
Threat digests
Daily and weekly roundups of cybersecurity news, breaches, and emerging threats.
45 entries
Cybersecurity Threat Digest: September 26, 2026
Today's cybersecurity threat digest covers exploited enterprise flaws, a Kiteworks shutdown warning, telecom crime sentencing, and Linux kernel vulnerabilities for defenders.
Cybersecurity Threat Digest: September 25, 2026
Daily cybersecurity threat digest covering active Roundcube exploitation, Bitget crypto theft, Windows failures, malware campaigns, and critical flaws.
Threat Digest: TeamCity Ransomware & Critical CVEs
Cybersecurity threat digest for September 24, 2026: TeamCity ransomware exploitation, VPN attacks, WordPress abuse, critical CVEs, and defender actions.
Cybersecurity Threat Digest — September 23, 2026
F5 and Check Point flaws face active exploitation, while defenders respond to ransomware, AI-enabled malware, MFA abuse, and data theft campaigns.
Cybersecurity Threat Digest: September 21, 2026
Daily cybersecurity threat digest for September 21, 2026 covering npm malware, Codex sandbox escapes, critical router flaws, and defender actions today.
Threat Digest: AI Agent Attacks and Critical CVEs
Cybersecurity threat digest for September 20, 2026 covering AI agent attacks, WaterPlum activity, ransomware disruption and five critical vulnerabilities.
Threat Digest: AI Breaches, vm2 Escapes & Data Theft
September 19, 2026 cybersecurity threat digest covering AI-assisted breaches, Gyazo data theft, vm2 sandbox escapes, malware campaigns, and urgent fixes.
Threat Digest: Check Point, AI Malware & Supply Chain
Cybersecurity threat digest for September 18, 2026 covering a critical Check Point flaw, AI-enabled Android malware, Brevo supply-chain abuse, and urgent fixes.
Threat Digest: Cisco ISE Zero-Day and Linux Flaws
September 17, 2026 threat digest: exploited Cisco ISE zero-day, Linux kernel flaws, malware campaigns, and Windows domain issues.
Threat Digest — September 16, 2026: Zero-Days & MCP
Cybersecurity threat digest for September 16, 2026 covering an exploited Android zero-day, WordPress backdoors, critical MCP flaws, and urgent defender actions.
Cisco Secure Email Gateway Zero-Day | Threat Digest
Cybersecurity threat digest for September 15, 2026: Cisco's exploited zero-day, critical vulnerabilities, Microsoft fixes, breaches, and active attacks.
ClickFix macOS Theft, Water System Risk, and Apache CXF Flaws Lead the August 7 Threat Digest
Daily cybersecurity threat digest covering ClickFix on macOS, water sector exposure, SharePoint fallout, and critical Apache CXF and WSO2 flaws.
CISA Flags Active Exploitation as Snowflake Theft Case Advances
Daily threat digest covering active exploitation warnings, major cybercrime cases, and practical defender actions for August 6, 2026.
QuickFox Supply Chain Backdoor, Omada ZTP Flaws, and Microsoft 365 Phishing Lead the Cybersecurity Threats on August 5, 2026
QuickFox supply chain malware, TP-Link Omada ZTP flaws, and Microsoft 365 phishing headline today's cybersecurity threats and actions.
Hotel Wi-Fi M365 Breaches, Google Passkey Abuse, and Critical SiYuan and Adobe Flaws Lead August 4 Security News
Today’s top cybersecurity threats include hotel Wi-Fi Microsoft 365 attacks, passkey abuse research, and critical SiYuan and Adobe flaws.
Energy OT Supply Chain Risk, COLDCARD Wallet Losses, and Critical PyAthena and FreeRDP Flaws Lead Today’s Cybersecurity Threats
Today’s cybersecurity threats include OT supply chain risk, costly ransomware fallout, AI-enabled fraud, and critical flaws in PyAthena and FreeRDP.
Iran-Linked Water Sector Cyber Concerns and Critical Rails, Wazuh, FreeRDP Flaws Lead August 2 Threat Digest
August 2 threat digest covering suspected Iran-linked water sector activity, a critical Rails flaw, and high-severity bugs in Wazuh, FreeRDP, and WordPress.
Amgen Cloud Breach, Arch AUR Lockdown, and CISA Water Utility Warning
Daily digest covering Amgen’s cloud breach, Arch AUR malware response, Adform script compromise, water sector threats, and critical CVEs.
Claude Test Breaches, TeamCity RCE Warning, and VMware Flaws
Today's threat digest covers Claude breaches, TeamCity RCE, VMware flaws, and actions defenders should take now.
Exchange OWA Zero-Day and Cisco FMC Exploitation - July 30 Security Digest
Digest on Exchange OWA zero-day abuse, Cisco FMC exploitation, healthcare theft risks, and critical Apache flaws.
