LIVE FEED
Subscribe
//

Latest Briefings

Vulnerabilities BeyondTrust Patches Critical Auth Bypass Flaws in RS and PRA Software
CRITICAL Vulnerabilities

BeyondTrust Patches Critical Auth Bypass Flaws in RS and PRA Software

BeyondTrust has disclosed two critical authentication bypass vulnerabilities in its Remote Support and Privileged Remote Access products, urging self-hosted customers to apply…

by Robbie · 1 month ago
Exploits Max-Severity Adobe ColdFusion Flaw Exploited Within Hours of Disclosure
CRITICAL Exploits

Max-Severity Adobe ColdFusion Flaw Exploited Within Hours of Disclosure

A critical remote code execution vulnerability in Adobe ColdFusion is under active attack, with exploitation observed less than two hours after Adobe…

by Robbie · 1 month ago
Vulnerabilities Exploit Attempts Hit Gitea Docker Flaw CVE-2026-20896 Within Two Weeks of Patch
CRITICAL Vulnerabilities

Exploit Attempts Hit Gitea Docker Flaw CVE-2026-20896 Within Two Weeks of Patch

Threat actors are actively probing a critical Gitea Docker vulnerability that allows unauthenticated clients to gain elevated access by spoofing a trusted…

by Robbie · 1 month ago
Vulnerabilities 16-Year-Old Linux KVM Flaw Allows Guest VMs to Escape to Host
CRITICAL Vulnerabilities

16-Year-Old Linux KVM Flaw Allows Guest VMs to Escape to Host

A use-after-free vulnerability in Linux's KVM hypervisor, present in shared shadow MMU code for both Intel and AMD x86 systems, can be…

by Robbie · 1 month ago
Exploits Google Project Zero Chains Pixel 9 Sandbox Escape via BigWave Kernel Driver
CRITICAL Exploits

Google Project Zero Chains Pixel 9 Sandbox Escape via BigWave Kernel Driver

A Project Zero researcher found three bugs in the Pixel 9's BigWave AV1 hardware driver, one of which enables a full mediacodec…

by Robbie · 1 month ago
AI Security JadePuffer: First Ransomware Campaign Run Entirely by an AI Agent
CRITICAL AI Security

JadePuffer: First Ransomware Campaign Run Entirely by an AI Agent

Cloud security firm Sysdig has documented what it believes is the first ransomware operation conducted end-to-end by a large language model agent,…

by Robbie · 1 month ago
Vulnerabilities CISA Warns of Critical Auth Flaws in EVoke EV Charging Management System
CRITICAL Vulnerabilities

CISA Warns of Critical Auth Flaws in EVoke EV Charging Management System

CISA has published an advisory detailing multiple vulnerabilities in EVoke Systems' Charging Station Management System, with the most severe carrying a CVSS…

by Robbie · 1 month ago
Vulnerabilities CISA Warns of Critical Flaws in Daktronics Controller Firmware
CRITICAL Vulnerabilities

CISA Warns of Critical Flaws in Daktronics Controller Firmware

Three vulnerabilities in Daktronics DMP and VFC-DMP controller firmware, including hard-coded credentials and unrestricted file upload, could give unauthenticated attackers full root-level…

by Robbie · 1 month ago
Vulnerabilities Bad Epoll Linux Kernel Flaw Grants Root to Unprivileged Users, Affects Android
CRITICAL Vulnerabilities

Bad Epoll Linux Kernel Flaw Grants Root to Unprivileged Users, Affects Android

A newly disclosed Linux kernel vulnerability tracked as CVE-2026-46242 allows an ordinary unprivileged user to gain full root control. The flaw affects…

by Robbie · 1 month ago
Vulnerabilities Delta Electronics DVP12SE PLC Exposes Critical Unauthenticated Modbus Flaws
CRITICAL Vulnerabilities

Delta Electronics DVP12SE PLC Exposes Critical Unauthenticated Modbus Flaws

Two critical vulnerabilities in Delta Electronics DVP12SE PLCs allow unauthenticated remote attackers to manipulate control logic and flood the device into unavailability.…

by Robbie · 1 month ago
AI Security Agentic AI Drives Real Ransomware Attack Through Langflow Flaw
CRITICAL AI Security

Agentic AI Drives Real Ransomware Attack Through Langflow Flaw

A threat actor exploited a critical Langflow vulnerability to deploy an LLM agent that autonomously performed reconnaissance, lateral movement, and ransomware encryption…

by Robbie · 1 month ago
Vulnerabilities Critical Cursor AI Editor Flaws Enable OS-Level Remote Code Execution
CRITICAL Vulnerabilities

Critical Cursor AI Editor Flaws Enable OS-Level Remote Code Execution

Two vulnerabilities in the Cursor AI code editor, collectively dubbed DuneSlide, allow attackers to escape the IDE sandbox and execute arbitrary code…

by Robbie · 1 month ago
1 4 5 6 7

THE 0600 BRIEF

Every critical CVE and AI-security story, in your inbox each morning.