Security insights, vulnerability roundups, and updates from the Agent Breach team.
Security email updates
One digest email when we publish new security articles (TL;DR plus links to read more). Unsubscribe anytime from the message footer. See our Privacy Policy.
A newly patched Cisco Nexus 9000 vulnerability allows unauthenticated remote attackers to execute code as root. Organizations using affected switches should apply updates immediately.
Attackers are leveraging realistic phishing tactics and OAuth abuse to gain access to business accounts. These methods exploit user trust rather than technical flaws.
Attackers are distributing malicious software installers that disable Windows Update and weaken Microsoft Defender. The campaign primarily targets Chinese-speaking users and multinational organizations in China.
Google introduces Gemini 3.8 Flash Cyber model through its Fairwind Program, targeting high-priority sectors. The initiative aims to bolster defenses using advanced AI capabilities.
Multiple high-severity vulnerabilities discovered in the Linux kernel could allow attackers to inject packets or compromise systems. Patches are now available across Ubuntu security notices.
Attackers are exploiting critical SonicWall SMA 1000 vulnerabilities to deploy reverse shells and crypto miners. CISA and SonicWall confirm active exploitation and urge immediate patching.
Security researcher Chaotic Eclipse disclosed a new zero-day exploit targeting CrowdStrike Falcon's sensor. The vulnerability could allow attackers to escalate privileges on affected systems.
A financially motivated threat actor known as Breeze Comet has been targeting Brazilian financial institutions and e-commerce platforms since 2024. The group specializes in manipulating local payment systems to execute unauthorized transactions.
A critical authentication bypass in JFrog Artifactory is being actively exploited just days after its patch release. Organizations using default configurations are at high risk of unauthorized admin access.
A global operation has successfully disrupted the Sality P2P botnet by turning its infrastructure against itself. The takedown prevented new malware payloads from being distributed.