Cybersecurity

NGINX Under Active Attack After Patch Release

A critical heap buffer overflow vulnerability (CVE-2026-42945) in NGINX is being actively exploited in the wild, allowing for denial-of-service or potential remote code execution.Exploitation...

Grafana Code Breach & Extortion Attempt Revealed

Grafana disclosed a data breach where an unauthorized party accessed its GitHub and downloaded its codebase.The cybercrime group CoinbaseCartel has claimed responsibility for the...

Turla’s Kazuar Malware Evolves Into Stealthy P2P Botnet

The Russian state-sponsored group Turla (aka Secret Blizzard) has evolved its Kazuar malware into a modular, peer-to-peer botnet.This new architecture features three specialized modules—Kernel,...

Microsoft Exchange Under Attack Via New XSS Bug

Microsoft disclosed an actively exploited spoofing vulnerability tracked as CVE-2026-42897 in on-premise Exchange Server versions.The flaw allows attackers to execute arbitrary JavaScript by sending...

Cisco SD-WAN Exploited Auth Bypass Patched

Cisco patched a critical vulnerability (CVE-2026-20182) in its Catalyst SD-WAN software that has been exploited in limited attacks.The flaw, with a maximum CVSS score...

PraisonAI flaw exploited in under four hours

Attackers targeted the PraisonAI vulnerability within 3 hours and 44 minutes of its public disclosure on May 11, 2026.The flaw, CVE-2026-44338, is a missing...

Linux Fragnesia CVE-2026-46300 LPE Vulnerability Uncovered

A new Linux kernel vulnerability dubbed "Fragnesia" (CVE-2026-46300) allows unprivileged local attackers to gain root access.The bug is in the XFRM ESP-in-TCP subsystem and...

Microsoft’s AI “MDASH” Hunts Windows Bugs at Scale

Microsoft has unveiled MDASH, a multi-model AI system for finding and fixing software vulnerabilities at scale.The system uses over 100 specialized AI agents to...

Latest news

Hyperliquid ETF Inflows Soar to $25.5M, HYPE Price Rises

ETF inflows for Hyperliquid soared to $25.5 million on Wednesday, surpassing the combined net buying of the previous five...

SEC Delays Novel Prediction Market ETFs

The SEC is delaying the launch of novel ETFs, including prediction market funds, to seek public feedback on their...

GitHub Breach Linked to Poisoned VS Code Extension

GitHub confirms a breach of its internal repositories via a poisoned Visual Studio Code extension.The attack was part of...