// LIVE
INTELCritical Citrix NetScaler memory flaw actively exploited in attacks
INTELTelnyx joins LiteLLM in latest PyPI package poisoning tied to Trivy breach
INTELStorm Brews Over Critical, No-Click Telegram Flaw
INTELFTC Action Against Match and OkCupid for Deceiving Users, Sharing Personal Data
INTELTeamPCP Supply Chain Campaign: Update 004 - Databricks Investigating Alleged Com
INTELHealthcare IT Platform CareCloud Probing Potential Data Breach
INTELSecurity updates for Monday
INTEL'When intelligence and trust move together, AI stops being an experiment and sta
INTELRussian APT Star Blizzard Adopts DarkSword iOS Exploit Kit
INTELDisclosure of Replay Attack Vulnerability in Signed References
INTELHackers now exploit critical F5 BIG-IP flaw in attacks, patch now
INTELTelnyx Targeted in Growing TeamPCP Supply Chain Attack
CVE(Pwn2Own) Canon imageCLASS MF654Cdw TTF Parsing Out-Of-Bounds Write Remote Code
CVEZDI-26-204: Canon imageCLASS MF654Cdw XPS Parser Vulnerability
CVEZDI-26-202: QNAP TS-453E Hyper Data Protector Plugin SQL Injection RCE Vulnerabi
INTELCritical Citrix NetScaler memory flaw actively exploited in attacks
INTELTelnyx joins LiteLLM in latest PyPI package poisoning tied to Trivy breach
INTELStorm Brews Over Critical, No-Click Telegram Flaw
INTELFTC Action Against Match and OkCupid for Deceiving Users, Sharing Personal Data
INTELTeamPCP Supply Chain Campaign: Update 004 - Databricks Investigating Alleged Com
INTELHealthcare IT Platform CareCloud Probing Potential Data Breach
INTELSecurity updates for Monday
INTEL'When intelligence and trust move together, AI stops being an experiment and sta
INTELRussian APT Star Blizzard Adopts DarkSword iOS Exploit Kit
INTELDisclosure of Replay Attack Vulnerability in Signed References
INTELHackers now exploit critical F5 BIG-IP flaw in attacks, patch now
INTELTelnyx Targeted in Growing TeamPCP Supply Chain Attack
CVE(Pwn2Own) Canon imageCLASS MF654Cdw TTF Parsing Out-Of-Bounds Write Remote Code
CVEZDI-26-204: Canon imageCLASS MF654Cdw XPS Parser Vulnerability
CVEZDI-26-202: QNAP TS-453E Hyper Data Protector Plugin SQL Injection RCE Vulnerabi
nsysops@ops-intel:~$ ls -lt --range live

OPS INTEL

266 items · ARIA-monitored · page 49 of 54
266
TOTAL
CRITICAL
HIGH
ACTIONABLE
WALLBOARD ↗
AUTO-APPROVED TODAY
LLM STATUS
CRITICAL (page) 2
HIGH (page) 1
MEDIUM (page) 2
LOW (page) 0
HIGH 90% confidence outage

Q4 2025 Internet Disruptions Analysis

['Cable cuts, storms disrupt DNS in Q4 2025; Cloudflare Radar report details impacts on internet connectivity.'] Includes severity, confidence, and actionable r

['Network operators faced challenges due to unexpected physical disruptions affecting critical undersea cables.', 'DNS providers experienced increased load during periods of high traffic and technical issues leading to d

Network OperatorsDNS Providers
action items (2)
  • Review current disaster recovery strategies and enhance them based on recent incidents.
  • Collaborate with regional network operators to improve interconnectivity for better resilience against cable cuts.

Cloudflare Blog ·

CRITICAL 95% confidence cve

CISA Adds Authentication Bypass CVE-2026-24858 to KEV Catalog

['CISA adds CVE-2026-24858 Fortinet Multiple Products Auth Bypass Vulnerability to KEV Catalog due to active exploitation. FCEB agencies must remediate by due.

['This vulnerability is a critical risk as it allows attackers to gain unauthorized access and could lead to further exploitation of systems.', 'FCEB agencies are required by BOD 22-01 to remediate this and other KEV vul

FCEB agenciesAll organizations
action items (2)
  • Review and update asset inventories to identify affected Fortinet products.
  • Implement necessary updates or mitigations as soon as they are available from the vendor.

CISA Current Activity ·

MEDIUM 95% confidence advisory

Cluster API v1.12 Release Highlights

['Kubernetes Cluster API v1.12 introduces in-place updates and chained upgrades for smoother cluster management.', 'Enhancements in Kubernetes Cluster API.

['In-place updates and chained upgrades provide a more flexible and efficient way to manage Kubernetes cluster lifecycle without requiring unnecessary downtime or resource re-allocation, making it easier for operators to

Kubernetes Operators
action items (2)
  • Upgrade Kubernetes clusters using Cluster API to version v1.12 or higher
  • Review documentation on new features like in-place updates and chained upgrades

Kubernetes Blog ·

MEDIUM 85% confidence general

File Integrity Monitoring with AWS SSM & Security Lake

['Highly scalable file integrity monitoring using AWS Systems Manager and Security Lake for real-time alerts and security compliance.'] Includes severity, confi

['Operators need real-time alerts for security compliance and incident response, provided by the integration of AWS Systems Manager Inventory and Amazon Security Lake.']

AWS Operators
action items (2)
  • Configure AWS Systems Manager Inventory to collect file metadata
  • Integrate Amazon Security Lake for real-time alerting

AWS Security Blog ·

CRITICAL 95% confidence cve

Fortinet Addresses Exploitation of Authentication Bypass Vulnerability CVE-2026-24858

CISA warns of ongoing exploitation targeting FortiCloud SSO in FortiOS and related products. Apply updates to mitigate authentication bypass vulnerability.

['Authentication bypass vulnerability allows unauthorized access to systems', 'Previously patched vulnerabilities did not fully address this issue']

network security appliancesfirewalls
action items (2)
  • Review logs for signs of exploitation
  • Update affected devices immediately

CISA Current Activity ·