Recent Advisories

Severity ID Title Vendor Product Date Type
NONE HACKREAD:1D37B2...

Reaper macOS Infostealer Abuses Script Editor to Steal Crypto and Passwords_HACKREAD:1D37B22B6A0B5E80724BF3D61C9DD448

Threat actors are deploying an updated SHub Stealer variant named Reaper that exploits the native macOS Script Editor to bypass OS-level protection...

N/A N/A HACKREAD
NONE SCHNEIER:B1D260...

AI Worm_SCHNEIER:B1D2603916F84F7F7C9F6533DC094D65

Researchers have prototyped an AI-powered internet worm. The coolest thing about the prototype is that it carries its own LLM with it, and runs it...

N/A N/A SCHNEIER
NONE THN:38B4A872A5C...

New Threat Cluster OP-512 Targets Microsoft IIS Servers with Custom Web Shell Framework_THN:38B4A872A5CA191303381BD0807C4FBB

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiab_7FEmO4woH_bG4spUNJRFCFvvmpF9ggnhOlkIf7f0Ma7z4oEwL0MxFSe4CstBBQRLFsYxObArJESQWOkw...

N/A N/A THN
NONE THN:43945633FFD...

Only 10% of SOCs Say They’re Getting Excellent Value From AI. Here’s What the Second Wave Has to Deliver_THN:43945633FFD2C48EA4A9F07960EB2FF4

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjsdgNCJHCuVqNf4dGZYDAmzpytkCd3NBt-TKUtEo-bSBKeuqJzzk7CGB5l-JxHyIz5mVjHRn7csD0zZNm4Mi...

N/A N/A THN
NONE MALWAREBYTES:1F...

AI: Threat, tool, or both?_MALWAREBYTES:1F21720CD2F6CA27FE6A263AF1F63974

Public attitudes toward Artificial Intelligence (AI) are changing, and we wanted to understand why. A recent Pew Research survey found that about ...

N/A N/A MALWAREBYTES
CRITICAL 9.8 THN:B290527C461...

Hackers Exploit Critical Everest Forms Pro WordPress Plugin Flaw to Take Over Sites_THN:B290527C461D0B41AF1634957218991E

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjgKOwHRwFSrcOI7vBYVGbebtc3DwR3w7SYc9l7FUXp1yXc_N2MbNNlEXtfRjVneU4wz2YB8PqC_k54o_6ZpB...

N/A N/A THN
NONE THN:BA671EB286B...

FIFA World Cup 2026 Scams Are Already Live: Fake Sites, Banking Malware, and Stolen Logins_THN:BA671EB286BFAB25B4ED3DAF0142200F

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjMkj_adwzUUFP7yWyIFVKIKKQGDjqfvPuxKoR4mrrJ_SX3EACoJ3toLV3ZkYmePeA-nKWWfVC-90aOa5yjep...

N/A N/A THN
NONE THN:51F8DAC1E19...

PCPJack Hijacks 230 AWS, Google Cloud, and Azure Servers for Covert SMTP Relay Network_THN:51F8DAC1E193E414EB3FF79AC2684016

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEibu0mX9Tusu3siXFJzPskfA1ZYZ2OdRJTegsJFkffBc9cBBPGWguTUAI3PPAaFy-WIjziA9PIrMrZNVuFVNm...

N/A N/A THN
MEDIUM 6.5 MS:CVE-2026-47655

Microsoft Graph Information Disclosure Vulnerability_MS:CVE-2026-47655

Exposure of sensitive information to an unauthorized actor in Microsoft Graph allows an authorized attacker to disclose information over a network.

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2026-42824

M365 Copilot Information Disclosure Vulnerability_MS:CVE-2026-42824

Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized attacker to disclose inf...

N/A N/A MSCVE