Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 9.6 MALWAREBYTES:FE...

Update Chrome to patch critical browser security flaws_MALWAREBYTES:FE1D282863E6BA1A4D5E36C709BE006D

Google released a security update for Chrome that fixes 18 vulnerabilities, including four rated Critical. There is no indication that any of these...

N/A N/A MALWAREBYTES
NONE SCHNEIER:1F1BE9...

Interesting Paper Exploring Prompt Injection_SCHNEIER:1F1BE9719845C1CDD988983813F0567D

This is a fascinating explotation of how LLMs fall for prompt injection attacks. It turns out that they learn to recognize the style of text in dif...

N/A N/A SCHNEIER
NONE THN:18D345EFB30...

Surviving the Mythos Era: Richard Bejtlich on the Case for NDR_THN:18D345EFB30E0C4B48C8E47EDFAA777B

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjGC4Kd3HcSGw5TQ1GQNwgQST4imnVTlHZ4yW1dDr_kwUksDH1MHmlPUMzW8LhePZZTM1HszkIQwL8Ggm-cxl...

N/A N/A THN
NONE IMPERVABLOG:0E4...

API Security Demystified: Which Tools Actually Protect Your APIs (And Where the Gaps Are)_IMPERVABLOG:0E46C9861D1FFFD49FEDC3014985F0E1

## Introduction Quick answer: No single tool secures an API. API security is a layered discipline. Secure-coding analyzers and SCA scanners catch ...

N/A N/A IMPERVABLOG
NONE THN:BD25B0B3685...

New Gaslight macOS Malware Uses Prompt Injection to Disrupt AI-Assisted Analysis_THN:BD25B0B3685DF00067DD7045F2EFCD97

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgbTrOy7FP80AfVcwyuiLtJx1T9YECQ6fxHaelQKUn3MNwSV9P3tiVq4_-pOB-gmU3lF9GpWnc5ebVSAbp0MZ...

N/A N/A THN
NONE MALWAREBYTES:8D...

Elite network says it was hacked after members’ personal data was left exposed_MALWAREBYTES:8DD20C3A275E37B4123FD763E33A138B

Some organizations exist to be exclusive. They're invite-only, and discreet, the kind of place where the membership directory is the product. Dia...

N/A N/A MALWAREBYTES
NONE THN:95BA2C853FC...

New Mistic Backdoor Linked to KongTuke in ClickFix and ModeloRAT Campaigns_THN:95BA2C853FC77B2F89B298EEB61CB43B

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhC1-4l_iOC19z96Q7C7O_dZSKwEvMnMLhHyb7kpt2rpOzQmn3gKpz6_BaZmSpzgvyhTJf8BBQmBTx0Nvymxk...

N/A N/A THN
HIGH 7.8 THN:AD3AD8530F9...

Cisco Catalyst SD-WAN Zero-Day CVE-2026-20245 Exploited to Gain Root Access_THN:AD3AD8530F92B6335CE622AD7B31FDE5

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEg3UeGaI_Ej8KFu7-vQHTOuoohYdx04xIdI3W2B6JjCdaTSR6m-y1PAZ-aes-tH9nxtPGO2sFUiu1NwYkwT5s...

N/A N/A THN
NONE HACKREAD:46764B...

Operation Endgame Disrupts StealC, Amadey and SocGholish Malware Networks_HACKREAD:46764B0DA6EC6E018AE066FA3152CC8F

Operation Endgame disrupts StealC malware infrastructure, seizing millions of stolen credentials and targeting servers used in global cybercrime ca...

N/A N/A HACKREAD
HIGH 8.8 MALWAREBYTES:EC...

PixelSmash flaw turns video files into attack tools_MALWAREBYTES:EC34003352AA88477BAACCE9BF91A066

A newly discovered vulnerability in FFmpeg’s MagicYUV decoder can turn a tiny, malformed video into a foothold for attackers. Researchers have dis...

N/A N/A MALWAREBYTES