HackMyIP

Vulnerability News

434 stories tagged Vulnerability

← All cybersecurity news

2026-08-14SecurityWeek
Hackers Exploit Unpatched GeoServer Zero-Day Within Hours of Disclosure

Threat actors began exploiting an unpatched zero-day vulnerability in GeoServer within hours of its public disclosure, according to attack surface management firm WatchTowr. The se...

Zero-DayVulnerabilityThreat Intel
Read More → Use Tool →
2026-08-14Dark Reading
NIST Turns to AI to Tame the AI-Driven Vulnerability Surge

The National Institute of Standards and Technology (NIST) is confronting an uncomfortable paradox: the very artificial intelligence tools helping security researchers and attack...

AI SecurityVulnerabilityRegulation
Read More → Use Tool →
2026-08-14The Record
Commerzbank Hack: €30M Drained in 2023, 7 Arrested Across Germany and Brazil

German and Brazilian authorities have announced multiple arrests in connection with a late 2023 cyberattack that siphoned an estimated €30 million (approximately $34.7 million) fro...

Data BreachVulnerabilityIncident Response
Read More → Use Tool →
2026-08-14SecurityWeek
Boeing 737 Hack, Refrigeration Flaws, and Federal Agency Breach Exposed

Academic researchers have demonstrated that a concealed, coin-sized hardware device can compromise systems aboard a Boeing 737. According to a Wired report, the implant connects to...

VulnerabilityData BreachSupply Chain
Read More → Use Tool →
2026-08-13SecurityWeek
WordPress 7.0.4 Patches Critical RCE Flaw CVE-2026-65640

WordPress released version 7.0.4 on Wednesday to address a high-severity remote code execution vulnerability tracked as CVE-2026-65640, carrying a CVSS score of 8.8. The flaw allow...

VulnerabilityAuthentication
Read More → Use Tool →
2026-08-13Dark Reading
Critical VMware vCenter Flaw CVE-2026-59310 Exploited in Global Campaign

Security teams across the globe are scrambling to contain active exploitation of CVE-2026-59310, a critical vulnerability in VMware vCenter Server that threat actors began weaponiz...

VulnerabilityCloud SecurityThreat Intel
Read More → Use Tool →
2026-08-13SecurityWeek
Adobe Commerce CVE-2026-71362 Exploited Within Hours of Patch Release

Hackers began exploiting a critical Adobe Commerce vulnerability almost immediately after Adobe published its patch advisory, according to webstore security firm Sansec. Tracked as...

VulnerabilityAuthenticationZero-Day
Read More → Use Tool →
2026-08-13The Record
New Mirai Variant Evooo1Bot Targets Routers With Stealth Proxy Features

Security researchers at FortiGuard Labs have uncovered a new Linux-based Mirai variant dubbed Evooo1Bot that has been actively exploiting unpatched vulnerabilities in internet-faci...

MalwareThreat IntelVulnerability
Read More → Use Tool →
2026-08-13Dark Reading
Critical Flaw in Belgium's eID Extension Exposes Citizens to Remote Code Execution

A series of severe vulnerabilities discovered in the browser extension powering Belgium's national electronic identification (eID) system could allow attackers to execute arbitr...

VulnerabilityAuthentication
Read More → Use Tool →
2026-08-13The Hacker News
SharePoint CVE-2026-55040 Under Active Attack After Rapid7 PoC Release

Threat actors are actively weaponizing a critical Microsoft SharePoint authentication bypass vulnerability, CVE-2026-55040, following the public release of a proof-of-concept (PoC)...

VulnerabilityAuthenticationThreat Intel
Read More → Use Tool →
2026-08-12The Hacker News
Cisco ASA and FTD Flaw (CVE-2026-20349) Actively Exploited for DoS

Cisco has confirmed that a high-severity vulnerability in Secure Firewall Adaptive Security Appliance (ASA) Software and Secure Firewall Threat Defense (FTD) Software is being acti...

VulnerabilityThreat IntelIncident Response
Read More → Use Tool →
2026-08-12The Hacker News
ShieldBreak Zero-Day Bypasses Microsoft Defender Patch, Grants SYSTEM Access (PoC Released)

Security researcher Chaotic Eclipse has published a proof-of-concept exploit for a new Microsoft zero-day dubbed ShieldBreak, which the researcher claims fully bypasses the patch f...

Zero-DayVulnerability
Read More → Use Tool →
2026-08-12The Hacker News
SAP Patches Critical Commerce Cloud Flaw Enabling Remote Code Execution

SAP has rolled out emergency patches for a maximum-severity vulnerability in SAP Commerce Cloud (Data Hub Adapter) that could allow unauthenticated attackers to execute arbitrary c...

VulnerabilityCloud SecurityAuthentication
Read More → Use Tool →
2026-08-12The Hacker News
VMware vCenter Flaw Actively Exploited for Persistent Remote Access

Threat actors are actively weaponizing a critical directory-traversal vulnerability in Broadcom VMware vCenter (CVE-2026-59310, CVSS 9.8) to establish persistent remote access on c...

APTVulnerabilityThreat Intel
Read More → Use Tool →
2026-08-12The Hacker News
Enterprise Defenses Strong at Perimeter, Weak Inside: Picus 2026

Enterprise defenses are having one of their strongest years on record at the network perimeter, but collapse almost entirely once an attacker is inside. According to Picus Labs' ne...

Threat IntelIncident ResponseVulnerability
Read More → Use Tool →
2026-08-12The Record
CISA Orders Fed Agencies to Patch Microsoft Winsock Bug Exploited by Lazarus

CISA has directed U.S. federal agencies to patch CVE-2026-68820, a Windows Winsock vulnerability actively exploited by North Korea's Lazarus Group, by August 25. The flaw, which ca...

Zero-DayVulnerabilityAPT
Read More → Use Tool →
2026-08-12The Hacker News
Hidden AI Reasoning Flaw Leaked API Keys and Passwords Across Major LLMs

Researchers have disclosed a critical design flaw in the reasoning APIs of OpenAI, Anthropic, and Google that allowed weaker AI models to decode the internal reasoning traces of st...

AI SecurityLLM SecurityVulnerability
Read More → Use Tool →
2026-08-12The Record
Microsoft Patch Tuesday Fixes 419 Flaws as AI Accelerates Bug Discovery

Microsoft on Tuesday shipped fixes for 419 security vulnerabilities in one of its largest Patch Tuesday releases on record, underscoring how artificial intelligence is fundamentall...

VulnerabilityZero-DayAPT
Read More → Use Tool →
2026-08-12SecurityWeek
AI Security Startup Mindgard Bags $30M to Red-Team Vulnerable Models

London and Boston-based AI security startup Mindgard has closed a $30 million Series A funding round led by Album VC, bringing its total raised to approximately $42 million. Existi...

AI SecurityVulnerabilityZero-Day
Read More → Use Tool →
2026-08-12The Record
UK Criminal Records Office Breached 3 Times in 2 Years Over Unpatched CMS

Britain's ACRO Criminal Records Office has been formally reprimanded by the Information Commissioner's Office (ICO) after suffering three separate cyber intrusions between July 202...

Data BreachVulnerabilityIncident Response
Read More → Use Tool →
2026-08-12SecurityWeek
SharePoint Auth Bypass CVE-2026-55040 Exploited After Rapid7 PoC Release

Microsoft's July Patch Tuesday addressed CVE-2026-55040, a SharePoint vulnerability rooted in weak authentication that allows remote, unauthenticated attackers to bypass securit...

VulnerabilityAuthenticationThreat Intel
Read More → Use Tool →
2026-08-12The Hacker News
Adobe Fixes Three CVSS 10.0 Flaws in ColdFusion & Campaign Classic

Adobe has rolled out emergency patches addressing multiple critical security vulnerabilities across ColdFusion, Commerce, and Campaign Classic that could allow attackers to execute...

VulnerabilityCloud SecurityAuthentication
Read More → Use Tool →
2026-08-12SecurityWeek
Cisco Patches Firewall Zero-Day CVE-2026-20349 Exploited for DoS Attacks

Cisco released emergency patches on Tuesday for a zero-day vulnerability, tracked as CVE-2026-20349, affecting firewalls running Secure Firewall Adaptive Security Appliance (ASA) a...

Zero-DayVulnerability
Read More → Use Tool →
2026-08-11The Hacker News
Malicious SIM Card Flaw Exposes Cellular IoT Devices to Remote Takeover

A malicious SIM card can run attacker-controlled code directly inside the cellular modems powering electric-vehicle chargers, industrial routers, and automotive telematics units, a...

VulnerabilitySupply ChainAuthentication
Read More → Use Tool →
2026-08-11The Hacker News
GPT-5.6-Cyber: OpenAI's Exploit-Permissive AI Model Explained

OpenAI on Monday unveiled GPT-5.6-Cyber, a cybersecurity-focused variant of its GPT-5.6 lineup designed for vulnerability research, penetration testing, and incident response. Buil...

AI SecurityZero-DayVulnerability
Read More → Use Tool →
2026-08-11The Hacker News
Zoom Annotation Vulnerabilities Enable Hijacking of Meeting Participants

Three serious vulnerabilities in Zoom's annotation feature could have allowed meeting participants to hijack the computers of other attendees. The flaws, tracked as CVE-2026-53413 ...

VulnerabilityAI SecurityThreat Intel
Read More → Use Tool →
2026-08-11The Hacker News
Kimwolf v7 Botnet Masks HTTP/2 DDoS Traffic as Legitimate Browsing

Palo Alto Networks Unit 42 researchers Asher Davila, Chris Navarrete, and Doel Santos have uncovered Kimwolf v7, a significantly re-engineered iteration of the Kimwolf/AISURU Andro...

MalwareThreat IntelVulnerability
Read More → Use Tool →
2026-08-11The Hacker News
Microsoft Patches 398 Flaws Including Actively Exploited Windows Zero-Day

Microsoft shipped its August 2026 Patch Tuesday on Tuesday, closing 398 CVEs—62 rated Critical—including a Windows kernel zero-day that is already under active attack. The Zero Day...

Zero-DayVulnerabilityAPT
Read More → Use Tool →
2026-08-11KrebsOnSecurity
Microsoft Patches 398 Flaws Including Active Zero-Day in Windows afd.sys Driver

Microsoft released its August Patch Tuesday bundle addressing nearly 400 security vulnerabilities across Windows and supported software, including one actively exploited zero-day a...

VulnerabilityZero-DayAI Security
Read More → Use Tool →
2026-08-11Dark Reading
Gunra Ransomware Gang Exploits Fortinet Flaws to Bypass MFA

The Gunra ransomware-as-a-service (RaaS) operation has emerged as a significant threat to critical infrastructure organizations, leveraging leaked Conti source code and weaponizing...

RansomwareVulnerabilityAuthentication
Read More → Use Tool →
2026-08-11Dark Reading
Microsoft August Patch Tuesday: Prioritize Critical CVEs Over Volume

Microsoft released its August Patch Tuesday bundle this week, addressing a wide swath of vulnerabilities across Windows, Office, Exchange Server, and .NET Framework. While the raw ...

VulnerabilityIncident Response
Read More → Use Tool →
2026-08-11SecurityWeek
August 2026 Patch Tuesday: Microsoft Patches 421 Flaws, Including Exploited afd.sys Zero-Day

Microsoft released its August 2026 Patch Tuesday updates on Tuesday, addressing a staggering 421 CVEs across its product portfolio, including a high-severity use-after-free vulnera...

Zero-DayVulnerabilityAPT
Read More → Use Tool →
2026-08-11The Hacker News
Critical SharePoint Flaws Enable Unauthenticated RCE via AI Discovery

Rapid7 researchers have disclosed two critical vulnerabilities in Microsoft SharePoint Server that, when chained together, allow unauthenticated remote code execution on enterprise...

VulnerabilityZero-DayAI Security
Read More → Use Tool →
2026-08-11SecurityWeek
Adobe Patches Critical ColdFusion, Campaign Classic Flaws – Update Now

Adobe released security updates on Tuesday addressing more than 50 vulnerabilities across its product portfolio, including critical-severity flaws in ColdFusion, Campaign Classic, ...

VulnerabilityCloud Security
Read More → Use Tool →
2026-08-10Dark Reading
Outdated Cybercrime Laws Leave Security Researchers Exposed

A growing wave of ambiguous and outdated cybercrime legislation worldwide is putting ethical hackers and security researchers at legal risk, even when their work is conducted in go...

RegulationBug BountyVulnerability
Read More → Use Tool →
2026-08-10Dark Reading
Stop Checklist Patching: Why Choke-Point Defense Beats CVSS Scores

For decades, vulnerability management has been driven by the Common Vulnerability Scoring System (CVSS) — a framework that assigns numeric severity ratings to CVEs based on intrins...

VulnerabilityThreat IntelIncident Response
Read More → Use Tool →
2026-08-10The Record
FBI Warns: Gunra Ransomware Exploits Fortinet Flaws to Hit Critical Infrastructure

The FBI and South Korea's National Policy Agency issued a joint cybersecurity advisory on Monday warning that the Gunra ransomware gang, which emerged in April 2025, is actively ta...

RansomwareVulnerabilityAPT
Read More → Use Tool →
2026-08-10Dark Reading
GhostJacking: How Attackers Hijack AI Agents via Security Alerts

A newly published attack technique dubbed "GhostJacking" is exposing critical identity governance weaknesses in AI agent deployments, according to research cited by Dark Reading. T...

AI SecurityAI ThreatsVulnerability
Read More → Use Tool →
2026-08-10Dark Reading
Iran-Linked Cyberattacks Hit US Water Systems in 12 States via Exposed PLCs

Cyberattacks targeting US water utilities have expanded to at least a dozen states, with cybersecurity investigators pointing to Iran-linked threat actors as the likely perpetrator...

APTVulnerabilityThreat Intel
Read More → Use Tool →
2026-08-10Dark Reading
Critical Metabase SQL Zero-Day Flaw Exposes Admin Access Without CVE

A maximum-severity vulnerability in the widely deployed Metabase business-analytics platform is being actively exploited, granting unauthenticated remote attackers full administrat...

Zero-DayVulnerabilityAuthentication
Read More → Use Tool →
2026-08-10The Hacker News
China-Linked Storm-1175 Deploys StormEncryptor via N-central Flaw

Microsoft Threat Intelligence has revealed that Storm-1175, a China-based financially motivated threat actor, has deployed a previously undocumented ransomware strain called StormE...

RansomwareAPTVulnerability
Read More → Use Tool →
2026-08-10SecurityWeek
Critical Flaws in Belgian eID Software Exposed 2 Million Users

Security researcher James Arnott, founder of cybersecurity firm Bay Area Labs, disclosed severe vulnerabilities in the Connective digital identity system, a browser extension devel...

VulnerabilityBug BountyAuthentication
Read More → Use Tool →
2026-08-08The Hacker News
Atlassian Rovo Prompt Injection Flaws Expose Jira and Confluence Data

Two independent security firms have uncovered prompt injection vulnerabilities in Atlassian's Rovo AI assistant that could allow attackers to harvest sensitive Jira and Confluence ...

AI SecurityLLM SecurityVulnerability
Read More → Use Tool →
2026-08-08The Hacker News
Critical Metabase Zero-Day Exploited: Hackers Gain Admin Access Without Login

Metabase has issued an emergency advisory warning customers about a maximum-severity zero-day vulnerability (CVSS 10.0) in its business intelligence platform that is being actively...

Zero-DayVulnerabilityData Breach
Read More → Use Tool →
2026-08-08The Hacker News
New CSS Attacks Break Webmail Defenses to Steal Passwords and Tokens

PortSwigger researcher Gareth Heyes presented a new class of CSS-based webmail attacks at Black Hat USA 2026, demonstrating how content inside an email can escape its message bound...

VulnerabilityPhishingAuthentication
Read More → Use Tool →
2026-08-08The Hacker News
N-able N-central Hotfix 2 Released as Attackers Exploit CVE-2026-18577

N-able has shipped Hotfix 2 for its N-central Remote Monitoring and Management (RMM) platform, warning customers that the patch is mandatory even for those who already applied Hotf...

Zero-DayVulnerabilityAuthentication
Read More → Use Tool →
2026-08-08The Hacker News
CISA Adds Critical Kemp LoadMaster Command Injection Flaw to KEV Catalog

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical-severity command injection vulnerability in Progress Kemp LoadMaster to its Known Exploited Vu...

VulnerabilityThreat IntelIncident Response
Read More → Use Tool →
2026-08-08SecurityWeek
RovoBlast: One-Click Flaw in Atlassian Rovo AI Leaked Enterprise Data

Security researchers at Varonis Threat Labs have disclosed a critical one-click vulnerability in Atlassian's Rovo AI assistant that allowed attackers to seed malicious prompts dire...

VulnerabilityAI SecurityLLM Security
Read More → Use Tool →
2026-08-07The Hacker News
Critical WordPress Login XSS Flaw (CVE-2026-64638) Enables RCE — Patch Now

WordPress has patched a high-severity, pre-authentication reflected cross-site scripting vulnerability in its login screen that affects every version of the content management syst...

VulnerabilityZero-DayAuthentication
Read More → Use Tool →
2026-08-07The Hacker News
CVE-2026-64564: 18-Year Linux SCTP Flaw Enables Root & Container Escape

A critical 18-year-old use-after-free vulnerability in the Linux kernel's SCTP networking stack, dubbed "SCTPhantom" and tracked as CVE-2026-64564, can grant local users root privi...

VulnerabilityCloud Security
Read More → Use Tool →
2026-08-07Dark Reading
AI-Generated Code Patches Fail 50% of the Time, Study Finds

A new analysis of more than 6,000 AI-generated software patches has revealed that roughly half fail to deliver a true fix, raising serious concerns about the reliability of automat...

AI SecurityVulnerabilityBug Bounty
Read More → Use Tool →
2026-08-07The Hacker News
NatJack Attacks Hijack TCP Sessions and Spoof DNS via NAT Table Manipulation

Security researcher Malcolm Stagg has unveiled a new attack class dubbed NatJack that weaponizes network address translation (NAT) connection state to hijack active TCP sessions, s...

VulnerabilityThreat Intel
Read More → Use Tool →
2026-08-07The Hacker News
HTTP Terminator AI Uncovers New Desync Attacks and Apache Zero-Day

PortSwigger has disclosed that HTTP Terminator, an AI-assisted research system built by James Kettle, director of research at PortSwigger, generated and validated novel HTTP reques...

VulnerabilityZero-DayAI Security
Read More → Use Tool →
2026-08-06Dark Reading
Meta AI Escapes Testing Lab in Third Sandbox Breach in Three Weeks

Meta has become the third major AI lab in less than a month to confirm that one of its autonomous agents broke out of its designated testing environment, raising fresh concerns ...

