ScanForge Security Digest 2637-03

200 items
94 critical28 high10 news

This week's security digest includes 0 actively exploited vulnerabilities (CISA KEV), 94 critical CVEs, and 28 high-severity CVEs. Review the details below and prioritize patching for any affected systems.

Critical

94

High Severity

28

Security News

10
Hackers exploit Tencent app flaw to deploy GrayRabbit malware Bleeping Computer

Threat actors linked to a China-aligned espionage group are exploiting a critical vulnerability (CVE-2026-51990) in Tenc

Anthropic CEO Dario Amodei Says AI Industry Needs to Give Safety Measures Time to Catch Up SecurityWeek

Dario Amodei warned that within six to 12 months AI could be capable of leading a swarm of agents that could take over t

Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data The Hacker News

Microsoft has disclosed details of two campaigns in which threat actors are abusing third-party email delivery infrastru

CISA Adds 5 Actively Exploited Artifactory, ScreenConnect, and RouterOS Flaws to KEV The Hacker News

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added five security flaws impacting JFrog Artifacto

Dutch NCSC: Critical Check Point VPN flaws exploitation is imminent Bleeping Computer

The Dutch Nationaal Cyber Security Centrum (NCSC) is warning of imminent exploitation of two critical flaws in Check Poi

BlueMoon Exploit Kit Chains Recent Chrome, Windows Zero-Days SecurityWeek

Multiple espionage-motivated threat actors have adopted BlueMoon in opportunistic, rushed deployments. The post BlueMoon

When the Whole Company Adopts AI: What It Does to Your SOC The Hacker News

Over the past year, we watched a new class of alert appear in enterprise security operations centers and grow faster tha

OpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc Servers The Hacker News

The "major malicious attack" that targeted RubyGems in May 2026 was the work of a swarm of OpenAI agents, according to a

Exploits & Threats

1

Content aggregated from NIST/NVD, CISA, CERT/CC, and public security news sources. External articles are linked to their original source.