200Articles
10Categories
2026-05-07Date
🚨
U.S. CISA adds a flaw in Palo Alto Networks PAN-OS to its Known Exploited Vulnerabilities catalogThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in Palo Alto Networks PAN-OS to its Known Exploited Vulnerabilities catalog The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a flaw in the Palo Alto Networks PAN-OS, tracked as CVE-…
KEV
🚨
U.S. CISA adds a flaw in Ivanti Endpoint Manager Mobile (EPMM) to its Known Exploited Vulnerabilities catalogThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in Ivanti Endpoint Manager Mobile (EPMM) to its Known Exploited Vulnerabilities catalog The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a flaw in the Ivanti Endpoint Manager Mobile…
KEV
πŸ›
Threat Brief: Exploitation of PAN-OS Captive Portal Zero-Day for Unauthenticated Remote Code Execution
πŸ›
Cisco Network Flaw Exposes Devices to Remote Denial-of-Service Exploits
πŸ›
CVE-2026-33190 CoreDNS TSIG authentication bypass on encrypted DNS transports
πŸ›
CVE-2026-32936 CoreDNS DoH GET path missing size validation causes CPU and memory amplification
πŸ›
CVE-2026-35579 CoreDNS TSIG authentication bypass on gRPC, QUIC, DoH, and DoH3 transports
πŸ›
CVE-2026-42151 Prometheus Azure AD remote write OAuth client secret exposed via config API
πŸ›
CVE-2026-42154 Prometheus: remote read endpoint allows denial of service via crafted snappy payload
πŸ›
CVE-2026-43248 vhost: move vdpa group bound check to vhost_vdpa
πŸ›
CVE-2026-43127 ntfs3: fix circular locking dependency in run_unpack_ex
πŸ›
CVE-2026-43161 iommu/vt-d: Skip dev-iotlb flush for inaccessible PCIe device without scalable mode
πŸ›
CVE-2026-43245 ntfs: ->d_compare() must not block
πŸ›
CVE-2026-43137 ASoC: SOF: Intel: hda: Fix NULL pointer dereference
πŸ›
CVE-2026-43234 team: avoid NETDEV_CHANGEMTU event when unregistering slave
πŸ›
CVE-2026-43185 ksmbd: fix signededness bug in smb_direct_prepare_negotiation()
πŸ›
CVE-2025-71273 wifi: rtw88: Use devm_kmemdup() in rtw_set_supported_band()
πŸ›
CVE-2026-43153 xfs: remove xfs_attr_leaf_hasname
πŸ›
CVE-2026-43116 netfilter: ctnetlink: ensure safe access to master conntrack
πŸ›
CVE-2026-43244 kcm: fix zero-frag skb in frag_list on partial sendmsg error
πŸ›
CVE-2026-43191 drm/amd/display: Adjust PHY FSM transition to TX_EN-to-PLL_ON for TMDS on DCN35
πŸ›
CVE-2025-71272 most: core: fix resource leak in most_register_interface error paths
πŸ›
CVE-2026-33489 CoreDNS transfer plugin subzone ACL bypass via lexicographic zone comparison
πŸ›
CVE-2026-32934 CoreDNS DNS-over-QUIC unbounded goroutine growth leads to denial of service
πŸ›
CVE-2026-43073 x86-64: rename misleadingly named '__copy_user_nocache()' function
πŸ›
CVE-2026-43125 dlm: validate length in dlm_search_rsb_tree
πŸ›
CVE-2026-43176 wifi: rtw89: pci: validate release report content before using for RTL8922DE
πŸ›
CVE-2026-43204 ASoC: qcom: q6asm: drop DSP responses for closed data streams
πŸ›
CVE-2026-43131 drm/amd/pm: Fix null pointer dereference issue
πŸ›
CVE-2026-43126 ALSA: mixer: oss: Add card disconnect checkpoints