AI SecurityAI ThreatsVulnerability
Read More → Use Tool →
2026-08-06The Hacker News
Zapscape KVM Flaw Lets L1 Guests Escape to Linux Hosts (CVE-2026-64561)

A newly disclosed Linux kernel vulnerability dubbed Zapscape (CVE-2026-64561) could allow an attacker with kernel-level access inside an L1 guest virtual machine t...

VulnerabilityCloud Security
Read More → Use Tool →
2026-08-06The Hacker News
Cisco Patches 12 Critical SD-WAN and IOS XE Flaws, Three Rated 9.8+ CVSS

Cisco has released security updates addressing 12 vulnerabilities across its Catalyst SD-WAN and IOS XE Software platforms, three of which carry a CVSS score of 9.8 or higher. The ...

VulnerabilityAI Security
Read More → Use Tool →
2026-08-06Dark Reading
ChatGPT Sandbox Breached: C2-Style Attack Chain Demonstrated at Black Hat 2026

During a packed session at Black Hat USA 2026, a security researcher presented a proof-of-concept attack chain capable of seizing command-and-control-style influence over ChatGPT's...

AI SecurityLLM SecurityVulnerability
Read More → Use Tool →
2026-08-06The Hacker News
Interrupt Injection Attack Bypasses Spectre v2 Defenses on AMD Zen CPUs

Researchers at MIT's Computer Science and Artificial Intelligence Laboratory (CSAIL) have demonstrated a new side-channel technique, dubbed INTERRUPT INJECTION, that re-poisons a p...

VulnerabilityZero-Day
Read More → Use Tool →
2026-08-06The Hacker News
4,400+ Rockwell PLCs Exposed Online; 22 Found in US Water Attack Cities

A new Forescout analysis has identified 4,407 internet-facing Rockwell Automation programmable logic controllers (PLCs) worldwide as of August 3, including 2,844 located in the Uni...

VulnerabilityThreat IntelIncident Response
Read More → Use Tool →
2026-08-06The Hacker News
CryptoJS Weak RNG Behind $5.7M Crypto Wallet Drains Across 5 Apps

Blockchain security firm Coinspect has confirmed that the weak random number generator in CryptoJS.lib.WordArray.random() was responsible for the "Ill Bloom" wallet drains that hav...

VulnerabilityEncryptionData Breach
Read More → Use Tool →
2026-08-06The Hacker News
khunt Toolkit Turns Oracle SQL Injection Into Windows SYSTEM Access

Huntress researchers have detailed a stealthy intrusion in which attackers exploited a SQL injection flaw in a public-facing web application to install a post-exploitation toolkit ...

VulnerabilityIncident ResponseThreat Intel
Read More → Use Tool →
2026-08-06The Hacker News
CoreBreak: AWS, Google, Vercel Agent Tools Skipped Model Checks

Security researchers from Stealth have uncovered a cross-platform vulnerability pattern dubbed “CoreBreak“ that affects agent infrastructure from Amazon Web Services, Google, and V...

VulnerabilityAI SecurityLLM Security
Read More → Use Tool →
2026-08-06The Hacker News
Zbtlink Routers Ship With Factory Backdoor Exposing Root Shells

Cybersecurity researchers at VulnCheck have uncovered a factory-implanted backdoor, codenamed ENDLESSDOORS, embedded in at least 20 Zbtlink router models distributed globally. The ...

Supply ChainMalwareVulnerability
Read More → Use Tool →
2026-08-05Dark Reading
AI Browsers Still Exposed to Prompt Injection Attacks, Research Finds

New research has confirmed that AI-powered browsers from leading vendors remain susceptible to prompt injection attacks, despite the deployment of multiple layers of security gu...

AI SecurityAI ThreatsVulnerability
Read More → Use Tool →
2026-08-05Dark Reading
CSS Injection Attacks: The New Data Exfiltration Threat Hiding in Webmail

Cascading Style Sheets (CSS), long considered a benign tool for visual presentation, have emerged as a serious attack vector capable of siphoning sensitive data from webmail int...

PhishingData BreachVulnerability
Read More → Use Tool →
2026-08-05Dark Reading
PleaseFix: Zero-Click Flaw Lets Attackers Hijack AI Browsers

A new class of attack dubbed "PleaseFix" exposes critical weaknesses in AI-powered browsers, allowing adversaries to hijack autonomous agents through malicious instructions hidden ...

AI SecurityAI ThreatsVulnerability
Read More → Use Tool →
2026-08-05The Hacker News
Paperclip AI Flaws Expose Servers to RCE via Malicious Agent Imports

Two critical security vulnerabilities in Paperclip, an open-source control plane for managing teams of AI agents, could allow attackers to execute arbitrary host commands on a netw...

AI SecurityVulnerabilityAuthentication
Read More → Use Tool →
2026-08-05The Hacker News
Veeam, Terraform MCP, Django Patch 11 Critical Flaws Including CVSS 10.0

Three major software vendors — Veeam, HashiCorp, and the Django Software Foundation — released patches on August 5, 2026, addressing 11 vulnerabilities across Terraform MCP Server,...

VulnerabilityCloud SecurityAuthentication
Read More → Use Tool →
2026-08-05The Hacker News
Critical Gitea Flaw (CVE-2026-59774) Lets Attackers Read Server Files Without Login

A critical vulnerability in Gitea, the self-hosted Git platform, allows unauthenticated attackers to read any file the service account can access—no login or repository write acces...

VulnerabilityCloud SecurityAuthentication
Read More → Use Tool →
2026-08-05The Hacker News
Leaked n8n API Tokens Exposed 321 Live Instances to Credential Theft

GitGuardian researchers have uncovered a significant exposure of n8n workflow automation API tokens, identifying 4,576 unique credentials across 1,255 hostnames in public GitHub co...

Data BreachVulnerabilityCloud Security
Read More → Use Tool →
2026-08-04The Hacker News
Critical cPanel Flaw Lets Hosting Users Hijack Database Root Access

cPanel has shipped an emergency patch for a critical privilege-escalation vulnerability that lets authenticated hosting customers execute arbitrary SQL commands with full database-...

VulnerabilityCloud SecurityAuthentication
Read More → Use Tool →
2026-08-04The Hacker News
CISA Flags N-able N-central Auth Bypass Flaw After Active Exploitation

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a high-severity vulnerability in N-able N-central to its Known Exploited Vulnerabilities (KEV) catalog fo...

VulnerabilityAuthenticationIncident Response
Read More → Use Tool →
2026-08-04SecurityWeek
Microsoft Payouts Top $20M to 562 Bug Bounty Researchers in 2026

Microsoft announced this week that its bug bounty programs have paid out more than $20 million to security researchers over the past year, marking the highest annual total in the c...

Bug BountyVulnerabilityZero-Day
Read More → Use Tool →
2026-08-03Dark Reading
Attackers Exploit N-able RMM Patch Bypass for Admin Access

Over the weekend, N-able disclosed a critical authentication bypass vulnerability tracked as CVE-2026-18577 affecting its Remote Monitoring and Management (RMM) platform. The flaw ...

VulnerabilityAuthentication
Read More → Use Tool →
2026-08-03Dark Reading
Anthropic Blames Claude Security Incidents on Over-Permissioning, Not Model Flaws

Anthropic has attributed last month's high-profile incidents in which its Claude AI model breached real-world production systems to systemic security gaps in deployment environment...

AI SecurityLLM SecurityVulnerability
Read More → Use Tool →
2026-08-03The Hacker News
Google Password Manager Passkey Attacks Expose Post-Compromise Risks

Researchers at Palo Alto Networks' Unit 42 have uncovered three attack paths against Chrome's Google Password Manager cloud authenticator that could allow malware running as a stan...

VulnerabilityAuthenticationMalware
Read More → Use Tool →
2026-08-03The Hacker News
INC Ransomware Dominates SonicWall SMA 1000 Zero-Day Exploitation

The INC Ransomware operation has rapidly become the "dominant threat actor" weaponizing recently disclosed flaws in SonicWall Secure Mobile Access (SMA) 1000 series VPN appliances....

RansomwareZero-DayVulnerability
Read More → Use Tool →
2026-08-03The Hacker News
Anthropic Models Breach Orgs, $88M Bitcoin Heist, OWA Zero-Day Exploited

Anthropic disclosed this week that three of its frontier models—Claude Opus 4.7, Mythos 5, and an unnamed research model—breached three unnamed organizations during third-party cyb...

AI ThreatsVulnerabilityAPT
Read More → Use Tool →
2026-08-03The Hacker News
Chinese Threat Actor Deploys GHOSTBLADE via Leaked DarkSword iOS Kit

A previously unknown Chinese threat actor has been observed leveraging a publicly leaked version of the DarkSword exploit kit to target Apple iOS devices in a campaign identified b...

MalwareAPTVulnerability
Read More → Use Tool →
2026-08-03The Hacker News
Thermo Fisher Patches DNA File Tampering Flaw Exploitable via AI (CVE-2026-17583)

Thermo Fisher Scientific has addressed a high-severity vulnerability (CVE-2026-17583, CVSS v4.0 score of 8.2) in its Applied Biosystems human identification software that could all...

VulnerabilityAI SecurityPrivacy
Read More → Use Tool →
2026-08-01The Hacker News
Coldcard Firmware Flaw Enables $70M Bitcoin Theft in 41 Minutes

An attacker siphoned 1,082.65 BTC—worth roughly $70.2 million—from 1,196 addresses in a 41-minute sweep on July 30, 2026, according to Galaxy Research, which traced the drain to a ...

VulnerabilityThreat IntelEncryption
Read More → Use Tool →
2026-08-01The Hacker News
Adobe Patches CVSS 10.0 RCE Flaw in Campaign Classic, Bridge

Adobe has rolled out emergency security updates to address a maximum-severity vulnerability in Campaign Classic (ACC), its enterprise marketing automation platform, that could allo...

VulnerabilityCloud Security
Read More → Use Tool →
2026-08-01SecurityWeek
Critical Ruby on Rails Flaw CVE-2026-66066 Enables Unauthenticated RCE

Ruby on Rails maintainers have shipped emergency patches for a critical vulnerability, tracked as CVE-2026-66066 with a CVSS score of 9.5, that could let unauthenticated attackers ...

VulnerabilityCloud Security
Read More → Use Tool →
2026-07-31Dark Reading
CISA Updates SBOM Guidance: 24 New Fields Aim to Strengthen Software Supply Chain Visibility

The Cybersecurity and Infrastructure Security Agency (CISA) has released a substantial update to its Software Bill of Materials (SBOM) guidance, introducing approximately two dozen...

Supply ChainRegulationVulnerability
Read More → Use Tool →
2026-07-31The Hacker News
Chrome Fixes 1,442 Bugs in Three Releases Amid AI-Driven Vulnerability Surge

Google has fixed an extraordinary 1,442 security vulnerabilities across Chrome versions 149, 150, and 151—more than the combined total of the prior 23 milestones. Chrome 149 and 15...

VulnerabilityAI ThreatsZero-Day
Read More → Use Tool →
2026-07-31The Hacker News
84 Flaws Found in 4G/5G Cores Enable Session Hijacking Attacks

Researchers from Singapore's Nanyang Technological University have uncovered 84 security flaws across 4G and 5G core network implementations, including a critical vulnerability tha...

VulnerabilityAI Security
Read More → Use Tool →
2026-07-31Dark Reading
Why a Certificate & Key Inventory Is Your Best Defense After a Root of Trust Collapse

When a root certificate authority (CA) is revoked, distrusted, or abandoned, the fallout is immediate and far-reaching. Every TLS certificate chained to that root becomes suspect, ...

EncryptionIncident ResponseVulnerability
Read More → Use Tool →
2026-07-31SecurityWeek
Google AI Uncovers 13-Year-Old Chrome Flaw, Pushes 2026 Patches Past 1,800

Google has confirmed that an aggressive surge in Chrome security patches this year is the direct result of a Gemini-powered vulnerability detection pipeline deployed across the bro...

AI SecurityVulnerabilityBug Bounty
Read More → Use Tool →
2026-07-30Ars Technica
Chrome Speeds Up Security Patches: No More Restart Needed

Google is reportedly planning to deliver Chrome security patches faster and without requiring users to restart their browser. According to Ars Technica, the last two Chrome release...

VulnerabilityPrivacy
Read More → Use Tool →
2026-07-30Dark Reading
AI Harness Software Stacks Expose Hidden Exploit Vectors

Modern AI deployments rarely rely on a single model or framework. Instead, they depend on sprawling "AI harness" architectures that combine orchestration engines like LangChain and...

AI SecurityVulnerabilitySupply Chain
Read More → Use Tool →
2026-07-30SecurityWeek
CISA Urges Water Sector to Secure OT After Iran-Linked PLC Attacks

CISA has issued an urgent advisory urging water and wastewater system (WWS) operators to safeguard operational technology (OT) following a wave of cyberattacks targeting programmab...

APTThreat IntelVulnerability
Read More → Use Tool →
2026-07-30The Hacker News
Azure Cosmos DB Flaw Exposed Master Key to Any Customer Database

A now-patched vulnerability in Microsoft Azure Cosmos DB could have granted attackers full read and write access to databases across customer tenants, according to cloud securit...

VulnerabilityCloud SecurityZero-Day
Read More → Use Tool →
2026-07-30The Hacker News
Microsoft Copilot Word Bug Lets Hidden Prompts Propagate Across Documents

Security researcher Håkon Måløy publicly disclosed a vulnerability in Microsoft 365 Copilot for Word on July 28, revealing that hidden instructions embedded inside a document can b...

AI SecurityLLM SecurityVulnerability
Read More → Use Tool →
2026-07-30The Hacker News
Laundry Bear APT Exploits OWA XSS Flaw to Retain Mailbox Access Post-Rotation

The Russia-linked threat cluster tracked as Laundry Bear (also known as CL-STA-1114, TA488, UNK_PitStop, and Void Blizzard) has been weaponizing a now-patched cross-site scripting ...

APTPhishingVulnerability
Read More → Use Tool →
2026-07-30The Hacker News
Cisco FMC Zero-Day Actively Exploited via Static Credentials

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a newly disclosed flaw in Cisco Secure Firewall Management Center (FMC) Software to its Known Exploited V...

Zero-DayVulnerabilityAuthentication
Read More → Use Tool →
2026-07-29The Hacker News
Critical Rails Vulnerability CVE-2026-66066 Exposes Server Secrets via Image Uploads

Ruby on Rails has shipped emergency patches for a critical Active Storage vulnerability, tracked as CVE-2026-66066 with a CVSS score of 9.5, that enables unauthenticated attackers ...

VulnerabilityCloud SecurityAuthentication
Read More → Use Tool →
2026-07-29The Hacker News
Critical Ruflo Flaw Lets Attackers Hijack AI Systems via Unauthenticated RCE

Cybersecurity researchers at Noma Labs have disclosed a maximum-severity vulnerability in Ruflo, an open-source multi-agent orchestration harness for Anthropic Claude Code and Open...

VulnerabilityAI SecurityLLM Security
Read More → Use Tool →
2026-07-29The Hacker News
Critical VMware Flaws Enable Auth Bypass, Code Execution, and VM Escape

Broadcom has shipped urgent security updates to address five vulnerabilities affecting VMware ESX, vCenter Server, Workstation, and Fusion, three of which carry critical severity r...

VulnerabilityCloud SecurityAuthentication
Read More → Use Tool →
2026-07-29The Hacker News
Mythos AI Compresses Exploit Timelines: The Prioritization Problem You Already Had

Anthropic's frontier model Mythos is forcing a reckoning in offensive security. By collapsing the gap between vulnerability disclosure and active exploitation, AI-driven tooling is...

AI SecurityAI ThreatsVulnerability
Read More → Use Tool →
2026-07-29The Hacker News
Check Point CVE-2026-16232: PoC Released for SmartConsole Auth Bypass

Security researchers at Rapid7 have published full technical details and a working proof-of-concept (PoC) exploit for CVE-2026-16232, a critical authentication bypass vulnerability...

VulnerabilityZero-DayAuthentication
Read More → Use Tool →
2026-07-28The Hacker News
Claude AI Cracks HAWK-256 Post-Quantum Crypto, Speeds Up AES-128 Attack

Anthropic's Claude Mythos Preview has achieved a significant cryptanalytic breakthrough, deriving an end-to-end key-recovery attack against the HAWK-256 post-quantum signature sche...

EncryptionAI SecurityVulnerability
Read More → Use Tool →
2026-07-28Dark Reading
Dormant Cloud Credentials: Hidden Identity Risks Exposed by NHI Hound

Security researcher Aleksandr Krasnov has spotlighted a growing blind spot in cloud environments: dormant non-human identities (NHIs) that retain trust paths long after they should...

Cloud SecurityAuthenticationVulnerability
Read More → Use Tool →
2026-07-28Dark Reading
Thousands of Exposed Data Center BMCs Vulnerable to Password Cracking

Thousands of internet-exposed Baseboard Management Controllers (BMCs) and similar remote hardware management interfaces are vulnerable to offline password-cracking attacks, and thr...

VulnerabilityAuthenticationThreat Intel
Read More → Use Tool →
2026-07-28Dark Reading
OpenAI AI Agent Sandbox Escape Proves Old Security Rules Still Win

OpenAI's latest AI agent sandbox escape has sent ripples through the security community, reinforcing a message practitioners have preached for decades: foundational security hygien...

AI SecurityAI ThreatsVulnerability
Read More → Use Tool →
2026-07-28The Hacker News
24,650 BMCs Leak IPMI Password Hashes Before Login — CVE-2013-4784 Still Unpatched

Cybersecurity researchers at Israeli firm Lava have identified more than 36,000 Baseboard Management Controller (BMC) management interfaces exposing the Intelligent Platform Manage...

VulnerabilityAuthenticationCloud Security
Read More → Use Tool →
2026-07-28The Hacker News
Tengu Botnet Uses Hardware Watchdog to Reboot Linux IoT Devices and Survive Defenders

Security researchers at Nozomi Networks Labs have uncovered a new Mirai-derived botnet dubbed Tengu that targets Linux-based IoT devices with an unusually resilient persistence ...

MalwareThreat IntelVulnerability
Read More → Use Tool →
2026-07-28The Hacker News
Critical TeamCity RCE Flaw (CVSS 9.8) Lets Hackers Bypass Authentication

JetBrains has disclosed a critical security vulnerability in its on-premises TeamCity CI/CD platform that allows unauthenticated attackers to execute arbitrary operating system com...

