Advisories

Vulnerabilities, security writing, standards and rules as they were filed.

NameByWhereWhen
[INFO] Identity Visibility in 2026: The Foundation of Identity Securitythreatfilter.dev5d ago
[INFO] Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flawsthreatfilter.dev5d ago
[HIGH] SolarWinds Patches ARM Hard-Coded Key Flaw Enabling Unauthenticated RCEthreatfilter.dev5d ago
[CRITICAL] Critical Pre-Auth RCE in Orkes Conductor Workflow Platform Exploited in the Wildthreatfilter.dev5d ago
[INFO] Google Gemini Broke Into Real Company Systems After Security Test Domain Mix-Upthreatfilter.dev5d ago
[INFO] CrowdSec Says TanStack npm Attack Led to Copy of 170 Private GitHub Repositoriesthreatfilter.dev5d ago
[CRITICAL] CISA Flags Three Linux Kernel Vulnerabilities Exploited in the Wildthreatfilter.dev5d ago
[INFO] Friday Squid Blogging: On Squid Egg Sacsthreatfilter.dev6d ago
Linux Security Roundup: Patch BIND, Browsers, and Cloud Kernels Firstlinuxsecurity.com6d ago
[INFO] TestFlight Updatethreatfilter.dev6d ago
[INFO] Vectra AI Launches Ascent to Help Address New Era of AI-Driven Attacksthreatfilter.dev6d ago
Linux Packet Metadata Could Point to Headers That No Longer Existlinuxsecurity.com6d ago
Linux eBPF Security Flaw Could Approve an Out-of-Bounds Memory Accesslinuxsecurity.com6d ago
[CRITICAL] Cisco Zero-Day Highlights API Endpoint Authentication Issuesthreatfilter.dev6d ago
[INFO] EY Survey Finds Autonomous AI Implementation Outpaces Oversightthreatfilter.dev6d ago
[INFO] MFA Won't Save You From OAuth Consent Abusethreatfilter.dev6d ago
[INFO] Public Exploits Released for Four Linux Kernel Flaws That Enable Local Rootthreatfilter.dev6d ago
[INFO] Don’t Call Us, We’ll Call Your APIs | TraderTraitor Backdoors Resurface on Victim With No Crypto Tiesthreatfilter.dev6d ago
[INFO] Xcode 27.1 beta (27A9269)threatfilter.dev6d ago
[INFO] New WordPress Click2Shell Flaw Forces Theme Installs, Can Chain to Code Executionthreatfilter.dev6d ago
Tenable Ranks #1 in Device Vulnerability and Exposure Management for Eighth Consecutive YearShannon O'Dowdtenable.comSep 10
Detection scaled. The loop did not.Asaf Saarmend.ioSep 10
Tenable to Bring Claude Mythos 5 into the Tenable One Exposure Management PlatformShannon O'Dowdtenable.comSep 8
Mend Renovate Enterprise: managing dependencies at agentic scaleIris Kaminermend.ioSep 3
Tenable Uses OpenAI GPT Cyber Models to Help Defenders Inspect Community-Built AI ComponentsShannon O'Dowdtenable.comSep 3
mailing-lists:distros:stats:2026 - wiki formatting fix in one of the new entriessolaropenwall.orgSep 3
mailing-lists:distros:stats:stats-202608.txt - createdsolaropenwall.orgSep 3
Tenable Joins White House-Led Project Watershed to Bolster U.S. Water Systems CybersecurityShannon O'Dowdtenable.comAug 31
Mini Shai-Hulud hits openapi-react-query-codegen: 10 malicious npm versionsAlina Podobamend.ioAug 29
The skill layer is a dependency problem without a lockfile: what the OWASP Agentic Skills Top 10 gets rightAsaf Saarmend.ioAug 26
mailing-lists:distros:stats:stats-202607.txt - createdsolaropenwall.orgAug 24
mailing-lists:distros:stats:stats-202606.txt - createdsolaropenwall.orgAug 18
OWASP LLM Top 10 2026: the model will be fooled, the question is what breaksAsaf Saarmend.ioAug 13
EU AI Act: risk tiers, timeline, and compliance requirementsTiffany Jenningsmend.ioAug 11
That’s a wrap: Mend.io at Black Hat USA 2026Stephanie Broylesmend.ioAug 7
Patch faster isn’t the answer. Patch smarter is.Shannon Davismend.ioAug 4
Mini Shai-Hulud Hits keyv: Trojanized Release Exfiltrates CI Secrets via GitHubAlina Podobamend.ioAug 4
Tenable Advances Exposure Management with Coverage Across Every Major AI Platform and Developer ToolShannon O'Dowdtenable.comAug 4
Tenable Launches Industry’s First Open-Source AI Agent Exchange to Advance Collective Cyber Innovation and DefenseShannon O'Dowdtenable.comAug 4
EU CRA explained: requirements, timeline, and complianceTiffany Jenningsmend.ioJul 30
Tenable Delivers the Industry’s First Always-On Agentic Fleet for Exposure ManagementDulcie McLerietenable.comJul 28
Tenable Joins Cisco’s SolutionsPlus Program as an Exposure Management Partner for Vulnerability Management CustomersDulcie McLerietenable.comJul 23
Tenable Expands Exposure Management Platform to Contextualize and Prioritize Application Security RiskShannon O'Dowdtenable.comJul 15
Tenable Named as the Current Company to Beat for AI-Powered Exposure Assessment in a June 2026 Gartner® ReportShannon O'Dowdtenable.comJul 1
mailing-lists:distros:stats:stats-202605.txt - createdsolaropenwall.orgJun 20
mailing-lists:distros:stats:stats-202604.txt - createdsolaropenwall.orgMay 13
mailing-lists:distros:stats:stats-202603.txt - createdsolaropenwall.orgMay 13
disclosure:cve - updated with content form https://www.openwall.com/lists/oss-security/2026/04/19/2solaropenwall.orgApr 19
mailing-lists:distros:stats:stats-202602.txt - createdsolaropenwall.orgMar 15
toolstwiggyopenwall.orgMar 13

Latest