● On the wire
Debian Xen Crucial Privilege Escalation Denial of Service Flaw DSA-6424-1//Shattering the Dream – When a Job Offer Becomes a Zero-Day Attack//Ubuntu Libgit2 Security Advisory USN-8628-1 Multiple Issues Fixed//Cisco Advance Notification for Publication of August 19, 2026, Security Advisories//Debian Icinga2 Important Denial of Service Privilege Escalation DSA-6426-1//Using Gemma4 with Ollama - Testing File Hash Analysis and Recommendations with AI, (Wed, Aug 12th)//Video from “CVE and AI Vulnerability Discovery” Virtual Conference Now Available//Debian SPIP Remote Code Execution SQL Injection and SSRF DSA-6435-1//Ubuntu 26.04 LTS USN-8632-1 Follow-Redirects Credential Disclosure//Debian DSA-6433-1 xdg-dbus-proxy Important Policy Bypass//Ubuntu 14.04 LTS Important Network Privilege Escalation - USN-8635-1//Microsoft Windows TCPIP.SYS IppQualifyAddresses Out-of-Bounds Read Vulnerability//Debian Postfix Critical DoS Policy Evasion Notice DSA-6430-1//Ubuntu ImageMagick Heap Overflow and Code Execution Security Flaws//Debian Caddy Important Access Control Breaches DSA-6429-1 CVE-2026-27585//Debian Xen Crucial Privilege Escalation Denial of Service Flaw DSA-6424-1//Shattering the Dream – When a Job Offer Becomes a Zero-Day Attack//Ubuntu Libgit2 Security Advisory USN-8628-1 Multiple Issues Fixed//Cisco Advance Notification for Publication of August 19, 2026, Security Advisories//Debian Icinga2 Important Denial of Service Privilege Escalation DSA-6426-1//Using Gemma4 with Ollama - Testing File Hash Analysis and Recommendations with AI, (Wed, Aug 12th)//Video from “CVE and AI Vulnerability Discovery” Virtual Conference Now Available//Debian SPIP Remote Code Execution SQL Injection and SSRF DSA-6435-1//Ubuntu 26.04 LTS USN-8632-1 Follow-Redirects Credential Disclosure//Debian DSA-6433-1 xdg-dbus-proxy Important Policy Bypass//Ubuntu 14.04 LTS Important Network Privilege Escalation - USN-8635-1//Microsoft Windows TCPIP.SYS IppQualifyAddresses Out-of-Bounds Read Vulnerability//Debian Postfix Critical DoS Policy Evasion Notice DSA-6430-1//Ubuntu ImageMagick Heap Overflow and Code Execution Security Flaws//Debian Caddy Important Access Control Breaches DSA-6429-1 CVE-2026-27585//
Campagna russa contro Zimbra con exploit zero-click e furto di email e codici 2FA
Top story — News

Russian campaign against Zimbra with zero-click exploit and theft of emails and 2FA codes

Several Russia-linked groups exploited an as-yet-unknown vulnerability in Zimbra for months to target government and strategic organizations in the West. The vector was particularly dangerous because simply opening or even just viewing the email message in the web client was enough to trigger the exploit, with no explicit click required from the user. Once inside, the attackers targeted email inboxes…

Read the article →
From the newsroom
Spotlight
More news