Active exploitation of TeamCity RCE puts CI/CD control planes on the front line JetBrains TeamCity administrators have a narrow patch window for CVE-2026-63077,...
Lucas Oliveira
Research
ChainDrop shows how npm worms are moving from package compromise to CI/CD takeover Microsoft Threat Intelligence has published a detailed analysis of ChainDrop,...
Lucas Oliveira
Research
TP-Link Omada ZTP flaws expose the trust chain behind managed networks TP-Link has published security advisories for a cluster of vulnerabilities affecting Omad...
Lucas Oliveira
Research
N-able N-central flaw exposes MSP consoles to account takeover N-able has released an emergency hotfix for N-central after confirming active exploitation of an...
Lucas Oliveira
Research
Hugging Face Diffusers flaws turn model loading into a code execution risk Security researchers have disclosed a set of Hugging Face Diffusers vulnerabilities t...
Lucas Oliveira
Research
Adobe Campaign Classic flaws put on-prem marketing systems on the emergency patch list Adobe has released an urgent security update for Adobe Campaign Classic a...
Lucas Oliveira
Research
AWS Kiro flaw shows why AI coding agents need platform-level guardrails AWS has patched a Kiro IDE security issue that captures one of the sharpest risks in age...
Lucas Oliveira
Research
Cisco FMC Static Credential Flaw Lands in KEV After Active Exploitation Cisco has released hot fixes for CVE-2026-20316, a static credential [vulnerability](htt...
Lucas Oliveira
Research
JetBrains TeamCity RCE Puts Self-Hosted CI/CD Servers on an Urgent Patch Clock JetBrains has released fixes for CVE-2026-63077, a critical unauthenticated [remo...
Lucas Oliveira
Research
AI-Assisted Linux Kernel Exploit Turns a Traffic-Control Race Into Root Access STAR Labs has published technical details for CVE-2026-53264, a Linux kernel race...
Lucas Oliveira
Research
Arista VeloCloud Zero-Day Puts SD-WAN Orchestrators in the Blast Radius Arista's July 27 advisory on CVE-2026-16812 deserves immediate attention because the aff...
Lucas Oliveira
Research
Check Point SmartConsole CVE-2026-16232 turns exposed management into firewall takeover risk Check Point has released an urgent July 2026 security update for an...
Lucas Oliveira
Research