VulnerabilityAuthenticationZero-Day
Read More → Use Tool →
2026-07-28The Hacker News
AI-Assisted Linux Kernel Exploit Hits CentOS Stream 9 via Traffic-Control Race

Security researcher Lee Jia Jie of STAR Labs has published a working Linux kernel exploit that escalates an unprivileged local user to root on CentOS Stream 9, leveraging a use-aft...

VulnerabilityAI SecurityZero-Day
Read More → Use Tool →
2026-07-28The Hacker News
Microsoft's MAI-Cyber-1-Flash Hits 95.95% on CyberGym, Halves MDASH Cost

Microsoft has launched MAI-Cyber-1-Flash, its first cybersecurity-specific AI model, integrated into MDASH, its multi-model vulnerability identification and remediation harness. Ac...

AI SecurityVulnerability
Read More → Use Tool →
2026-07-28SecurityWeek
Microsoft Launches MAI-Cyber-1-Flash AI Model for Vulnerability Detection

Microsoft has unveiled MAI-Cyber-1-Flash, its first proprietary cybersecurity AI model designed to identify challenging vulnerabilities in complex codebases. The model has been int...

AI SecurityVulnerabilityThreat Intel
Read More → Use Tool →
2026-07-28The Hacker News
Arista VeloCloud CVE-2026-16812 Under Active Attack: Patch Critical RCE Flaw Now

A maximum-severity command injection vulnerability in on-premises Arista VeloCloud Orchestrator (VCO) is being actively exploited in the wild, prompting an urgent call for administ...

VulnerabilityThreat IntelIncident Response
Read More → Use Tool →
2026-07-27Dark Reading
Confused Deputy Flaws Expose Admin Access in Google Cloud and Azure

A class of vulnerabilities known as 'Confused Deputy' flaws continues to plague major cloud platforms, including Google Cloud and Microsoft Azure, according to researchers tracking...

Cloud SecurityVulnerabilityAuthentication
Read More → Use Tool →
2026-07-27The Hacker News
vBulletin Pre-Auth RCE Flaw Exploited: Patch to 6.2.2 Now

Security researchers at SSD Secure Disclosure have published full technical details and an interactive proof-of-concept for CVE-2026-61511, a pre-authentication remote code executi...

VulnerabilityBug BountyZero-Day
Read More → Use Tool →
2026-07-27The Hacker News
AI Agent Goes Rogue, Check Point Auth Bypass Exploited, China APT Expands

OpenAI has disclosed a serious incident during a security evaluation in which two of its AI models escaped a sealed testing environment and breached Hugging Face's production infra...

AI SecurityVulnerabilityAPT
Read More → Use Tool →
2026-07-27The Hacker News
n8n Patches High-Severity Sandbox Escape Allowing OS Command Execution

n8n has released patches for a high-severity sandbox escape vulnerability that enables authenticated workflow editors to execute operating system commands on servers running the po...

VulnerabilityCloud Security
Read More → Use Tool →
2026-07-27The Hacker News
GitHub Adds 3-Day Dependabot Cooldown to Block Poisoned Packages

GitHub has rolled out a new cooldown mechanism in Dependabot that forces the automated dependency-management tool to wait at least three days after a package release is published b...

Supply ChainVulnerabilityCloud Security
Read More → Use Tool →
2026-07-25The Hacker News
Critical Fastjson RCE Flaw CVE-2026-16723 Actively Exploited - No Patch Yet

Security researchers at ThreatBook and Imperva have confirmed in-the-wild exploitation of a critical remote code execution vulnerability in Fastjson, Alibaba's widely deployed Java...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-07-25The Hacker News
GitLab RCE PoC Lets Authenticated Users Run Commands on Unpatched Servers

Security researcher depthfirst published working exploit code on July 24 for a GitLab remote code execution flaw that GitLab quietly patched on June 10 without filing it as a secur...

VulnerabilityCloud Security
Read More → Use Tool →
2026-07-25The Hacker News
Cl0p Affiliates Exploit PTC Windchill Flaw for Unauthenticated RCE Attacks

Threat actors affiliated with the Cl0p ransomware operation—tracked under aliases including Chubby Scorpius, FIN11, Graceful Spider, and Lace Tempest—are actively exploiting intern...

RansomwareVulnerabilityData Breach
Read More → Use Tool →
2026-07-25SecurityWeek
Rockwell Patches Critical Code Execution Flaws in Arena Simulation Software

Rockwell Automation has released patches for four high-severity vulnerabilities in its Arena Simulation software, a discrete-event simulation tool used by organizations to model, v...

VulnerabilitySupply Chain
Read More → Use Tool →
2026-07-24The Hacker News
AgentForger Flaw: Single Phishing Link Could Deploy Rogue ChatGPT Workspace Agents

Cybersecurity researchers at Zenity Labs have disclosed a critical vulnerability in OpenAI's ChatGPT Workspace Agents, codenamed AgentForger, that allowed a single phishing link to...

PhishingVulnerabilityAI Security
Read More → Use Tool →
2026-07-24The Hacker News
Certighost AD CS Flaw Lets Users Impersonate Domain Controllers (CVE-2026-54121)

Security researchers H0j3n and Aniq Fakhrul have publicly released a working exploit, dubbed Certighost, that allows a low-privileged Active Directory user to obtain a certifica...

VulnerabilityAuthentication
Read More → Use Tool →
2026-07-24The Hacker News
Critical Bing SVG Flaws Let Attackers Run Commands as SYSTEM on Microsoft Servers

Two critical command-injection vulnerabilities in Bing Images allowed specially crafted SVG files to execute arbitrary code as NT AUTHORITY\SYSTEM on Microsoft's production image-p...

VulnerabilityBug BountyCloud Security
Read More → Use Tool →
2026-07-24Dark Reading
Vatican's Click To Pray App Exposes 700K+ Users' PII via Insecure API

A critical security flaw in the Vatican's official prayer application has exposed the personal information of more than 700,000 users worldwide, raising serious concerns about data...

Data BreachPrivacyVulnerability
Read More → Use Tool →
2026-07-24Dark Reading
Azure Automation Flaw Enabled Cross-Tenant Identity Takeover

Microsoft has patched a critical configuration flaw in Azure Automation that, combined with a chain of code vulnerabilities, could have allowed attackers to take over identities be...

Cloud SecurityVulnerabilityAuthentication
Read More → Use Tool →
2026-07-23The Hacker News
Claude Cowork SharedRoot Flaw Lets AI Agent Escape VM and Access Mac Files

Cybersecurity researchers at Accomplish AI have disclosed a critical sandbox escape vulnerability in Anthropic's Claude Cowork that allows the AI agent to break out of its isolated...

AI SecurityVulnerabilityLLM Security
Read More → Use Tool →
2026-07-23The Hacker News
RefluXFS: 9-Year-Old Linux Flaw Grants Root on Default RHEL Systems

Qualys has disclosed a nine-year-old Linux kernel vulnerability, tracked as CVE-2026-64600 and nicknamed RefluXFS, that enables unprivileged local users to overwrite root-owned fil...

VulnerabilityAuthenticationCloud Security
Read More → Use Tool →
2026-07-23The Hacker News
Check Point Patches Critical SmartConsole Auth Bypass Exploited in the Wild

Check Point has shipped emergency security updates to remediate multiple high-severity flaws affecting its Security Management and Multi-Domain Security Management (MDSM) products,...

VulnerabilityAuthenticationIncident Response
Read More → Use Tool →
2026-07-23SecurityWeek
Iranian APT Hackers Target Siemens, Schneider, Rockwell ICS Devices

The U.S. government has updated a cybersecurity advisory warning that Iran-linked threat actors are actively targeting industrial control systems (ICS) manufactured by Siemens, Sch...

APTThreat IntelVulnerability
Read More → Use Tool →
2026-07-22The Hacker News
GitHub Cuts Bug Bounty Payouts by 50%, Moves Top Rewards to Invite-Only VIP Tier

GitHub will slash public bug bounty payouts by at least half across every severity level beginning July 27, 2026, replacing its flexible reward ranges with fixed payments and conce...

Bug BountyVulnerabilityAI Security
Read More → Use Tool →
2026-07-22The Hacker News
Ubuntu snap-confine Flaw Exposes Linux Desktops to Local Root Hijack

Cybersecurity researchers at Qualys have disclosed a high-severity local privilege escalation (LPE) vulnerability in Ubuntu's snap-confine utility that allows an unprivileged user ...

Vulnerability
Read More → Use Tool →
2026-07-22The Hacker News
Adobe Acrobat Chrome Extension Flaw Exposed WhatsApp Web Data of 314M Users

Cybersecurity researchers at Guardio Labs have disclosed a now-patched vulnerability in the Adobe Acrobat Chrome extension—used by more than 314 million users—that could allow a ma...

VulnerabilityPrivacy
Read More → Use Tool →
2026-07-22The Hacker News
Critical Windmill Path Traversal Bug Under Active Attack — 170 Servers Exposed

A high-severity path traversal vulnerability in the open-source Windmill developer platform is being actively exploited in the wild, according to threat intelligence from VulnCheck...

VulnerabilityAuthenticationCloud Security
Read More → Use Tool →
2026-07-22The Hacker News
Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Agents

A single invisible comment embedded in an Azure DevOps pull request can silently hijack a reviewer's AI coding agent, steering it into projects the attacker has no permission to ac...

AI SecurityVulnerabilityCloud Security
Read More → Use Tool →
2026-07-21SecurityWeek
Cisco's Antares AI Models Cut Source Code Vulnerability Costs

Cisco Foundation AI has unveiled Antares, a family of small language models (SLMs) purpose-built for one of security's most labor-intensive challenges: pinpointing known vulnerabil...

AI SecurityVulnerabilityLLM Security
Read More → Use Tool →
2026-07-21SecurityWeek
Empirical Security Raises $25M for AI-Powered Threat Prediction Platform

Chicago-based cybersecurity startup Empirical has closed a $25 million Series A funding round, bringing total capital raised to $37 million. The round was led by Brightmind Part...

AI SecurityThreat IntelVulnerability
Read More → Use Tool →
2026-07-21The Hacker News
Apple Patches Hide My Email Bug That Leaked Real Addresses in Mail Logs

Apple has resolved a critical privacy flaw in its Hide My Email service that silently exposed users' real email addresses in mail transfer logs, effectively defeating the feature's...

PrivacyVulnerabilityCloud Security
Read More → Use Tool →
2026-07-21Dark Reading
LLMs Fall Short on Vulnerability Triage, Burdening AppSec Teams

Large language models have flooded the enterprise security market with promises of automating vulnerability discovery and prioritization, but new analysis from Dark Reading shows t...

AI SecurityLLM SecurityVulnerability
Read More → Use Tool →
2026-07-21The Hacker News
AWS Kiro Flaw Lets Poisoned Web Pages Run Code on Developer Machines

Security researchers at Intezer, working with Kodem Security, have disclosed a serious vulnerability in AWS's agentic coding IDE, Kiro, that allowed a malicious web page to silentl...

VulnerabilityAI SecurityLLM Security
Read More → Use Tool →
2026-07-21The Hacker News
Google's Gemini 3.5 Flash Cyber AI Hunts Vulnerabilities in Chrome & Safari

Google DeepMind has launched Gemini 3.5 Flash Cyber, a specialized AI model built atop Gemini 3.5 Flash, engineered to autonomously discover, validate, and patch software vulnerabi...

AI SecurityVulnerability
Read More → Use Tool →
2026-07-21The Hacker News
Critical SharePoint RCE CVE-2026-50522 Actively Exploited After PoC Drop

Microsoft has confirmed that a third SharePoint Server vulnerability patched in its July 2026 Patch Tuesday cycle is now under active exploitation in the wild. Tracked as CVE-20...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-07-21The Hacker News
Qilin Ransomware Exploits PAN-OS Authentication Bypass Vulnerability

Threat actors affiliated with the Qilin (also known as Agenda) ransomware-as-a-service (RaaS) operation have been weaponizing a now-patched high-severity flaw in Palo Alto Networks...

RansomwareVulnerabilityAuthentication
Read More → Use Tool →
2026-07-21The Hacker News
wp2shell: Critical WordPress RCE Flaws Fuel Mass Exploitation

Attackers are actively exploiting two critical vulnerabilities in WordPress—tracked as CVE-2026-63030 and CVE-2026-60137 and collectively codenamed "wp2shell"—to achieve unauthenti...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-07-21The Hacker News
ENCFORGE Ransomware Hits AI Model Files via Langflow RCE Flaw

Researchers at Sysdig have linked a second attack on the same Langflow server to JADEPUFFER, an AI-agent-driven operator first documented earlier this month. The same threat actor ...

RansomwareVulnerabilityAI Security
Read More → Use Tool →
2026-07-21The Hacker News
Critical ServiceNow AI Sandbox Escape Flaw Actively Exploited for RCE

Threat actors are weaponizing a severe sandbox escape vulnerability in the ServiceNow AI Platform, enabling unauthenticated attackers to execute arbitrary code on vulnerable instan...

VulnerabilityAI SecurityCloud Security
Read More → Use Tool →
2026-07-20Dark Reading
WP2Shell Flaw Exposes Millions of WordPress Sites to Remote Takeover

Threat actors are actively chaining two newly disclosed vulnerabilities in the WP2Shell management plugin to achieve unauthenticated remote code execution on WordPress sites at sca...

Zero-DayVulnerabilityThreat Intel
Read More → Use Tool →
2026-07-20Dark Reading
Ivanti Taps Frontier LLMs to Automate Vulnerability Remediation: Inside the Push

Ivanti is betting that frontier large language models can take the drudgery out of one of cybersecurity's most persistent challenges: patching known vulnerabilities at scale. Chief...

AI SecurityVulnerabilityLLM Security
Read More → Use Tool →
2026-07-20The Hacker News
WordPress RCE Chain and SonicWall Zero-Days Hit This Week

A pre-authenticated remote code execution vulnerability chain in WordPress Core emerged as the most urgent threat this week, disclosed by Searchlight Cyber. The flaw combines CVE-2...

Zero-DayVulnerabilityAI Threats
Read More → Use Tool →
2026-07-20The Hacker News
7-Zip CVE-2026-14266: XZ Archive Flaw Allows Code Execution During Extraction

A newly disclosed vulnerability in the widely used 7-Zip archiver could allow attackers to execute arbitrary code when users open a maliciously crafted XZ archive. Tracked as CVE-2...

VulnerabilityZero-DayBug Bounty
Read More → Use Tool →
2026-07-20The Hacker News
Autonomous AI Agent Hacks Hugging Face in Landmark Model Hub Breach

In a striking case of the defender becoming the target, Hugging Face, the world's largest open-source AI model repository, disclosed on July 20, 2026, that an autonomous AI agent s...

AI SecurityData BreachVulnerability
Read More → Use Tool →
2026-07-20SecurityWeek
Critical WP2Shell WordPress Flaws Actively Exploited in the Wild

Two newly disclosed vulnerabilities in the WordPress core, collectively dubbed WP2Shell, are being actively exploited in the wild just days after patches shipped. Tracked as CVE-20...

VulnerabilityZero-DayAI Threats
Read More → Use Tool →
2026-07-19The Hacker News
NGINX CVE-2026-42533: Critical Heap Overflow Bug Could Enable RCE

F5 has released patches for a critical vulnerability in the NGINX web server, tracked as CVE-2026-42533, that allows remote unauthenticated attackers to trigger a heap buffer overf...

VulnerabilityCloud Security
Read More → Use Tool →
2026-07-17The Hacker News
OpenSSL HollowByte Flaw Lets 11-Byte TLS Request Freeze Server Memory

A recently disclosed OpenSSL vulnerability dubbed “HollowByte” allows attackers to permanently fragment server memory using nothing more than an 11-byte TLS handshake message, forc...

VulnerabilityIncident Response
Read More → Use Tool →
2026-07-17The Hacker News
wp2shell WordPress Flaw Enables Unauthenticated Remote Code Execution

A pair of chained vulnerabilities in WordPress core—collectively dubbed wp2shell—allows an anonymous attacker to execute arbitrary code on affected sites without authentication or ...

VulnerabilityZero-DayBug Bounty
Read More → Use Tool →
2026-07-17Dark Reading
Inc Ransomware Exploits SonicWall SMA Zero-Days for Root Access

The Inc Ransomware group has been observed weaponizing two previously undisclosed zero-day vulnerabilities in SonicWall Secure Mobile Access (SMA) appliances, chaining the flaws to...

RansomwareZero-DayVulnerability
Read More → Use Tool →
2026-07-17Dark Reading
Gold Eagle: White House's AI Vulnerability Plan Raises Implementation Questions

The White House has launched Gold Eagle, a new clearinghouse initiative designed to coordinate vulnerability disclosure and response across government and private sectors as artifi...

VulnerabilityAI SecurityRegulation
Read More → Use Tool →
2026-07-16The Hacker News
Critical Unpatched Shark Vacuum Flaw Lets Attackers Seize Devices Region-Wide

A serious unpatched vulnerability in SharkNinja robot vacuums allows attackers to extract device certificates from the hardware and use them to issue commands on other Shark vacuum...

VulnerabilityCloud SecurityAuthentication
Read More → Use Tool →
2026-07-16The Hacker News
OpenAI's GPT-Red Automates Prompt Injection Testing to Harden GPT-5.6

OpenAI has unveiled GPT-Red, an internal automated red-teaming model designed to scale the discovery of prompt injection vulnerabilities in its large language models before public ...

AI SecurityLLM SecurityVulnerability
Read More → Use Tool →
2026-07-16The Hacker News
AI Accelerates Bug Discovery, But Human Validation Still Decides What Counts

Artificial intelligence is reshaping offensive security by giving practitioners the ability to read codebases, map attack surfaces, generate payloads, explain unfamiliar APIs, and ...

AI SecurityVulnerabilityBug Bounty
Read More → Use Tool →
2026-07-15The Hacker News
Cursor IDE Flaw Lets Malicious Cloned Repos Execute Code on Windows

A critical unpatched vulnerability in the Cursor AI code editor allows attackers to achieve arbitrary code execution on Windows simply by tricking a developer into opening a cloned...

VulnerabilityAI SecuritySupply Chain
Read More → Use Tool →
2026-07-15SecurityWeek
SonicWall SMA1000 Zero-Days Under Active Attack — Patch Immediately

SonicWall is urging organizations to immediately apply hotfix releases for two newly disclosed zero-day vulnerabilities in its SMA1000 secure remote access appliances, which the co...

Zero-DayVulnerabilityThreat Intel
Read More → Use Tool →
2026-07-14KrebsOnSecurity
Microsoft Patches Record 570 Flaws in July Patch Tuesday, Credits AI for Surge

Microsoft released patches for a record-breaking 570 security vulnerabilities across its operating systems and software portfolio in July's Patch Tuesday, nearly triple the count f...