DNS Hijack, Artifactory Zero-Days, and vBulletin RCE Lead Today’s Cybersecurity Threats
July 29 threat digest covering CubePilot DNS hijack, OpenAI-Artifactory abuse, vBulletin RCE, and five critical flaws defenders should triage.
FastJson Zero-Day Attacks, Arista VeloCloud KEV Patch, and Dysphoria Botnet Lead July 28 Threat Digest
Daily cybersecurity digest for July 28, 2026 covering FastJson attacks, Arista VeloCloud exploitation, Dysphoria botnet, and critical CVEs.
GitHub and PyPI Tighten Supply Chain Defenses as TELESHIM Targets Middle East Governments
Cybersecurity digest for July 27, 2026 covering GitHub and PyPI protections, TELESHIM activity, ENISA policy moves, and vulnerabilities.
Palo Alto Exploited, Chrome Zero-Day Patched, and Three Critical CVEs
Daily cybersecurity threats digest for June 24, 2026 covering active exploitation, major breaches, macOS malware, and critical AI app flaws.
What is Kubernetes Secret Rotation? A Practitioner's Definition
Learn how to rotate Kubernetes secrets safely, reduce outage risk, and update apps, clusters, and credentials with controlled rollout steps.
What are the OWASP LLM Top 10 risks? A Practitioner's Definition
A concise practitioner guide to the OWASP LLM Top 10 risks, how they work, where they appear, and what defenders should do first.
What is training data poisoning? A Practitioner's Definition
Training data poisoning is the deliberate manipulation of AI training data to alter model behavior, accuracy, or outputs in ways that help an attacker.
How to Prevent Prompt Injection in LLM Applications
Learn how to reduce prompt injection risk in LLM apps using isolation, tool controls, validation, and monitoring practices.
What Is Indirect Prompt Injection?
Indirect prompt injection is when hidden instructions in external content manipulate an AI assistant. Learn how it works and why it matters.
Cyber Threat Intelligence (CTI): Definition, Uses, and Why It Matters
Cyber Threat Intelligence (CTI) is evidence-based information about threats that helps teams prioritize risk, detect attacks, and respond faster.
Threat Intelligence Platform: Definition and How It Works
A threat intelligence platform collects, enriches, and operationalizes threat data so security teams can prioritize risks and act faster.
Palo Alto Exploited, Linux CIFSwitch Root Flaw, and Critical CVEs to Triage
Daily cybersecurity threats digest for May 31, 2026: Palo Alto exploitation, Linux CIFSwitch root flaw, and critical CVEs defenders should triage.
Malware Lures, Data Breach Fallout, Botnet Disruption, and Chrome Defenses
Daily cybersecurity threats digest for May 30, 2026: malware lures, data breach fallout, botnet disruption, Chrome defenses, and critical CVEs.
CISA Iran Guidance, PowerSchool Fallout, Patch Tuesday Prep, and Key CVEs
Daily cybersecurity threat digest for May 29, 2026: CISA Iran guidance, PowerSchool fallout, Patch Tuesday prep, and key CVEs.
Interlock Ransomware, PrintSteal, Scattered Spider, and npm Supply-Chain Risks
Daily cybersecurity threat digest covering Interlock ransomware, PrintSteal, Scattered Spider activity, npm supply-chain risks, and key CVEs.
ServiceStack RCE, VirtualBox Vulns, NAKIVO Flaw, and Infostealer Crackdown
Daily cybersecurity threats digest for May 26, 2026: top stories, critical CVEs, and practical defender actions.
Fake AI Malware Lures, Low-Cost Password Cracking, and Critical CVEs
Daily cybersecurity digest for May 17, 2026: fake AI malware lures, low-cost password cracking, and critical CVEs defenders should review.
Ransomware This Week: Patterns, Pressure Points, and What Defenders Should Notice
This week in ransomware: identity abuse, double extortion, backup gaps, and the practical defense priorities security teams should address now.
Looking Back at This Week in Nation-State APT Activity
A weekly look at nation-state APT activity, recurring tradecraft, and practical defensive actions for security teams.
Browser Zero-Day Exploitation: This Week’s Lessons
A practical look at browser zero-day exploitation, exploit chains, and the defensive steps security teams should take now.
Looking Back at This Week in Linux Kernel CVEs and Exploitation
A weekly look at Linux kernel CVEs, exploitation trends, and practical defensive steps for patching, hardening, and reducing exposure.
Container Escape Vulnerabilities: This Week’s Lessons
Container escape lessons from this week: attack patterns, misconfigurations, and practical steps to improve container and Kubernetes security.
Looking Back: Session Hijacking and Cookie Theft
A weekly look at session hijacking and cookie theft, why stolen sessions still bypass controls, and what defenders should change now.
CI/CD Pipeline Compromises: Lessons for Defenders
A look back at this week’s CI/CD pipeline security lessons, attacker patterns, and the practical defenses security teams should prioritize.
ICS/OT Attack Activity: Looking Back at the Week
A weekly look at ICS/OT attack activity, recurring intrusion patterns, and practical steps defenders can take now.