Track CVEs, attack groups, malware, vendors and training in one place.
CybersecurityBoard.com brings together vulnerability intelligence, security news, MITRE ATT&CK group profiles, cyber events, certifications, training, products, companies and service providers.
CVE-2026-47836 was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware, attack groups, companies, products and services can be linked together on CybersecurityBoard.com.
CVE-2026-47841 was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware,…
CVE-2026-75501 was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware,…
CVE-2026-13242 was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware,…
CVE-2026-55803 was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware,…
CVE-2026-65801 was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware,…
Cybersecurity researchers have uncovered a cyber espionage campaign targeting Myanmar government and IT sectors, dubbed Operation QUICSILVER. The campaign, first observed in…
Check Point Research has disclosed a technique that abuses Microsoft Defender's own legitimately signed boot-time remediation driver, BTR.sys, to perform arbitrary kernel-level…
AvNeutralizerBlack Hat USA 2026Boot Time Removal ToolBTR_CLI
The U.S. government has issued a joint advisory warning of an active threat targeting critical infrastructure organizations using AI-generated exploit scripts. The…
Suspected Russian cyber espionage groups are abusing legitimate authentication flows, including Google OAuth and WhatsApp device linking, to hijack accounts across Europe…
Cybersecurity researchers have uncovered an ongoing campaign distributing the Weedhack malware to gamers through fake Minecraft clients and SEO poisoning. McAfee Labs…
AI SecurityAnimateClipperCheck PointCVE-2026-58231
Weedhack is a malware family distributed via fake Minecraft clients and SEO poisoning. It uses multi-stage JAR payloads to collect system information,…
AnimateClipper is a clipper malware family that intercepts clipboard data, often used in campaigns impersonating legitimate software. It was identified by Check…
SessionGate is a framework used in malware distribution campaigns, often delivered via SEO poisoning and traffic distribution systems. It was flagged by…
As AI coding tools accelerate software development, they also introduce open-source dependencies at a pace that can overwhelm security teams, leading to…
ActiveStateAI Coding and Open Source Risk webinarAI SecurityCVE-2026-58231
This webinar, presented by ActiveState's Rebecca Banks and Moris Chen, discusses how AI coding affects open-source remediation workloads, compares enterprise programs, and…
ActiveStateAIAI Coding and Open Source Risk webinarOpen Source
ISO/IEC 27001:2022 is an international information security management standard. Its Annex A includes access control and identity management controls that organizations can…
Virtual Network Computing (VNC) was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber…
Event Tracing for Windows (ETW) was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related…
Heaven's Gate was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs,…
McAfee Labs is the threat intelligence division of McAfee, providing research on malware, vulnerabilities, and cyber threats. It detected and blocked over…
Gen Digital is a cybersecurity company that identified and analyzed the WordlistLoader and Amatera Stealer infection chains, highlighting the use of ClickFix…
The Keycloak project released version 26.7.2 fixing CVE-2026-18963 and CVE-2026-15571, along with other security improvements. Users are urged to upgrade promptly.
Escape researcher Enzo Mongin highlighted the broader impact of Keycloak vulnerabilities, noting that attackers crossing Keycloak's boundaries can access everything behind it.
Seven malicious Firefox extensions use threat actor-controlled Supabase projects to dynamically serve phishing or decoy content, abusing the platform's infrastructure.
The 37 sports-score shell extensions share a hard-coded credential for API-Sports, a legitimate sports data service, indicating coordinated infrastructure.