Recent Advisories

Severity ID Title Vendor Product Date Type
NONE WALLARMLAB:1F15...

What Your Board Gets Wrong About AI Security_WALLARMLAB:1F15E0D8042AFBDA8BE563CEB6201051

Editor's note: This article was originally published by Craig Riddell on LinkedIn. It has been republished here with the author's permission. Boar...

N/A N/A WALLARMLAB
NONE MALWAREBYTES:D0...

Microsoft is changing Edge’s plaintext password behavior_MALWAREBYTES:D083483D7A2736520F5FE53B8AB82679

Microsoft said it will change Edge’s password handling as a “defense‑in‑depth” measure. Originally, Edge decrypted the entire saved‑password store...

N/A N/A MALWAREBYTES
NONE SCHNEIER:636FE7...

Zero-Day Exploit Against Windows BitLocker_SCHNEIER:636FE70CC7FDF2CEE5CE1922DF7FE122

It's nasty, but it requires physical access to the computer: > The exploit, named YellowKey, was published earlier this week by a researcher who g...

N/A N/A SCHNEIER
NONE IMPERVABLOG:462...

Dify: When Your AI Platform Becomes the Attack Surface_IMPERVABLOG:4621FF44A630721E0269C594E0434B43

## Executive Summary We identified a couple of vulnerabilities in AI automation platform Dify resulting in cross-tenant sensitive information disc...

N/A N/A IMPERVABLOG
NONE HACKREAD:BDF9C3...

The Gentlemen Ransomware Gang Hit by Internal Breach, Operations Exposed_HACKREAD:BDF9C3F66F27B26C4E42DCACDEF9DA29

The Gentlemen ransomware gang suffered an internal breach in May 2026, exposing victim data, affiliate activity, and backend operations.

N/A N/A HACKREAD
NONE SECURELIST:49ED...

IT threat evolution in Q1 2026. Mobile statistics_SECURELIST:49ED52555BB19918AFFE91C29652EE28

![](https://media.kasperskycontenthub.com/wp-content/uploads/sites/43/2026/05/18111316/malware-report-q1-2026-featured-image-990x400.jpg) IT threa...

N/A N/A SECURELIST
NONE 9A32A3B1-BA55-

search-cve_9A32A3B1-BA55-5EDD-A200-30432EDB282C

Intelligence Engine A lean Python CLI that aggregates CVE intelligence from NVD, CISA KEV, GitHub, and Exploit-DB into a normalized 0–100 risk scor...

N/A N/A GITHUBEXPLOIT
NONE THN:1ED6927321D...

Developer Workstations Are Now Part of the Software Supply Chain_THN:1ED6927321D42DFD91AA10415017C238

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjylLL25uQ3uU6RshKkTv9isR22Y_6_b4uJJ4koE1MqtmGs4IWdz88_aH8up_7WDxghA7-GeMbm6gpoKUXRw9...

N/A N/A THN
NONE WIRED:C4723BEEE...

An ICE Firearms Trainer Was Involved in At Least 4 Deadly Shootings_WIRED:C4723BEEE340C22E5E24613A206D1318

David Norman, a former Phoenix police officer who’s described himself as “a fucking savage,” now runs a company that provided training to Homeland ...

N/A N/A WIRED
NONE 7B39C794-CE1B-

avalon-filter-rce_7B39C794-CE1B-5AC2-8249-45D8945BA9F6

Title: Prototype Escape and Remote Code Execution in RubyLouvre/avalon BUGAuthor: Frederick Affected Version: v0.9.9 v2.2.10 all versions, unmainta...

N/A N/A GITHUBEXPLOIT