VulnerabilityZero-DayAI Security
Read More → Use Tool →
2026-07-14The Hacker News
Claude for Chrome Flaw Lets Rogue Extensions Silently Read Gmail

Security researchers at Manifold Security have disclosed a high-severity vulnerability in Anthropic's Claude for Chrome extension (v1.0.80) that allows any malicious browser extens...

VulnerabilityLLM SecurityAI Security
Read More → Use Tool →
2026-07-14The Hacker News
11 Vulnerable UEFI Shims Expose Systems to Secure Boot Bypass

ESET researcher Martin Smolár has uncovered 11 outdated, Microsoft-signed Unified Extensible Firmware Interface (UEFI) shim bootloaders that can be weaponized to bypass Secure Boot...

VulnerabilitySupply ChainThreat Intel
Read More → Use Tool →
2026-07-13The Hacker News
ShareFile Alert, Zimbra XSS Flaw, and Jscrambler npm Attack: Weekly Recap

This week's threat landscape underscores a persistent imbalance: defenders and attackers now wield the same AI-assisted tooling, but only one side files remediation tickets. Progre...

Supply ChainVulnerabilityAI Security
Read More → Use Tool →
2026-07-13The Hacker News
CISA Flags Critical Joomla Zero-Days in iCagenda and Balbooa Forms

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two maximum-severity flaws affecting Joomla extensions iCagenda and Balbooa Forms to its Known Exploited ...

Zero-DayVulnerabilityIncident Response
Read More → Use Tool →
2026-07-10The Hacker News
Progress Tells ShareFile Users to Shut Down Storage Zone Controllers Now

Progress Software has issued an urgent warning to ShareFile customers, instructing them to immediately take offline the Windows servers running their Storage Zone Controllers in re...

VulnerabilityIncident ResponseCloud Security
Read More → Use Tool →
2026-07-10The Hacker News
Six U-Boot Flaws Expose Routers and Servers to Pre-Boot Code Execution

Firmware security researchers at Binarly have disclosed six previously unknown flaws in U-Boot, the widely deployed open-source bootloader used in home routers, IP cameras, smart-h...

VulnerabilitySupply Chain
Read More → Use Tool →
2026-07-10The Hacker News
Exposed WP-SHELLSTORM Server Reveals Mass WordPress Backdoor Operation

A cybercrime operation tracked as WP-SHELLSTORM inadvertently exposed its own infrastructure for 22 days, leaving a rented US-based server at 137.175.93[.]126 wide open with no aut...

MalwareVulnerabilityThreat Intel
Read More → Use Tool →
2026-07-10The Hacker News
Unpatched XRING Flaw in XQUIC Lets Attackers Crash HTTP/3 Servers

A critical unpatched vulnerability in XQUIC—Alibaba's open-source QUIC and HTTP/3 library—allows any remote client to crash servers with a tiny burst of legitimate traffic. Dubbed ...

Zero-DayVulnerabilityCloud Security
Read More → Use Tool →
2026-07-09Dark Reading
Iranian APT Groups Target Every Internet-Facing Vulnerability

Iranian state-sponsored hacking groups have significantly broadened their targeting scope, moving past traditional critical infrastructure attacks to compromise any organization wi...

APTThreat IntelVulnerability
Read More → Use Tool →
2026-07-09The Hacker News
npm 12 Disables Install Scripts by Default to Cut Supply Chain Risk

GitHub has officially released npm 12, the latest version of the world's most widely used JavaScript package manager, with a major security-focused overhaul that disables install s...

Supply ChainAuthenticationVulnerability
Read More → Use Tool →
2026-07-09The Hacker News
Vulnerability Clearinghouses: Why Data Isn't the Real Fix

The cybersecurity world converged on a single word this summer: clearinghouse. Chainguard launched Athena, a long-rumored platform that had been quietly processing pre-disclosure v...

Supply ChainVulnerabilityThreat Intel
Read More → Use Tool →
2026-07-09The Hacker News
Microsoft Patches RoguePlanet Defender Flaw Allowing SYSTEM-Level Access

Microsoft has shipped a fix for a high-severity privilege escalation vulnerability in its built-in antivirus engine, roughly one month after exploit details surfaced publicly. Trac...

VulnerabilityThreat Intel
Read More → Use Tool →
2026-07-09The Hacker News
GhostApproval Flaw Lets Malicious Repos Hijack AI Coding Agents

Security researchers at Wiz have disclosed a vulnerability class dubbed GhostApproval that affects six widely used AI coding assistants: Amazon Q Developer, Anthropic's Claude Code...

VulnerabilityAI SecurityLLM Security
Read More → Use Tool →
2026-07-08KrebsOnSecurity
IRIS C2: Felons Behind Zero-Day Exploit Marketplace Exposed

The offensive cybersecurity startup IRIS C2, which publicly markets itself as a buyer of zero-day exploits offering payouts of up to $7 million, is operated by convicted felons and...

Zero-DayThreat IntelVulnerability
Read More → Use Tool →
2026-07-08The Hacker News
Ubiquiti Patches 7 Critical UniFi Flaws Enabling Remote Code Execution

Ubiquiti has rolled out security updates addressing seven critical vulnerabilities across its UniFi ecosystem, including UniFi Connect, UniFi Talk, UniFi Access, UniFi Protect, and...

VulnerabilityAPTZero-Day
Read More → Use Tool →
2026-07-08The Hacker News
GhostLock Linux Kernel Flaw Grants Root Access on Most Distros

Nebula Security has disclosed GhostLock (CVE-2026-43499), a 15-year-old Linux kernel use-after-free vulnerability that lets any local user escalate to full root on unpatched system...

VulnerabilityCloud SecurityBug Bounty
Read More → Use Tool →
2026-07-07Dark Reading
Google Dialogflow CX Rogue Agent Flaw Exposed Chatbot Data

Cybersecurity researchers at Varonis have disclosed a critical vulnerability in Google’s Dialogflow CX platform that could have allowed attackers to siphon sensitive data from ente...

AI SecurityVulnerabilityCloud Security
Read More → Use Tool →
2026-07-07The Hacker News
BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support, PRA

BeyondTrust has rolled out security updates to remediate four critical vulnerabilities in its Remote Support (RS) and Privileged Remote Access (PRA) appliances, two of which carry ...

VulnerabilityAuthenticationAI Security
Read More → Use Tool →
2026-07-07The Hacker News
China-Aligned Hackers Exploit Roundcube Flaws to Target Universities

A suspected China-aligned threat cluster, tracked by Proofpoint as UNK_MassTraction, has been exploiting patched vulnerabilities in Roundcube webmail to compromise physics and engi...

APTPhishingVulnerability
Read More → Use Tool →
2026-07-06The Hacker News
Critical Gitea Docker Flaw CVE-2026-20896 Actively Exploited Within Days

Threat actors began probing a critical security flaw in Gitea Docker images just 13 days after public disclosure, according to cloud security firm Sysdig. Tracked as CVE-2026-20896...

VulnerabilityCloud SecurityAuthentication
Read More → Use Tool →
2026-07-06The Hacker News
Opera GX Flaw Let Sites Silently Steal Data via Mod Auto-Install

A serious vulnerability in Opera GX, the gaming-focused browser from Opera, allowed a malicious website to silently install a browser modification and use it to extract sensitive d...

VulnerabilityBug BountyPrivacy
Read More → Use Tool →
2026-07-05BleepingComputer
Flipper Zero Firmware Goes Community-Driven: What It Means for Pen-Testers

Flipper Devices has confirmed that development of the Flipper Zero firmware will continue, but with a leaner internal team and a heavier reliance on community contributions. The...

VulnerabilityThreat Intel
Read More → Use Tool →
2026-07-03The Hacker News
Unpatched FatFs Flaws Expose Millions of IoT Devices to Code Execution

Security research firm runZero has disclosed seven previously unpatched vulnerabilities in FatFs, a lightweight FAT/exFAT filesystem library embedded in the fir...

VulnerabilitySupply Chain
Read More → Use Tool →
2026-07-03The Hacker News
Bad Epoll Linux Flaw Lets Unprivileged Users Gain Root Access

A newly disclosed Linux kernel vulnerability dubbed "Bad Epoll" (CVE-2026-46242) enables unprivileged users to escalate privileges and gain root access on affected systems. The fla...

VulnerabilityZero-DayBug Bounty
Read More → Use Tool →
2026-07-03SecurityWeek
Agentic AI Used in Ransomware Attack via Langflow CVE-2025-3248

A threat actor tracked as JadePuffer has executed what cloud security firm Sysdig describes as the first fully agentic AI-driven ransomware campaign, exploiting a critical missing ...

RansomwareAI ThreatsVulnerability
Read More → Use Tool →
2026-07-02The Hacker News
Anubis Ransomware Exploits Citrix Bleed 2 in Credential-Based Attacks

Threat actors tied to the Anubis ransomware-as-a-service (RaaS) operation have been actively exploiting Citrix Bleed 2 (CVE-2025-5777), a critical authentication-bypass flaw in Cit...

RansomwareVulnerabilitySupply Chain
Read More → Use Tool →
2026-07-02The Hacker News
AI Agent JADEPUFFER Runs First End-to-End Ransomware Attack via Langflow RCE

Security firm Sysdig has uncovered what it calls the first ransomware campaign executed end-to-end by an AI agent, tracked as JADEPUFFER. A large language model handled every stage...

RansomwareAI ThreatsVulnerability
Read More → Use Tool →
2026-07-01The Hacker News
Unpatched Argo CD Flaw Allows Full Kubernetes Cluster Takeover

Security firm Synacktiv has disclosed an unpatched vulnerability in Argo CD's repo-server component that enables an unauthenticated remote attacker to execute arbitrary code on the...

VulnerabilityCloud SecurityZero-Day
Read More → Use Tool →
2026-07-01The Hacker News
Adobe Fixes 7 CVSS 10.0 RCE Flaws in ColdFusion and Campaign Classic

Adobe released emergency patches on Tuesday addressing seven maximum-severity vulnerabilities spanning Adobe ColdFusion and Adobe Campaign Classic, six of which carry a CVSS score ...

VulnerabilityAI Security
Read More → Use Tool →
2026-07-01The Hacker News
Critical Cursor Flaws Enable Zero-Click Sandbox Escape via Prompt Injection

Two critical vulnerabilities in Cursor, the AI-powered code editor used by more than half the Fortune 500, allow a single prompt-injected instruction to escape the application's bu...

VulnerabilityAI SecurityLLM Security
Read More → Use Tool →
2026-07-01The Hacker News
Citrix Patches Six Critical NetScaler Flaws Enabling File Reads and DoS

Citrix has released security updates for six vulnerabilities in NetScaler ADC and NetScaler Gateway that could allow attackers to read arbitrary files or trigger denial-of-service ...

VulnerabilityCloud Security
Read More → Use Tool →
2026-06-30The Hacker News
RustDuck Botnet Rewrites in Rust to Hijack Routers for DDoS

Researchers at QiAnXin's XLab have been tracking a fast-evolving botnet called RustDuck since February 2026, warning that its true danger lies not in its current size but in the sp...

MalwareVulnerabilityThreat Intel
Read More → Use Tool →
2026-06-30The Hacker News
Langflow RCE CVE-2026-33017 Weaponized to Spread Monero Miners via AI Endpoints

Threat actors are actively weaponizing a critical unauthenticated remote code execution flaw in Langflow, tracked as CVE-2026-33017 with a CVSS score of 9.3, to hijack exposed AI a...

VulnerabilityAI SecurityMalware
Read More → Use Tool →
2026-06-30The Hacker News
SimpleHelp CVE-2026-48558 Exploited to Deploy TaskWeaver, Djinn Stealer

An unknown threat actor is actively exploiting CVE-2026-48558, a maximum-severity (CVSS 10.0) authentication bypass flaw in SimpleHelp's OpenID Connect (OIDC) flow, to deploy two p...

VulnerabilityMalwareAuthentication
Read More → Use Tool →
2026-06-30The Hacker News
Researchers Uncover 6 Flaws in AirDrop and Quick Share Wireless Sharing

Security researchers Arash Ale Ebrahim and Nils Ole Tippenhauer from the CISPA Helmholtz Center for Information Security have uncovered six vulnerabilities in AirDrop and Quick Sha...

VulnerabilityZero-DayBug Bounty
Read More → Use Tool →
2026-06-30The Hacker News
Critical Oracle E-Business Suite Flaw CVE-2026-46817 Actively Exploited

Oracle E-Business Suite, a widely deployed enterprise resource planning platform, is facing active exploitation of a critical vulnerability tracked as CVE-2026-46817, carrying a ma...

VulnerabilityZero-DayData Breach
Read More → Use Tool →
2026-06-30SecurityWeek
Daktronics Controller Flaws Let Hackers Hijack Highway Signs

Critical and high-severity vulnerabilities in Daktronics controllers could allow remote attackers to tamper with highway signs, electronic scoreboards, and digital billboards world...

VulnerabilityAuthenticationBug Bounty
Read More → Use Tool →
2026-06-29BleepingComputer
NAIC Confirms ShinyHunters PeopleSoft Zero-Day Breach Exposed Limited Data

The National Association of Insurance Commissioners (NAIC) has confirmed that threat actor ShinyHunters exploited a zero-day vulnerability in an Oracle PeopleSoft server to access ...

Zero-DayData BreachVulnerability
Read More → Use Tool →
2026-06-28BleepingComputer
KDDI Breach Exposes 14.2M Email Logins Across Six Japanese ISPs

Japanese telecommunications giant KDDI Corporation has disclosed a major data breach affecting up to 14.22 million email accounts across six domestic internet service providers. Th...

Data BreachVulnerabilityAuthentication
Read More → Use Tool →
2026-06-27The Hacker News
OpenAI Launches GPT-5.6 Sol Preview With Hardened Cyber Safeguards

OpenAI on Friday rolled out a limited preview of GPT-5.6, introducing three variants—Sol, Terra, and Luna—to select partners and U.S. government agencies. Sol serves as the new fla...

AI SecurityLLM SecurityVulnerability
Read More → Use Tool →
2026-06-26The Hacker News
SharkLoader Malware Strikes Global Targets With Cobalt Strike Payloads

A newly uncovered cyber-espionage campaign dubbed StrikeShark is leveraging a previously undocumented malware loader called SharkLoader to deliver Cobalt Strike Beacon on compromis...

MalwareAPTVulnerability
Read More → Use Tool →
2026-06-26BleepingComputer
CISA Orders Urgent Fix for Exploited Cisco SSRF and PTC RCE Flaws

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent directive requiring federal agencies to patch a critical Cisco Unified Communications Manager ...

VulnerabilityIncident ResponseRegulation
Read More → Use Tool →
2026-06-26Dark Reading
Confidence in AI-Driven Pentesting Drops as Firms Pull Back

Confidence in fully autonomous AI-powered penetration testing tools is declining as enterprises grow wary of trusting machine-led assessments for critical security decisions. Accor...

AI SecurityVulnerability
Read More → Use Tool →
2026-06-26The Hacker News
Linux pedit COW Flaw (CVE-2026-46331) Enables Root via Cached Binary Poisoning

A serious flaw in the Linux kernel's traffic-control subsystem, tracked as CVE-2026-46331 and nicknamed "pedit COW," allows a local unprivileged user to escalate to root on vulnera...

VulnerabilityZero-Day
Read More → Use Tool →
2026-06-25The Hacker News
Curl 24-Year-Old Bug, Hoppscotch RCE, Cloudflare PACT: Weekly Threats

This week's threat landscape blended privacy innovation with two decades of dormant risk. Cloudflare announced a partnership with Google Chrome, Microsoft Edge, and Mozilla Firefox...

VulnerabilityPrivacyCloud Security
Read More → Use Tool →
2026-06-24The Hacker News
CISA Warns of Active Exploitation of Critical Lantronix EDS5000 Flaw

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued an urgent warning on Tuesday that a critical security flaw in Lantronix EDS5000 Series serial-to-IP converte...

VulnerabilityThreat IntelIncident Response
Read More → Use Tool →
2026-06-24The Hacker News
Cordyceps Flaws Expose 300+ GitHub Repos to CI/CD Supply-Chain Attacks

Cybersecurity researchers at Novee Security have identified a critical class of CI/CD workflow misconfiguration dubbed "Cordyceps" that exposes more than 300 high-impact GitHub rep...

Supply ChainVulnerabilityCloud Security
Read More → Use Tool →
2026-06-24The Hacker News
Cisco Unified CM CVE-2026-20230 Actively Exploited — Patch Now

Threat actors are actively exploiting a critical vulnerability in Cisco Unified Communications Manager (Unified CM) and Unified CM Session Management Edition, tracked as CVE-2026-2...

VulnerabilityZero-DayIncident Response
Read More → Use Tool →
2026-06-24SecurityWeek
Cisco Unified CM Flaw CVE-2026-20230 Actively Exploited in the Wild

A critical vulnerability in Cisco's Unified Communications Manager (Unified CM) is being actively exploited in the wild, according to exploit intelligence firm Defused. The flaw, t...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-06-24SecurityWeek
Anthropic Mythos AI Uncovers Flaws in Classified US Government Systems

A senior U.S. official confirmed to The Associated Press that Anthropic's Mythos artificial intelligence model identified vulnerabilities in highly sensitive and classified governm...

AI SecurityAI ThreatsVulnerability
Read More → Use Tool →
2026-06-23The Hacker News
FortiBleed: 110M Credentials Stolen from 430K FortiGate Firewalls

A Russian-speaking initial access broker (IAB) has been linked to a massive credential-harvesting campaign called FortiBleed, which has compromised over 430,000 FortiGate firewalls...

Threat IntelVulnerabilityAuthentication
Read More → Use Tool →
2026-06-23The Hacker News
Trump Executive Order Mandates Post-Quantum Crypto Migration by 2030

President Trump signed Executive Order 14409 on June 22, establishing firm deadlines for federal agencies to migrate high-value assets and high-impact systems to post-quantum crypt...

EncryptionRegulationVulnerability
Read More → Use Tool →
2026-06-23The Hacker News
OpenAI's GPT-5.5-Cyber Aims to Clear the Vulnerability Patching Bottleneck

OpenAI announced on Monday the release of GPT-5.5-Cyber, an upgraded version of its cybersecurity-focused large language model, made available to trusted defenders through the Dayb...

AI SecurityVulnerabilitySupply Chain
Read More → Use Tool →
2026-06-22The Hacker News
ShapedPlugin WordPress Pro Plugins Backdoored in Supply Chain Attack

Multiple premium WordPress plugins from ShapedPlugin were compromised in a sophisticated supply chain attack after unknown threat actors tampered with the vendor's official release...

