Curated Cyber Threat Intelligence
Threat Feed
Daily intelligence on vulnerabilities, threat actors and geopolitical context — distilled from primary sources.
scheduleUpdated 2026-07-21 · 02:09 UTC
articleTotal: 606 reports
Filtered Reports
2 / 6 results
criticalbug_reportVulnerabilitybug_reportVulnerability
Gitea Docker auth bypass under active probing (CVE-2026-20896)
Gitea Docker images with improper X-WEBAUTH-USER header validation. Specific vulnerable versions not provided; affects deployments trusting reverse proxy authentication headers without IP restrictions.
CVE-2026-2089614:28 UTC
highperson_alertThreat Actorperson_alertThreat Actor
Unknown Actors Exploit OpenAI Tenants to Phish Cybersecurity Firms
The threat actors behind this campaign remain unattributed. Their motivation appears to be intelligence gathering and corporate espionage, leveraging the trust associated with OpenAI's platform to deceive employees of cybersecurity companies.
BleepingComputer15:49 UTC