Week in review: High severity WordPress vulnerabilities, fake OAuth IDs bypass sign-in logsHelp Net Security·Jul 19, 00:00 UTC · Jul 19, 2026Vulnerability in the wildCVE-2026-15409CVE-2026-15410CVE-2026-56155+2 CVEs60
Microsoft’s Secure Boot has been broken for a decade and no one noticed until nowArs Technica · Security·Jul 15, 00:00 UTC · Jul 15, 2026Vulnerability in the wildCVE-2015-5381160
UK weakens proposed telecoms defenses against Chinese hackers after industry pushbackThe Record·Jun 10, 06:46 UTC · Jun 10, 2026Vulnerability in the wild60
An attacker using a $500 radio setup could potentially trigger train brake failures or derailments from a distanceSecurity Affairs·Jul 15, 00:18 UTC · Jul 15, 2025Vulnerability in the wildCVE-2025-172760
Kernel shellcode persistence technique in APT attacks and SAS CTF challengeKaspersky Securelist·Oct 17, 14:20 UTC · Oct 17, 2024Vulnerability in the wildCVE-2010-4398160
Facebook patches security flaw based on 19-year-old bug; other sites may still be vulnerableCyberScoop·Dec 12, 21:48 UTC · Dec 12, 2017Vulnerability in the wild60