πŸ›
CVE-2026-43198 tcp: fix potential race in tcp_v6_syn_recv_sock()
πŸ›
CVE-2025-71290 misc: ti_fpc202: fix a potential memory leak in probe function
πŸ›
CVE-2026-43115 srcu: Use irq_work to start GP in tiny SRCU
πŸ›
CVE-2025-71293 drm/amdgpu/ras: Move ras data alloc before bad page check
πŸ›
CVE-2026-43172 wifi: iwlwifi: fix 22000 series SMEM parsing
πŸ›
CVE-2025-71285 net: qrtr: Drop the MHI auto_queue feature for IPCR DL channels
πŸ›
CVE-2026-43197 netconsole: avoid OOB reads, msg is not nul-terminated
πŸ›
CVE-2026-43118 btrfs: fix zero size inode with non-zero size after log replay
πŸ›
CVE-2026-43109 x86: shadow stacks: proper error handling for mmap lock
πŸ›
CVE-2026-43129 ima: verify the previous kernel's IMA buffer lies in addressable RAM
πŸ›
CVE-2026-43274 mailbox: mchp-ipc-sbi: fix out-of-bounds access in mchp_ipc_get_cluster_aggr_irq()
πŸ›
CVE-2026-43258 alpha: fix user-space corruption during memory compaction
πŸ›
CVE-2025-71289 fs/ntfs3: handle attr_set_size() errors when truncating files
πŸ›
CVE-2026-43107 xfrm: account XFRMA_IF_ID in aevent size calculation
πŸ›
CVE-2026-43243 drm/amd/display: Add signal type check for dcn401 get_phyd32clk_src
πŸ›
CVE-2025-71294 drm/amdgpu: fix NULL pointer issue buffer funcs
πŸ›
CVE-2026-43250 usb: chipidea: udc: fix DMA and SG cleanup in _ep_nuke()
πŸ›
CVE-2026-43237 drm/amdgpu: Refactor amdgpu_gem_va_ioctl for Handling Last Fence Update and Timeline Management v4
πŸ›
CVE-2026-43201 APEI/GHES: ARM processor Error: don't go past allocated memory
πŸ›
CVE-2026-43219 net: cpsw_new: Fix potential unregister of netdev that has not been registered yet
πŸ›
CVE-2026-43165 hwmon: (nct7363) Fix a resource leak in nct7363_present_pwm_fanin
πŸ›
CVE-2026-43088 net: af_key: zero aligned sockaddr tail in PF_KEY exports
πŸ›
CVE-2026-43195 drm/amdgpu: validate user queue size constraints
πŸ›
CVE-2026-43213 wifi: rtw89: pci: validate sequence number of TX release report
πŸ›
CVE-2026-43228 hfs: Replace BUG_ON with error handling for CNID count checks
πŸ›
CVE-2026-43216 net: Drop the lock in skb_may_tx_timestamp()
πŸ›
CVE-2026-43119 Bluetooth: hci_sync: annotate data-races around hdev->req_status
πŸ›
CVE-2026-43267 wifi: rtw89: fix potential zero beacon interval in beacon tracking
πŸ›
CVE-2026-43101 ipv6: ioam: fix potential NULL dereferences in __ioam6_fill_trace_data()
πŸ›
CVE-2026-43199 net/mlx5e: Fix "scheduling while atomic" in IPsec MAC address query
πŸ›
CVE-2026-43083 net: ioam6: fix OOB and missing lock
πŸ›
CVE-2026-43870 Apache Thrift: Node.js web_server.js multi-vulnerability
πŸ›
CVE-2026-43868 Apache Thrift: Rust implementation vulnerable to CVE-2020-13949 pattern
πŸ›
CVE-2026-33523 Apache HTTP Server: multiple modules: HTTP response splitting forwarding malicious status line
πŸ›
CVE-2026-23918 Apache HTTP Server: http2: double free and possible RCE on early reset
πŸ›
CVE-2026-34059 Apache HTTP Server: mod_proxy_ajp: Heap Over-Read and memory disclosure in ajp_parse_data()
πŸ›
CVE-2026-34032 Apache HTTP Server: mod_proxy_ajp: Heap Buffer Over-Read Due to Missing Null-Termination Check (ajp_msg_get_string)
