OSINT & geopolitical
60 alerts in this category.
Open-source intelligence on threats outside the CVE ecosystem — geopolitical events, cyber-physical incidents, sanctions, and infrastructure attacks. Curated for security teams that need situational awareness alongside their patch queue.
3rd August – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 27th July, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Minnesota IT Services has confirmed coordinated cyber
MicrosoftCVE-2026-59726Long Term Support Channel Update for ChromeOS
Google Chrome Releases published an advisory on "Long Term Support Channel Update for ChromeOS". Topic areas: google, chrome, browser, patch. Published July 30, 2026. See the original source linked un
GoogleUSN-8620-4: Linux kernel (Intel IoTG) vulnerabilities
Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker co
MicrosoftCVE-2023-45896VU#243636: VPS.org one-click deployment templates contain multiple vulnerabilities
Overview VPS.org's one-click deployment templates provision services with default passwords and predefined network bindings instead of generating randomized secrets or applying per-deployment hardenin
DockerCVE-2026-16503USN-8620-3: Linux kernel (Intel IoTG) vulnerabilities
Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker co
MicrosoftCVE-2023-45896VU#281278: SGLang contains six different vulnerabilities including RCE, data exfiltration, and credential disclosure
Overview Six vulnerabilities have been discovered within the SGLang project, including remote code execution (RCE), server-side request forgery (SSRF), local file read, credential leakage, and model w
CVE-2026-15969VU#790363: foreUP golf management platform's web API contains multiple vulnerabilities
Overview Two vulnerabilities in the REST API were found in Golf Compete foreUP. The first exposes the merchant, Finix, API credentials directly in customer record responses, allowing any user to obtai
CVE-2026-15657VU#293714: Arbitrary File Overwrite in Develar app-builder (zipx.Unzip) via Symlink Following on macOS (APFS)
Overview A vulnerability in the zipx.Unzip extraction routine of Develar’s app-builder allows an attacker to overwrite arbitrary files on macOS using Apple File System (APFS). The issue arises from a
AppleCVE-2026-13723USN-8623-1: Linux kernel (NVIDIA) vulnerabilities
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture
LinuxCVE-2026-53354USN-8622-1: Linux kernel (NVIDIA) vulnerabilities
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM64 architecture
LinuxCVE-2026-53354VU#305509: OPeNDAP Hyrax is vulnerable to SSRF and Credential Disclosure
Overview A vulnerability has been discovered in the OPeNDAP Hyrax software solution. A remote attacker with the ability to submit crafted requests to an affected Hyrax instance could cause the applica
DockerCVE-2026-16637Beta Channel Update for ChromeOS / ChromeOS Flex
Google Chrome Releases published an advisory on "Beta Channel Update for ChromeOS / ChromeOS Flex". Topic areas: google, chrome, browser, patch. Published July 29, 2026. See the original source linked
GoogleUSN-8620-2: Linux kernel (Azure FIPS) vulnerabilities
Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker co
MicrosoftCVE-2023-45896Long Term Support Channel Update for ChromeOS
Google Chrome Releases published an advisory on "Long Term Support Channel Update for ChromeOS". Topic areas: google, chrome, browser, patch. Published July 29, 2026. See the original source linked un
GoogleCVE-2026-11669VU#141367: AT&T's Arris BGW210-700 gateway contains authentication bypass vulnerability in LAN-side management interface
Overview Firmware versions 2.7.7 and earlier of the Arris BGW210-700 residential gateway contain an authentication bypass vulnerability, tracked as CVE-2026-16771, that allows any unauthenticated LAN-
CVE-2026-16771USN-8574-3: Linux kernel vulnerabilities
It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose sensitive information.
MicrosoftCVE-2025-54505USN-8595-3: Linux kernel (AWS) vulnerabilities
It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose sensitive information.
MicrosoftCVE-2025-54505USN-8620-1: Linux kernel vulnerabilities
Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker co
MicrosoftCVE-2023-45896USN-8570-2: Linux kernel (Oracle) vulnerabilities
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Foo-over-UDP (FOU)
VMwareCVE-2025-71158USN-8618-1: Linux kernel vulnerabilities
It was discovered that some AMD Zen 2 processors did not properly isolate shared resources in the operation cache. A local attacker could possibly use this issue to corrupt instructions executed at a
MicrosoftCVE-2025-54518USN-8619-1: Linux kernel (HWE) vulnerabilities
It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose sensitive information.
