// LIVE
INTELCritical Citrix NetScaler memory flaw actively exploited in attacks
INTELTelnyx joins LiteLLM in latest PyPI package poisoning tied to Trivy breach
INTELStorm Brews Over Critical, No-Click Telegram Flaw
INTELFTC Action Against Match and OkCupid for Deceiving Users, Sharing Personal Data
INTELTeamPCP Supply Chain Campaign: Update 004 - Databricks Investigating Alleged Com
INTELHealthcare IT Platform CareCloud Probing Potential Data Breach
INTELSecurity updates for Monday
INTEL'When intelligence and trust move together, AI stops being an experiment and sta
INTELRussian APT Star Blizzard Adopts DarkSword iOS Exploit Kit
INTELDisclosure of Replay Attack Vulnerability in Signed References
INTELHackers now exploit critical F5 BIG-IP flaw in attacks, patch now
INTELTelnyx Targeted in Growing TeamPCP Supply Chain Attack
CVE(Pwn2Own) Canon imageCLASS MF654Cdw TTF Parsing Out-Of-Bounds Write Remote Code
CVEZDI-26-204: Canon imageCLASS MF654Cdw XPS Parser Vulnerability
CVEZDI-26-202: QNAP TS-453E Hyper Data Protector Plugin SQL Injection RCE Vulnerabi
INTELCritical Citrix NetScaler memory flaw actively exploited in attacks
INTELTelnyx joins LiteLLM in latest PyPI package poisoning tied to Trivy breach
INTELStorm Brews Over Critical, No-Click Telegram Flaw
INTELFTC Action Against Match and OkCupid for Deceiving Users, Sharing Personal Data
INTELTeamPCP Supply Chain Campaign: Update 004 - Databricks Investigating Alleged Com
INTELHealthcare IT Platform CareCloud Probing Potential Data Breach
INTELSecurity updates for Monday
INTEL'When intelligence and trust move together, AI stops being an experiment and sta
INTELRussian APT Star Blizzard Adopts DarkSword iOS Exploit Kit
INTELDisclosure of Replay Attack Vulnerability in Signed References
INTELHackers now exploit critical F5 BIG-IP flaw in attacks, patch now
INTELTelnyx Targeted in Growing TeamPCP Supply Chain Attack
CVE(Pwn2Own) Canon imageCLASS MF654Cdw TTF Parsing Out-Of-Bounds Write Remote Code
CVEZDI-26-204: Canon imageCLASS MF654Cdw XPS Parser Vulnerability
CVEZDI-26-202: QNAP TS-453E Hyper Data Protector Plugin SQL Injection RCE Vulnerabi
nsysops@ops-intel:~$ ls -lt --range live

OPS INTEL

266 items · ARIA-monitored · page 42 of 54
266
TOTAL
CRITICAL
HIGH
ACTIONABLE
WALLBOARD ↗
AUTO-APPROVED TODAY
LLM STATUS
CRITICAL (page) 2
HIGH (page) 3
MEDIUM (page) 0
LOW (page) 0
CRITICAL 95% confidence outage

Dell RecoverPoint for VMs Zero-Day Exploit Report

["Google Mandiant and GTIG report exploitation of Dell RecoverPoint for Virtual Machines' CVE-2026-22769 since mid-2024 by UNC6201 threat cluster.", "Severe.

['This incident highlights the importance of continuous security monitoring and prompt patching for enterprise solutions like Dell RecoverPoint for VMs.', 'Operators need to assess their exposure and take necessary steps

Dell RecoverPoint UsersEnterprise Backup Solutions
action items (2)
  • Immediately review system configurations for any use of default or hardcoded credentials.
  • Implement additional monitoring on virtual machine environments and log activity related to the affected software.

The Hacker News ·

HIGH 95% confidence advisory

Critical Flaws in Four VS Code Extensions Affecting Over 125M Users

Four widely used VS Code extensions are vulnerable to critical flaws that could allow attackers to steal local files and execute code remotely. Includes severit

['Potential loss of sensitive data', 'Risk of unauthorized system access']

VS Code usersSoftware developers using VS Code extensions
action items (2)
  • Scan for installed vulnerable extension versions
  • Deploy security patches and updates

The Hacker News ·

CRITICAL 95% confidence cve

Grandstream GXP1600 VoIP Phones Exposed to RCE Vulnerability

Critical security flaw CVE-2026-2329 in Grandstream GXP1600 series of VoIP phones allows unauthenticated remote code execution. CVSS score: 9.3. Includes severi

['Allows attackers to gain full control of affected devices remotely', 'Potentially leads to data theft and disruption of communication services']

Enterprise environments using Grandstream GXP1600 series VoIP phones
action items (3)
  • Update all Grandstream GXP1600 VoIP phones with latest firmware
  • Monitor network for signs of compromised devices
  • Contact Grandstream support for further guidance on securing devices

The Hacker News ·

HIGH 95% confidence outage

UK Council Data Breach Exposes Transgender Complaint Details

['A UK council mishandles transgender complaint data, breaching confidentiality and exposing personal details.', 'Personal information of complainants was.

['Mishandling of sensitive data during public discourse led to unauthorized disclosure.', 'Lack of proper security measures for handling confidential complaints in a public setting caused this incident.']

Local GovernmentData Protection Compliance
action items (2)
  • Review and update policies regarding the confidentiality of personal information in public settings.
  • Enhance technical safeguards to prevent unauthorized disclosures during public engagements.

The Register ·

HIGH 85% confidence cve

ZDI-26-122: PDF-XChange Editor Vulnerability

Local attackers can exploit this vulnerability to escalate privileges on PDF-XChange Editor installations. Requires low-privileged code execution. Includes seve

['Lack of proper validation for search path elements allows privilege escalation', 'Exploitation requires specific conditions but poses serious security risks once achieved']

WindowsMac OS X
action items (3)
  • Apply available updates immediately
  • Review system configurations and user privileges
  • Monitor logs for suspicious activity related to privilege escalation attempts

Zero Day Initiative ·