Security Feed
Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.
1. Executive summary Check Point Research reports a malware operation labelled StopAndProtect that used compromised WordPress sites to present fake CAPTCHA prompts, distribute malware,
1. Executive summary Cisco Talos describes crime script analysis as a method for mapping business email compromise (BEC) into attacker actions, decision points and
1. Executive summary According to a single Help Net Security report, OpenAI paused frontier reinforcement-learning activity for two weeks, with its largest planned
1. Executive summary Internet-exposed PTC Windchill and FlexPLM systems are reportedly being compromised through CVE-2026-12569, followed by deployment of a tailored
1. Executive summary Check Point, as reported by The Hacker News, identified a global campaign using nearly 2,000 compromised WordPress sites for ClickFix
1. Executive summary CISA and the FBI have published an updated advisory confirming that the Medusa ransomware-as-a-service (RaaS) operation has compromised
1. Executive summary CVE-2026-65400 is a critical (CVSS 9.8) improper authentication vulnerability (CWE-287) in Apple macOS Screen Sharing that allows
1. Executive summary CISA published ICS advisory ICSA-26-230-01 disclosing six vulnerabilities in the Malcolm network traffic analysis tool suite, a platform
1. Executive summary CVE-2026-55040 is a critical (CVSS 9.1) weak authentication vulnerability in Microsoft Office SharePoint that allows an unauthenticated, remote
1. Executive summary CVE-2026-59310 is a critical (CVSS 9.8) path traversal vulnerability (CWE-22) in the Broadcom VMware vCenter Syslog server.
1. Executive summary CVE-2026-33824 is a critical (CVSS 9.8) double free vulnerability (CWE-415) in the Microsoft Windows Internet Key Exchange
1. Executive summary A critical zero-click vulnerability, CVE-2026-19478 (CVSS 9.4), affects self-managed GitLab instances. The flaw is classified as