FalconFlank Exploit Released for CrowdStrike Falcon
Security researcher known as Chaotic Eclipse has published a proof-of-concept (PoC) for a zero-day vulnerability dubbed 'FalconFlank' that affects the CrowdStrike Falcon security platform. The flaw exploits the Falcon sensor's malicious macro removal function in Microsoft Office files, which operates with elevated privileges, allowing a low-privileged local user to perform a privilege escalation on the system. The exploit was successfully…
Read the article →Zero-day SonicWall SMA 1000 exploited in the wild
SonicWall has patched two vulnerabilities in SMA 1000 gateways already exploited in real-world attacks: CVE-2026-83548, a pre-authentication SSRF, and CVE-2026-83549, a post-authentication command injection flaw. Researchers and various advisories cite the possibility that attackers…
Read the article →JFrog Artifactory hit by an authentication bypass exploited immediately after disclosure
JFrog Artifactory, one of the most widely used repository managers in DevOps pipelines and package distribution, has come under scrutiny after the disclosure of CVE-2026-82329. The flaw allows attackers to bypass authentication and, in…
Read the article →McKesson under pressure after a cyber incident and ShinyHunters’ claim
McKesson, the large Texas-based pharmaceutical distributor, has confirmed a security incident that is causing disruptions to its systems. The company said the intrusion involves a third-party application and that the investigation is still in…
Read the article →PaperCut: emergency patch 2 closes the exploited RCE chain
PaperCut has released Emergency Patch Release 2 after researchers demonstrated that the first fix could be bypassed against a pre-authentication remote code execution chain that was already being actively exploited. The flaw affects PaperCut…
Read the article →PaperCut: zero-day under attack, emergency patch released
PaperCut Software has confirmed that a zero-day vulnerability in the NG and MF products has already been actively exploited in real-world attacks. The company has released an emergency patch and has asked customers to…
Read the article →PaperCut under attack with an already exploited zero-day
PaperCut has confirmed that a vulnerability in the NG and MF products is being actively exploited in zero-day attacks. The company has released emergency patches for v25 and v26 and has warned of incidents…
Read the article →Arrests in Australia for TeamPCP and a massive supply-chain compromise campaign
Australian police have charged two men from Western Australia, accused of being part of the TeamPCP group, at the center of a long-running campaign of software supply chain attacks. According to authorities, the group…
Read the article →CISA Demonstrates the Defensive Gap in Two Critical Infrastructures
CISA has published the results of two red team assessments conducted in parallel against two critical infrastructure organizations. In both environments, the testers were able to achieve full domain compromise and access sensitive business…
Read the article →CISA adds Oracle HTTP Server/WebLogic Proxy Plug-in to KEV catalog for active exploitation
CISA has added CVE-2026-21962 to the Known Exploited Vulnerabilities catalog after finding evidence of active exploitation against Oracle HTTP Server and Oracle WebLogic Server Proxy Plug-in. The flaw is a critical access control vulnerability…
Read the article →
HollowGraph uses Microsoft 365 calendars as a covert C2 channel
North Korean ClickFake campaign targets Web3 professionals
Google launches CodeMender and Gemini 3.5 Flash Cyber to uncover vulnerabilities
Fake alert app in Bahrain distributes Android spyware
Ransomware on Japan’s cold chain
Ubuntu snap-confine: the race condition that leads to local root
The Adobe Acrobat for Chrome flaw exposes WhatsApp Web data
Kratos taken down, the phishing kit behind thousands of campaigns per month
HollowGraph uses Microsoft 365 calendars as a covert C2 channel
North Korean ClickFake campaign targets Web3 professionals
Google launches CodeMender and Gemini 3.5 Flash Cyber to uncover vulnerabilities
Fake alert app in Bahrain distributes Android spyware
Ransomware on Japan’s cold chain
Ubuntu snap-confine: the race condition that leads to local root
The Adobe Acrobat for Chrome flaw exposes WhatsApp Web data
Kratos taken down, the phishing kit behind thousands of campaigns per month- OpenAI: the models escaped the sandbox and hit Hugging Face
- Active exploit on SharePoint CVE-2026-50522 after Patch Tuesday
- ServiceNow AI Platform CVE-2026-6875: Unauthenticated RCE Already Exploited
- WordPress wp2shell: the exploit chain fueling mass scanning
- Qilin exploits CVE-2026-0257 in PAN-OS GlobalProtect to breach VPNs
- FakeGit: 7,600 malicious GitHub repositories trick AI agents and spread SmartLoader
- Two million cars with dealer-installed anti-theft systems are exposed via Bluetooth
- OT security: the ‘air gap’ is a myth and resilience must be designed











