CYBERSECURITY INTELLIGENCE
News that matters, without the noise.
Search current cybersecurity reporting locally in this app. Search terms are not sent to AdvisoryLoom. The Professional plan adds Watchlists, structured My Intelligence, and AI briefings.
Private search: the term stays in this browser and is matched against a generic content feed.PRIVATE LOCAL SEARCH
Search results on this device
Enter a search term. Nothing you type is sent to AdvisoryLoom.
LATEST COVERAGE
Latest cybersecurity news
Email threat landscape: Q2 2026 trends and insights
In this article Tycoon2FA Q2 disruption impact QR code phishing attacks CAPTCHA-gated phishing tactics Malicious payloads Business email
How AI guardrails are impeding the work of offensive cybersecurity researchers
We spoke with several cybersecurity researchers, who look for unknown vulnerabilities and develop tools to exploit them, about
DSA-6399-1 wordpress – security update
https://security-tracker.debian.org/tracker/DSA-6399-1
ZDI-26-452: Dify AI Workflow oauth_redirect_url Open Redirect Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Dify. User interaction is required
ZDI-26-451: Docker Desktop for macOS Inference Server Permissive Allow List Sandbox Escape Vulnerability
This vulnerability allows local attackers to escape the model runner sandbox on affected installations of Docker Desktop for
ZDI-26-450: AzeoTech DAQFactory CTL File Parsing Use-After-Free Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of AzeoTech DAQFactory. User interaction is
Russian Hackers Exploit Zimbra Zero-Day Against US, Ukraine Targets
A state-sponsored threat group, dubbed “Laundry Bear,” sends “half-click” phishing emails that require a victim only to open
New Dolphin X malware uses AI to rank high-value targets
A new Dolphin X remote access trojan claims to use an AI-powered profiling feature to score and rank infected
Australian energy provider Origin says data breach exposes client data
Origin Energy has confirmed that an unauthorized party accessed and subsequently leaked customer data online, exposing sensitive personally
USN-8602-1: libinput vulnerability
It was discovered that libinput did not properly escape device properties. A local attacker could possibly use this