Cyber Security News·1d ago highCritical ServiceNow Vulnerabilities Let Attackers Bypass Authorization – Update Now!#servicenow#sql-injection#authorization-bypass 3 sources 3 min
Cyber Security News·1d ago highHPE Networking ALE Flaws Let Hackers Bypass Security Controls and Compromise Systems#hpe#ale#networking 3 min
CERT/CC Vulnerability Notes·2d ago highVU#234131: ViewSonic vCast media streaming service allows unauthenticated screen exfiltration and device compromise#viewsonic#vcast#viewboardCVE-2026-82987 2 min
The Register · Security·2d agoCVE flood pushes Ubuntu onto weekly kernel release cycle#ubuntu#canonical#linux-kernel 3 min
Ubuntu Security Notices·2d agoUSN-8815-1: libass vulnerabilities#ubuntu#libass#advisoryCVE-2020-24994
Infosecurity Magazine·2d agoCISA Charts New "Quality Era" for Global CVE Program#cisa#cve#nvd 2 sources 2 min
Malwarebytes Labs·2d ago highUpdate Chrome: 108 security fixes for desktop, new release for Android#chrome#google#patch 2 sources 3 min
WIRED · Security·2d ago highAn OpenAI Agent Hacked Australia's Health Service. Their Government Found Out Months Later.#cve#observability#rce 5 sources 3 min
GBHackers·3d ago highApache Tomcat 11.0.26 Fixes 12 Security Flaws Enabling WebSocket Bypass and DoS Attacks#apache#tomcat#websocket 3 min
Help Net Security·3d agoUbuntu kernel CVE fixes are moving to a weekly release schedule#ubuntu#canonical#linux-kernel 2 min
Cyber Security News·3d ago highApache Tomcat Update Fixes WebSocket and HTTP/2 Flaws Affecting Server Security#apache#tomcat#websocket 3 min
oss-security·3d agoRe: Flatpak 1.18.1 fixes multiple vulnerabilities#flatpak#linux#cveCVE-2026-90616 2 sources
oss-security·3d agoCVE-2026-73192: Apache Sling XSS: XSS possible through XSSAPI.getValidHref()#apache-sling#cve#open-sourceCVE-2026-73192 7 sources
oss-security·3d ago highRe: Emacs arbitrary code execution: incomplete fix for CVE-2024-53920#emacs#cve#arbitrary-code-executionCVE-2026-96442 4 sources
Cyber Security News·3d ago highCritical IBM FTM Flaws Let Attackers Execute Code and Access Payment Systems#critical-patch#cve#financial-transaction-manager 3 min1
GBHackers·3d ago highHPE Networking Analytics Engine Flaws Let Attackers Gain Root Access#hpe#aruba#ale 4 min
oss-security·4d agoCVE-2026-87080: Net::IDN::Punycode::PP versions before 2.590 for Perl decode a truncated label to a name containing a character it never encoded in decode_punycode#perl#cpan#punycodeCVE-2026-87080 8 sources
Ubuntu Security Notices·4d agoUSN-8793-2: Linux kernel (Azure CVM) vulnerabilities#ubuntu#linux-kernel#azureCVE-2025-71289
The Hacker News·4d ago highAI Agents Are Rewriting the Rules of Lateral Movement#ai-agent#authentication#cve in the wild 7 min
The Hacker News·4d ago criticalZyxel and Veeam Flaws Under Active Exploitation With Command and SYSTEM Access#command-execution#cve#endpoint 8 sources in the wild 2 min3
Ubuntu Security Notices·5d agoUSN-8798-1: GStreamer Good Plugins vulnerabilities#ubuntu#gstreamer#usnCVE-2026-18295 2 sources
arXiv cs.CR·5d agoReasoning Topology Matters: A Controlled Study of LLM-Based Cybersecurity Analysis#llm#reasoning#cybersecurityResearch
WIRED · Security·7d agoForget the AI Slowdown—the Vulnerability Explosion Is Already Happening#ai-assisted-discovery#cve#microsoft 3 min2
Cyber Security News·8d agoBragJack Attack Lets Malicious Extensions Hijack AI Agents Across 5 Major Browsers#agent-security#ai-agents#bragjack 4 min