CISA to allow researchers to report vulnerabilities to exploited bugs catalog
2026-05-26T08:51:51Z•eabf6b9e41e0c6578c40787ae9e4aa15bae342d55e53ae55d9048c5b00722b55
CISADDoS botnetFBI advisoryKEVKali365KimWolfKnown Exploited VulnerabilitiesMeta settlementMicrosoft 365OAuth token theftSupreme Courtbotnet takedowngeofence searchesincident responsephishing-as-a-serviceprivacy lawstudent mental healthvulnerability disclosure
What happened
A roundup of security and privacy developments: CISA launched a nomination form to let researchers, vendors, and partners submit bugs for inclusion in its Known Exploited Vulnerabilities (KEV) catalog; the FBI warned about Kali365, a Telegram-based phishing‑as‑a‑service that harvests OAuth tokens to enable large-scale Microsoft 365 account takeover; a Canadian operator of the KimWolf DDoS-for-hire botnet was arrested and charged after infecting over a million devices; Meta settled a school-district lawsuit alleging addictive product design harmed students’ mental health; and legal experts are‑
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- therecord_media
- Record identifier
- eabf6b9e41e0c6578c40787ae9e4aa15bae342d55e53ae55d9048c5b00722b55
- Enrichment time
- 2026-05-26T08:51:51Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.