Aggregator
CVE-2026-26948 | Dell Integrated Remote Access Controller up to 7.00.00.174/7.10.90.00 exposure of sensitive system information due to uncleared debug information (dsa-2026-113 / Nessus ID 303190)
CVE-2026-26945 | Dell Integrated Remote Access Controller up to 1.20.25.00/7.00.00.181/7.20.10.50 process control (dsa-2026-113)
CVE-2026-27135 | nghttp2 up to 1.68.0 HTTP/2 nghttp2_session_terminate_session assertion (GHSA-6933-cjhr-5qg6 / EUVD-2026-12919)
CVE-2026-29856 | aaPanel 7.57.0 redos
CVE-2026-23270 | Linux Kernel up to 6.12.76/6.18.17/6.19.7/7.0-rc2 sched act_ct use after free (EUVD-2026-12913 / WID-SEC-2026-0790)
CVE-2026-23268 | Linux Kernel up to 6.12.76/6.18.17/6.19.7/7.0-rc3 Apparmorfs Interface permission (EUVD-2026-12910 / Nessus ID 303000)
CVE-2026-23267 | Linux Kernel up to 6.1.163/6.6.126/6.12.73/6.18.12/6.19.2 f2fs_do_write_node_page denial of service (EUVD-2026-12908 / WID-SEC-2026-0790)
CVE-2026-26740 | Giflib 5.2.2 EGifGCBToExtension buffer overflow (EUVD-2026-12914)
CVE-2026-23266 | Linux Kernel up to 6.19.2 fbdev nv3_arb state issue (EUVD-2026-12907 / Nessus ID 303156)
CVE-2026-23265 | Linux Kernel up to 6.18.12/6.19.2 fs/f2fs/data.c f2fs_write_end_io privilege escalation (EUVD-2026-12904 / WID-SEC-2026-0790)
CVE-2026-23264 | Linux Kernel up to 6.1.162/6.6.123/6.12.69/6.18.9 amdgpu_aspm denial of service (EUVD-2026-12903 / Nessus ID 303164)
Securden Unveils Unified Identity Security Platform at RSAC 2026, Combining PAM, EPM, IGA, and More
Securden launched what it calls the world’s first truly unified identity security platform at RSA Conference 2026, consolidating privileged access management, endpoint privilege management, identity governance, cloud entitlement management, non-human identity security, and AI agent security into a single product. The announcement targets a persistent problem in enterprise security: organizations typically address these identity security..
The post Securden Unveils Unified Identity Security Platform at RSAC 2026, Combining PAM, EPM, IGA, and More appeared first on Security Boulevard.
Hyperproof Launches AI Guided Experiences for Compliance Operations at RSAC 2026
Hyperproof announced AI Guided Experiences at RSA Conference 2026, its latest push to use AI to reduce the manual effort at the core of compliance operations. The new capabilities move beyond search and summarization, which the company introduced in September 2025, into workflow execution inside the Hyperproof platform. AI Guided Experiences combine intelligent agents with..
The post Hyperproof Launches AI Guided Experiences for Compliance Operations at RSAC 2026 appeared first on Security Boulevard.
Dell Wyse Management Vulnerabilities Enables Complete System Compromise
A recent security analysis has revealed how chaining seemingly minor logic flaws in Dell Wyse Management Suite (WMS) On-Premises can result in a complete system compromise. Security researchers demonstrated that combining two distinct vulnerabilities allows an unauthenticated attacker to bypass security controls and achieve remote code execution (RCE) on the management server. CVE-2026-22765 (CVSS 8.8): […]
The post Dell Wyse Management Vulnerabilities Enables Complete System Compromise appeared first on Cyber Security News.
Experts warn of a ‘loud and aggressive’ extortion wave following Trivy hack
Attackers compromised the open-source security tool and published malicious versions of the software. Mandiant warns the fallout could impact up to 10,000 downstream victims.
The post Experts warn of a ‘loud and aggressive’ extortion wave following Trivy hack appeared first on CyberScoop.
imper.ai Launches Workforce Identity Security Platform at RSAC 2026
imper.ai made its public debut at RSAC 2026 with the launch of its Workforce Identity Security platform, built to stop impersonation and account takeover across the employee lifecycle. The company is targeting a specific gap it says current identity tools leave wide open: attackers who bypass authentication entirely rather than breaking through it. As phishing-resistant..
The post imper.ai Launches Workforce Identity Security Platform at RSAC 2026 appeared first on Security Boulevard.
Cy4Data Labs Brings Real-Time Insider Threat Detection to RSAC 2026
Cy4Data Labs announced at RSAC 2026 that its flagship platform Cy4Secure now includes a Behavior Engine for insider threat detection, designed to bring the time it takes to identify and contain a data breach from more than 200 days down to seconds. The Behavior Engine is built around a three-phase response model: Detect, Deny, Eject...
The post Cy4Data Labs Brings Real-Time Insider Threat Detection to RSAC 2026 appeared first on Security Boulevard.
ProjectDiscovery Launches Neo, an Autonomous Pentesting Platform, at RSAC 2026
ProjectDiscovery launched Neo commercially at RSAC 2026, bringing an autonomous penetration testing platform to market after winning the RSAC Innovation Sandbox in 2025. Neo performs end-to-end penetration tests, validates findings against live applications, and delivers what the company calls pentester-grade evidence. The platform is built by the team behind Nuclei, the open source vulnerability scanner..
The post ProjectDiscovery Launches Neo, an Autonomous Pentesting Platform, at RSAC 2026 appeared first on Security Boulevard.
Tanium Adds AI Governance, OT Endpoint Support, and Closed-Loop Remediation at RSAC 2026
Tanium used RSAC 2026 to announce a wave of platform updates aimed at pushing enterprises closer to fully autonomous IT operations. The new capabilities span security operations, exposure management, and endpoint management, and they lean heavily on AI and real-time endpoint intelligence. The headlining addition is Tanium Guardian Spotlight: AI Tools, which gives IT and..
The post Tanium Adds AI Governance, OT Endpoint Support, and Closed-Loop Remediation at RSAC 2026 appeared first on Security Boulevard.