Mobile & Wireless
The chain involved the exploitation of several vulnerabilities in the Samsung Members and Samsung Account applications.
Hi, what are you looking for?
The vulnerability was patched by Microsoft in July and CISA warned that it could end up being exploited in the wild.
The chain involved the exploitation of several vulnerabilities in the Samsung Members and Samsung Account applications.
Palo Alto Networks researchers have demonstrated attacks against Google’s synced passkey implementation.
The flaws can be exploited for remote code execution, authentication bypass, and EncryptInterceptor bypass.
Forescout researchers have found 15 new vulnerabilities in the TP-Link Omada networking ecosystem.
A crafted prompt to a low-privilege Google ADK agent could be used to pass a malicious hand-off comment to a privileged agent.
Over 24,000 internet-accessible server-management interfaces disclose authentication hashes before login.
The biggest single reward paid out by Microsoft between July 1, 2025, and June 30, 2026, was $200,000.
The N‑central vulnerability CVE-2026-18577 has been exploited in the wild after threat actors found a patch bypass.
The INC Ransomware gang has been targeting vulnerable SMA1000 appliances for root access and lateral movement.
The flaw can be exploited by unauthenticated attackers to read arbitrary files and potentially achieve remote code execution (RCE).
The internet giant has built an agent harness to find vulnerabilities across Chrome’s codebase.
Named CosmosEscape, the vulnerability exposed the primary key for Cosmos DB accounts, granting full read and write access.
Tracked as CVE-2026-63077, the security defect can be exploited without authentication via the agent polling protocol.
Unauthenticated attackers could send HTTP requests to an exposed endpoint to execute commands inside the MCP bridge container.
The major browser update resolves roughly 80 critical- and high-severity security defects.
The vulnerability tracked as CVE-2026-20316 can be exploited by a remote, unauthenticated attacker to log into affected devices.
A total of five vulnerabilities have been patched in VMware ESXi, vCenter, Workstation, and Fusion.
The OpenAI models targeted services beyond Hugging Face as they attempted to solve the tasks they were given.
Apple announced that dozens of vulnerabilities have been patched in each of its operating systems.
Act Security tackles the spiraling patch problem caused by AI’s ability to find new vulnerabilities in existing cloud environments.