Participants demonstrated exploits for Windows, Linux, VMware, Nvidia, and AI products.
Hi, what are you looking for?
Participants demonstrated exploits for Windows, Linux, VMware, Nvidia, and AI products.
Microsoft has shared mitigations for CVE-2026-42897 until a permanent patch can be released for affected Exchange Server versions.
The non-bank lender discovered a ransomware attack nearly one year ago, but only recently completed its investigation.
The zero-day, tracked as CVE-2026-20182, has been exploited in targeted attacks by a sophisticated threat actor identified as UAT-8616.
The vulnerability, tracked as CVE-2026-46300, is similar to the recently disclosed exploits named Dirty Frag and Copy Fail.
The acquisition enables Akamai to expand its Zero Trust portfolio to add protection directly into the browser.
The goal of the guidance, which outlines minimum elements, is to help organizations enhance transparency in AI systems and supply chains.
The patch was announced as Broadcom is attending the Pwn2Own hacking competition in Berlin this week.
The Nitrogen ransomware group claims to have hacked the company’s systems, stealing 8TB of data, including confidential documents.
Microsoft’s MDASH discovered 16 of the Patch Tuesday vulnerabilities, and Palo Alto used Mythos to find dozens of flaws.
CVE-2026-40361 is similar to a vulnerability found a decade ago, BadWinmail, which at the time was dubbed an “enterprise killer”.
More than 500 packages were pushed during the attack, but the target appears to have been RubyGems itself rather than users.
Many ICS vendors have not released new advisories for the May 2026 Patch Tuesday.
Threat actors obtained names and contact information for an unspecified number of BWH Hotels guests.
The tech giant has also ported the patch for a recent deleted chats recovery issue to older versions of iOS.
Curl’s lead developer says Mythos claims are marketing, but many in the industry believe the results stem from Curl’s robust security.
Team8, Index Ventures, Picture Capital, Elad Gil, Cerca Partners, and Tesonet invested in Frame Security.
The zero-day was designed to bypass 2FA and it was developed by a prominent cybercrime group.
The company topped revenue and earnings forecasts for the first quarter of 2026, but its shares plunged more than 20%.
Also called Copy Fail 2 and tracked as CVE-2026-43284 and CVE-2026-43500, the exploit was disclosed before a patch was released.