MicrosoftCVE-2025-5450527th July – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 27th July, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Nichirei, a Japan-based frozen-food supplier and logi
MicrosoftCVE-2026-16232BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery
The Hacker News published an news on "BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery". Topic areas: zero-day, malware, ransomware, data-breach. Published July 24, 2026. S
ZoomIn Other News: Dolphin X AI-Powered Malware, Car Anti-Theft Device Hack, 400 Linux Kernel Flaws
Noteworthy stories that might have slipped under the radar: Siemens ROX II industrial switch vulnerabilities, Russian Zimbra webmail espionage campaign, Stadler Rail ransomware extortion attempt. The
LinuxUSN-8606-1: Linux kernel (Azure) vulnerabilities
It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose sensitive information.
MicrosoftCVE-2025-54505USN-8604-1: Linux kernel (Azure) vulnerabilities
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Foo-over-UDP (FOU)
MicrosoftCVE-2025-71158USN-8607-1: Linux kernel (Azure CVM) vulnerabilities
It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose sensitive information.
MicrosoftCVE-2025-54505USN-8605-1: Linux kernel (Azure CVM) vulnerabilities
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Foo-over-UDP (FOU)
MicrosoftCVE-2025-71158USN-8610-1: Linux kernel (Azure CVM) vulnerabilities
Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker co
MicrosoftCVE-2023-45896USN-8609-1: Linux kernel (Azure CVM) vulnerabilities
It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose sensitive information.
MicrosoftCVE-2025-54505USN-8575-3: Linux kernel vulnerabilities
Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker co
MicrosoftCVE-2023-45896USN-8595-2: Linux kernel (AWS) vulnerabilities
It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose sensitive information.
MicrosoftCVE-2025-54505USN-8608-1: Linux kernel (Azure FIPS) vulnerabilities
It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose sensitive information.
MicrosoftCVE-2025-54505USN-8603-1: Linux kernel (Azure) vulnerabilities
It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose sensitive information.
MicrosoftCVE-2025-54505SANS Internet Storm Center Advisory — Jul 20, 2026
Last week, Searchlight Cyber released details about a vulnerability they are calling "wp2shell". The vulnerability was initially announced without a CVE number. But now has been assigned CVE-2026-6303
WordPressCVE-2026-63030SANS Internet Storm Center Advisory — Jul 23, 2026
Two disclosures, five days apart, described the same intrusion from opposite ends â one from the victim, one from the party that turned out to be responsible â and together they make one of the mo
LinuxSANS Internet Storm Center Advisory — Jul 22, 2026
This isn't a new attack, but something I saw "pop-up" in our logs this week: ]]>
FirefoxCVE-2024-36401Nuclear-Sabotage Malware Benchmark Trips Up Most Frontier AI Models
SentinelOne’s new benchmark, built on the Fast16 case, shows which AI models can sustain a malware investigation and which cannot. The post Nuclear-Sabotage Malware Benchmark Trips Up Most Frontier AI
Rapid7 Blog Advisory — Jul 17, 2026
OverviewOn July 14, 2026, Microsoft published a security advisory addressing CVE-2026-58644, a critical remote code execution (RCE) vulnerability affecting on-premises Microsoft SharePoint Server depl
MicrosoftCVE-2026-58644Rapid7 Blog Advisory — Jul 17, 2026
OverviewOn July 17, 2026, a GitHub Security Advisory was published for CVE-2026-63030, a critical unauthenticated remote code execution vulnerability affecting WordPress Core. While the official GitHu
WordPressCVE-2026-63030Rapid7 Blog Advisory — Jul 23, 2026
OverviewOn July 22, 2026, Check Point published a security advisory for multiple vulnerabilities affecting Security Management, Multi-Domain Management, and firewall products. The most urgent of these
CVE-2026-16232Rapid7 Blog Advisory — Jul 20, 2026
Executive summaryAn MDR alert recently led our team to an exposed server that was doing more than hosting payloads. It was functioning as a fully operational malware delivery lab. Containing over 1,00
MicrosoftCVE-2025-3305311Why AI Needs a “Genie Coefficient”
This essay was written with Barath Raghavan, and originally appeared in The Guardian. Major benchmarks measure what AI can do. None measure whether it does what you mean: the distance between what you