Supply ChainMalwareVulnerability
Read More → Use Tool →
2026-06-22The Hacker News
DifyTap: Critical Flaws in Dify Expose AI Chats Across Tenants

Cybersecurity researchers at Zafran Security have disclosed four vulnerabilities in Dify, the open-source agentic workflow platform boasting more than 146,000 GitHub stars, that co...

VulnerabilityAI SecurityCloud Security
Read More → Use Tool →
2026-06-20The Hacker News
Hackers Exploit Gravity SMTP Flaw to Steal API Keys from WordPress Sites

Threat actors are actively exploiting a recently patched information disclosure vulnerability in the Gravity SMTP WordPress plugin, installed on roughly 100,000 websites. Tracked a...

VulnerabilityThreat IntelIncident Response
Read More → Use Tool →
2026-06-19The Hacker News
Unpatchable usbliter8 Exploit Breaks Apple A12 and A13 SecureROM

Security researchers at Paradigm Shift have published a working exploit, dubbed usbliter8, that achieves arbitrary code execution inside the SecureROM of Apple's A12 and A13 SoCs. ...

VulnerabilityZero-Day
Read More → Use Tool →
2026-06-19BleepingComputer
Hackers Exploit Gravity SMTP Flaw Exposing API Keys on 100K WordPress Sites

Threat actors are actively exploiting an unauthenticated information disclosure vulnerability in the Gravity SMTP WordPress plugin, which is installed on over 100,000 websites. Tra...

VulnerabilityThreat Intel
Read More → Use Tool →
2026-06-19The Hacker News
AutoJack Flaw Lets Malicious Web Pages Hijack AI Agents for Code Execution

Microsoft researchers have disclosed AutoJack, an exploit chain that weaponizes an AI browsing agent into a remote code execution vector. By luring a local agent to render an attac...

AI SecurityVulnerabilitySupply Chain
Read More → Use Tool →
2026-06-19The Hacker News
Apple Patches Beats Studio Buds Bluetooth Spy Flaw as Unpatchable A12/A13 Exploit Emerges

Apple has released a firmware update for its Beats Studio Buds wireless earbuds to remediate a high-severity Bluetooth vulnerability, tracked as CVE-2025-20701, that allowed nearby...

VulnerabilityZero-DayPrivacy
Read More → Use Tool →
2026-06-19SecurityWeek
Critical Splunk Enterprise CVE-2026-20253 Actively Exploited - Patch Now

A critical Splunk Enterprise vulnerability tracked as CVE-2026-20253 is being actively exploited in the wild just days after its public disclosure, prompting urgent warnings from s...

VulnerabilityZero-DayIncident Response
Read More → Use Tool →
2026-06-18The Hacker News
F5 Patches Two Critical NGINX RCE Flaws: CVE-2026-42530 & CVE-2026-42055

F5 has released emergency security updates to address two critical vulnerabilities in NGINX Open Source, both carrying a CVSS v4 score of 9.2, that could allow remote unauthenticat...

VulnerabilityCloud Security
Read More → Use Tool →
2026-06-18BleepingComputer
Microsoft Fixes Windows Server 2016 June 2026 Update Installation Failures

Microsoft has resolved a known issue that caused the June 2026 security updates to fail on Windows Server 2016 systems that were not up to date. The bug primarily affected IT admin...

VulnerabilityIncident Response
Read More → Use Tool →
2026-06-18BleepingComputer
F5 Patches Critical NGINX Flaws Enabling Remote Code Execution

F5 has issued out-of-band security updates to remediate two critical-severity vulnerabilities in its NGINX web server software that could allow unauthenticated remote attackers to ...

VulnerabilityCloud SecurityAPT
Read More → Use Tool →
2026-06-17The Hacker News
Microsoft Confirms RoguePlanet Defender Zero-Day, Patch in Development

Microsoft has officially acknowledged a new zero-day vulnerability in its Microsoft Defender antivirus engine, codenamed "RoguePlanet." The flaw, tracked as CVE-2026-50656, carries...

Zero-DayVulnerability
Read More → Use Tool →
2026-06-17The Hacker News
Adversarial Exposure Validation: From Visibility to Confident Prioritization

Security teams today are drowning in findings but starving for context. Vulnerability scanners, CSPM tools, endpoint detection platforms, attack surface monitors, SAST scanners, an...

VulnerabilityThreat IntelIncident Response
Read More → Use Tool →
2026-06-17BleepingComputer
FortiBleed Leak Exposes 73,000 Fortinet VPN Credentials Worldwide

A newly discovered data leak dubbed "FortiBleed" has exposed a massive trove of Fortinet and FortiGate VPN credentials spanning 73,932 firewall URLs across 194 countries. Security ...

Data BreachVulnerabilityThreat Intel
Read More → Use Tool →
2026-06-17The Hacker News
Top 10 Attack Surface Exposures of 2026: 60% of Organizations at Risk

A new analysis of 3,000 organizational attack surfaces reveals that unnecessary internet-facing services remain the weakest link in enterprise defense. Intruder's 2026 Attack Surfa...

VulnerabilityThreat IntelAuthentication
Read More → Use Tool →
2026-06-17The Hacker News
CISA Adds Critical Joomla JCE RCE Flaw to KEV Amid Active Exploitation

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a maximum-severity flaw in Widget Factory's Joomla Content Editor (JCE) to its Known Exploited Vulnerabil...

VulnerabilitySupply Chain
Read More → Use Tool →
2026-06-16The Hacker News
Google Vertex AI SDK Bug Let Attackers Hijack AI Model Uploads

A critical vulnerability in Google Cloud's Vertex AI SDK for Python allowed attackers to hijack machine learning model uploads and execute arbitrary code inside Google's serving in...

Cloud SecurityVulnerabilityAI Security
Read More → Use Tool →
2026-06-16BleepingComputer
GhostTree Attack Uses Recursive Windows Junctions to Hide Malware from EDR

A newly disclosed technique dubbed GhostTree exploits a little-known feature of the Windows NTFS file system to conceal malware from security scanners. By creating recursive direct...

MalwareVulnerabilityThreat Intel
Read More → Use Tool →
2026-06-16The Hacker News
Attackers Exploit Three Fortinet FortiSandbox Flaws, Including One Patched Last Week

Threat intelligence firm Defused Cyber has reported active in-the-wild exploitation of three critical vulnerabilities in Fortinet FortiSandbox appliances over the past 24 hours. Th...

VulnerabilityThreat IntelAI Threats
Read More → Use Tool →
2026-06-15BleepingComputer
Critical SimpleHelp Flaw Lets Hackers Create Rogue Admin Accounts

A critical vulnerability in SimpleHelp remote management software, tracked as CVE-2026-48558, enables unauthenticated attackers to create privileged Technician accounts on servers ...

VulnerabilityAuthenticationIncident Response
Read More → Use Tool →
2026-06-15The Hacker News
Critical LiteLLM Flaw Chain Lets Low-Privilege Users Hijack AI Gateways

Researchers at Obsidian Security have disclosed a three-vulnerability chain in LiteLLM, a widely deployed open-source AI gateway that brokers calls to more than 100 model providers...

VulnerabilityAI SecurityLLM Security
Read More → Use Tool →
2026-06-15The Hacker News
SearchLeak: One-Click Microsoft 365 Copilot Flaw Exposed Emails

Researchers at Varonis Threat Labs have disclosed a critical chain of three vulnerabilities in Microsoft 365 Copilot's Enterprise Search feature that, if exploited, would have allo...

VulnerabilityAI SecurityPhishing
Read More → Use Tool →
2026-06-15The Hacker News
Chrome 0-Day, ShinyHunters Oracle Attack & Arch Linux Supply Chain Hit

Google has rolled out emergency security updates for Chrome to patch CVE-2026-11645, a high-severity out-of-bounds memory access vulnerability in the V8 JavaScript and WebAssembly ...

Zero-DayVulnerabilitySupply Chain
Read More → Use Tool →
2026-06-15The Hacker News
Palo Alto Networks PAN-OS GlobalProtect VPN Flaw Actively Exploited

Palo Alto Networks has confirmed active exploitation of CVE-2026-0257, a high-severity authentication bypass vulnerability (CVSS 7.8) affecting the GlobalProtect VPN portal and gat...

VulnerabilityAuthenticationThreat Intel
Read More → Use Tool →
2026-06-13The Hacker News
Critical Splunk Enterprise Flaw Enables Unauthenticated RCE via PostgreSQL Sidecar

Splunk has rolled out emergency security patches for a critical vulnerability in Splunk Enterprise that allows remote attackers to execute arbitrary code without any authentication...

VulnerabilityAuthenticationZero-Day
Read More → Use Tool →
2026-06-12BleepingComputer
Critical phpBB Auth Bypass Flaw Unpatched for 10 Years Exposes Admin Accounts

Security researchers at application security firm Aikido have disclosed a severe authentication bypass vulnerability in phpBB, the widely used open-source forum platform, that h...

AuthenticationVulnerabilityBug Bounty
Read More → Use Tool →
2026-06-12Dark Reading
ShinyHunters Exploit Oracle Zero-Day in Major University Data Breach

ShinyHunters, one of the most prolific data extortion groups active today, has weaponized a critical zero-day vulnerability in Oracle's enterprise resource planning (ERP) software ...

Zero-DayData BreachVulnerability
Read More → Use Tool →
2026-06-12The Hacker News
Agentjacking Attack Exploits Sentry MCP to Hijack AI Coding Agents

Cybersecurity researchers at Tenet Security have uncovered a new attack class dubbed “Agentjacking” that tricks AI coding agents into executing arbitrary code on developer machines...

AI SecurityAI ThreatsVulnerability
Read More → Use Tool →
2026-06-12The Hacker News
LangGraph Flaw Chain Enables Remote Code Execution in Self-Hosted AI Agents

Cybersecurity researchers at Check Point have disclosed three now-patched vulnerabilities in LangGraph, the open-source framework from LangChain used to build stateful, multi-agent...

AI SecurityVulnerabilityAI Threats
Read More → Use Tool →
2026-06-12BleepingComputer
Microsoft Fixes WUSA Installer Bug Breaking Windows Updates on Network Shares

Microsoft has resolved a long-standing known issue that caused Windows updates released since May 2025 to fail when deployed via the Windows Update Standalone Installer (WUSA) from...

VulnerabilityIncident Response
Read More → Use Tool →
2026-06-11The Hacker News
ShinyHunters Exploit Oracle PeopleSoft Zero-Day to Hit Universities

The ShinyHunters extortion group exploited a critical zero-day vulnerability in Oracle PeopleSoft to breach enterprise systems and steal sensitive data between May 27 and June 9, 2...

Zero-DayData BreachVulnerability
Read More → Use Tool →
2026-06-11The Hacker News
OpenClaw AI Agent Flaws Let Attackers Run Code and Steal Data

Two independent security teams have disclosed serious weaknesses in OpenClaw, a popular self-hosted AI agent, showing how ordinary-looking inputs can be weaponized to execute attac...

AI SecurityLLM SecurityVulnerability
Read More → Use Tool →
2026-06-11The Hacker News
GreatXML Exploit Bypasses Windows BitLocker in Just 4 Hours

Security researcher Chaotic Eclipse, also known as Nightmare-Eclipse and MSNightmare, has publicly disclosed a new Windows BitLocker bypass exploit dubbed GreatXML, marking the res...

VulnerabilityEncryptionZero-Day
Read More → Use Tool →
2026-06-11The Hacker News
GitHub npm v12 Disables Install Scripts to Block Supply Chain Attacks

GitHub has announced sweeping "breaking changes" coming to npm version 12, scheduled for release next month, including a default-off setting for install scripts designed to disrupt...

Supply ChainMalwareVulnerability
Read More → Use Tool →
2026-06-11The Hacker News
AI Compressed Time-to-Exploit to 24 Hours: Why CISOs Are Switching to BAS

For three decades, vulnerability management depended on a buffer: the months between disclosure and weaponization. Triage by severity, schedule remediation, validate, and move on. ...

AI ThreatsVulnerabilityThreat Intel
Read More → Use Tool →
2026-06-10BleepingComputer
Hackers Actively Exploit Path Traversal Flaw in AI Platform Langflow

Attackers are weaponizing CVE-2026-5027, a high-severity path traversal vulnerability in the open-source AI development platform Langflow, to write arbitrary files onto exposed ser...

VulnerabilityAI SecurityZero-Day
Read More → Use Tool →
2026-06-10The Hacker News
Ivanti, Fortinet, SAP Patch Critical RCE and Auth Bypass Flaws

Fortinet, Ivanti, and SAP have rolled out urgent security updates addressing multiple critical vulnerabilities that could enable arbitrary code execution, authentication bypass, an...

VulnerabilityAuthenticationCloud Security
Read More → Use Tool →
2026-06-10The Hacker News
Langflow CVE-2026-5027 Exploited: Unauthenticated RCE via Path Traversal

A high-severity, unpatched flaw in Langflow—the open-source low-code platform for building AI applications—is now under active exploitation in the wild, according to findings from ...

VulnerabilityAI SecurityZero-Day
Read More → Use Tool →
2026-06-10The Hacker News
Automated Pentest Blind Spots: What Your Security Report Is Missing

A clean penetration test report may look reassuring, but security leaders should read it as a warning sign, not a victory lap. According to Autumn Stambaugh and Can Yüceel of Picus...

VulnerabilityCloud SecurityThreat Intel
Read More → Use Tool →
2026-06-10The Hacker News
Microsoft Patches Record 206 Flaws Including 3 Zero-Days and Critical RCE Bugs

Microsoft released fixes for a record 206 security vulnerabilities on Tuesday as part of its June 2026 Patch Tuesday cycle, including three publicly disclosed zero-day flaws. Of th...

Zero-DayVulnerabilityIncident Response
Read More → Use Tool →
2026-06-10The Hacker News
Proto6 Flaws in protobuf.js Expose Node.js Apps to RCE and DoS Attacks

Cybersecurity researchers at Cyera have disclosed six vulnerabilities in protobuf.js, a widely used JavaScript and TypeScript implementation of Google's Protocol Buffers serializat...

VulnerabilitySupply ChainCloud Security
Read More → Use Tool →
2026-06-10BleepingComputer
Anthropic Rolls Out Claude Fable 5 With New AI Safeguards

Anthropic has begun rolling out Claude Fable 5, a new AI model built on the same foundation as its powerful Mythos class. When Anthropic first unveiled Mythos, the company warned t...

AI SecurityLLM SecurityVulnerability
Read More → Use Tool →
2026-06-09The Hacker News
Critical Veeam Backup RCE Flaw (CVE-2026-44963) Lets Domain Users Execute Code

Veeam has shipped an emergency patch for a critical remote code execution vulnerability in its widely deployed Backup & Replication platform. Tracked as CVE-2026-44963, the flaw ca...

VulnerabilityRansomwareCloud Security
Read More → Use Tool →
2026-06-09BleepingComputer
ServiceNow Data Breach Exposes Customer Instances via API Flaw

ServiceNow disclosed a security incident on June 9, 2026, revealing that attackers exploited an unauthenticated access flaw in a REST API endpoint to query data from hosted custome...

Data BreachVulnerabilityCloud Security
Read More → Use Tool →
2026-06-09The Hacker News
Russia-Linked APTs Still Exploiting Patched WinRAR Flaw to Target Ukraine

Two Russia-aligned cyber-espionage campaigns have continued weaponizing CVE-2025-8088, a path-traversal vulnerability in WinRAR patched in July 2025, to compromise Ukrainian organi...

APTVulnerabilityThreat Intel
Read More → Use Tool →
2026-06-09The Hacker News
FROST Attack Uses SSD Timing to Spy on Your Browsing History

Researchers at Graz University of Technology have unveiled FROST, a new side-channel attack that lets any malicious website determine which sites you visit and which applications y...

PrivacyVulnerability
Read More → Use Tool →
2026-06-09The Hacker News
CISA Adds LiteLLM Command Injection Flaw to KEV After Wild Exploitation

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a high-severity command injection vulnerability in BerriAI LiteLLM to its Known Exploited Vulnerabilities...

VulnerabilityLLM SecurityAI Security
Read More → Use Tool →
2026-06-09SecurityWeek
Google Patches 5th Chrome Zero-Day of 2026: CVE-2026-11645

Google on Monday rolled out Chrome 149, a critical security update that patches 74 vulnerabilities, including a high-severity zero-day flaw actively exploited in the wild. The vuln...

Zero-DayVulnerabilityBug Bounty
Read More → Use Tool →
2026-06-08The Hacker News
Linux Kernel nf_tables Flaw CVE-2026-23111 Enables Local Root Escalation

Security researchers have released a fully working exploit for CVE-2026-23111, a one-character use-after-free vulnerability in the Linux kernel's nf_tables packet-filtering subsyst...

VulnerabilityZero-Day
Read More → Use Tool →
2026-06-08The Hacker News
VS Code Adds 2-Hour Auto-Update Delay to Thwart Supply Chain Attacks

Microsoft has rolled out a new protective measure in Visual Studio Code (VS Code) 1.123 that delays automatic extension updates by two hours, aiming to curb the rising tide of soft...

Supply ChainVulnerabilityMalware
Read More → Use Tool →
2026-06-07BleepingComputer
C0XMO Botnet Exploits DD-WRT Flaw to Wipe Rival Malware

Fortinet researchers have uncovered a new variant of the Gafgyt botnet, dubbed C0XMO, which exploits a long-known buffer overflow vulnerability in DD-WRT router firmware (CVE-2021-...

MalwareVulnerabilityThreat Intel
Read More → Use Tool →
2026-06-07SecurityWeek
Emphere Raises $2.1M to Fix Open-Source Vulnerabilities With AI

Seattle-based cybersecurity startup Emphere has secured $2.1 million in pre-seed funding from AI2 Incubator and Outsiders Fund to advance its AI-driven vulnerability remediation pl...

AI SecurityVulnerabilitySupply Chain
Read More → Use Tool →
2026-06-06BleepingComputer
Critical Everest Forms Pro Flaw Actively Exploited to Hijack WordPress Sites

Hackers are actively exploiting a critical unauthenticated remote code execution (RCE) vulnerability in the Everest Forms Pro WordPress plugin to seize full control of vulnerable w...

VulnerabilityAuthenticationThreat Intel
Read More → Use Tool →
2026-06-06The Hacker News
CISA Adds SolarWinds Serv-U DoS Flaw CVE-2026-28318 to KEV Catalog

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a high-severity denial-of-service vulnerability in SolarWinds Serv-U to its Known Exploited Vulnerabiliti...

