Exploited SonicWall SMA zero-days put remote access gateways on the clock SonicWall has released urgent fixes for two exploited zero-day vulnerabilities in its...
Lucas Oliveira
Research
Exploited Joomla extension flaws turn file uploads into emergency patch work CISA has added two exploited Joomla extension vulnerabilities to its Known Exploite...
Lucas Oliveira
Research
BeyondTrust auth bypass flaws put remote support appliances on the urgent patch list BeyondTrust has disclosed four vulnerabilities in its Remote Support and Pr...
Lucas Oliveira
Research
Gitea Docker flaw turns a trusted proxy header into account takeover Gitea has fixed a critical authentication bypass in its official Docker images that could l...
Lucas Oliveira
Research
U-Boot FIT signature flaws expose a fragile pre-OS trust boundary Firmware security company Binarly has disclosed six vulnerabilities in U-Boot's FIT signature...
Lucas Oliveira
Research
Microsoft Defender RoguePlanet fix closes a SYSTEM-level escalation path Microsoft has released a fix for CVE-2026-50656, the Microsoft Defender vulnerability p...
Lucas Oliveira
Research
Unpatched Tenda router backdoor turns home gateways into a trust problem CERT/CC has disclosed an undocumented authentication backdoor in several Tenda router f...
Lucas Oliveira
Research
CISA's July KEV batch puts Joomla page builders and Langflow on emergency patch lists CISA added three vulnerabilities to its Known Exploited Vulnerabilities ca...
Lucas Oliveira
Research
Adobe ColdFusion CVE-2026-48282 moves from patch advisory to active exploitation Adobe ColdFusion administrators have a narrow patch window for CVE-2026-48282,...
Lucas Oliveira
Research
Vect and TeamPCP show how stolen build secrets become ransomware access Sophos says two cybercrime groups, Vect and TeamPCP, have formalized a partnership that...
Lucas Oliveira
Research
JADEPUFFER shows how agentic AI can turn exposed Langflow into ransomware Sysdig has documented what it assesses as one of the first clear examples of agentic r...
Lucas Oliveira
Research
CitrixBleed-style NetScaler flaw CVE-2026-8451 is already being tested in the wild Citrix NetScaler administrators have another edge-appliance exposure to triag...
Lucas Oliveira
Research