Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

CVE-2026-71969: Out-of-bounds Write in OP-TEE optee_osCVE-2026-71969
0

OP-TEE OS through 4.10.0, fixed in commit 7b8b494, contains a buffer underwrite vulnerability in the RSA NOPAD encrypt and decrypt operations within the mbedTLS software backend and SE050 hardware driver that allows a malicious Trusted Application to corrupt secure-world heap memory by supplying an input length exceeding the RSA modulus size. When src_len exceeds rsa_len, the subtraction expression wraps to a large unsigned value, causing a subsequent memcpy to write attacker-controlled data before the destination buffer in S-EL1 secure-world heap memory.

Join the discussion
CVE-2026-71968: Use After Free in OP-TEE optee_osCVE-2026-71968
0

A use-after-free vulnerability exists in OP-TEE OS up to version 4.10.0 in the Trusted Application loader. This flaw allows attackers with the ability to load a signed Trusted Application to corrupt secure-world kernel memory by exploiting concurrent session handling without proper locking. The issue is triggered by setting the TA_FLAG_CONCURRENT flag in a user TA signed header, leading to memory corruption and use-after-free conditions in secure-world kernel memory.

Join the discussion
CVE-2026-71967: NULL Pointer Dereference in OP-TEE optee_osCVE-2026-71967
0

A null pointer dereference vulnerability exists in OP-TEE OS versions up to 4.10.0 in the Widevine pseudo-TA open_session handler. This flaw allows Normal World clients to cause a denial of service by triggering a crash in the trusted execution environment when the CFG_WIDEVINE_PTA configuration is enabled. The issue is fixed in a commit identified as 0aadfc2.

Join the discussion

Showing 1 to 3 of 3 results

Filters:Package: pkg:github/optee_os
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses