SharePoint JWT Bypass Turns Patch Delay Into an Identity Risk Attackers have started targeting a critical Microsoft SharePoint Server authentication bypass afte...
Lucas Oliveira
Research
N-able N-central flaw exposes MSP consoles to account takeover N-able has released an emergency hotfix for N-central after confirming active exploitation of an...
Lucas Oliveira
Research
Check Point SmartConsole CVE-2026-16232 turns exposed management into firewall takeover risk Check Point has released an urgent July 2026 security update for an...
Lucas Oliveira
Research
Check Point CVE-2026-16232 puts firewall management in the blast radius Check Point has patched an actively exploited SmartConsole authentication bypass that ca...
Lucas Oliveira
Research
BeyondTrust auth bypass flaws put remote support appliances on the urgent patch list BeyondTrust has disclosed four vulnerabilities in its Remote Support and Pr...
Lucas Oliveira
Research
Gitea Docker flaw turns a trusted proxy header into account takeover Gitea has fixed a critical authentication bypass in its official Docker images that could l...
Lucas Oliveira
Research
Unpatched Tenda router backdoor turns home gateways into a trust problem CERT/CC has disclosed an undocumented authentication backdoor in several Tenda router f...
Lucas Oliveira
Research
Check Point hotfixes actively exploited IKEv1 VPN bypass CVE-2026-50751 is the kind of security flaw that punishes organizations for leaving legacy remote-acces...
Lucas Oliveira
Research
PAN-OS GlobalProtect auth bypass is now an incident response problem Palo Alto Networks has confirmed active exploitation of CVE-2026-0257, an authentication by...
Lucas Oliveira
Research
Palo Alto GlobalProtect auth bypass turns cookie trust into VPN access risk CVE-2026-0257 matters because it turns a trust shortcut on the VPN edge into an iden...
Lucas Oliveira
Research
CVE-2024-12802 leaves SonicWall Gen6 VPNs exposed after incomplete patching CVE-2024-12802 is the kind of edge-device flaw that can fool defenders twice: once d...
Lucas Oliveira
Research
CVE-2026-20182 makes Cisco SD-WAN controllers an urgent KEV priority CVE-2026-20182 is not landing as a routine patch bulletin. Cisco says the flaw is already b...
Lucas Oliveira
Research