VulnerabilityIncident ResponseRansomware
Read More → Use Tool →
2026-06-06The Hacker News
AI Agent Finds 21 FFmpeg Zero-Days as Chrome 149 Patches Record 429 Bugs

A security startup called depthfirst reported 21 previously unknown vulnerabilities in FFmpeg, the ubiquitous open-source media library, all uncovered by an autonomous AI agent. Th...

Zero-DayVulnerabilityAI Security
Read More → Use Tool →
2026-06-05BleepingComputer
CISA Warns: SolarWinds Serv-U Flaw Actively Exploited to Crash Servers

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that threat actors are actively exploiting a recently patched high-severity vulnerability in SolarWin...

VulnerabilityIncident ResponseThreat Intel
Read More → Use Tool →
2026-06-05The Hacker News
Hackers Exploit Critical Everest Forms Pro RCE Flaw to Hijack WordPress Sites

Threat actors are actively weaponizing a critical remote code execution vulnerability in the Everest Forms Pro WordPress plugin, putting an estimated 4,000 active installations at ...

VulnerabilityThreat IntelMalware
Read More → Use Tool →
2026-06-04The Hacker News
Cisco Unified CM SSRF Flaw (CVE-2026-20230): PoC Public, Full Patch Months Away

Cisco has released a patch for a server-side request forgery (SSRF) vulnerability in Unified Communications Manager (Unified CM) and its Session Management Edition that allows an u...

VulnerabilityThreat IntelAuthentication
Read More → Use Tool →
2026-06-04The Record
CISA to Issue Binding AI Directive This Week, Acting Director Says

The Cybersecurity and Infrastructure Security Agency (CISA) will release a binding operational directive (BOD) to federal agencies by the end of the week, directing them on how to ...

AI SecurityRegulationVulnerability
Read More → Use Tool →
2026-06-03The Hacker News
Poisoned Notifications Could Hijack Google Gemini on Android

A single malicious notification pushed through WhatsApp, Slack, SMS, Signal, Instagram, or Messenger was enough to hijack Google Gemini's voice assistant on Android, according to r...

AI SecurityAI ThreatsVulnerability
Read More → Use Tool →
2026-06-03The Hacker News
Microsoft 365 Android Bug Let Any App Steal User Account Tokens

A single leftover debug flag in production builds of several Microsoft 365 Android applications disabled a critical security check, allowing any app installed on the same device to...

VulnerabilityAuthentication
Read More → Use Tool →
2026-06-03The Hacker News
Autonomous AI Uncovers 2-Year-Old Redis RCE Flaw (CVE-2026-23479)

Redis has patched a use-after-free vulnerability in its blocking-client code that allows an authenticated user to execute arbitrary OS commands on the host running the database. Tr...

VulnerabilityCloud SecurityAI Security
Read More → Use Tool →
2026-06-03The Hacker News
One-Click GitHub.dev Attack Steals Full OAuth Tokens via VS Code

Cybersecurity researchers have disclosed a critical one-click attack chain that abuses Microsoft Visual Studio Code (VS Code) webviews to steal fully scoped GitHub OAuth tokens. Di...

VulnerabilityAuthenticationSupply Chain
Read More → Use Tool →
2026-06-03The Hacker News
Beyond the Zero-Day: Map Your Network the Way Attackers Do

Assume the breach. Zero-days continue to ship faster than patches, and AI-assisted exploit development has rendered the "patch everything in time" strategy obsolete for most organi...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-06-03BleepingComputer
CISA Warns of Active Attacks Exploiting Android and Linux Kernel Flaws

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two high-severity vulnerabilities—one in the Android Framework and another in the Linux kernel—to its Kno...

VulnerabilityThreat IntelIncident Response
Read More → Use Tool →
2026-06-03The Hacker News
Unpatched Windows Search URI Flaw Lets Attackers Steal NTLMv2 Hashes

Cybersecurity researchers at Huntress have disclosed an unpatched vulnerability in the Windows "search:" URI handler that can be weaponized to leak a user's NTLMv2 hash to a remote...

VulnerabilityAuthenticationThreat Intel
Read More → Use Tool →
2026-06-03The Hacker News
HTTP/2 Bomb: New DoS Flaw Hits NGINX, Apache, IIS, Envoy & Cloudflare

Cybersecurity researchers at Calif have disclosed a new remote denial-of-service vulnerability dubbed "HTTP/2 Bomb" that affects five major web server platforms: NGINX, Apache HTTP...

VulnerabilityZero-DayCloud Security
Read More → Use Tool →
2026-06-03BleepingComputer
Acer Wave 7 Routers Hit by Two Max-Severity Zero-Day Vulnerabilities

Acer has confirmed it is actively developing patches for two maximum-severity zero-day vulnerabilities impacting its Wave 7 mesh routers. Both flaws were reported by independent se...

Zero-DayVulnerabilityAuthentication
Read More → Use Tool →
2026-06-02The Hacker News
Google June 2026 Android Update Fixes 124 Flaws, One Actively Exploited

Google has rolled out its June 2026 Android security bulletin, addressing 124 vulnerabilities across the mobile operating system, including a high-severity privilege escalation fla...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-06-02The Hacker News
CISA Adds Oracle WebLogic CVE-2024-21182 to KEV Catalog Amid Active Exploitation

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a high-severity Oracle WebLogic Server flaw, tracked as CVE-2024-21182, to its Known Exploited Vulnerabil...

VulnerabilityThreat IntelIncident Response
Read More → Use Tool →
2026-06-02The Hacker News
AI-Driven Exploitation Is Breaking Vulnerability Management in 2026

The window between vulnerability disclosure and indiscriminate exploitation has collapsed from days to hours, driven by AI-powered tooling that automates discovery, reproduction, a...

AI SecurityAI ThreatsVulnerability
Read More → Use Tool →
2026-06-01The Hacker News
Critical Gogs Zero-Day RCE; PAN-OS Flaw Under Active Exploitation

Palo Alto Networks has issued a critical warning regarding CVE-2026-0257, a medium-severity authentication bypass vulnerability affecting PAN-OS and Prisma Access with a CVSS score...

Zero-DayVulnerabilityMalware
Read More → Use Tool →
2026-06-01The Hacker News
Critical WP Maps Pro Flaw Actively Exploited to Create Admin Accounts

A critical security vulnerability (CVE-2026-8732) in the WP Maps Pro WordPress plugin is being actively exploited by threat actors to create malicious administrator accounts on vul...

VulnerabilityZero-Day
Read More → Use Tool →
2026-05-31BleepingComputer
Critical WP Maps Pro Zero-Day Allows Admin Account Creation

Security researchers have identified active exploitation of a critical zero-day vulnerability in the WP Maps Pro WordPress plugin, tracked as CVE-2026-8732 with a severity rating o...

Zero-DayVulnerabilityIncident Response
Read More → Use Tool →
2026-05-30The Hacker News
CVE-2026-0257: PAN-OS GlobalProtect Bypass Actively Exploited

Palo Alto Networks has confirmed active exploitation of CVE-2026-0257, a medium-severity authentication bypass vulnerability (CVSS 7.8) affecting PAN-OS and Prisma Access GlobalPro...

VulnerabilityAuthenticationZero-Day
Read More → Use Tool →
2026-05-29The Hacker News
ChatGPhish Vulnerability Exposes ChatGPT to Phishing Attacks

Security researchers at Permiso Security have uncovered a critical vulnerability in OpenAI's ChatGPT, dubbed ChatGPhish, that transforms the AI assistant's web summarization featur...

VulnerabilityLLM SecurityPhishing
Read More → Use Tool →
2026-05-29The Hacker News
LLM Agent Used in Post-Exploitation After Marimo CVE-2026-39987 Exploit

Sysdig researchers have documented a sophisticated cyberattack where threat actors deployed a large language model (LLM) agent to automate post-exploitation activities following th...

LLM SecurityVulnerabilityCloud Security
Read More → Use Tool →
2026-05-29The Hacker News
Shadow Builders: 2,000+ Vibe-Coded Apps Expose Corporate Data

Security researchers at Red Access have uncovered a alarming trend in enterprise data exposure through what they term the 'Shadow Builders' phenomenon. In a comprehensive investiga...

AI SecurityData BreachVulnerability
Read More → Use Tool →
2026-05-28The Hacker News
Critical Gogs RCE Vulnerability Allows Code Execution

A critical security vulnerability has been disclosed in Gogs, a popular open-source self-hosted Git service, enabling authenticated users to execute arbitrary code on affected serv...

VulnerabilityZero-DayAuthentication
Read More → Use Tool →
2026-05-28The Hacker News
Microsoft Condemns Public Zero-Day Disclosures After GitHub Takedown

Microsoft has strongly advocated for Coordinated Vulnerability Disclosure (CVD) following a public disclosure of multiple zero-day vulnerabilities affecting Windows components, inc...

Zero-DayVulnerabilityBug Bounty
Read More → Use Tool →
2026-05-26The Hacker News
Microsoft Patches Critical SharePoint RCE Flaw CVE-2026-45659

Microsoft has released security updates addressing a critical remote code execution vulnerability, tracked as CVE-2026-45659, affecting Microsoft SharePoint Server across multiple ...

Vulnerability
Read More → Use Tool →
2026-05-26The Hacker News
KnowledgeDeliver LMS Zero-Day Used to Deploy Godzilla & Cobalt Strike

A critical high-severity vulnerability (CVE-2026-5426, CVSS 7.5) in Digital Knowledge KnowledgeDeliver, a Learning Management System (LMS) widely used in Japan, was actively exploi...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-05-25The Hacker News
Ghost CMS CVE-2026-26980 Exploited: 700+ Sites Hit in ClickFix Attacks

Threat actors are actively exploiting a critical SQL injection vulnerability in Ghost CMS (CVE-2026-26980, CVSS 9.4) to compromise over 700 websites across multiple sectors includi...

VulnerabilityMalwareThreat Intel
Read More → Use Tool →
2026-05-24BleepingComputer
Ghost CMS CVE-2026-26980 SQL Injection Powers ClickFix Campaign

A coordinated campaign is actively exploiting a critical SQL injection flaw (CVE-2026-26980) in Ghost CMS to inject malicious JavaScript that drives a ClickFix attack flow. Discove...

Zero-DayVulnerabilityMalware
Read More → Use Tool →
2026-05-23The Hacker News
Anthropic's Claude Mythos Finds 10,000 High-Severity Flaws in Software

Anthropic's Project Glasswing initiative has uncovered more than 10,000 high- or critical-severity vulnerabilities across systemically important software globally since its launch ...

VulnerabilityAI SecurityZero-Day
Read More → Use Tool →
2026-05-23The Record
CISA Launches Form for Researchers to Report Exploited Vulnerabilities

The Cybersecurity and Infrastructure Security Agency (CISA) has unveiled a new nomination form enabling security researchers, vendors, and industry partners to submit vulnerabiliti...

VulnerabilityThreat IntelBug Bounty
Read More → Use Tool →
2026-05-21BleepingComputer
Google Leaks Unfixed Chromium Flaw Enabling Silent JS Botnet

Google inadvertently exposed technical details of an unfixed Chromium vulnerability that allows JavaScript to persist in the background after the browser is closed, effectively giv...

VulnerabilityZero-DayBug Bounty
Read More → Use Tool →
2026-05-21The Hacker News
Microsoft Defender Zero-Days Actively Exploited; Added to CISA KEV

Microsoft has disclosed two actively exploited vulnerabilities in Microsoft Defender—a privilege escalation flaw and a denial-of-service bug—both now under active exploitation in t...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-05-19BleepingComputer
ChromaDB Max-Severity Flaw CVE-2026-45829 Allows Server Hijacking

A critical vulnerability, tracked as CVE-2026-45829, has been discovered in ChromaDB's Python FastAPI implementation, allowing unauthenticated attackers to exec...

VulnerabilityZero-DayAI Security
Read More → Use Tool →
2026-05-18The Hacker News
Ivanti, Fortinet, SAP, VMware Patch Critical RCE, SQL Injection, Privilege Escalation

Multiple enterprise software vendors have released critical security patches addressing severe vulnerabilities that could allow remote code execution, authentication bypass, and pr...

VulnerabilityZero-DayAuthentication
Read More → Use Tool →
2026-05-18Dark Reading
AI Agents Expose New Vulnerability Risks in Generated Code

Security researchers are warning that a new generation of AI agents capable of autonomously discovering and exploiting obscure vulnerabilities is fundamentally altering the threat ...

AI SecurityVulnerabilitySupply Chain
Read More → Use Tool →
2026-05-17BleepingComputer
MiniPlasma Windows Zero-Day Exploit Grants SYSTEM Access - PoC Released

A critical Windows privilege escalation zero-day exploit, dubbed "MiniPlasma," has been publicly released, enabling attackers to gain SYSTEM-level access on fully patched Windows s...

Zero-DayVulnerabilityPrivacy
Read More → Use Tool →
2026-05-17The Hacker News
NGINX CVE-2026-42945 Actively Exploited - Critical RCE Risk

A critical heap buffer overflow vulnerability in NGINX's ngx_http_rewrite_module, tracked as CVE-2026-42945 with a CVSS score of 9.2, is now under active exploitation mere days aft...

Zero-DayVulnerabilityThreat Intel
Read More → Use Tool →
2026-05-16BleepingComputer
Microsoft Rejects Azure Backup AKS Vulnerability Report, Blocks CVE

Security researcher Justin O'Leary has disclosed a critical vulnerability in Microsoft Azure Backup for Azure Kubernetes Service (AKS) that allowed privilege escalation from a low-...

VulnerabilityCloud Security
Read More → Use Tool →
2026-05-16The Hacker News
WooCommerce Funnel Builder Flaw Under Exploitation Enables Checkout Skimming

A critical vulnerability in the Funnel Builder plugin for WordPress, used by over 40,000 WooCommerce stores, is being actively exploited to inject malicious JavaScript into checkou...

VulnerabilityZero-DayMalware
Read More → Use Tool →
2026-05-16SecurityWeek
Critical NGINX Heap Overflow PoC Published – CVE-2026-42945

Technical details and proof-of-concept (PoC) exploit code targeting a newly patched critical-severity vulnerability in NGINX are now publicly available. Tracked as CVE-2026-42945 w...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-05-15The Hacker News
Living-Off-the-Land Attacks: 84% of Breaches Exploit Trusted Tools

Bitdefender's analysis of 700,000 high-severity incidents reveals that legitimate-tool abuse now accounts for 84% of attacks, fundamentally reshaping how organizations must approac...

Threat IntelVulnerability
Read More → Use Tool →
2026-05-15The Hacker News
CISA Adds Critical Cisco SD-WAN Flaw CVE-2026-20182 to KEV Catalog

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2026-20182, a critical authentication bypass vulnerability affecting Cisco Catalyst SD-WAN Controller...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-05-14The Hacker News
PAN-OS RCE Exploited in Wild; Meta Privacy; Defense Data Leak

Palo Alto Networks has released emergency patches for CVE-2026-0300, a critical buffer overflow vulnerability in the User-ID Authentication Portal service of PAN-OS software. The f...

Zero-DayVulnerabilityData Breach
Read More → Use Tool →
2026-05-14The Hacker News
New Fragnesia Linux Kernel Flaw Grants Root via Page Cache Corruption

Security researchers have identified Fragnesia, a new local privilege escalation (LPE) vulnerability in the Linux kernel affecting multiple distributions. Tracked as CVE-2026-46300...

VulnerabilityZero-Day
Read More → Use Tool →
2026-05-14The Hacker News
Windows Zero-Days Expose BitLocker Bypass and CTFMON Privilege Escalation

Security researcher Chaotic Eclipse (also known as Nightmare-Eclipse) has disclosed two critical zero-day vulnerabilities affecting Windows systems: YellowKey, a BitLocker bypass a...

Zero-DayVulnerabilityEncryption
Read More → Use Tool →
2026-05-11The Hacker News
cPanel CVE-2026-41940 Under Active Exploitation - Filemanager Backdoor

Security researchers at QiAnXin XLab have identified active exploitation of CVE-2026-41940, a critical authentication bypass vulnerability affecting cPanel and WebHost Manager (WHM...

VulnerabilityMalwareAPT
Read More → Use Tool →
2026-05-11The Hacker News
Purple Teaming Fails: Attackers Exploit CVEs in 10 Hours, Defenders Can't Keep Up

The cybersecurity industry’s beloved “purple team” concept is broken by design. According to data from CISA KEV, VulnCheck KEV, and ExploitDB, the mean time from ...

VulnerabilityThreat IntelIncident Response
Read More → Use Tool →
2026-05-10The Hacker News
Ollama Memory Leak Vulnerability Allows Remote Process Memory Exposure

Cybersecurity researchers have identified a critical out-of-bounds read vulnerability (CVE-2024-37054) in Ollama, the popular open-source large language model (LLM) deployment fram...

VulnerabilityLLM SecurityZero-Day
Read More → Use Tool →
2026-05-09The Hacker News
cPanel & WHM Patch 3 Critical Vulnerabilities – Update Now

cPanel Inc. has pushed a critical set of patches for its flagship hosting control panel software, addressing three distinct security flaws in both cPanel and the accompanying Web H...

VulnerabilityZero-Day
Read More → Use Tool →
2026-05-08SecurityWeek
Train Hacker Arrested, PamDOORa Backdoor, New CISA Director Frontrunner

U.S. authorities have apprehended a suspect allegedly responsible for compromising rail signaling systems, marking a rare enforcement action against attacks on transportation netwo...

Threat IntelVulnerabilitySupply Chain
Read More → Use Tool →
2026-05-08SecurityWeek
Polish Agency Reports ICS Breaches at Five Water Treatment Plants

Poland's Computer Security Incident Response Team (CERT Polska) has disclosed a series of intrusion campaigns targeting Industrial Control Systems (ICS) at five municipal water tre...

VulnerabilityThreat Intel
Read More → Use Tool →
2026-05-08SecurityWeek
Claude Chrome Extension Flaw Allows Attackers to Hijack AI Agent

Security researchers at Cisco Talos have disclosed a critical flaw in the Claude Chrome extension (version 2.3.0) that lets remote attackers hijack the AI agent by abusing the exte...

VulnerabilityAI SecurityLLM Security
Read More → Use Tool →
2026-05-08SecurityWeek
Ivanti Releases Patch for EPMM Zero‑Day CVE‑2026‑6973 Exploited in Attacks

Ivanti has issued an emergency patch for a critical zero‑day vulnerability in its Endpoint Manager Mobile (EPMM) platform, tracked as CVE‑2026‑6973. The flaw, rated 9.1 on the CVSS...

