
CST Newsroom
ThreatsIndustrial & OTHighRockwell Automation Redundancy Tool Flaws Permit Local Privilege Escalation on Industrial Control Workstations
CST Newsroom
ThreatsCloud & SaaSCriticalSecurity Researchers Leverage Claude Opus 5 to Defeat ASLR in libheif RCE and Infiltrate OpenAI Perimeter
CST Newsroom
ThreatsIndustrial & OTCriticalHitachi Energy FACTS Control Platform Flaws Permit Remote Code Injection Across Electric Transmission Grids
CST Newsroom
ThreatsCloud & SaaSHighAzure Connected Machine Agent Flaw CVE-2026-47632 Enables Local Privilege Escalation Across Hybrid Server Workloads
Mei-Lin Chen
ThreatsCloud & SaaSHighCrewAI CodeInterpreter Sandbox Escape Vulnerability CVE-2026-2275 Enables Remote Command Injection in Multi-Agent Pipelines
CST Newsroom
ThreatsCloud & SaaSCriticalGoogle Cloud Application Integration QueryEngineTask Flaw Permits Cross-Project Authorization Bypass
Mei-Lin Chen
ThreatsCloud & SaaSHighOpen WebUI Code Execution Guardrail Bypass Enables Remote Command Injection in Enterprise LLM Workspaces
CST Newsroom
ThreatsIndustrial & OTHighSchneider Electric EcoStruxure IT Data Center Expert Flaw Exposes Critical Infrastructure Telemetry to XXE Attacks
CST Newsroom
ThreatsCloud & SaaSCriticalCritical HPE EdgeConnect SD-WAN Orchestrator Authentication Bypass Exposes Enterprise Network Fabrics
Mei-Lin Chen