Daily Pulse

Stay informed with today's critical security updates

Every organisation is different. The free "Daily Pulse" feed shows the broader threat landscape.

Want this specific and tailored to your organisation?

ThreatInsights – Click for more info

The Daily Pulse is refreshed automatically every day at 9:00 AM GMT

Want to learn more about Cyber Threat Intelligence?

Check out our free online self-paced training course.

Start Learning Now
Filter by type:(20 items)
Campaign

Wednesday, June 24, 2026

WHAT

FortiBleed Targeted FortiGate Firewalls in 110 Million-Credential Harvesting Operation

WHY IT MATTERS

FortiBleed Targeted FortiGate Firewalls in 110 Million-Credential Harvesting Operation.

WHAT TO DO

Update threat detection rules, brief security team on TTPs, enhance monitoring for IoCs, and review defensive posture against similar attacks.

Threat

Wednesday, June 24, 2026

WHAT

Data Exposure Flaws Threaten Dify AI Platform Used by 1 Million Apps

WHY IT MATTERS

Attackers could abuse Dify's multi-tenant cloud service to read private chats, preview other tenants' documents, and reach internal APIs.

WHAT TO DO

Assess potential impact to your environment, update security controls, inform relevant stakeholders, and monitor for related activity.

Campaign

Wednesday, June 24, 2026

WHAT

FortiBleed Attackers Turn Firewalls Into Credential Stealers as Heists Persist

WHY IT MATTERS

The threat actors engineered a Golang-based sniffer to target 430,000 FortiGate firewalls and identify 110 million credentials in the ongoing global campaign.

WHAT TO DO

Update threat detection rules, brief security team on TTPs, enhance monitoring for IoCs, and review defensive posture against similar attacks.

CVE

Wednesday, June 24, 2026

WHAT

Siemens WinCC Certificate Manager

WHY IT MATTERS

json"><strong>View CSAF</strong></a></p> <h2>Summary</h2> <p><strong>WinCC Certificate Manager insufficiently protects key material that could allow an attacker to extract sensitive information. </strong></p> <p>The following versions of Siemens WinCC Certificate Manager are affected:</p> <ul> <l...

WHAT TO DO

Review affected systems, apply patches immediately, monitor for exploitation attempts, and verify patch deployment across all endpoints.

Campaign

Wednesday, June 24, 2026

WHAT

Watering Hole Attacks Push ScanBox Keylogger

WHY IT MATTERS

Researchers uncover a watering hole attack likely carried out by APT TA423, which attempts to plant the ScanBox JavaScript-based reconnaissance tool.

WHAT TO DO

Update threat detection rules, brief security team on TTPs, enhance monitoring for IoCs, and review defensive posture against similar attacks.

CVE

Wednesday, June 24, 2026

WHAT

ABB Freelance Security Lock

WHY IT MATTERS

json"><strong>View CSAF</strong></a></p> <h2>Summary</h2> <p><strong>Successful exploitation of this vulnerability could allow access to underlying OS functions even when Freelance Operations is active, depending on system configuration and user permissions. </strong></p> <p>The following version...

WHAT TO DO

Review affected systems, apply patches immediately, monitor for exploitation attempts, and verify patch deployment across all endpoints.

Threat

Wednesday, June 24, 2026

WHAT

The Purchase Scam Tactic Headed for the World Cup | Recorded Future

WHY IT MATTERS

A purchase scam tactic hijacks organic search through compromised sites, and it’s built to scale into 2026 FIFA World Cup fraud. How it works and how to respond.

WHAT TO DO

Assess potential impact to your environment, update security controls, inform relevant stakeholders, and monitor for related activity.

Threat

Wednesday, June 24, 2026

WHAT

Recorded Future Launches Impact and Metrics Dashboard

WHY IT MATTERS

See the business value of your intelligence program in one live, continuously updated dashboard, built for the conversations that matter most with the executives who own budget and strategy.

WHAT TO DO

Assess potential impact to your environment, update security controls, inform relevant stakeholders, and monitor for related activity.

Threat

Wednesday, June 24, 2026

WHAT

Algerian man charged with running two cybercrime marketplaces

WHY IT MATTERS

Abdellah Belmili allegedly ran two black-market websites selling stolen financial credentials and custom-built phishing kits targeting major American banks, federal prosecutors say.

WHAT TO DO

Assess potential impact to your environment, update security controls, inform relevant stakeholders, and monitor for related activity.

Threat

Wednesday, June 24, 2026

WHAT

Fake AI Agent Skill Passed Security Scans and Reportedly Reached 26,000 Agents

WHY IT MATTERS

Fake AI Agent Skill Passed Security Scans and Reportedly Reached 26,000 Agents.

WHAT TO DO

Assess potential impact to your environment, update security controls, inform relevant stakeholders, and monitor for related activity.

AI

Wednesday, June 24, 2026

WHAT

OpenAI Expands Daybreak With GPT-5.5-Cyber to Help Defenders Patch Security Flaws

WHY IT MATTERS

OpenAI Expands Daybreak With GPT-5.5-Cyber to Help Defenders Patch Security Flaws

WHAT TO DO

Deploy adversarial robustness testing, implement input anomaly detection, use ensemble models for critical decisions, and add confidence thresholds.

AI

Wednesday, June 24, 2026

WHAT

Dialog Claims It Was Hacked. A Misconfigured Website Left Its Members Exposed — The private events group, cofounded by Peter Thiel, says a “criminal” hacker is behind a breach that exposed members’ personal details. WIRED found no evidence a break-in was needed to access the f...

