Less panic patching, more precision

Welcome to this week's edition of the Threat Source newsletter. Recently, Martin closed his introduction with a warning: Ready or not, the time of much patching...

ScadaBR – Multiple Vulnerabilities

ScadaBR - Multiple Vulnerabilities Multiple vulnerabilities affect ScadaBR. Tenable was unsuccessful in contacting the project. Recent publications indicate similar difficulty. CVE-2026-9645 Authenticated Remote Code Execution...

Jinan USR IOT Technology Limited (PUSR) USR-W610 RS232/485 to Wi-Fi/Ethernet Converter

View CSAF Summary Successful exploitation of this vulnerability could result in an attacker gaining administrator access to the device. The following versions of Jinan USR IOT Technology...

MacGregor Voyage Data Recorder (VDR) G4e

View CSAF Summary Successful exploitation of these vulnerabilities could result in an attacker gaining administrator access to the device. The following versions of MacGregor Voyage Data Recorder...

ABB EIBPORT

View CSAF Summary ABB is aware of vulnerabilities in the product versions listed as affected in the advisory. A firmware update is available that resolves these...

ABB Busch-Welcome 2 Wire Door Opener Actuator

View CSAF Summary ABB is aware of vulnerabilities in the product versions listed as affected in the advisory. An attacker who successfully exploited this vulnerability could...

DICOM, Pydicom, GDCM, and Orthanc: A technical tour of what really happens in the...

Over the last decade, DICOM parsing has become an active research topic. The reason is simple: DICOM is both critical and complicated. Hospitals rely...

Kemper – 269,299 breached accounts

In April 2026, the American insurance holding company Kemper Corporation was named by the ShinyHunters ransomware group in a "pay or leak" extortion campaign....

Citrix NetScaler Memory Overread Vulnerability

Exploitation activity targeting vulnerable Citrix NetScaler ADC and Gateway appliances remains persistent and widespread, with FortiGuard Labs telemetry continuously observing attack attempts from global...

Elastic Stack 8.19.16 released

Version 8.19.16 of the Elastic Stack was released today. We recommend you upgrade to this latest version. We recommend 8.19.16 over the previous versions...

Latest article

Siemens KACO Blueplanet Inverters

View CSAF Summary KACO blueplanet Inverters contain multiple vulnerabilities that could allow an attacker to derive the credentials from the devices serial number and misuse them...

Windows Netlogon Remote Code Execution Vulnerability

What is the Vulnerability? A critical vulnerability, CVE-2026-41089, affecting the Windows...

Attackers exploiting unpatched Cisco SD-WAN flaw

Cisco warns customers of an actively exploited high-severity vulnerability in Catalyst SD-WAN Manager, an enterprise network management system that has...

ICYMI: May 2026 @AWS Security

Read all about the latest AWS security features, compliance updates, and hands-on resources in our new, monthly digest posts. You’ll find expert blog posts,...