Track CVEs, attack groups, malware, vendors and training in one place.
CybersecurityBoard.com brings together vulnerability intelligence, security news, MITRE ATT&CK group profiles, cyber events, certifications, training, products, companies and service providers.
On July 30, 2026, an attacker drained 1,196 Bitcoin addresses in 41 minutes, stealing 1,082.65 BTC worth approximately $70.2 million. Galaxy Research traced the sweep to a firmware flaw in Coldcard, a Bitcoin-only hardware…
Adobe has released security updates to address a maximum-severity vulnerability in Campaign Classic (ACC), its enterprise marketing automation platform. The flaw, tracked…
Attackers compromised a JavaScript file served by advertising technology company Adform, turning it into a browser-side tool that rewrites cryptocurrency wallet addresses.…
Microsoft has disclosed a cyber espionage campaign, tracked as CaptiveCrunch, that abuses hijacked hotel Wi-Fi captive portals to deliver a remote access…
Cybersecurity firm Bitsight has uncovered a large-scale operation dubbed 'Fuyao' involving cheap Android TV boxes that secretly impersonate smartphones to commit ad…
Forest Blizzard was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs,…
Russian state-sponsored threat actor attributed to the SVR, known for long-term cyber espionage campaigns. In this campaign, its sub-cluster Storm-2945 is linked…
Midnight Blizzard was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs,…
Go-based remote access trojan delivered via fake updates in the CaptiveCrunch campaign. It captures screenshots, steals credentials, and provides remote shell access.
The vulnerability CVE-2026-53264 was independently reported by Kyle Zeng (KyleBot) shortly before the TyphoonPwn 2026 competition. Lee Jia Jie later published a…
EAL6+ is a high assurance level under the Common Criteria certification, indicating strong resistance to tampering. The Samsung S3D232A chip in Tangem…
Common CriteriaEAL6+secure elementsecurity certification
Coinkite is a Canadian company that designs and manufactures Coldcard, a Bitcoin-only hardware wallet. It also produces TAPSIGNER, OPENDIME, and SATSCARD. The…
Galaxy Research is a blockchain analysis firm that mapped the 1,196-address sweep linked to the Coldcard vulnerability, identifying the pattern of the…
Adform is an advertising technology company that detected and responded to a supply-chain compromise of its JavaScript file trackpoint-async.js, which was used…
MNIT is the state agency responsible for coordinating the cybersecurity response to the coordinated cyberattack on Minnesota water systems, working with federal…
cybersecurity responseMinnesotaMNITstate government
The Python Package Index is the official repository for third-party Python packages, providing a platform for developers to publish and install software.…