Actor / group Unnamed actor tracked as “Operation Muck and Load”; overlaps with the ischhfd83 cluster Activity...
News
At a Glance Malware family GodDamn ransomware (rebrand of Beast, formerly Monster) Threat actor Hyadina, a ransomware-as-a-service...
TL;DR Notepad++ v8.9.7 fixes five security flaws in the popular Windows editor. Technical details and proof-of-concept exploit...
TL;DR Google has shipped a Chrome security update that raises the Stable channel to 150.0.7871.124/.125 on Windows...
At a Glance Actor O-UNC-066 (Okta); tracked as CL-CRI-1147 / “Pink” by Palo Alto Unit 42; linked...
TL;DR CISA has confirmed active exploitation of three SharePoint vulnerabilities: CVE-2026-32201, CVE-2026-45659, and CVE-2026-56164. Threat actors chain...
At a glance Malware family Node.js backdoor (tracked as “TonRAT” by some researchers) Threat actor Unattributed; no...
TL;DR SonicWall has released hotfixes for two actively exploited flaws in SMA1000 secure access appliances. The SonicWall...
TL;DR A researcher known as Nightmare-Eclipse has published details and proof-of-concept code for LegacyHive, a Windows User...
TL;DR Microsoft’s July 2026 Patch Tuesday fixes 570 vulnerabilities, including 57 rated critical and 510 rated important....
Dell recently disclosed severe security flaws in its enterprise backup products. These vulnerabilities directly affect PowerProtect Data...
TL;DR Two Linux kernel flaws now have public proof-of-concept exploit code and full technical write-ups. Bad Epoll...
TL;DR X.Org shipped fixes for two memory-safety flaws in the X.Org Server and Xwayland. The more severe...
TL;DR PHP Composer, the main dependency manager for the language, patched three security flaws. The most serious,...
TL;DR Bad Epoll is a Linux kernel use-after-free that turns any unprivileged user into root. It is...
A Shocking Initial Invoice Last week, a Korean developer named REMY reported a bizarre incident online. He...
VMware Avi Load Balancer Authentication Bypass (CVE-2026-47865, CVSS 9.8) Headlines Seven-Flaw Patch
VMware Avi Load Balancer Authentication Bypass (CVE-2026-47865, CVSS 9.8) Headlines Seven-Flaw Patch
TL;DR Broadcom has patched seven vulnerabilities in VMware Avi Load Balancer under advisory VMSA-2026-0005. The most serious,...
In the generative AI computing arms race, Meta shatters the investment ceiling for AI infrastructure. Meta recently...
Last week, security researcher @Cereblab exposed a troubling behavior in Grok Build. The tool silently transmitted developers’...
TL;DR SAP Security Patch Day July 2026 shipped 16 new security notes and one GitHub advisory. The...
TL;DR CrowdStrike added 18 new methods to its AI security taxonomy. These new prompt injection attacks target...
On June 18, 2026, security analysts detected a host downloading suspicious PowerShell scripts from an open directory....