LIVE · cybersecurity feed
Live wire
OpenAI Announced $1B in Defensive Tools for Water UtilitiesAttackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS CredentialsCVE-2026-59346 · Critical VMware Workstation and Fusion Flaw Lets VM Admins Execute Host CodeCVE-2026-32475 · Elementor Pro WordPress Plugin Vulnerability Exploited to Hack SitesBroadcom Patches Critical VMware Workstation and Fusion VM-Escape VulnerabilitiesHackers Leak Millions of Airport Passenger Records After Ransom RefusalUsing a VM to Contain an AI AgentCVE-2026-73749 · HPE Patches Critical RCE Vulnerabilities in AOS-CXCVE-2026-14894 · Over 440,000 Exploit Attempts Target Super Forms and Elementor Pro RCE FlawsCisco searched for IOS XR bugs and found so many it rolled them into an update release

dns

5 stories
malwarehigh

Cavern C2 Framework Evolves With DNS and Google Apps Script

Researchers have identified new components in the Cavern command-and-control framework, which is being used by Iranian nation-state actors. The framework now leverages DNS and Google Apps Script to disguise its malicious traffic as legitimate activity. This evolution aims to enhance its stealth capabilities in ongoing attacks targeting entities in Israel.

dns

Censys Internet Map links real-time DNS data to internet infrastructure

Censys has enhanced its Internet Map by integrating real-time DNS data. This allows security professionals to easily correlate domain names with the underlying internet infrastructure. The update aims to streamline investigations by consolidating information previously spread across multiple tools into a single platform.

dns

DNSFilter makes its DNS threat protection available to OEM partners

DNSFilter is now offering its DNS threat protection and privacy solutions to original equipment manufacturers (OEMs). This program allows other companies, such as ISPs and device makers, to integrate DNSFilter's services into their own products. Partners can opt for DNS-layer threat blocking or full-device encryption and privacy services, or both.

dns

Uncommon NIMLOC DNS Record Type Observed

The SANS Internet Storm Center has published an entry discussing the uncommon NIMLOC DNS record type, which has been observed appearing in network logs.

CVE-2024-27227high

Bringing Rust to the Pixel Baseband

Google is enhancing the security of its Pixel devices by integrating a memory-safe Rust-based DNS parser into the cellular modem firmware. This move aims to mitigate memory-safety vulnerabilities, a significant risk in the complex and remotely attackable modem code. The company hopes this initiative will encourage the wider adoption of memory-safe languages in low-level system programming.