πŸ›
CVE-2026-24072 Apache HTTP Server: mod_rewrite elevation of privileges via ap_expr
πŸ›
CVE-2026-33006 Apache HTTP Server: mod_auth_digest timing attack
πŸ›
CVE-2026-33007 Apache HTTP Server: mod_authn_socache crash
πŸ›
CVE-2026-29169 Apache HTTP Server: mod_dav_lock indirect lock crash
πŸ›
CVE-2026-29168 Apache HTTP Server: mod_md unrestricted OCSP response
πŸ›
CVE-2026-33857 Apache HTTP Server: Off-by-one OOB reads in AJP getter functions
πŸ›
Redis Security Flaws Expose Servers to Remote Code Execution Risks
πŸ›
CVE-2026-34318
πŸ›
CVE-2026-34317
πŸ›
CVE-2026-34319
πŸ›
CVE-2026-33845 Gnutls: gnutls: denial of service via dtls zero-length fragment
πŸ›
CVE-2026-3833 Gnutls: gnutls: policy bypass due to case-sensitive nameconstraints comparison
πŸ›
CVE-2026-3832 Gnutls: gnutls: security bypass allows acceptance of revoked server certificates via crafted ocsp response
πŸ›
CVE-2026-6383 Kubevirt: kubevirt: unauthorized subresource access due to improper rbac evaluation
πŸ›
CVE-2026-34875
πŸ›
CVE-2026-34874
πŸ›
CVE-2026-34876
πŸ›
CVE-2026-25835
πŸ›
CVE-2025-66442
πŸ›
CVE-2026-34873
πŸ›
CVE-2026-34871
πŸ›
CVE-2026-34872
πŸ›
CVE-2026-25834
πŸ›
CVE-2026-25833
πŸ›
CVE-2026-41082
πŸ›
CISA Issues Warning Over Palo Alto PAN-OS Flaw Enabling Root-Level Access
KEV
πŸ›
Critical Palo Alto Networks software bug hits exposed firewalls
KEV
πŸ›
CVE-2026-26956: vm2 Sandbox Escape Enables Host RCE in Node.js 25
πŸ›
PAN-OS RCE Exploit Under Active Use Enabling Root Access and Espionage
πŸ›
Ivanti EPMM CVE-2026-6973 RCE Under Active Exploitation Grants Admin-Level Access
πŸ›
Ollama vulnerability highlights danger of AI frameworks with unrestricted access
πŸ›
Nation-state actors exploit Palo Alto PAN-OS zero-day for weeks
⚠️
Mirai-Based xlabs_v1 Botnet Exploits ADB to Hijack IoT Devices for DDoS Attacks
⚠️
US government agency to safety test frontier AI models before release
⚠️
vm2 Node.js Library Vulnerabilities Enable Sandbox Escape and Arbitrary Code Execution
⚠️
Cybercriminals Exploit Microsoft Teams to Phish Login Credentials and Bypass MFA
⚠️
DeepFake it till you make it.
⚠️
Open-source MCP server monitoring for Python apps
⚠️
Critical vm2 Node.js Library Flaws Enable Arbitrary Code Execution Attacks
⚠️
UAT-8302 Targets Government Agencies With Custom Malware and Open-Source Tools
⚠️
Hackers Exploit Google Ads to Steal GoDaddy ManageWP Logins
⚠️
Ten years later, has the GDPR fulfilled its purpose?
⚠️
Researchers Spot Uptick in Use of Vercel for Phishing Campaigns
⚠️
CallPhantom Android scam reached 7.3 million downloads on Google Play
⚠️
Scammers Exploit Disposable VoIP Numbers to Bypass Reputation Blocking
⚠️
CISOs: Align cyber risk communication with boardroom psychology
⚠️
ThreatsDay Bulletin: Edge Plaintext Passwords, ICS 0-Days, Patch-or-Die Alerts and 25+ New Stories
⚠️
Claude and SpaceX Join Forces to Enhance Large-Scale Compute Capacity
⚠️
Spring Vulnerabilities Open Door to Arbitrary File Access and GCP Secret Leaks
⚠️
The AI-vs-AI battle is already happening. Watch it live at EXPOSURE 2026.
