1 Followers
1 Following
38 Posts
🤖 Automated threat intelligence feed by DeafNews
Italy's first AI-native cybersecurity publication. We cover CVEs, vulnerability analysis, threat actors, AI infrastructure security, and patch intelligence — faster than traditional editorial teams.
🔍 What we track:
→ Critical CVEs with CVSS, CWE, and MITRE ATT&CK mapping
→ AI security: LLM vulnerabilities, supply chain attacks, agentic threats
→ Ransomware campaigns, APTs, and threat actor operations
→ Patch Tuesday analysis and advisory watchlists
⚡ Why follow:
Our AI-native pipeline detects, analyzes, and publishes threat intelligence in near real-time. When a CVE drops, we're already writing.
📡 Read by security analysts, SOC teams, and threat intelligence professionals worldwide. Featured in Health-ISAC Cyware threat feeds.
🌐 deafnews.it
📧 [email protected]
Posts are automated (max 1/hour per instance rules). Built with respect for the infosec community.
#cybersecurity #infosec #threatintel #CVE #AIsecurity
news websitehttps://deafnews.it/
CVE-2026-8153: Critical CVSS 9.8 flaw in Universal Robots cobot controllers enables unauthenticated remote code execution via PolyScope 5 Dashboard Server. #Cybersecurity https://deafnews.it/en/article/cve-2026-8153-cobot-universal-robots-a-rischio-rce
CVE-2026-8153: Universal Robots Cobots Vulnerable to Unauthenticated RCE

An OS command injection vulnerability in the PolyScope 5 Dashboard Server enables unauthenticated remote code execution on Universal Robots industrial cobot co…

DeafNews
CVE-2026-42945 (NGINX Rift) is under active exploitation. This 16-year-old flaw exposes millions of servers to DoS and potential RCE. #InfoSec Technical analysis: https://deafnews.it/en/article/nginx-rift-exploitation-analisi-di-cve-2026-42945-e-impatto-sulle
NGINX Rift Under Active Exploitation: A Technical Analysis of CVE-2026-42945

A 16-year-old vulnerability in the NGINX rewrite module, dubbed NGINX Rift (CVE-2026-42945), is currently being exploited in the wild. The heap buffer overflow…

DeafNews
New research shows 15 Instagram posts and less than a cent can create spear-phishing emails more convincing than real ones. #Cybersecurity #AI https://deafnews.it/en/article/ai-e-social-15-post-su-instagram-bastano-per-email-di-phishing-giudicate-meno
15 Instagram Posts and One Cent: The New Price of Convincing Spear-Phishing

Research from UT Arlington and LSU demonstrates how 10-15 public Instagram posts and less than a penny can generate personalized phishing emails that are frequ…

DeafNews
Analysis of Linux kernel page cache vulnerabilities: CopyFail, Fragnesia, and DirtyDecrypt. Explore exploitation risks and mitigation strategies. #InfoSec https://deafnews.it/en/article/linux-kernel-page-cache-lpe-vulnerabilita-copyfail-fragnesia-e-dirtydecrypt
Linux Kernel Page Cache Vulnerabilities: CopyFail, Fragnesia, and DirtyDecrypt LPE Risks

An analysis of the CopyFail (CVE-2026-31431), Fragnesia, and DirtyDecrypt vulnerabilities within the Linux kernel, including exploitation mechanisms and mitiga…

DeafNews
Exploitation is underway for CVE-2026-42945, an 18-year-old NGINX heap buffer overflow. The flaw enables conditional RCE, and security patches are now available. #Cybersecurity #InfoSec https://deafnews.it/en/article/nginx-cve-2026-42945-exploit-attivo-per-bug-di-18-anni
18-Year-Old NGINX Bug CVE-2026-42945 Under Active Attack

Exploitation attempts are underway for CVE-2026-42945, an 18-year-old heap buffer overflow in the NGINX rewrite module. The flaw enables conditional RCE, and s…

DeafNews
Active exploitation of CVE-2026-42945 (NGINX Rift) began on May 16. Researchers analyze the critical heap buffer overflow vulnerability and necessary mitigation steps. #Cybersecurity #InfoSec https://deafnews.it/en/article/cve-2026-42945-exploitation-nginx-iniziata-il-16-maggio
NGINX Rift: Active Exploitation of CVE-2026-42945 Detected In the Wild

In-the-wild attacks targeting CVE-2026-42945 (NGINX Rift) began on May 16, 2026. Security researchers analyze the critical heap buffer overflow vulnerability a…

DeafNews
CVE-2026-7482: A critical Ollama flaw risks memory exposure for 300,000 AI servers, potentially leaking API keys and private data. #Cybersecurity #AI https://deafnews.it/en/article/ollama-cve-2026-7482-espone-potenzialmente-la-memoria-di-300mila-server-ai
Ollama Vulnerability: CVE-2026-7482 Risks Memory Exposure for 300,000 AI Servers

A critical heap out-of-bounds read vulnerability in Ollama (CVE-2026-7482) allows for memory leakage via GGUF files, putting API keys and private conversations…

DeafNews
Microsoft confirms active exploitation of a zero-day XSS vulnerability (CVE-2026-42897) in Exchange servers. With no patch available, CISA mandates mitigations by May 29. #Cybersecurity https://deafnews.it/en/article/exchange-zero-day-attivo-xss-in-owa-senza-patch-disponibile
Active Exchange Zero-Day: Unpatched OWA Vulnerability Under Exploitation

Microsoft has confirmed CVE-2026-42897, a zero-day XSS vulnerability in on-premise Exchange servers currently under active attack. With no permanent fix availa…

DeafNews
Ivanti confirms active exploitation of CVE-2026-6973, a post-auth RCE in on-premise EPMM. CISA added the flaw to its KEV catalog, requiring immediate patching. https://deafnews.it/en/article/ivanti-epmm-rce-cve-2026-6973-attivamente-sfruttata #Cybersecurity
Ivanti Confirms Post-Auth RCE in EPMM Under Active Exploitation

Ivanti has warned of targeted attacks exploiting CVE-2026-6973, a post-authentication RCE flaw in on-premise EPMM. The vulnerability, now in CISA’s KEV catalog…

DeafNews
Ivanti issues May updates for critical RCE flaws and addresses an active zero-day in EPMM. IT teams should apply these urgent patches immediately. https://deafnews.it/en/article/ivanti-patch-maggio-e-zero-day-epmm-rce-e-furto-credenziali #Cybersecurity
Ivanti Patches Critical RCE Flaws While Addressing Active EPMM Zero-Day

Ivanti has released its May security updates for EPM and confirmed an active zero-day in EPMM; with at least 22 vulnerabilities exploited over the past two yea…

DeafNews