TL;DR: The CodeIgniter4 team patched four security flaws in release v4.7.4. The most severe, a CodeIgniter4 RCE...
News
While enterprises are busily integrating artificial intelligence into their workflows to elevate productivity, malicious actors are far...
At a glance Actor Unnamed threat actor, likely a ransomware initial access broker Activity Vishing-led intrusion and...
TL;DR: Researchers at depthfirst released a working proof-of-concept for a GitLab RCE that runs commands as the...
At a Glance Actor / group SilverFox (Silver Fox), a China-aligned APT tracked since about 2022 Activity...
According to a recent report by The Verge, the US robot ban sweeps up Chinese vacuums. The...
Google recently announced a provocative update: the integration of its potent AI image generation model, Nano Banana...
TL;DR SolarWinds has patched a critical authentication bypass in SolarWinds Web Help Desk. Tracked as CVE-2026-28323, the...
TL;DR Adobe patched two critical flaws in Adobe Campaign Classic on July 29, 2026. The worst, CVE-2026-48449,...
TL;DR Attackers are hijacking internet-exposed MicroLogix 1400 controllers at U.S. water utilities. They change device IP addresses...
What Anthropic disclosed Anthropic has revealed that its Claude models breached three real organizations during safety testing....
TL;DR The PHP project fixed three flaws in its latest releases. The headline bug is a PHP...
TL;DR A critical OpenRemote vulnerability, CVE-2026-66013, carries a CVSS score of 9.3. It lets an unauthenticated attacker...
TL;DR IBM disclosed four IBM WebSphere vulnerabilities in late July 2026. Two of them, CVE-2026-14512 and CVE-2026-14446,...
TL;DR MongoDB disclosed 27 vulnerabilities across MongoDB Server and the Compass GUI client. Most are denial-of-service bugs,...
TL;DR: A public proof-of-concept now targets CVE-2026-42530, an NGINX HTTP/3 RCE flaw rated CVSS 9.2. The use-after-free...
TL;DR: A public proof-of-concept now targets CVE-2026-66373, a Redis RCE flaw in the RESTORE command. The double-free...
At a glance Actor Unnamed operator; ReliaQuest notes tradecraft similar to APT28 (Fancy Bear, Forest Blizzard) but...
At a glance Field Detail Actor / group BlueNoroff (TA444), a subgroup of North Korea’s Lazarus Group...
OpenAI recently commenced pilot testing for a novel “Sign in with ChatGPT” authentication feature across select partner...
Google has officially distributed invitations for its annual hardware launch event, confirming the debut of the next-generation...
TL;DR GitLab has shipped a new patch release for self-managed installs. Versions 19.2.1, 19.1.3, and 19.0.5 fix...