Vulnerabilities Recent macOS Screen Sharing Vulnerability Exploited in Attacks Threat actors gained root access to the vulnerable systems and deployed a Monero miner. Ionut Arghire19 hours ago
Vulnerabilities Critical SAP Commerce Cloud Vulnerability Exploited 3 Days After Disclosure The vulnerability tracked as CVE-2026-58231 can be exploited to execute arbitrary code and compromise internal components. Eduard Kovacs20 hours ago
Vulnerabilities Adobe Commerce Bug Targeted Immediately After Disclosure The first exploitation attempts targeting CVE-2026-71362 were observed shortly after Adobe released patches. Ionut Arghire5 days ago
Vulnerabilities WordPress 7.0.4 Patches Remote Code Execution Vulnerability Attackers with Author-level user or higher permissions could exploit the flaw via malicious Postscript files. Ionut Arghire5 days ago
Vulnerabilities Fortinet Patches Authentication Flaws in FortiWeb and FortiManager The vulnerabilities could allow attackers to log in with random usernames and passwords or impersonate any FortiGate appliance. Ionut Arghire5 days ago
Vulnerabilities Critical VMware vCenter Vulnerability in Attackers’ Crosshairs Tracked as CVE-2026–59310, the directory traversal bug allows remote attackers to execute arbitrary code. Ionut Arghire5 days ago
Vulnerabilities Chipmaker Patch Tuesday: Intel, AMD Fix Over 80 Vulnerabilities Combined Intel has informed customers about several high-severity vulnerabilities that can lead to privilege escalation and even code execution. Eduard Kovacs6 days ago
Vulnerabilities Ivanti EPM Update Patches Remotely Exploitable Flaws The vulnerabilities could be exploited to leak credentials for external SQL connections or crash an agent service. Ionut Arghire6 days ago
Vulnerabilities SonicWall Patches Critical Vulnerabilities in Discontinued GMS Platform The security defects could allow unauthenticated attackers to execute arbitrary code remotely and read sensitive data. Ionut Arghire6 days ago
Vulnerabilities Cisco Patches Firewall Zero-Day Exploited for DoS Attacks CVE-2026-20349 can be exploited remotely without authentication against Secure Firewall ASA and FTD devices. Eduard Kovacs6 days ago
Vulnerabilities August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day A use-after-free in the afd.sys Windows kernel-mode driver has been exploited to gain SYSTEM privileges. Ionut Arghire6 days ago
Vulnerabilities Zoom Patches Zero-Click Code Execution Vulnerability Impacting Zoom annotation, the bug could be exploited by a meeting participant to execute code on another participant’s machine. Ionut Arghire7 days ago
Vulnerabilities SAP Patches Critical Code Injection, Memory Corruption Vulnerabilities SAP released 28 new and two updated security notes, including four notes dealing with critical-severity bugs. Ionut Arghire7 days ago
Vulnerabilities Cisco Warns of High-Severity ClamAV Vulnerabilities With Public PoC Remote, unauthenticated attackers could exploit the bugs to cause a denial-of-service (DoS) condition. Ionut ArghireAugust 10, 2026
Vulnerabilities Critical Flaws Discovered in Belgian eID Software Used by 2 Million People The vulnerabilities affected software used by eight of Belgium’s ten largest banks and over 60 government agencies. Eduard KovacsAugust 10, 2026
Endpoint Security Microsoft, Apple Release Fresh Security Updates Microsoft fixed critical vulnerabilities across Azure, Entra, and SharePoint, while Apple patched a high-severity authentication bypass. Ionut ArghireAugust 7, 2026
Vulnerabilities Critical Vulnerabilities Patched With Chrome 151 Update The browser refresh eliminates over two dozen memory safety bugs, including critical use-after-free flaws. Ionut ArghireAugust 7, 2026
Artificial Intelligence Zero-Click AI Browser Hacking: Claude and ChatGPT Atlas Hijacked via Emails, X Posts Zenity researchers reported the findings to Anthropic and OpenAI in late 2025 and early 2026, but they remain unpatched. Eduard KovacsAugust 6, 2026
Artificial Intelligence Critical Paperclip Flaw Allowed Admin Access, Code Execution An attacker could self-register, sign in for board-level API access, and import a new company for code execution. Ionut ArghireAugust 6, 2026
Vulnerabilities Cisco Patches Critical SD-WAN, IOS XE, FMC Vulnerabilities Patches were rolled out for two dozen vulnerabilities, including one with public proof-of-concept (PoC) code. Ionut ArghireAugust 6, 2026