● On the wire
Ubuntu 22.04 LTS Kernel Important Memory Protection Fix USN-8871-1//Debian Redis High Severity Denial of Service Code Execution DSA-6538-1//Ubuntu Linux Kernel Update Security Advisory USN-8864-1 CVE-2025-38724//Debian SABnzbd+ Critical Code Exec Authorization Bypass DSA-6544-1//OSCP+ Scoring Update//Serious Unauthorized Access Flaw Detected in Ubuntu OpenStack Aodh Watcher//Debian ruby-rack-session Important Auth Bypass and Escalation DSA-6542-1//User Agent Strings Curiosities, (Sun, Oct 4th)//Smashing the token limit with overlapping fragments//Ubuntu 18.04 LTS Linux Kernel Security Flaws USN-8851-3//ISC Stormcast For Tuesday, October 6th, 2026 https://isc.sans.edu/podcastdetail/10124, (Tue, Oct 6th)//The model isn't cooperating//Debian radsecproxy Important Denial of Service Code Issue DSA-6540-1//Cisco IOS XE Software Security Hardening Release: August 2026//YARA-X 1.21.0 Release, (Sat, Oct 3rd)//Ubuntu 22.04 LTS Kernel Important Memory Protection Fix USN-8871-1//Debian Redis High Severity Denial of Service Code Execution DSA-6538-1//Ubuntu Linux Kernel Update Security Advisory USN-8864-1 CVE-2025-38724//Debian SABnzbd+ Critical Code Exec Authorization Bypass DSA-6544-1//OSCP+ Scoring Update//Serious Unauthorized Access Flaw Detected in Ubuntu OpenStack Aodh Watcher//Debian ruby-rack-session Important Auth Bypass and Escalation DSA-6542-1//User Agent Strings Curiosities, (Sun, Oct 4th)//Smashing the token limit with overlapping fragments//Ubuntu 18.04 LTS Linux Kernel Security Flaws USN-8851-3//ISC Stormcast For Tuesday, October 6th, 2026 https://isc.sans.edu/podcastdetail/10124, (Tue, Oct 6th)//The model isn't cooperating//Debian radsecproxy Important Denial of Service Code Issue DSA-6540-1//Cisco IOS XE Software Security Hardening Release: August 2026//YARA-X 1.21.0 Release, (Sat, Oct 3rd)//
Chrome/V8 zero-day attivamente sfruttato e inserito nel catalogo CISA KEV
Top story — News

Chrome/V8 zero-day actively exploited and added to the CISA KEV catalog

Google has released an urgent update for Chrome that fixes 12 vulnerabilities, including CVE-2026-85046, a type confusion flaw in the V8 engine already exploited in the wild. The flaw can allow a remote attacker to execute arbitrary code in the browser sandbox through a specially crafted HTML page. CISA has added the bug to the Known Exploited Vulnerabilities catalog, confirming…

Read the article →
From the newsroom
Zero-day SonicWall SMA 1000 sfruttati in rete
News

Zero-day SonicWall SMA 1000 exploited in the wild

SonicWall has patched two vulnerabilities in SMA 1000 gateways already exploited in real-world attacks: CVE-2026-83548, a pre-authentication SSRF, and CVE-2026-83549, a post-authentication command injection flaw. Researchers and various advisories cite the possibility that attackers…

Read the article →
Spotlight
More news