Cybersecurity News & Blog

Your global source for cybersecurity news, threat intelligence, and expert security analysis.

PCAPGraph: Threat Hunting at the Speed of Triage

PCAPGraph: Threat Hunting at the Speed of Triage

PCAPGraph is an open-source network investigation and threat hunting tool that transforms packet cap...

Open-Source Network Discovery & Topology Mapping

Open-Source Network Discovery & Topology Mapping

RedSide Security has open-sourced NETMAPPER, a network discovery and visualization tool designed to ...

 RDPGraph: Turn Windows Event Logs into an Interactive RDP Attack Graph

RDPGraph: Turn Windows Event Logs into an Interactive RDP Attack Graph

When an incident unfolds and all you have left are Windows event logs, understanding attacker moveme...

Latest Posts

curl Patches 18 Vulnerabilities, Including a 25-Year-Old Security Flaw

curl Patches 18 Vulnerabilities, Including a 25-Year-Old Security Flaw

RedSide Security June 29, 2026 Vulnerability 68 views

curl has released a security update fixing 18 vulnerabilities, including a 25-year-old flaw dating back to 2001. The vulnerabilities affect curl and libcurl components used by billions of devices worldwide, highlighting the ongoing importance of security auditing even in mature open-source projects.

Continue reading: curl Patches 18 Vulnerabilities, Including a 25-Ye…
DirtyClone Linux Kernel Vulnerability Enables Root Privilege Escalation

DirtyClone Linux Kernel Vulnerability Enables Root Privilege Escalation

RedSide Security June 29, 2026 Vulnerability 64 views

DirtyClone (CVE-2026-43503) is a newly disclosed Linux kernel privilege escalation vulnerability that allows local attackers to gain root access by abusing packet cloning and page-cache corruption. Researchers have released a working exploit, making immediate patching essential for affected Linux systems.

Continue reading: DirtyClone Linux Kernel Vulnerability Enables Root…
Why RedSide Security is Armenia's Top Cybersecurity Company

Why RedSide Security is Armenia's Top Cybersecurity Company

RedSide Security June 28, 2026 RedSide Security News 61 views

RedSide Security is helping organizations across Armenia strengthen their cybersecurity posture through penetration testing, security assessments, incident response, and exposure monitoring. Discover why businesses trust RedSide Security to protect their critical assets and infrastructure.

Continue reading: Why RedSide Security is Armenia's Top Cybersecurit…
Nation-State Hackers Target Water Utilities Across the U.S. and Europe

Nation-State Hackers Target Water Utilities Across the U.S. and Europe

RedSide Security June 28, 2026 Data Leaks & Breaches 55 views

Nation-state actors linked to Iran, Russia, and China are increasingly targeting water and wastewater infrastructure across the U.S. and Europe. By exploiting exposed PLCs, weak credentials, and poor network segmentation, attackers are gaining access to critical systems that support millions of people and positioning themselves for future disruptive operations.

Continue reading: Nation-State Hackers Target Water Utilities Across…
Critical Linux Kernel Flaw Allows Unprivileged Users to Gain Root Access

Critical Linux Kernel Flaw Allows Unprivileged Users to Gain Root Access

RedSide Security June 28, 2026 CVE 68 views

Critical Linux kernel vulnerability CVE-2026-46331 allows unprivileged users to gain root access by exploiting a page-cache corruption flaw in the net/sched act_pedit subsystem. The issue affects Linux kernels 5.18 through 7.1-rc6 and has been successfully demonstrated against RHEL, Debian, and Ubuntu systems.

Continue reading: Critical Linux Kernel Flaw Allows Unprivileged Use…
Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards

Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards

RedSide Security June 10, 2026 Tools & Technology 85 views

Anthropic has released Claude Fable 5 with built-in cybersecurity safeguards and a restricted twin model, Mythos 5, highlighting a new dual-track approach to AI deployment where capability and security controls are separated.

Continue reading: Anthropic Releases Claude Fable 5, Its Most Powerf…
New Open-Source Tool: TeleSink - Turning Malware C2 Against Itself

New Open-Source Tool: TeleSink - Turning Malware C2 Against Itself

RedSide Security June 10, 2026 Tools & Technology 137 views

TeleSink is an open-source malware analysis tool that redirects Telegram bot traffic into a controlled local environment, enabling real-time extraction of bot tokens, chat IDs, and exfiltrated data without manual deobfuscation.

Continue reading: New Open-Source Tool: TeleSink - Turning Malware C…
Claude Code GitHub Action Flaw Let One Malicious Issue Hijack Repositories

Claude Code GitHub Action Flaw Let One Malicious Issue Hijack Repositories

RedSide Security June 05, 2026 Cyber Attacks 85 views

A critical flaw in Anthropic's Claude Code GitHub Action allowed attackers to potentially hijack repositories through a single GitHub issue. The vulnerability combined weak bot validation, prompt injection, and excessive workflow permissions, highlighting the growing security risks of AI-powered CI/CD automation.

Continue reading: Claude Code GitHub Action Flaw Let One Malicious I…
FIFA World Cup 2026 Fans Targeted by Massive Wave of Ticket Scams, Malware, and Phishing Attacks

FIFA World Cup 2026 Fans Targeted by Massive Wave of Ticket Scams, Malware, and Phishing Attacks

RedSide Security June 05, 2026 Cybercrime 109 views

Cybercriminals are aggressively targeting FIFA World Cup 2026 fans through thousands of fake websites, phishing campaigns, malicious streaming applications, and banking malware. Security researchers warn that ticket fraud, account takeovers, identity theft, and financial scams are expected to surge as the tournament approaches.

Continue reading: FIFA World Cup 2026 Fans Targeted by Massive Wave …
Critical Everest Forms Pro Vulnerability Actively Exploited to Compromise WordPress Sites

Critical Everest Forms Pro Vulnerability Actively Exploited to Compromise WordPress Sites

RedSide Security June 05, 2026 Vulnerability 67 views

Threat actors are actively exploiting a critical remote code execution vulnerability in the Everest Forms Pro WordPress plugin. The flaw allows unauthenticated attackers to execute arbitrary PHP code, create administrator accounts, deploy web shells, and fully compromise affected websites.

Continue reading: Critical Everest Forms Pro Vulnerability Actively …