CISA alerts on Viber cloak mode TLS fingerprinting
Viber's Cloak mode on Android and Windows uses a static TLS ClientHello that can be detected and blocked, possibly causing DoS.
Signals are individual enterprise-technology developments, captured as they happen: product launches, funding, partnerships, executive moves, vulnerabilities, and announcements across cloud infrastructure, networking, security, and AI. Looking for the synthesis? See Briefs
Decision Insights Threat Desk • March 5, 2026
Viber's Cloak mode on Android and Windows uses a static TLS ClientHello that can be detected and blocked, possibly causing DoS.
Decision Insights Threat Desk • March 2, 2026
CISA reports a command injection flaw in ModelScope ms-agent that allows arbitrary OS commands via crafted prompt input.
Decision Insights Threat Desk • February 10, 2026
CASL Ability 2.4.0–6.7.4 contains a prototype pollution flaw that can modify Object.prototype in Node.js.
Decision Insights Signals • February 8, 2026
CompTIA and SGInnovate signed an MOU to provide certifications and a CyberReady+ bootcamp for Singapore's deep tech talent.
Decision Insights Coverage • February 5, 2026
Netskope found Bing search ads that routed U.S. users to tech support pages hosted in Azure Blob Storage.
Decision Insights Signals • February 4, 2026
Alice released Caterpillar, a free open-source scanner for OpenClaw that flagged malicious skills used by about 6,000 users.
Decision Insights Coverage • January 28, 2026
Netskope warns MoltBot allows unauthenticated remote access and full host control and recommends sandboxing or blocking installations.
Decision Insights Signals • January 28, 2026
Salt Security released GenAI API summaries and a redesigned Deep Context Side Drawer to clarify API purpose and risk.
Decision Insights Threat Desk • January 20, 2026
CISA flags a one-byte stack overflow in GNU libtasn1 v4.20.0 and earlier that can corrupt memory when parsing ASN.1.
Decision Insights Threat Desk • January 16, 2026
Livewire Filemanager flaw allows unauthenticated uploaded PHP files to execute on Laravel web servers.
Decision Insights Threat Desk • January 16, 2026
CISA reports vulnerabilities in The Librarian that exposed internal prompts and allowed backend access.
Decision Insights Threat Desk • January 9, 2026
BeeS patched an SQL injection in its BET portal and applied automatic updates; clients do not need to take action.
Decision Insights Threat Desk • December 17, 2025
UEFI firmware flaws can prevent IOMMU initialization, letting PCIe devices access memory before the OS loads.
Decision Insights Signals • December 17, 2025
Black Duck's report from a 540-respondent survey found 95% used AI tools while 24% applied full IP, license, security and quality checks to AI-generated code.
Decision Insights Threat Desk • December 16, 2025
Siemens Gridscale X Prepay has username-enumeration and account-lock bypass flaws that can allow continued access after lock.
Decision Insights Signals • December 15, 2025
KnowBe4 introduced customizable deepfake training to simulate AI-generated threats and teach detection techniques.
Decision Insights Threat Desk • December 11, 2025
CISA issued 12 ICS advisories covering products from Johnson Controls, Siemens, AzeoTech, OpenPLC_V3, GDCM, and Varex Imaging.
Decision Insights Threat Desk • December 9, 2025
CISA added CVE-2025-6218 and CVE-2025-62221 to its Known Exploited Vulnerabilities catalog, citing evidence of active exploitation.
Decision Insights Threat Desk • December 9, 2025
CISA issued three ICS advisories covering U-Boot, a Festo LX appliance, and India-based CCTV cameras.
A synthesis of what changed across the vendors, projects and technologies tracked here. Published every two weeks. Subscribing creates a free Decision Insights account.