WHY IT MATTERS

The private events group, cofounded by Peter Thiel, says a “criminal” hacker is behind a breach that exposed members’ personal details. WIRED found no evidence a break-in was needed to access the files.

WHAT TO DO

Deploy adversarial robustness testing, implement input anomaly detection, use ensemble models for critical decisions, and add confidence thresholds.

AI

Wednesday, June 24, 2026

WHAT

Amazon is selling Pokémon Chaos Rising Elite Trainer Boxes for $20 off during Prime Day — This latest Pokémon Elite Trainer Box includes 9 booster packs and many competitive accessories for less than $100 during Prime Day.

WHY IT MATTERS

This latest Pokémon Elite Trainer Box includes 9 booster packs and many competitive accessories for less than $100 during Prime Day.

WHAT TO DO

Deploy adversarial robustness testing, implement input anomaly detection, use ensemble models for critical decisions, and add confidence thresholds.

AI

Wednesday, June 24, 2026

WHAT

Agentic AI: The Weapon That No Longer Needs a Warrior — Every weapon begins as an extension of the hand that holds it. The spear lengthened the reach of the arm. The bow sent the point flying without the throw. The rifle placed a man's death a quarter m...

WHY IT MATTERS

Every weapon begins as an extension of the hand that holds it. The spear lengthened the reach of the arm. The bow sent the point flying without the throw. The rifle placed a man's death a quarter mile beyond his sight, and the aircraft carried that death across oceans. At each turn, the distance between the warrior and the wound grew wider, and yet one thing never moved: a human chose the target

WHAT TO DO

Deploy adversarial robustness testing, implement input anomaly detection, use ensemble models for critical decisions, and add confidence thresholds.

AI

Wednesday, June 24, 2026

WHAT

What&#8217;s in the container? Analyzing vulnerabilities, risks and protection with Kaspersky Container Security and the KIRA AI assistant — What are the main risks for container environments: vulnerabilities, supply chain attacks, configuration errors; how to improve container security and how Kaspersky Container Security with the KIRA...

WHY IT MATTERS

What are the main risks for container environments: vulnerabilities, supply chain attacks, configuration errors; how to improve container security and how Kaspersky Container Security with the KIRA AI assistant can help.

WHAT TO DO

Audit ML dependencies, implement package pinning with hash verification, use isolated training environments, and scan for known malicious packages.

AI

Wednesday, June 24, 2026

WHAT

Retro gaming fans are the new target for fake GitHub malware — Retro gaming fans should be careful with GitHub projects that claim to be tools or plugins for their consoles. We looked at one example aimed at PlayStation Vita owners.

WHY IT MATTERS

Retro gaming fans should be careful with GitHub projects that claim to be tools or plugins for their consoles. We looked at one example aimed at PlayStation Vita owners.

WHAT TO DO

Deploy adversarial robustness testing, implement input anomaly detection, use ensemble models for critical decisions, and add confidence thresholds.

AI

Wednesday, June 24, 2026

WHAT

The Global Namespace Risk: Universal Bucket Hijacking Technique for Cloud Data Exfiltration — Unit 42 research details how attackers could exploit global name uniqueness in bucket hijacking to redirect cloud data streams across major CSPs. The post The Global Namespace Risk: Universal Bucke...

WHY IT MATTERS

Unit 42 research details how attackers could exploit global name uniqueness in bucket hijacking to redirect cloud data streams across major CSPs. The post The Global Namespace Risk: Universal Bucket Hijacking Technique for Cloud Data Exfiltration appeared first on Unit 42. ]]>

WHAT TO DO

Deploy adversarial robustness testing, implement input anomaly detection, use ensemble models for critical decisions, and add confidence thresholds.

AI

Wednesday, June 24, 2026

WHAT

Document delivery scams: What are they and what’s their goal? — A seemingly official voicemail turned out to be a scam. Learn how document delivery scams work and what to do if you receive one.

WHY IT MATTERS

A seemingly official voicemail turned out to be a scam. Learn how document delivery scams work and what to do if you receive one.

WHAT TO DO

Deploy adversarial robustness testing, implement input anomaly detection, use ensemble models for critical decisions, and add confidence thresholds.

AI

Wednesday, June 24, 2026

WHAT

LastPass confirms data breach in Klue supply chain attack — LastPass announced that hackers accessed customer data from its Salesforce environment after stealing the company's OAuth tokens in the Klue supply chain attack earlier this month. [...]

WHY IT MATTERS

LastPass announced that hackers accessed customer data from its Salesforce environment after stealing the company's OAuth tokens in the Klue supply chain attack earlier this month. [...]

WHAT TO DO

Audit ML dependencies, implement package pinning with hash verification, use isolated training environments, and scan for known malicious packages.

AI

Wednesday, June 24, 2026

WHAT

Webinar: Why email security teams are drowning in alerts — Phishing, BEC, and account takeover attacks continue to overwhelm security teams with alerts and investigations. This webinar explores how behavioral AI can help automate detection and response wor...

WHY IT MATTERS

Phishing, BEC, and account takeover attacks continue to overwhelm security teams with alerts and investigations. This webinar explores how behavioral AI can help automate detection and response workflows, reducing alert fatigue and improving operational efficiency. [...]

WHAT TO DO

Deploy adversarial robustness testing, implement input anomaly detection, use ensemble models for critical decisions, and add confidence thresholds.