⚠️
If a fake moustache can fool age checks, is the Online Safety Act working?
⚠️
Exploits and vulnerabilities in Q1 2026
⚠️
One House Democrat is pressing Commerce on the government’s spyware use
⚠️
How Cloudflare responded to the β€œCopy Fail” Linux vulnerability
⚠️
Why Security in 2026 Requires Continuous Threat and Exposure Management (CTEM) at Scale
⚠️
Businesses hide vast majority of ransomware attacks, report finds
⚠️
Palo Alto Networks warns state-linked cluster behind zero-day exploitation
⚠️
Cisco patches high-severity flaws enabling SSRF, code execution attacks
⚠️
Multiple Vulnerabilities in Mozilla Products Could Allow for Arbitrary Code Execution
⚠️
PCPJack Credential Stealer Exploits 5 CVEs to Spread Worm-Like Across Cloud Systems
⚠️
ICYMI: April 2026 @AWS Security
⚠️
LinkedIn illegally blocking free accounts from seeing β€˜who’s viewed your profile’ data, group alleges
⚠️
Getting Rid of Your VPN - Rob Allen - PSW #925
⚠️
Ivanti customers confront yet another actively exploited zero-day
KEV
⚠️
Rapid7 and OpenAI: Helping Defenders Move at Machine Speed
πŸ“‹
Google pushes massive Chrome security update to patch 127 flaws
πŸ“’
Trump’s AI Preemption Playbook.
πŸ“’
Kloudfuse 4.0 delivers AI-governed observability and scalable workload isolation
πŸ“’
Bots in translation: Can AI really fix SIEM rule sprawl across vendors?
πŸ“’
New CISA initiative aims to help critical infrastructure operators prepare for disruptions.
πŸ“’
Has CISA Finally Found Its New Leader in Tom Parker?
πŸ“’
Pentagon reaches deals with seven AI providers.
πŸ“’
Trump officials are steering a cybersecurity scholarship program toward AI
πŸ“’
The backup plan needs a backup plan.
πŸ“’
Iranian government hackers using Chaos ransomware as cover, researchers say
πŸ”₯
Woflow - 447,593 breached accounts
πŸ”₯
Day Zero Readiness: The Operational Gaps That Break Incident Response
πŸ”₯
Polish intelligence warns hackers attacked water treatment control systems
πŸ”₯
World's First AI-Driven Cyberattack Couldn't Breach OT Systems
πŸ”₯
One Click, Total Shutdown: The "Patient Zero" Webinar on Killing Stealth Breaches
πŸ”₯
North Carolina man pleads guilty to doxxing Supreme Court justices
πŸ”₯
Hackers hack victims hacked by other hackers
πŸ”₯
Unplug your way to better code
πŸ”₯
β€œClaudeBleed” allows any Chrome extension to control Anthropic’s AI assistant
πŸ”₯
Hackers deface school login pages after claiming another Instructure hack
πŸ”₯
VPN Access Without Open Ports
πŸ•΅οΈ
North Korean hackers targeted ethnic Koreans in China with Android β€˜BirdCall’ malware
πŸ•΅οΈ
ISC Stormcast For Thursday, May 7th, 2026 https://isc.sans.edu/podcastdetail/9922, (Thu, May 7th)
πŸ•΅οΈ
An Adaptive Cyber Analytics UI for Web Honeypot Logs [Guest Diary], (Wed, May 6th)
πŸ•΅οΈ
WatchGuard Agent Flaws Allow Attackers to Gain Full SYSTEM Privileges on Windows
πŸ•΅οΈ
Fake Disk Cleanup Apps Fuel New macOS ClickFix Attack
πŸ•΅οΈ
Multi-model AI is creating a routing headache for enterprises
