CVE-2026-41089: Critical Windows Netlogon RCE Under Active Exploit
June 2, 2026 A critical remote code execution vulnerability in Windows Netlogon is now under active exploitation in the wild. The flaw, tracked as CVE-2026-41089, carries a CVSS score of 9.8 and allows unauthenticated attackers to execute code on Windows…
Miasma Supply Chain Attack: Red Hat npm Packages Compromised
June 01, 2026 A new supply chain attack campaign codenamed Miasma has compromised multiple @redhat-cloud-services npm packages. The attack steals developer credentials and CI/CD secrets through install-time malware. It also delivers a self-propagating…
ChatGPT LLMShare Malware Campaign Abuses Share Links to Deliver Fake Outage Pages
June 1, 2026 Threat actors have launched a novel malware campaign dubbed LLMShare that abuses legitimate ChatGPT share links to deliver malicious payloads. The campaign uses ChatGPT’s own code-rendering feature to host fake outage pages on trusted…
WP Maps Pro CVE-2026-8732: Critical WordPress Admin Bypass Under Active Exploit
May 31, 2026 A critical vulnerability in the WP Maps Pro WordPress plugin is now under active exploitation. Threat actors are abusing CVE-2026-8732 to create rogue administrator accounts on compromised websites without any authentication. WP Maps Pro is…
ShinyHunters Breach Charter Communications: 4.9M Accounts Exposed
May 29, 2026 The ShinyHunters extortion gang has breached Charter Communications, exposing 4.9 million customer and business accounts. Consequently, the telecom giant confirmed the incident while disputing the severity of the stolen data. Charter…
CIFSwitch Linux Flaw Grants Root Access on Major Distros
May 30, 2026 A newly discovered Linux kernel privilege escalation vulnerability named CIFSwitch allows local attackers to forge CIFS authentication key descriptions, abuse the kernel’s key request mechanism, and gain root privileges on multiple…
Palo Alto PAN-OS CVE-2026-0257: GlobalProtect Authentication Bypass Under Active Exploit
May 30, 2026 CISA has added a critical Palo Alto Networks PAN-OS authentication bypass vulnerability to its Known Exploited Vulnerabilities catalog. CVE-2026-0257 affects GlobalProtect portal and gateway configurations, and it is already being exploited…
Unpatched Gogs Zero-Day Enables Remote Code Execution on Git Servers
May 29, 2026 An unpatched zero-day vulnerability in the Gogs self-hosted Git service allows authenticated attackers to execute remote code on Internet-facing instances. The flaw, discovered by Rapid7 researcher Jonah Burgess, affects the latest release…
FortiClient EMS CVE-2026-35616: Authentication Bypass Delivers EKZ Infostealer
May 28, 2026 Hackers are actively exploiting a critical authentication bypass vulnerability in FortiClient Enterprise Management Server (EMS) to deliver an undocumented credential stealer dubbed EKZ. The flaw, tracked as CVE-2026-35616, allows…
Gitea CVE: Private Container Images Exposed for Four Years
May 28, 2026 Gitea CVE-2026-27771 is a critical container registry vulnerability. It allowed unauthenticated attackers to access private images for nearly four years. The flaw impacts more than 30,000 Gitea deployments worldwide. Consequently,…