20
Articles
8
Critical Threats
2
High Threats
10
Total Tracked
Critical Infrastructure and Identity Threats Put Verification and Patching in Focus
This week’s roundup spans executive voice impersonation, account-token theft and critical flaws in widely used enterprise products, underscoring the need to verify people and requests as carefully as software.
Critical Cloud and Network Flaws Meet a Surge in AI-Driven Phishing
A week of high-impact vulnerabilities and increasingly convincing social engineering puts cloud accounts, business systems and payment workflows under pressure.
Voice Clones, Token Theft and Critical Flaws Put Identity Defenses Under Pressure
A wave of social engineering, account hijacking and severe software vulnerabilities is putting help desks, cloud identities and exposed business systems at risk.
Critical Enterprise Flaws and New Phishing Tactics Put Accounts and Networks at Risk
A wave of critical vulnerabilities across Apple, Cisco, Fortinet, Zammad and Citrix coincides with AI-assisted malware development and scams targeting both cloud users and consumers.
Executive Session Theft and Critical Vulnerabilities Put Organizations on Alert
A campaign targeting Microsoft 365 leaders coincides with severe flaws across widely used business and infrastructure products, while phishing and malware operators refine their delivery tactics.
Critical Identity and Infrastructure Threats Put Wallets, Enterprise Accounts, and Systems at Risk
This roundup spans cryptocurrency approval scams, passkey-themed account takeovers, and critical flaws in widely used enterprise and consumer products—making careful verification and prompt, risk-based remediation essential.
Critical Infrastructure and Identity Threats Converge in a Busy October Security Landscape
A wave of critical product flaws, social-engineering-led remote access, and increasingly tailored phishing puts both enterprise systems and personal finances at risk.
Critical Vulnerabilities and Adaptive Phishing Put Identity and Network Defenses Under Pressure
Fresh attacks target Microsoft 365 users while severe flaws in widely deployed enterprise, networking, and Apple products underscore the need for rapid, risk-based response.
Critical Vulnerabilities and Active Intrusions Put Enterprise Networks on Alert
Ransomware, flaws in widely used platforms, and increasingly persuasive social engineering demand coordinated patching, resilient backups, and careful user behavior.
Critical Router, Collaboration, and Messaging Threats Put Internet-Facing Systems on Alert
Active router compromises, high-impact software flaws, and increasingly evasive phishing campaigns demand immediate patching, tighter access controls, and stronger user verification.
Critical Vulnerabilities and Malware Campaigns Put Internet-Facing Systems on Alert
From exposed enterprise gateways to deceptive installers and stealthy phishing, September’s threat activity highlights the need for rapid patching, endpoint visibility, and disciplined software hygiene.
Critical Vulnerabilities and AI-Driven Phishing Put Enterprises on Alert
A wave of software flaws, credential-harvesting campaigns, and automated social engineering attacks is expanding the routes criminals can use to reach organizations and consumers.
Ransomware, Token Theft and Critical Vulnerabilities Intensify the Enterprise Threat Landscape
Attackers are combining destructive extortion, authentication bypasses, software flaws and AI-enabled social engineering to target organizations and their users.
Critical Network and Identity Threats Put Enterprises on Alert
A wave of MFA-bypassing phishing, remote-code-execution flaws and browser-driven malware campaigns is raising the stakes for defenders.
Identity Attacks, Critical Vulnerabilities and Ransomware Intensify Across Enterprise Networks
New campaigns targeting Microsoft 365, FortiGate environments, cloud-connected devices and online shoppers highlight the need for rapid patching, stronger authentication and disciplined user awareness.
Kali 365, FortiBleed and a Wave of Critical Device and Device-Adjacent Exploits Elevate Risk Across Clouds and On-Prem Networks
New OAuth device-code phishing, mass credential harvesting and multiple critical product flaws demand immediate patching, MFA enforcement and user education.
Critical Threat Surge: Device Code Phishing, Mass Credential Harvesting, and a New Go-Based Ransomware Signal Escalating Danger Across Enterprise Environments
From MFA-bypassing OAuth attacks and a 430,000-firewall credential-stuffing campaign to unpatched critical vulnerabilities and Prime Day fraud, today's threat landscape demands immediate defensive action.
Critical Wave of Phishing Kits, Ransomware, and Unpatched Vulnerabilities Puts Organizations on High Alert
From MFA-bypassing device code attacks to a Go-built ransomware strain and a trio of dangerous UniFi OS flaws, the threat landscape entering July 2026 demands immediate action from security teams worldwide.
Critical Threat Surge: Device Code Phishing, FortiGate Credential Harvesting, and Go-Based Ransomware Signal a Dangerous New Wave
From MFA-bypassing OAuth attacks and a sweeping FortiGate credential operation to a trio of Ubiquiti zero-days and Prime Day fraud campaigns, the final days of June 2026 have delivered one of the most concentrated threat landscapes in recent memory.
Kali 365 Phishing Kit Leads Wave of Critical Identity and Infrastructure Threats Targeting Organizations Worldwide
A newly detected Phishing-as-a-Service platform capable of bypassing multi-factor authentication headlines a dangerous cluster of critical-severity threats targeting enterprises, network infrastructure, and everyday consumers.