IntelCheck Point warns of SmartConsole zero-day exploited in attacks
BleepingComputer published an news on "Check Point warns of SmartConsole zero-day exploited in attacks". Topic areas: ransomware, malware, data-breach, zero-day. Published July 23, 2026. See the origi
New Dolphin X malware uses AI to rank high-value targets
BleepingComputer published an news on "New Dolphin X malware uses AI to rank high-value targets". Topic areas: ransomware, malware, data-breach, zero-day. Published July 23, 2026. See the original sou
Hackers abuse Notepad++ plugins to stealthily install malware
BleepingComputer published an news on "Hackers abuse Notepad++ plugins to stealthily install malware". Topic areas: ransomware, malware, data-breach, zero-day. Published July 23, 2026. See the origina
Clop ransomware targets Windchill, FlexPLM in data theft attacks
BleepingComputer published an news on "Clop ransomware targets Windchill, FlexPLM in data theft attacks". Topic areas: ransomware, malware, data-breach, zero-day. Published July 24, 2026. See the orig
Fake Claude app promoted by Bing ads pushes SectopRAT malware
BleepingComputer published an news on "Fake Claude app promoted by Bing ads pushes SectopRAT malware". Topic areas: ransomware, malware, data-breach, zero-day. Published July 23, 2026. See the origina
Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge
The Hacker News published an news on "Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge". Topic areas: zero-day, malware, ransomware, data-breach. Published July 23, 20
ChromeThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories
The Hacker News published an news on "ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories". Topic areas: zero-day, malware, ransomware, data-breach. Published July 23
Golden Chickens Resurfaces With Four New Malware Families and Modular Implants
The Hacker News published an news on "Golden Chickens Resurfaces With Four New Malware Families and Modular Implants". Topic areas: zero-day, malware, ransomware, data-breach. Published July 24, 2026.
Cisco Talos Intelligence Advisory — Jul 23, 2026
Cisco Talos Intelligence published an research on "Cisco Talos Intelligence Advisory — Jul 23, 2026". Topic areas: malware, ransomware, zero-day, supply-chain. Published July 23, 2026. See the origina
MicrosoftCVE-2026-60137Weintek cMT3092X
View CSAF Summary Successful exploitation of these vulnerabilities could allow a non-privileged user to escalate privileges or view the credentials of other users. The following versions of Weintek cM
CVE-2026-60134Rockwell Automation FactoryTalk Services Platform
View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to impersonate an authorized user on the FTSP server, resulting in unauthorized access to system configurations.
CVE-2026-10714Siemens SIDIS Secured SmartPlug
View CSAF Summary SIDIS Secured SmartPlug before V7.26.0310 is affected by multiple vulnerabilities in the components OpenSSL, OpenSSH, and several other packages as described below. Siemens has relea
OpenSSLCVE-2022-23303Tycon Systems TPDIN-Monitor-WEB2
View CSAF Summary Successful exploitation of these vulnerabilities could result in an attacker accessing sensitive credentials, disrupting connected infrastructure, or manipulating physical equipment,
CVE-2026-61884Panduit IntraVUE
View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker with access to the IT network to manipulate industrial control devices without requiring physical access, spe
IntelCVE-2026-40430Johnson Controls XAAP Android
View CSAF Summary Successful exploitation of this vulnerability could result in an attacker obtaining confidential information from the device. The following versions of Johnson Controls XAAP Android
CVE-2026-34490Siemens Opcenter X
View CSAF Summary Opcenter X before V2604 contain an authentication bypass vulnerability that could allow an attacker to gain full unauthorized access to the application. Siemens has released a new ve
CVE-2026-56451CISA Adds Four Known Exploited Vulnerabilities to Catalog
CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2021-27137 DD-WRT Stack-Based Buffer Overflow Vulnerability
WordPressCVE-2021-27137
Get alerts that match YOUR environment
This page shows everything in the category. Vulnios narrows it down to alerts that affect your actual asset inventory — only the CVEs you need to act on.
Start a free scan