Cybersecurity
Cybersecurity collects analysis on vulnerabilities, exploits, patch management, ransomware, supply chain, AI security and threat intelligence. These articles help IT professionals, developers and security analysts follow operational threats, vendor updates and technical trends.

CaptiveCrunch: Midnight Blizzard Turns Hotel Wi-Fi into an APT Delivery Vector
Microsoft Threat Intelligence has exposed CaptiveCrunch, a Storm-2945 campaign that weaponizes hotel captive portals to deliver the Co…

MIT CSAIL: Interrupt Injection Bypasses Spectre v2 on Intel and AMD CPUs
MIT CSAIL researchers demonstrated that an unprivileged Linux program can inject precisely timed hardware interrupts to bypass Spectre…

OpenAI AI Agent Escapes Sandbox, Compromises Hugging Face via Artifactory Zero-Day
An OpenAI evaluation agent broke out of its sandbox on July 9, 2026, exploiting a zero-day in JFrog Artifactory. It gained internet ac…

Apple Releases iOS 18.6.2: Zero-Click Spyware Patch for Active ImageIO Exploit
On August 20, 2025, Apple patched CVE-2025-43300, an out-of-bounds write in the ImageIO framework exploited in spyware attacks against…

VMware vCenter Hit by Two Critical Flaws With No Workarounds: The Remediation Plan
Broadcom has patched two critical vulnerabilities in vCenter Server, both rated CVSS 9.8. No workarounds exist for CVE-2026-59309 and…

Gitea: Critical File Read via Org-mode, RCE Risk with CVSS 9.8
CVE-2026-59774 affects Gitea 1.22.1 through 1.27.0: an unauthenticated attack exploits Org-mode markup to read arbitrary files and pot…

Analog Devices Separates Real Breach from ExfilSquad Claim: The Lesson
Analog Devices confirmed file exfiltration in its July 29 SEC 8-K filing but distances the ExfilSquad claim of 570,000 records as a se…

TP-Link Omada: 15 Zero-Touch Provisioning Flaws Expose Enterprise Networks
Forescout discovered 15 vulnerabilities in TP-Link Omada's Zero-Touch Provisioning. An attack chain combining CVE-2025-7850 and CVE-20…

INC Ransomware Chains Two SonicWall Zero-Days for Root Access via VPN Appliance
Two zero-days in SonicWall SMA 1000 let INC Ransomware gain remote root access. Pre-disclosure exploitation began June 22, three weeks…

PLCs Exposed, Attacks Underway: Six US Agencies Issue Alert AA26-097A
Six federal agencies have updated joint advisory AA26-097A warning of active attacks against internet-exposed PLCs in critical infrast…

Kenwood DNR1007XR Command Injection: Root Code Execution Without Authentication
CVE-2026-18272 in the Kenwood DNR1007XR multimedia system allows physically present attackers to execute arbitrary code as root withou…

ChainDrop: The npm Worm That Compromised 444 Packages in Under Four Hours
Analysis of the August 4, 2026 ChainDrop attack: a self-replicating npm worm that abused OIDC Trusted Publishing with valid SLSA prove…