Russian intelligence hijacks exposed cameras to track military routes as Censys flags 87,000 devices matching known-exploited ...
AI-driven discovery widens the exposure window as attackers break out in 29 minutes while critical application flaws take 55 ...
A solo Russian-speaking threat actor known as "bandcampro" outsourced a chunk of their operations to Google's open-source ...
Hugging Face says an autonomous AI agent breached production through a malicious dataset, accessing internal data and service ...
Three malicious RubyGems packages in the SleeperGem attack skip CI runners, target developer machines, and install persistent ...
Opening a crafted XZ archive in 7-Zip could let an attacker run code on the machine. The flaw, CVE-2026-14266, is a ...
Volexity links UTA0533 to two SonicWall SMA 1000 zero-days used before disclosure to gain root, plant malware, and capture ...
AI agents inherit long-lived secrets and standing privilege, turning old identity gaps into machine-speed risk across ...
F5 patches CVE-2026-42533, a regex map heap overflow that crashes nginx workers and may allow RCE in specific configurations.
UAC-0145 uses fake CAPTCHA checks on compromised sites to push Windows malware, while COWARDDUCK backdoors Android devices ...
OpenSSL fixed HollowByte after 11-byte TLS requests could strand memory on glibc systems, but shipped no CVE, advisory, or ...
WordPress 6.9.5 and 7.0.2 patch wp2shell, a pre-auth core RCE that lets anonymous attackers run code on default installs, ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results