Tag
Detection of Assets with Elevated Vulnerability Exposure via Wiz
1 TTPThis brief describes a detection capability designed to identify cloud assets exhibiting poor security posture by correlating high volumes of vulnerabilities, exploitable findings, and critical-severity bugs reported by the Wiz Cloud Security Platform.
CISA Adds Two Exploited Linux Kernel Vulnerabilities to KEV Catalog
2 CVEsCISA has added CVE-2025-39964 and CVE-2026-53266, two actively exploited Linux kernel vulnerabilities, to its Known Exploited Vulnerabilities catalog.
Microsoft September 2026 Patch Tuesday Addresses Two Actively Exploited Zero-Days
1 TTP 2 CVEsMicrosoft's September 2026 update cycle addresses 974 vulnerabilities, including two privilege-escalation zero-days actively exploited in the wild and 20 potentially wormable RCE flaws.
SQL Injection in Doctor Appointment System 1.0
2 rules 1 TTP 1 CVEAn SQL injection vulnerability in the email parameter of the patient_login.php file allows unauthenticated remote attackers to execute arbitrary SQL commands in Doctor Appointment System 1.0.
Active Exploitation of Siemens S7 Series PLCs in US Critical Infrastructure
1 TTPThe IC3 has issued an advisory regarding the active exploitation of Siemens S7 Series PLCs within US critical infrastructure sectors using CVE-2026-4357 to disrupt operational technology.
SQL Injection in Simple Online Food Ordering System
2 rules 1 TTP 1 CVESourceCodester Simple Online Food Ordering System 1.0 is vulnerable to unauthenticated SQL injection via the admin login endpoint, allowing remote attackers to execute arbitrary SQL commands.
Mattermost Security Update for CVE-2026-9816
1 CVEMattermost has released critical security patches for multiple versions to address vulnerabilities tracked under CVE-2026-9816.
August 2026 Microsoft Security Update Analysis
1 TTP 5 CVEsMicrosoft's August 2026 security release addresses 415 vulnerabilities, including a zero-day (CVE-2026-68820) exploited in the wild that enables local privilege escalation in the Windows Ancillary Function Driver for WinSock.
SQL Injection Vulnerability in MingSoft MCMS
1 rule 1 TTP 1 CVEMingSoft MCMS versions up to 3.0.6 contain a remote SQL injection vulnerability in the ms-mdiy component, allowing unauthenticated attackers to manipulate the formFields argument to execute arbitrary database queries.
SolarWinds Web Help Desk Security Bypass Vulnerability
1 CVEA vulnerability in SolarWinds Web Help Desk, identified as CVE-2024-28986, allows remote unauthenticated attackers to bypass security measures, potentially leading to unauthorized access.