TL;DR Attackers are exploiting a Citrix NetScaler vulnerability in the wild, tracked as CVE-2026-8451 (CVSS 8.8). The...
News
TL;DR The Apache Software Foundation has disclosed two Apache HttpComponents Core vulnerabilities, CVE-2026-54399 and CVE-2026-54428. Both carry...
At a glance Malware Malicious browser extension / search hijacker (“Search for perplexity ai”) Threat actor Not...
Cloudflare has launched a new payment layer called Monetization Gateway. The tool uses the x402 protocol to...
Following its initial reveal at Google I/O 2026 this May, Google has finally launched its agentic AI...
TL;DR CERT Polska disclosed two flaws in GNU gzip on 29 June 2026. One GNU gzip vulnerability,...
At a glance Group Mustang Panda (China-aligned APT; also tracked as Hive0154) Activity Cyberespionage, spear-phishing, cloud-service C2...
At a glance Group The Gentlemen (ransomware-as-a-service) Activity Ransomware, data-leak extortion, custom tool development Targets Large firms...
At a glance Actor: Suspected Russian state-sponsored actors and proxies Activity type: Covert information operations and hacktivism...
At a glance Malware TONResolver (RAT; also tracked as TonRAT by Microsoft; detected as TrojanSpy.JS.TONRESOLVER.A) Threat actor...
TL;DR IBM patched three flaws in Db2 for Linux, UNIX, and Windows. The worst is an IBM...
TL;DR CISA added a Microsoft SharePoint vulnerability to its Known Exploited Vulnerabilities catalog on 1 July 2026....
At a glance Actor or Group: Scattered Spider (Octo Tempest, UNC3944, 0ktapus) Activity Type: Data extortion, computer...
TL;DR Cisco has patched a Cisco Catalyst Center vulnerability tracked as CVE-2026-20191 (CVSS 7.5). The flaw lets...
TL;DR A critical flaw in Poweradmin lets attackers take over DNS administrator accounts. Tracked as CVE-2026-54588, it...
TL;DR A critical flaw in OpenAM can let an attacker run code on the server. Tracked as...
TL;DR Signal 11 disclosed a NetComm authentication bypass tracked as CVE-2026-35019. The flaw scores 9.2 on CVSS...
TL;DR RARLAB fixed a WinRAR vulnerability in version 7.23. The flaw, CVE-2026-14191, causes a heap overflow in...
TL;DR JetBrains fixed three security flaws across Hub, YouTrack, and GoLand. The worst is a JetBrains authentication...
NVIDIA has released essential software patches targeting 13 newly disclosed vulnerabilities across multiple product lines. These NVIDIA...
TL;DR Attackers began exploiting the Kemp LoadMaster RCE vulnerability, tracked as CVE-2026-8037, on June 29, 2026. That...
Google’s Android engineering team has quietly rolled out one of the platform’s most meaningful security upgrades yet:...