Advertisement
Nightmare Eclipse Releases HardBreacher Kaspersky Exploit
Security researcher Nightmare Eclipse releases HardBreacher, a privilege escalation proof-of-concept targeting Kaspersky Endpoint Security.
AI-Powered PLC Attacks Target Critical Infrastructure
U.S. agencies warn that threat actors are using AI to target internet-exposed Siemens S7 Series PLCs in critical infrastructure sectors.
TSN Protocols Vulnerabilities Threaten OT Security
New research reveals how unprotected Time-Sensitive Networking protocols in industrial systems could allow attackers to disrupt physical processes.
Cisco Patches Nine Crosswork and Secure Workload Flaws
Cisco patches nine vulnerabilities in Crosswork and Secure Workload platforms, with five flaws scoring the maximum CVSS 10.0 severity rating.
Webmail CSS Injection: Hidden Data Exfiltration Threats
Security researchers warn that Cascading Style Sheets can exfiltrate sensitive data from webmail inboxes if vendors fail to sanitize styles.
Chrome 151 Update Patches 41 Critical, High-Severity Flaws
Google's Chrome 151 update addresses 41 critical and high-severity vulnerabilities, including memory safety bugs potentially leading to RCE.
Advertisement
Microsoft & Apple Patch Critical RCEs and Auth Bypass Flaws
Microsoft released patches for critical-severity RCE and EoP flaws across Active Directory, Azure, and Teams. Apple fixed a Screen Sharing authentication bypass.
New CSS Attacks Break Webmail Interfaces to Steal Credentials
PortSwigger researchers revealed new CSS and HTML techniques breaking webmail defenses in Outlook, Gmail, and Yahoo to capture tokens and passwords.
CVE-2026-18577: Attackers Exploit N-able Patch Bypass
Security teams face active exploitation of CVE-2026-18577, an N-able authentication bypass vulnerability granting administrator access.
AI-Generated Code Vulnerabilities: Framework Pairing is Key to Risk
AI-generated code introduces an average of 15 vulnerabilities per codebase. This analysis explores how framework choices significantly influence the actual security risk.
Microsoft Patch Tuesday: 9 Critical Flaws Among 137 Total Fixes
Microsoft's latest Patch Tuesday addresses 137 vulnerabilities, including 9 critical flaws. While no zero-days were reported, timely patching is essential.
Apple May 2024 Security Updates Address 84 Vulnerabilities
Apple's May 2024 security updates patch 84 vulnerabilities across iOS, macOS, watchOS, tvOS, and visionOS. Immediate patching is crucial for all users.
Cisco FMC Zero-Day Exploited by Interlock Ransomware: March 2026 CVEs
Runtime Rebel analyzes March 2026's significant rise in high-impact CVEs, including a Cisco FMC zero-day actively exploited by Interlock Ransomware.
Apple Addresses 85 Vulnerabilities in Recent OS Updates
Apple released significant security updates patching 85 vulnerabilities across macOS, iOS, iPadOS, tvOS, watchOS, and visionOS, with no active exploitation reported.
Adobe Security Update: 80 Vulnerabilities Across 8 Products Patched
Adobe's comprehensive security update addresses 80 vulnerabilities across 8 products, including Commerce, Acrobat Reader, and Premiere Pro. Immediate patching is vital.
Microsoft Patch Tuesday: 83 Vulnerabilities, Critical Flaw Addressed
Microsoft's latest Patch Tuesday addresses 83 vulnerabilities across its product line, including one critical flaw. Security teams must prioritize immediate patching.