Curated Cyber Threat Intelligence

Threat Feed

Daily intelligence on vulnerabilities, threat actors and geopolitical context — distilled from primary sources.

scheduleUpdated 2026-09-04 · 02:17 UTC
articleTotal: 1172 reports

Filtered Reports

7 / 7 results
Active filter:tag: #software-technology✕ clear
737 malicious Chrome VPN extensions route traffic through attacker proxieshighbug_reportVulnerability
bug_reportVulnerability

737 malicious Chrome VPN extensions route traffic through attacker proxies

Google Chrome users who installed any of 737 malicious VPN/proxy extensions from Chrome Web Store, primarily targeting Russian-speaking users. 274 extensions impersonated 66 legitimate VPN brands (Proton VPN, NordVPN, Surfshark, AdGuard VPN, Browsec,…

Google12 Aug · 12:09 UTC
SharePoint Server auth bypass chained to RCE, no credentials requiredcriticalbug_reportVulnerability
bug_reportVulnerability

SharePoint Server auth bypass chained to RCE, no credentials required

Microsoft SharePoint Server Subscription Edition, 2019, and 2016 (CVE-2026-55040, CVSS 9.1). Chained RCE flaw CVE-2026-63520 (CVSS 8.1) also affects Project Server 2013 SP1 and Office Web Apps 2013 SP1. SharePoint Online is not affected.

CVE-2026-5504011 Aug · 14:47 UTC
vBulletin pre-auth RCE exploit public; patch released 4 weeks priorcriticalbug_reportVulnerability
bug_reportVulnerability

vBulletin pre-auth RCE exploit public; patch released 4 weeks prior

vBulletin 6.2.1 and earlier, 6.1.6 and earlier. Fixed in version 6.2.2 (released July 1, 2026) and patches for 6.2.1, 6.2.0, 6.1.6. vBulletin Cloud already patched. CVE-2026-61511 assigned but no NVD record or CVSS score available yet.

vBulletin27 Jul · 12:40 UTC
Microsoft SharePoint RCE (CVE-2026-50522) actively exploited after PoCcriticalbug_reportVulnerability
bug_reportVulnerability

Microsoft SharePoint RCE (CVE-2026-50522) actively exploited after PoC

Microsoft SharePoint Server (all versions prior to July 2026 patches). Vulnerability involves deserialization of untrusted data leading to unauthenticated remote code execution. CVSS 9.8 (Critical).

CVE-2026-5052221 Jul · 12:57 UTC
Opera GX patched silent add-on install flaw enabling data thefthighbug_reportVulnerability
bug_reportVulnerability

Opera GX patched silent add-on install flaw enabling data theft

Opera GX browser (specific versions not disclosed). Vulnerability allowed malicious websites to install browser extensions without user consent, enabling content extraction from visited pages including email addresses and other sensitive data.

Opera6 Jul · 05:27 UTC
Microsoft removes 119 malicious Edge extensions hiding malware via steganographyhighbug_reportVulnerability
bug_reportVulnerability

Microsoft removes 119 malicious Edge extensions hiding malware via steganography

Microsoft Edge browser users who installed any of 119 malicious extensions from the official Microsoft Edge Add-ons store. Campaign active since at least 2021, affecting unknown number of users globally.

Microsoft29 Jun · 06:32 UTC
Adblock for YouTube extension with 10M+ installs contains code injection riskhighbug_reportVulnerability
bug_reportVulnerability

Adblock for YouTube extension with 10M+ installs contains code injection risk

Chrome extension "Adblock for YouTube" (10+ million active installations). All users with the extension installed are potentially affected. Extension currently holds Featured badge status in Chrome Web Store.

Google25 Jun · 12:12 UTC