CyberSecurityBoardThreat Intel · CVEs · Products
Live cyber intelligence board

Track CVEs, attack groups, malware, vendors and training in one place.

CybersecurityBoard.com brings together vulnerability intelligence, security news, MITRE ATT&CK group profiles, cyber events, certifications, training, products, companies and service providers.

Latest Critical CVEs

All CVEs →
Critical CVEs

Apple’s Private Cloud Compute Flaw CVE-2026-20685

Apple paid a $150,000 bounty for a path traversal vulnerability in darwin-init, tracked as CVE-2026-20685, which could allow privileged network attackers to leak sensitive data from Private Cloud Compute.

Apple CVE-2026-20685 darwin-init path traversal
August 13, 2026
Critical CVEs

CVE-2026-53791 — Critical vulnerability brief

CVSS 9.1

rsync daemon before 3.5.0 contains an IP address spoofing vulnerability that allows unauthenticated remote attackers to bypass IP-based access controls by sending…

critical Critical CVE CVE-2026-53791
August 13, 2026
Critical CVEs

CVE-2020-9771: TCC Bypass in macOS Catalina

CVE-2020-9771 is a TCC bypass vulnerability in macOS Catalina that allows malware to access protected data without user consent. AmnesiaStealer exploits this…

AmnesiaStealer CVE-2020-9771 macOS Safari
August 13, 2026

Latest Cyber News

All news →

Latest Attack Groups

MITRE groups →
Attack Groups

HoneyMyte — Attack group profile

HoneyMyte was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware,…

HoneyMyte
August 14, 2026
Attack Groups

Jewelbug: China-Linked Hackers-for-Hire Group

Jewelbug is a China-based hackers-for-hire group that conducts cyber espionage against governments and militaries in the Middle East, Southeast Asia, and South…

cryptocurrency fraud cyber espionage hackers-for-hire Jewelbug
August 14, 2026

Latest Malware

Malware →
Malware

CoolClient Backdoor Analysis

CoolClient is a modular backdoor used by Mustang Panda. It supports keylogging, clipboard theft, credential harvesting, file management, and system reconnaissance. The…

backdoor C2 CoolClient Mustang Panda
August 14, 2026
Malware

msagent.sys Rootkit Driver

msagent.sys is a signed Windows kernel-mode driver used by the latest CoolClient variant. It provides stealth by hiding processes, files, registry keys,…

IOCTL Kernel Driver msagent.sys rootkit
August 14, 2026

Events, Certifications & Training

Explore →
Cyber Events

USENIX WOOT Conference

USENIX WOOT is a security conference where the research on SIM card attacks was presented. The paper highlights the attack surface of…

conference Security Research USENIX WOOT
August 11, 2026

Products, Services & Companies

Browse market →
Cyber Products

CDP-Toolkit: Browser Interaction Suite

CDP-Toolkit is a tool by SpecterOps that interacts with browsers via the Chrome DevTools Protocol. It supports cookie collection, browser data extraction,…

Browser Takeover CDP-Toolkit Chrome DevTools Protocol post-exploitation
August 14, 2026
Cyber Companies

Nanjing Ranyi Technology Co., Ltd.

Nanjing Ranyi Technology Co., Ltd. is a Chinese company whose digital certificate was used to sign the malicious msagent.sys driver. The certificate…

certificate malware Nanjing Ranyi Technology Co., Ltd. signing
August 14, 2026
Cyber Companies

Reco Uncovers City-Forum Campaign

Reco identified the City-Forum campaign targeting Salesforce and ServiceNow guest user access, using undocumented techniques to exfiltrate data.

City-Forum Reco Salesforce ServiceNow
August 13, 2026
Cyber Service Providers

Bugcrowd: Crowdsourced Security Platform

Bugcrowd is a crowdsourced security platform that facilitated the disclosure of the RovoBlast vulnerability in Atlassian Rovo. The platform rated the issue…

bug bounty Bugcrowd crowdsourced security vulnerability disclosure
August 8, 2026