Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.5 IMPERVABLOG:B3D...

Imperva Customers Protected Against CVE-2026-9082 in Drupal Core_IMPERVABLOG:B3D3F560C05210784BB760168A0136D3

**_TL;DR:_**_CVE-2026-9082 is a highly critical SQL injection vulnerability in Drupal core that can be exploited by unauthenticated users against D...

N/A N/A IMPERVABLOG
NONE AKAMAIBLOG:E327...

Decentralized Threat: Stealthy P2P Cryptominer Targeting Ollama Endpoints_AKAMAIBLOG:E327040385169CA2A84E7C6F11F4A0BB

The Akamai SIRT uncovered a custom P2P Trojan masquerading as system activity. Learn how to detect and mitigate this stealthy Go-based cryptominer.

N/A N/A AKAMAIBLOG
NONE WIRED:F5D3DB4B0...

‘Creepy’ Listening Tool for Targeted Ads Didn’t Actually Work, FTC Says_WIRED:F5D3DB4B05B093B14D27B31125479472

Three firms will pay nearly $1 million for selling “Active Listening” technology that they claimed tapped people’s phones for advertising. The FTC ...

N/A N/A WIRED
NONE KREBS:9F36D3730...

Alleged Kimwolf Botmaster ‘Dort’ Arrested, Charged in U.S. and Canada_KREBS:9F36D3730EAA563026AD6783AF28C8AF

Canadian authorities on Wednesday arrested a 23-year-old Ottawa man on suspicion of building and operating **Kimwolf** , a fast spreading Internet-...

N/A N/A KREBS
NONE TALOSBLOG:8A230...

The art of being ungovernable_TALOSBLOG:8A230343CA41CDA991DD2BFA3873D7AA

![The art of being ungovernable](https://storage.ghost.io/c/af/a0/afa04ee3-414f-4481-8d23-7e7c146f192e/content/images/2026/05/threat_source-2.jpg) ...

N/A N/A TALOSBLOG
HIGH 7.8 MALWAREBYTES:77...

Microsoft Defender vulnerabilities are being exploited in the wild_MALWAREBYTES:773D36307511D19C8738B00ECD7EC474

Two Microsoft Defender vulnerabilities are being actively exploited in the wild. On May 20, 2026, the Cybersecurity and Infrastructure Security Ag...

N/A N/A MALWAREBYTES
NONE MSSECURE:28B317...

What’s new in Microsoft Security: May 2026_MSSECURE:28B3176AD8BF2032764AB06A4518D3C1

At Microsoft, security innovations are purpose-built to help every organization protect end-to-end with the speed and scale of AI. Our vision is si...

N/A N/A MSSECURE
NONE AKAMAIBLOG:2E8A...

Secure Identity at the Edge: Akamai Partners with Auth0_AKAMAIBLOG:2E8A4E338AC196ECB8FD58C26D583EFF

The Akamai and Auth0 partnership secures identity at the edge by combining edge intelligence and adaptive authentication to stop fraud and enhance ...

N/A N/A AKAMAIBLOG
NONE SCHNEIER:673547...

macOS Kernel Memory Corruption Exploit_SCHNEIER:673547B699E59D9AAC992C5EB8C39A59

A group used Anthropic's Mythos AI model to help find a kernel memory corruption vulnerability and exploit on Apple's M5. News article.

N/A N/A SCHNEIER
NONE HACKREAD:379428...

Deleted Google API Keys Remain Active up to 23 Minutes, Study Finds_HACKREAD:37942868F22B6C0D1CC5A8CDA17194A3

Deleted Google API Keys remain active for up to 23 minutes after deletion, exposing GCP, Gemini, BigQuery, and Maps data to attackers.

N/A N/A HACKREAD