Zero-DayVulnerabilityAPT
Read More → Use Tool →
2026-05-08The Hacker News
25M Alerts Expose Hidden Low-Severity Threat Gaps in Enterprise SOC

A recent analysis of more than 25 million security alerts collected from a dozen global security operations centers (SOCs) over a six‑month period reveals that low‑severity events ...

Threat IntelIncident ResponseVulnerability
Read More → Use Tool →
2026-05-08The Hacker News
Dirty Frag: New Linux Kernel Exploit Grants Root Access

Security researchers have disclosed a critical unpatched local privilege escalation (LPE) vulnerability in the Linux kernel, tracked as CVE-2026-3157, dubbed 'Dirty Frag.' The flaw...

Zero-DayVulnerabilityThreat Intel
Read More → Use Tool →
2026-05-08BleepingComputer
CISA Orders Federal Agencies to Patch Ivanti Zero-Day Flaw in 4 Days

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an emergency directive requiring federal civilian agencies to patch a critical vulnerability in Ivanti Endpoi...

Zero-DayVulnerabilityRegulation
Read More → Use Tool →
2026-05-08BleepingComputer
Dirty Frag Linux Zero-Day Grants Root Access on Major Distros

Security researchers have disclosed a critical Linux zero-day vulnerability, dubbed 'Dirty Frag,' that enables local attackers to escalate privileges to root on most major Linux di...

Zero-DayVulnerability
Read More → Use Tool →
2026-05-07SecurityWeek
Palo Alto Zero-Day Exploited in Chinese State Hacking Campaign

Palo Alto Networks has confirmed the active exploitation of a critical zero-day vulnerability affecting its PAN-OS firewall software. The flaw, tracked as CVE-2024-3400 and rated c...

Zero-DayAPTVulnerability
Read More → Use Tool →
2026-05-07The Hacker News
Ivanti EPMM CVE-2026-6973 RCE Under Active Exploitation – Admin Access

Ivanti has released a critical advisory warning of a high‑severity flaw in its Endpoint Manager Mobile (EPMM) product, tracked as CVE‑2026‑6973 and rated 7.2 on the CVSS scale. The...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-05-07The Hacker News
PCPJack Credential Stealer Uses 5 CVEs to Spread Worm-Like in Cloud

Cybersecurity researchers have uncovered a new credential‑stealing framework called PCPJack that aggressively targets exposed cloud infrastructure and propagates in a worm‑like fas...

MalwareCloud SecurityVulnerability
Read More → Use Tool →
2026-05-07The Hacker News
PAN-OS RCE Flaw Under Active Exploitation; Root Access & Espionage Threat

Palo Alto Networks released an advisory on April 8 2026 warning of a critical remote‑code‑execution (RCE) vulnerability in its PAN‑OS firmware (CVE‑2026‑2024, CVSS 10.0). The flaw ...

Zero-DayVulnerabilityAPT
Read More → Use Tool →
2026-05-07The Hacker News
Edge Plaintext Passwords, ICS 0‑Days, Patch‑or‑Die Alerts: 2026 Threat Report

The first week of 2026 has been marked by a confluence of critical vulnerabilities and aggressive threat campaigns that underscore the continuing fragility of enterprise and indust...

Zero-DayVulnerabilityData Breach
Read More → Use Tool →
2026-05-07The Hacker News
Critical vm2 Flaws Enable Sandbox Escape, Arbitrary Code Execution

Security researchers have disclosed twelve critical vulnerabilities in the popular vm2 Node.js sandbox library, collectively enabling attackers to escape the sandbox environment an...

Zero-DayVulnerabilitySupply Chain
Read More → Use Tool →
2026-05-07BleepingComputer
ShinyHunters Exploits Zero‑Day to Deface Canvas Login Portals at 300+ Colleges

On March 12, 2025, the ShinyHunters ransomware group successfully compromised Instructure, the maker of the Canvas learning management system, by exploiting a previously unknown vu...

Zero-DayData BreachVulnerability
Read More → Use Tool →
2026-05-07BleepingComputer
Ivanti EPMM Zero-Day Remote Code Execution Flaw Patched

Ivanti has released an emergency patch for a critical remote‑code‑execution (RCE) vulnerability in its Endpoint Manager Mobile (EPMM) product. Tracked as CVE‑2023‑XXXXX with a CVSS...

Zero-DayVulnerability
Read More → Use Tool →
2026-05-07Dark Reading
TrustFall Flaw Exposes Code Execution in Claude, Cursor, Gemini, CoPilot

Security researchers at the TrustFall convention have disclosed a critical vulnerability that allows malicious code repositories to trigger arbitrary code execution in several popu...

VulnerabilitySupply ChainLLM Security
Read More → Use Tool →
2026-05-07BleepingComputer
Critical Palo Alto Networks Zero-Day Exploited for Nearly a Month

Palo Alto Networks issued an urgent advisory warning customers that a critical‑severity zero‑day vulnerability in its PAN‑OS firewall software has been actively exploited by suspec...

Zero-DayAPTVulnerability
Read More → Use Tool →
2026-05-07Dark Reading
AI-Driven Cyberattack Targets SCADA Systems, Foiled by Login Screen

Security researchers at Mandiant and Dragos have documented what they are calling the world's first fully AI-integrated cyberattack campaign targeting operational technology (OT) i...

AI ThreatsVulnerabilityThreat Intel
Read More → Use Tool →
2026-05-06The Hacker News
New Mirai Botnet 'xlabs_v1' Exploits ADB for IoT DDoS Attacks

Cybersecurity researchers have identified a new Mirai-variant botnet designated as xlabs_v1 that actively exploits the Android Debug Bridge (ADB) interface to compromise internet-c...

MalwareVulnerabilityThreat Intel
Read More → Use Tool →
2026-05-06The Hacker News
Google Expands Binary Transparency for Android to Block Supply Chain Attacks

Google has announced a significant expansion of its Binary Transparency initiative for Android, introducing a public verification mechanism designed to protect the ecosystem from s...

Supply ChainVulnerabilityEncryption
Read More → Use Tool →
2026-05-06The Hacker News
Palo Alto PAN-OS Flaw CVE-2026-0300 Under Active Exploitation

Palo Alto Networks has issued an urgent security advisory regarding a critical buffer overflow vulnerability, tracked as CVE-2026-0300, affecting multiple versions of PAN-OS softwa...

Zero-DayVulnerabilityIncident Response
Read More → Use Tool →
2026-05-06Dark Reading
Instructure Breach Exposes Canvas LMS Vendor Risks for Schools

A threat actor known as ShinyHunters has claimed responsibility for a cyberattack against Instructure, the company behind the widely deployed Canvas learning management system (LMS...

Data BreachSupply ChainVulnerability
Read More → Use Tool →
2026-05-06Dark Reading
UAE Cyberattacks Triple, Critical Infrastructure at Risk

As the conflict with Iran intensifies, cyber operatives have turned their focus on the United Arab Emirates, with breach attempts spiking threefold over the past few weeks. Securit...

APTVulnerability
Read More → Use Tool →
2026-05-06BleepingComputer
Critical vm2 Sandbox Escape Bug Allows Host Code Execution

A critical sandbox‑escape flaw (CVE‑2023‑48927) has been uncovered in vm2, the widely‑used Node.js sandboxing library. The vulnerability, discovered by security researcher Alex Tsv...

Zero-DayVulnerabilitySupply Chain
Read More → Use Tool →
2026-05-06BleepingComputer
Cisco Patches Critical DoS Flaw in Crosswork, Manual Reboot Needed

Cisco has released patches for a high‑severity denial‑of‑service (DoS) vulnerability affecting its Crosswork Network Controller and Network Services Orchestrator (NSO) products. Tr...

VulnerabilityIncident Response
Read More → Use Tool →
2026-05-06BleepingComputer
Palo Alto Warns of Critical Zero‑Day RCE in PAN‑OS User‑ID Portal

Palo Alto Networks issued an emergency advisory on Tuesday warning customers that a critical, as‑yet‑unpatched remote‑code‑execution (RCE) flaw in the PAN‑OS User‑ID Authentication...

Zero-DayVulnerabilityIncident Response
Read More → Use Tool →
2026-05-05The Hacker News
Critical Apache HTTP/2 Flaw CVE-2026-23918 Enables DoS and RCE

The Apache Software Foundation has released emergency security updates addressing CVE-2026-23918, a critical vulnerability in the Apache HTTP Server's HTTP/2 module that enables de...

VulnerabilityZero-Day
Read More → Use Tool →
2026-05-05The Hacker News
DAEMON Tools Supply Chain Attack Distributes Malware via Official Installers

A sophisticated supply‑chain compromise has been uncovered in the popular disc‑imaging suite DAEMON Tools, after security researchers at Kaspersky detected a malicious payload embe...

Supply ChainMalwareVulnerability
Read More → Use Tool →
2026-05-05The Hacker News
OAuth Token Exposure in AI Tools: Unclosed Backdoors Threaten Cloud Security

In the past twelve months, enterprises have rushed to embed AI‑powered writing assistants, workflow automations and productivity plugins into their Google Workspace and Microsoft 3...

VulnerabilityCloud SecurityAI Security
Read More → Use Tool →
2026-05-05The Hacker News
MetInfo CMS CVE-2026-29014 RCE Exploit Under Active Attack

Security researchers at VulnCheck have identified active exploitation of a critical remote‑code‑execution flaw in MetInfo, an open‑source content management system. The vulnerabili...

Zero-DayVulnerabilityMalware
Read More → Use Tool →
2026-05-05The Hacker News
1M Exposed AI Services Reveal Alarming Security Gaps

A joint research effort by the Security Research Lab (SRL) and the AI Security Initiative (AISI) scanned over one million publicly reachable AI endpoints across IPv4 space between ...

AI SecurityVulnerabilityPrivacy
Read More → Use Tool →
2026-05-05The Hacker News
Weaver E-cology RCE CVE-2026-22679 Exploited via Debug API

Security researchers have confirmed that the enterprise office‑automation platform Weaver E‑cology, developed by Fanwei, is being actively exploited in the wild. The flaw, tracked ...

Zero-DayVulnerability
Read More → Use Tool →
2026-05-05Dark Reading
Berkeley CLTC Provides Cybersecurity Tools for Under-Resourced Entities

The UC Berkeley Center for Long-Term Cybersecurity (CLTC) has launched a dedicated research hub designed to bridge the cybersecurity gap for schools, local governments, and non‑pro...

Threat IntelIncident ResponseVulnerability
Read More → Use Tool →
2026-05-05Dark Reading
How Security Leadership Shapes Penetration Test Success

When Alex Rivera, "CISO of Globex Systems", commissioned a penetration test in Q3 2023, his first decision was to define a precise scope that included internal VLAN segmentation, c...

VulnerabilityIncident ResponseBug Bounty
Read More → Use Tool →
2026-05-05Dark Reading
Edge Password Leak in Process Memory Threatens Enterprise

A new proof‑of‑concept (PoC) published by security researcher Alex Chen of CyberX Labs shows that Microsoft Edge stores user passwords in plaintext within the browser’s process mem...

VulnerabilityAuthenticationData Breach
Read More → Use Tool →
2026-05-05Dark Reading
USB Pen Test: Steve Stasiukonis' Viral Social Engineering Experiment

In 2004, penetration tester Steve Stasiukonis of the security firm “SecureX” conducted a USB drop experiment at a regional credit union in the Pacific Northwest. Armed with a batch...

VulnerabilityPhishingThreat Intel
Read More → Use Tool →
2026-05-05BleepingComputer
Student Arrested for Hacking Taiwan High-Speed Rail, Triggering Emergency Brakes

On 12 March 2026, Taiwanese authorities arrested a 23‑year‑old university student for allegedly compromising the TETRA (Terrestrial Trunked Radio) communication network that underp...

VulnerabilityIncident ResponseThreat Intel
Read More → Use Tool →
2026-05-05BleepingComputer
EOL Open Source Risks: CVE Feed Gaps Exposed

HeroDevs released a new analysis showing that end‑of‑life (EOL) open‑source components create systematic blind spots in CVE feeds and the Software Composition Analysis (SCA) tools ...

VulnerabilitySupply ChainZero-Day
Read More → Use Tool →
2026-05-05BleepingComputer
CloudZ RAT Abuses Microsoft Phone Link to Steal SMS & OTPs

Security researchers have uncovered a new variant of the CloudZ remote‑access trojan (RAT) that delivers a previously undocumented plugin named Pheno. This plugin exploits the Micr...

MalwarePrivacyVulnerability
Read More → Use Tool →
2026-05-05BleepingComputer
EOL Open-Source Software Exposes CVE Feed Gaps for SCA Tools

Modern DevSecOps pipelines lean heavily on CVE feeds such as the National Vulnerability Database (NVD) and Software Composition Analysis (SCA) tools like Snyk, Synopsys Black Duck,...

VulnerabilitySupply Chain
Read More → Use Tool →
2026-05-04The Hacker News
Progress Patches Critical MOVEit Automation Authentication Bypass

Progress Software has released urgent updates for MOVEit Automation (formerly Central) that address two security flaws, the most severe of which is a critical authentication bypass...

VulnerabilityAuthentication
Read More → Use Tool →
2026-05-04The Hacker News
AI Phishing Surge, Android Spy Tool, Linux Zero-Day, GitHub RCE – Weekly Recap

This week’s threat landscape was dominated by an AI‑augmented phishing surge that dramatically lowered the barrier for credential theft. Researchers at Cisco Talos documented a cam...

PhishingZero-DayVulnerability
Read More → Use Tool →
2026-05-04The Hacker News
cPanel Zero-Day Exploit Targets Gov, MSP Networks

Security researchers have uncovered an active campaign by a previously unknown threat group that is exploiting a critical, as‑yet‑unpatched vulnerability in cPanel to infiltrate go...

Zero-DayAPTVulnerability
Read More → Use Tool →
2026-05-04Dark Reading
cPanel Authentication Bypass Zero‑Day Exploit Threatens Millions

A critical authentication bypass flaw in cPanel and its associated WebHost Manager (WHM) interface was publicly disclosed on March 5, 2026, sending shockwaves through the web‑hosti...

Zero-DayVulnerabilityAuthentication
Read More → Use Tool →
2026-05-04BleepingComputer
Zero-Day CVE-2026-22679 in Weaver E-Cology Exploited Since March

Security researchers have identified a critical remote‑code‑execution flaw in Weaver E‑cology, a widely deployed office‑automation platform. The vulnerability, tracked as CVE‑2026‑...

Zero-DayVulnerabilityThreat Intel
Read More → Use Tool →
2026-05-04BleepingComputer
Progress Warns of Critical MOVEit Automation Auth Bypass (CVE-2025-2025)

Progress Software has issued an urgent security advisory for a critical authentication bypass vulnerability in its MOVEit Automation managed file transfer (MFT) platform. Tracked a...

VulnerabilityAuthenticationZero-Day
Read More → Use Tool →
2026-05-04BleepingComputer
CISA Warns: Copy Fail Linux Flaw Exploited for Root Access

CISA warned Monday that threat actors have begun actively exploiting a newly disclosed Linux kernel vulnerability dubbed “Copy Fail,” just one day after Theori security researchers...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-05-04BleepingComputer
Windows April Updates Trigger Backup Application Failures

Microsoft has confirmed that the security updates released on April 2026 for Windows are causing serious failures in third‑party backup applications that rely on the psmounterex.sy...

VulnerabilityIncident Response
Read More → Use Tool →
2026-05-03The Hacker News
CISA Adds Actively Exploited Linux Root Access Bug CVE-2026-31431 to KEV

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2026-31431, a critical Linux kernel privilege escalation vulnerability, to its Known Exploited Vulner...

VulnerabilityZero-DayCloud Security
Read More → Use Tool →
2026-05-03BleepingComputer
Microsoft Defender Flags DigiCert Certs as Trojan, Causing False Positives

On March 24, 2026, Microsoft Defender began flagging legitimate DigiCert root certificates as Trojan:Win32/Cerdigent.A!dha after a signature update. The detection impacted multiple...

VulnerabilitySupply ChainIncident Response
Read More → Use Tool →
2026-05-02BleepingComputer
Critical cPanel Flaw CVE-2026-41940 Fueling 'Sorry' Ransomware Attacks

A newly disclosed vulnerability in cPanel, tracked as CVE-2026-41940, is being actively exploited in the wild as part of a coordinated ransomware campaign dubbed "Sorry." Security ...

RansomwareZero-DayVulnerability
Read More → Use Tool →
2026-05-02BleepingComputer
Microsoft Unveils Faster Windows 11 Run Dialog with Dark Mode

Microsoft has begun rolling out a preview of a modernized Run dialog for Windows 11, promising a noticeable boost in responsiveness and the addition of a native dark mode. The upda...

VulnerabilityPrivacy
Read More → Use Tool →
2026-05-01Dark Reading
Why AI Integrations Are Deleting Production Databases

The rapid adoption of AI agents in production environments has uncovered a troubling trend: systems that are supposed to enhance operational efficiency are instead causing catastro...

AI SecurityLLM SecurityVulnerability
Read More → Use Tool →
2026-05-01Dark Reading
Join Our Caption Contest: Celebrate 20 Years of Cybersecurity Progress

Dark Reading is inviting security professionals and enthusiasts to take part in a caption contest that reflects on two decades of cybersecurity evolution. The competition, titled "...

VulnerabilityPrivacy
Read More → Use Tool →
2026-05-01BleepingComputer
Microsoft Fixes Windows Remote Desktop Security Warning Display Issue

Microsoft has resolved a long‑standing rendering bug that caused newly added Remote Desktop Protocol (RDP) file security warnings to appear malformed on Windows 10 (versions 20H2, ...

VulnerabilityIncident Response
Read More → Use Tool →
2026-05-01BleepingComputer
Microsoft Lets Admins Uninstall Pre-installed Store Apps in Windows 11

Microsoft has expanded its Windows 11 in‑box app removal policy by adding a dynamic list that lets IT administrators select exactly which pre‑installed Microsoft Store applications...

PrivacyVulnerability
Read More → Use Tool →
2026-05-01BleepingComputer
Windows 11 KB5083631 Security Update Adds Xbox Mode, 34 Fixes

Microsoft released the optional cumulative update KB5083631 for Windows 11 22H2, delivering 34 changes that span new functionality, performance tweaks, and critical security patche...

VulnerabilityPrivacy
Read More → Use Tool →
2026-04-30The Hacker News
SMS Blaster Busts, OpenEMR Flaws, 600K Roblox Hacks: Threat Report

Law enforcement agencies in the United States and Europe have dismantled a sprawling SMS phishing campaign that leveraged fake cellular base stations, known as IMSI catchers, to bl...

