Security Feed
Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.
1. Executive summary A data leak dubbed "FortiBleed" has exposed what appears to be a collection of Fortinet and FortiGate VPN credentials
1. Executive summary F5 has released out-of-band security updates addressing multiple vulnerabilities in NGINX, NGINX Plus, and NGINX Gateway Fabric. The two
1. Executive summary A server-side request forgery (SSRF) vulnerability exists in Open WebUI's OAuth profile-picture handling that allows an attacker
1. Executive summary Cisco has amended its February 2026 advisory for CVE-2026-20127 (CVSS 10.0, improper authentication) to add Cisco Catalyst SD-
1. Executive summary DragonForce ransomware operators have been observed deploying a custom Go-based remote access trojan (RAT) dubbed Backdoor.Turn that tunnels command-
1. Executive summary A multi-stage malware campaign delivers the Remcos remote access trojan (RAT) to Windows endpoints via a malicious ZIP archive containing
1. Executive summary Unit 42 has disclosed a vulnerability in the Google Cloud Vertex AI Python SDK (google-cloud-aiplatform) that allows an attacker
1. Executive summary Threat intelligence firm Defused reports active in-the-wild exploitation of three critical vulnerabilities in Fortinet's FortiSandbox platform (FortiSandbox,
1. Executive summary North Korea-aligned threat actor ScarCruft (MITRE G0067, also tracked as APT37) is conducting a spear-phishing campaign against targets using
1. Executive summary EvilTokens is a phishing-as-a-service (PhaaS) kit that compromises Microsoft 365 accounts by abusing the OAuth 2.0 device
1. Executive summary Sekoia has documented ErrTraffic, a JavaScript-based Malware-as-a-Service (MaaS) framework injected into compromised WordPress sites to deliver ClickFix
1. Executive summary Cisco has released a fix for CVE-2026-20262, a file-upload input-validation flaw in the web UI of Cisco