Track CVEs, attack groups, malware, vendors and training in one place.
CybersecurityBoard.com brings together vulnerability intelligence, security news, MITRE ATT&CK group profiles, cyber events, certifications, training, products, companies and service providers.
Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks Ravie LakshmananAug 11, 2026Ransomware / Threat Intelligence Cybersecurity and intelligence agencies from South Korea and the U.S. warned of Gunra ransomware attacks targeting…
CVE-2024-5559 was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware,…
CVE-2025-24472 was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware,…
CVE-2023-32350 is another Teltonika RUT series vulnerability that requires existing privileges. It was part of the same CISA advisory and is considered…
CISA advisoryCVE-2023-32350privilege escalationRUT series
Cybersecurity researchers have uncovered a supply chain attack targeting WordPress plugin vendor BdThemes, leading to the temporary suspension of several plugins from…
Three independent research efforts presented at Black Hat USA 2026 and in subsequent disclosures have demonstrated practical attacks against passkey implementations, undermining…
OpenAI has announced it is pausing certain internal activities involving its upcoming artificial intelligence model, Astra, after an internal evaluation indicated significant…
North Korea's Kimsuky hacking group, operating under the Reconnaissance General Bureau, has been assembling an offline artificial intelligence (AI) stack on its…
The Reconnaissance General Bureau (RGB) is North Korea's primary military intelligence agency, overseeing cyber operations. Kimsuky operates under its direction, conducting espionage…
intelligence agencyNorth KoreaReconnaissance General Bureau
Chinese-speaking APT was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs,…
x.js is an alternate payload in the BdThemes attack that generates deterministic administrative credentials based on the victim website's hostname, allowing attackers…
The magic-login backdoor is a persistence module installed in the mu-plugins directory that allows unauthenticated administrative entry via a URL parameter targeting…
This webinar by Chainguard explores how security teams can keep up with AI-driven development, addressing the challenges of vulnerability management at scale,…
AI SecurityDevSecOpsThe True Cost of Building at Machine SpeedVulnerability Management
EAL6+ is a high assurance level under the Common Criteria certification, indicating strong resistance to tampering. The Samsung S3D232A chip in Tangem…
Common CriteriaEAL6+secure elementsecurity certification
CERT Polska, the Polish computer emergency response team, disclosed the December 2025 cyberattack on a CHP plant after a three-month investigation. They…
Seven Moxa serial device servers and three switches were factory-reset by the attacker, given changed passwords and assigned unreachable IP addresses, disrupting…
Bugcrowd is a crowdsourced security platform that facilitated the disclosure of the RovoBlast vulnerability in Atlassian Rovo. The platform rated the issue…
Cloudflare was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware,…