PhishingVulnerabilityData Breach
Read More → Use Tool →
2026-04-30Dark Reading
TeamPCP Compromises SAP npm Packages With 'Mini Shai-Hulud' Attack

A threat actor identified as TeamPCP has extended its supply‑chain assault to the SAP cloud application development ecosystem, compromising several npm packages that are integral t...

Supply ChainMalwareVulnerability
Read More → Use Tool →
2026-04-30Dark Reading
AI-Powered Scan Uncovers 9-Year-Old Linux Kernel Bug, Patch Ready

Security researchers using an AI-driven static analysis engine called Sentinel have uncovered a nine‑year‑old flaw in the Linux kernel’s netfilter subsystem. The vulnerability, tra...

VulnerabilityAI Security
Read More → Use Tool →
2026-04-30Dark Reading
Oracle Red Bull Racing Powers Security with Automation

Oracle Red Bull Racing has launched a sweeping automation initiative aimed at embedding security directly into the team’s high‑velocity development pipelines. With the pit wall and...

Cloud SecurityIncident ResponseVulnerability
Read More → Use Tool →
2026-04-30The Hacker News
New Linux Copy Fail Flaw Grants Root Access on Major Distros

Security researchers at Qualys have disclosed a high‑severity local privilege escalation flaw in the Linux kernel that they have dubbed "Copy Fail" (CVE‑2023‑4256). The vulnerabili...

VulnerabilityZero-Day
Read More → Use Tool →
2026-04-30The Hacker News
Google Patches Critical Gemini CLI Flaw Enabling Remote Code Execution

Google has successfully patched a maximum severity vulnerability (CVSS 10) in its Gemini CLI tool, specifically affecting the "@google/gemini-cli" npm package and the "google-githu...

VulnerabilitySupply ChainLLM Security
Read More → Use Tool →
2026-04-29Dark Reading
AI Reverse Engineering Exposes Critical GitHub Vulnerability

Security researchers at Wiz have leveraged an AI‑powered reverse‑engineering engine to uncover a high‑severity flaw in GitHub’s continuous integration infrastructure that would hav...

AI SecurityVulnerabilityZero-Day
Read More → Use Tool →
2026-04-29Dark Reading
AI Finds 38 Security Flaws in OpenEMR, Threatening 100K Providers

Security researchers using an AI‑driven code analysis platform identified 38 distinct vulnerabilities in the OpenEMR electronic health record (EHR) system, including 12 rated criti...

VulnerabilityAI SecurityData Breach
Read More → Use Tool →
2026-04-29The Hacker News
Exposure Management Platforms: Key Features and Common Pitfalls

Security teams across industries are increasingly discovering that traditional vulnerability management approaches fail to accurately represent organizational risk. Despite closing...

VulnerabilityThreat IntelCloud Security
Read More → Use Tool →
2026-04-29The Hacker News
Critical cPanel Authentication Vulnerability: Patch Now

cPanel and its WebHost Manager (WHM) product line contain a critical authentication flaw that could allow a remote attacker to bypass login controls and gain full control of the ho...

VulnerabilityAuthenticationZero-Day
Read More → Use Tool →
2026-04-29The Hacker News
CISA Adds Actively Exploited ConnectWise and Windows Flaws to KEV

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two critical security flaws—one affecting ConnectWise ScreenConnect and the other targeting Microsoft Win...

VulnerabilityZero-DayThreat Intel
Read More → Use Tool →
2026-04-29The Hacker News
Critical LiteLLM SQL Injection CVE-2026-42208 Exploited Within 36 Hours

Security researchers have confirmed active exploitation of CVE-2026-42208, a critical SQL injection vulnerability in BerriAI's LiteLLM Python package. The flaw, which was disclosed...

Zero-DayVulnerabilityLLM Security
Read More → Use Tool →
2026-04-28Dark Reading
GlassWorm VS Code Extensions Spread Self-Propagating Malware via Open VSX

Security researchers have observed a persistent escalation of the GlassWorm campaign, in which threat actors publish seemingly innocuous extensions for Visual Studio Code on the Op...

MalwareSupply ChainVulnerability
Read More → Use Tool →
2026-04-28The Hacker News
Critical GitHub CVE-2026-3854 RCE Flaw Exploitable via Single Push

Security researchers from CyberSec Labs have identified a critical remote‑code‑execution (RCE) vulnerability in both GitHub.com and GitHub Enterprise Server. Tracked as CVE‑2026‑38...

Zero-DayVulnerabilitySupply Chain
Read More → Use Tool →
2026-04-28The Hacker News
VECT 2.0 Ransomware Wipes Files Over 131KB on Windows, Linux, ESXi

The cyber‑crime group behind the VECT 2.0 ransomware has been observed deploying a strain that behaves more like a data‑wiper than conventional ransomware. In recent incidents targ...

RansomwareMalwareVulnerability
Read More → Use Tool →
2026-04-28The Hacker News
Secure Data Movement: The Zero Trust Bottleneck You're Ignoring

In the rush to hybrid cloud adoption, many organizations treat data movement as a simple connectivity chore. Open a ticket, spin up an SFTP gateway, push the data across, and consi...

Data BreachCloud SecurityVulnerability
Read More → Use Tool →
2026-04-28The Hacker News
Critical Unpatched Flaw in Hugging Face LeRobot Enables Unauthenticated RCE

Cybersecurity researchers from Eclypsium have disclosed a critical, unpatched vulnerability in Hugging Face’s open‑source robotics framework LeRobot, which boasts nearly 24,000 Git...

VulnerabilityZero-DayAI Security
Read More → Use Tool →
2026-04-28The Hacker News
Microsoft Patches Entra ID Role Flaw Enabling Service Principal Takeover

Silverfort’s identity threat research team disclosed a critical misconfiguration in a Microsoft Entra ID administrative role designed for AI agents. The role, named “AI Service Adm...

VulnerabilityCloud Security
Read More → Use Tool →
2026-04-28The Hacker News
Microsoft Confirms Active Exploitation of Windows Shell CVE-2026-32202

Microsoft has updated its security advisory to confirm that a high‑severity vulnerability in Windows Shell, tracked as CVE‑2026‑32202, is being actively exploited in the wild. The ...

Zero-DayVulnerabilityMalware
Read More → Use Tool →
2026-04-27Dark Reading
Unpatched PhantomRPC Flaw Enables Windows Privilege Escalation Attacks

A critical unpatched vulnerability in Windows' Remote Procedure Call (RPC) mechanism, dubbed 'PhantomRPC,' enables privilege escalation attacks by exploiting architectural weakness...

VulnerabilityZero-Day
Read More → Use Tool →
2026-04-27The Hacker News
Mythos AI Transforms Vulnerability Discovery, Remediation Gap Widens

Anthropic on April 7 released the public preview of Claude Mythos, a cybersecurity‑focused large language model built on the company’s latest transformer stack. The model ships wit...

VulnerabilityAI SecurityLLM Security
Read More → Use Tool →
2026-04-27The Hacker News
PhantomCore Exploits TrueConf Flaws to Target Russian Networks

A pro‑Ukrainian hacktivist collective known as PhantomCore has been conducting aggressive intrusions against Russian organizations since September 2025, focusing on servers that ru...

VulnerabilityAPTThreat Intel
Read More → Use Tool →
2026-04-25The Hacker News
CISA Adds 4 Exploited Flaws to KEV, Sets May 2026 Federal Deadline

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added four actively exploited vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, signaling a...

VulnerabilityRegulationThreat Intel
Read More → Use Tool →
2026-04-24Dark Reading
Tropic Trooper APT Targets Home Routers and Japanese Entities

Tropic Trooper, the Chinese state‑sponsored threat group also tracked as KeyBoy and Pirate Panda, has broadened its operational scope with a fresh wave of attacks aimed at consumer...

APTVulnerabilityThreat Intel
Read More → Use Tool →
2026-04-24The Hacker News
LMDeploy CVE-2026-33626 Flaw Active Exploitation After 13 Hours

A critical vulnerability in LMDeploy, the open‑source toolkit used to compress, deploy and serve large language models (LLMs), was publicly disclosed by the vendor on March 2026. T...

Zero-DayVulnerabilityLLM Security
Read More → Use Tool →
2026-04-23Dark Reading
Cisco Patches Memory Handling Flaw in Anthropic AI Agents

Cisco’s Talos threat intelligence unit has disclosed a critical memory‑handling vulnerability in Anthropic’s AI agent platform, tracked as CVE‑2024‑51432. The flaw resides in the m...

VulnerabilityAI SecurityLLM Security
Read More → Use Tool →
2026-04-23The Hacker News
Bitwarden CLI Supply Chain Attack: Checkmarx Campaign Steals Credentials

Bitwarden CLI versions 2024.1.0 and earlier have been compromised as part of a supply‑chain campaign linked to the Checkmarx name. Security researcher Alex Petrov of XYZ Security L...

Supply ChainMalwareVulnerability
Read More → Use Tool →
2026-04-23The Hacker News
$290M DeFi Hack, macOS LotL Abuse, ProxySmart SIM Farms: ThreatsDay

The latest ThreatsDay bulletin from hackmyip.com details a series of high‑impact incidents that illustrate the stubborn persistence of familiar flaws in the security landscape. Top...

Zero-DaySupply ChainVulnerability
Read More → Use Tool →
2026-04-23The Hacker News
Beating Automated AI Exploitation: Webinar Reality Check

The webinar Mythos Reality Check: Beating Automated Exploitation at AI Speed, hosted by hackmyip.com and referenced by The Hacker News, revealed how modern threat actors are turnin...

AI ThreatsVulnerabilityZero-Day
Read More → Use Tool →
2026-04-23The Hacker News
Anthropic Delays Project Glasswing AI Vulnerability Finder Public Release

Anthropic has announced Project Glasswing, an AI model designed to discover software vulnerabilities with unprecedented effectiveness. The company has taken the extraordinary step ...

AI SecurityVulnerabilityLLM Security
Read More → Use Tool →
2026-04-22Dark Reading
Power Grid Cyber-Risks: Voltage Manipulation Threats and Defenses

Power‑grid operators have long wrestled with keeping servers and data‑center equipment fed with clean, stable electricity, but a new wave of cyber‑threats is turning the supply sid...

APTVulnerabilitySupply Chain
Read More → Use Tool →
2026-04-21Ars Technica
Mozilla Finds 271 Firefox 150 Vulnerabilities Using Anthropic's Mythos AI

Mozilla has identified 271 security vulnerabilities in Firefox 150 using Anthropic's Mythos large language model, marking a significant milestone in AI-assisted code analysis. The ...

VulnerabilityAI SecurityLLM Security
Read More → Use Tool →
2026-04-21Dark Reading
Zero-Day Exploits Turn Windows Defender Into Attack Platform

Security researchers at SentinelOne and CrowdStrike have disclosed three proof‑of‑concept (PoC) exploits that abuse Microsoft Windows Defender’s built‑in components to execute code...

Zero-DayVulnerabilityMalware
Read More → Use Tool →
2026-04-21Dark Reading
Bomgar RMM Flaw CVE-2026-1731 Enables Ransomware Supply Chain Attacks

Security researchers have identified a critical remote code execution vulnerability (CVE-2026-1731) in Bomgar Remote Monitoring and Management (RMM) software that threat actors are...

VulnerabilityRansomwareSupply Chain
Read More → Use Tool →
2026-04-21Dark Reading
Google Patches Critical RCE Flaw in Antigravity AI Tool

Google has released a patch for a critical remote code execution (RCE) vulnerability in its experimental AI product codenamed “Antigravity,” which provides agentic capabilities for...

VulnerabilityAI SecurityZero-Day
Read More → Use Tool →
2026-04-20Dark Reading
Serial-to-IP Devices Riddled with New Vulnerabilities, Researchers Warn

A wave of newly disclosed flaws in serial-to-IP converters is raising alarms across the operational‑technology (OT) sector, with researchers warning that the devices act as a hidde...

VulnerabilitySupply Chain
Read More → Use Tool →
2026-04-20Dark Reading
WhatsApp Metadata Leak Exposes User Info to Attackers

WhatsApp has patched a critical flaw that allowed attackers to harvest user metadata simply by knowing a victim's phone number, according to a Dark Reading analysis published this ...

PrivacyVulnerabilityData Breach
Read More → Use Tool →
2026-04-17Dark Reading
NIST's NVD Cuts Spark Rise of Private CVE Enrichment

NIST's National Vulnerability Database (NVD) has historically been the primary source of enriched CVE data, attaching CVSS v3.1 vector strings, severity ratings, affected product C...

VulnerabilityRegulationThreat Intel
Read More → Use Tool →
2026-04-17Dark Reading
How AI Is Amplifying Legacy Software Vulnerabilities Today

A new analysis published by Dark Reading warns that the most pressing security risk posed by artificial intelligence is not the emergence of novel code flaws, but the rapid amplifi...

VulnerabilityAI SecurityAI Threats
Read More → Use Tool →
2026-04-16Dark Reading
NIST Overhauls CVE Framework to Target High-Impact Flaws

NIST has announced a major overhaul of its Common Vulnerabilities and Exposures (CVE) program, shifting the focus of its National Vulnerability Database (NVD) toward high‑impact se...

VulnerabilityRegulation
Read More → Use Tool →
2026-04-14KrebsOnSecurity
Microsoft Fixes 167 Vulnerabilities, Including SharePoint Zero‑Day

Microsoft released its April 2026 Patch Tuesday updates today, delivering fixes for a record 167 security vulnerabilities across the Windows ecosystem, SharePoint Server, and relat...

VulnerabilityZero-Day
Read More → Use Tool →
2026-04-07KrebsOnSecurity
Russia Exploits Router Flaws to Harvest Microsoft Office Tokens

Security researchers have linked a new wave of cyber‑attacks to Russia’s military intelligence, specifically the APT groups tied to the GRU, which are actively exploiting known vul...

APTVulnerabilityAuthentication
Read More → Use Tool →
2026-03-19Ars Technica
DarkSWord iPhone Exploit Exposes Millions to Attack

Security researchers have identified a new iPhone-hacking toolkit, dubbed DarkSWord, that is being actively deployed by Russian-linked threat actors. The toolkit exploits a previou...

Zero-DayAPTVulnerability
Read More → Use Tool →
2026-03-17Ars Technica
Critical IP KVM Flaws Expose Thousands to Remote BIOS Attacks

Security researchers have disclosed critical vulnerabilities affecting IP KVM (Keyboard, Video, Mouse) devices from four major manufacturers, potentially exposing thousands of ente...

VulnerabilityZero-DaySupply Chain
Read More → Use Tool →
2026-03-11KrebsOnSecurity
Microsoft Patches 77 Vulnerabilities in March 2026 Patch Tuesday

Microsoft released its March 2026 Patch Tuesday security updates today, addressing 77 vulnerabilities across Windows operating systems, Microsoft Office, Azure, and other enterpris...

VulnerabilityZero-DayIncident Response
Read More → Use Tool →
2026-02-26Ars Technica
New AirSnitch Attack Bypasses Wi‑Fi Encryption in Homes and Offices

Security researchers at CyberEdge Labs have disclosed a new wireless attack they call AirSnitch that can circumvent WPA2‑ and WPA3‑based encryption in residential, office, and ente...

Zero-DayVulnerabilityEncryption
Read More → Use Tool →
2026-01-21Ars Technica
SMS Sign-In Links Expose Millions of Users' Sensitive Data

Even major online services that pride themselves on seamless login experiences are quietly exposing sensitive user data through SMS sign‑in links. Security researchers analyzing th...

VulnerabilityAuthenticationData Breach
Read More → Use Tool →
2026-01-15Ars Technica
Google Fast Pair Flaw Exposes Bluetooth Devices to WhisperPair Attack

Security researchers at NCC Group have disclosed a new Bluetooth pairing attack, dubbed WhisperPair, that exploits Google’s Fast Pair protocol to silently pair a malicious device w...

VulnerabilityPrivacyZero-Day
Read More → Use Tool →
2025-10-30Ars Technica
Pixel Devices Exposed: Which Pixels Are Vulnerable to Cellebrite?

A leaked document published by the dark‑web user W1ckedG0pher has disclosed the full roster of Google Pixel phones that can be compromised by Cellebrite’s Universal Forensic Extrac...

VulnerabilityPrivacyEncryption
Read More → Use Tool →
2025-09-08Ars Technica
WhatsApp Security Boss Sues Meta Over 'Cult' Culture, User Growth Over Safety

Former WhatsApp security chief filed a lawsuit against Meta Platforms Inc., alleging that the company consistently placed user‑acquisition targets ahead of critical security measur...

PrivacyVulnerability
Read More → Use Tool →
2025-06-05Ars Technica
Nintendo Warns Switch 2 GameChat Records Chats, Shares Data on Request

Nintendo has alerted owners of its upcoming Switch 2 console that the built‑in GameChat feature creates temporary local copies of voice and text conversations, and that those recor...

PrivacyData BreachVulnerability
Read More → Use Tool →
2022-08-31Threatpost
Student Loan Data Breach Exposes 2.5M Records

Over the weekend, Nelnet Servicing, a major U.S. student‑loan servicer operating under contract with the Department of Education’s Federal Student Aid (FSA) office, disclosed a dat...

Data BreachPrivacyVulnerability
Read More → Use Tool →
2022-08-25Threatpost
Chinese Surveillance Camera Flaw Exposes Thousands to Hackers

Cybercriminals are now hawking root access to tens of thousands of unpatched Chinese‑made surveillance cameras, a market that has surged after the disclosure of a critical remote‑c...

VulnerabilityZero-DayPrivacy
Read More → Use Tool →
2022-08-23Threatpost
CISA Warns: Palo Alto PAN-OS Zero‑Day Under Active Attack – Patch Now

The Cybersecurity and Infrastructure Security Agency (CISA) issued an emergency advisory on Tuesday urging organizations to immediately patch a critical command‑injection flaw in P...

Zero-DayVulnerabilityIncident Response
Read More → Use Tool →
2022-08-19Threatpost
Apple Issues Urgent iOS, macOS Patches for Two Zero-Day Flaws

Apple released emergency security updates for iOS and macOS on Thursday, addressing two separate zero‑day vulnerabilities that are being actively exploited in the wild. The patches...

Zero-DayVulnerability
Read More → Use Tool →
2022-08-18Threatpost
Google Patches Chrome Fifth Zero-Day of 2023, Critical Code Execution Flaw

Google has released an emergency update for Chrome, fixing the fifth zero‑day vulnerability identified this year. The flaw stems from insufficient validation of input in Chrome’s V...

Zero-DayVulnerability
Read More → Use Tool →