πŸ•΅οΈ
Malicious NuGet Packages Steal Browser Credentials, SSH Keys, and Crypto Wallets
πŸ•΅οΈ
Red Hat Enterprise Linux adds post-quantum security and AI-driven automation in latest releases
πŸ•΅οΈ
Google Chrome 148 Released With Fixes for 127 Security Flaws
πŸ•΅οΈ
Why β€œTrusted Publishing” Can’t Save Us from Social Engineering
πŸ•΅οΈ
Daemon Tools Developer Confirms Software Was Trojanized
πŸ•΅οΈ
Smart Glasses for the Authorities
πŸ•΅οΈ
Hackers Weaponize Claude AI in Attacks on Water and Drainage Utilities
πŸ•΅οΈ
Fake Claude AI Installers Used to Spread Malware in New Cyber Scam
πŸ•΅οΈ
Fake Call History Apps on Google Play Steal Payments, Hit 7.3M+ Downloads
πŸ•΅οΈ
American duo sentenced for hosting laptop farms for North Korean IT workers
πŸ•΅οΈ
Manual Changes Break Security
πŸ•΅οΈ
Google Seeks EU Deal Over β€˜Parasite SEO’ News Rankings
πŸ•΅οΈ
Android 17: Everything We Know About Google’s Biggest Year Yet
πŸ•΅οΈ
Apple’s $250M Siri Settlement Could Pay Eligible iPhone Buyers
πŸ•΅οΈ
This Dell 15 Laptop Offers a Sensible Daily Driver Setup for Just $307
πŸ•΅οΈ
World Password Day 2026: Treat Identity as the Perimeter (and Act Like It)
πŸ•΅οΈ
New TCLBANKER malware self-spreads through WhatsApp and Outlook
πŸ•΅οΈ
Mac Studio, Mac mini Buyers Are Losing Options Amid AI Demand
πŸ•΅οΈ
Alphabet Poised to Overtake Nvidia as the World’s Most Valuable Public Company
πŸ•΅οΈ
Elon Musk’s Texas Chip Plant Could Cost $119B, Filings Show
🌐
TCLBANKER: Brazilian Banking Trojan Spreading via WhatsApp and Outlook
🌐
AI in the Wrong Hands
🌐
PyPI Packages Deliver ZiChatBot Malware via Zulip APIs on Windows and Linux
🌐
Nearly half of the world’s passwords can be cracked in under a minute | Kaspersky official blog
🌐
From Android TVs to routers: the xlabs_v1 Mirai-based botnet built for DDoS attacks
🌐
OpenAI and Anthropic LLMs Used in Critical Infrastructure Cyber-Attack, Warns Dragos
🌐
Fake Claude AI Site Drops Beagle Backdoor on Windows Users
🌐
After Replacing TeamPCP Malware, 'PCPJack' Steals Cloud Secrets
πŸŽ™οΈ
How do we secure applications when anyone can code?
πŸ“‘
PCPJack | Cloud Worm Evicts TeamPCP and Steals Credentials at Scale
πŸ“‘
Thousands of Vibe-Coded Apps Expose Corporate and Personal Data on the Open Web
πŸ“‘
'TrustFall' Exposes Claude Code Execution Risk
πŸ“‘
Operation HookedWing: 4-Year Multi-Sector Attack Analysis
πŸ“‘
Police arrest SMS blaster crew that sent malicious messages to thousands across Toronto
πŸ“‘
2 days left: Get 50% off a second passΒ to TechCrunch Disrupt 2026
πŸ“‘
Massive AI investment scam network spans 15,500 domains
πŸ“‘
Legacy Security Tools Are Failing Data Protection, Capital One Software Report Finds
πŸ“‘
Cline Kanban Flaw Lets Websites Hijack AI Coding Agents
πŸ“‘
How Anthropic’s Mythos has rewritten Firefox’s approach to cybersecurity
πŸ“‘
AWS achieves SNI 27017, SNI 27018, and SNI 9001 certifications for the AWS Asia Pacific (Jakarta) Region
πŸ“‘
How to Disable Google's Gemini in Chrome