cPanel CVE-2026-65643 turns domain parking into a root-control risk cPanel has disclosed CVE-2026-65643, a critical [vulnerability](https://invaders.ie/resource...
Lucas Oliveira
Research
Microsoft Entra ID CVSS 10 RCE is a trust-plane warning Security teams should treat CVE-2026-69836 as a serious [vulnerability](https://invaders.ie/resources/gl...
Lucas Oliveira
Research
macOS Screen Sharing CVE-2026-65400 exploited to gain root and deploy Monero miners Executive Summary Threat actors are exploiting CVE-2026-65400, a recently pa...
Lucas Oliveira
Research
VMware vCenter RCE exploitation turns syslog exposure into persistence risk VMware vCenter administrators should treat CVE-2026-59310 as more than a routine [vu...
Lucas Oliveira
Research
Metabase zero-day turns BI dashboards into a data-exposure path Metabase has confirmed active exploitation of CVE-2026-72898, a critical unauthenticated [SQL in...
Lucas Oliveira
Research
Swiss SharePoint breach shows why patching alone may not end the incident Switzerland's federal IT office has confirmed a cyberattack against SharePoint servers...
Lucas Oliveira
Research
Gitea Org-mode flaw turns public repositories into a server file-read risk Gitea administrators have a critical patch to verify. The project has fixed CVE-2026-...
Lucas Oliveira
Research
N-able N-central flaw exposes MSP consoles to account takeover N-able has released an emergency hotfix for N-central after confirming active exploitation of an...
Lucas Oliveira
Research
Hugging Face Diffusers flaws turn model loading into a code execution risk Security researchers have disclosed a set of Hugging Face Diffusers vulnerabilities t...
Lucas Oliveira
Research
Adobe Campaign Classic flaws put on-prem marketing systems on the emergency patch list Adobe has released an urgent security update for Adobe Campaign Classic a...
Lucas Oliveira
Research
AWS Kiro flaw shows why AI coding agents need platform-level guardrails AWS has patched a Kiro IDE security issue that captures one of the sharpest risks in age...
Lucas Oliveira
Research
Cisco FMC Static Credential Flaw Lands in KEV After Active Exploitation Cisco has released hot fixes for CVE-2026-20316, a static credential [vulnerability](htt...
Lucas Oliveira
Research