LIVE FEED
Subscribe
//

Latest Briefings

Vulnerabilities Injective Labs npm SDK Backdoored to Steal Crypto Wallet Keys
CRITICAL Vulnerabilities

Injective Labs npm SDK Backdoored to Steal Crypto Wallet Keys

Attackers compromised a contributor's GitHub account to publish a malicious version of the @injectivelabs/sdk-ts package, silently harvesting private keys and seed phrases…

by Robbie · 3 months ago
Research GigaWiper Backdoor Combines Disk Wiping, Fake Ransomware, and Spyware
CRITICAL Research

GigaWiper Backdoor Combines Disk Wiping, Fake Ransomware, and Spyware

Microsoft has analyzed a modular Windows backdoor called GigaWiper that fuses three distinct destructive capabilities into a single operator-controlled toolkit.

by Robbie · 3 months ago
Vulnerabilities Chrome 150 Patches 27 Vulnerabilities, Including Two Critical Flaws
CRITICAL Vulnerabilities

Chrome 150 Patches 27 Vulnerabilities, Including Two Critical Flaws

Google's Chrome 150 update addresses 27 security vulnerabilities, with two critical use-after-free bugs in the Ozone and Views components leading the list.…

by Robbie · 3 months ago
AI Security Prompt Injection Flaw in GitHub Agentic Workflows Can Expose Private Repos
CRITICAL AI Security

Prompt Injection Flaw in GitHub Agentic Workflows Can Expose Private Repos

A vulnerability dubbed GitLost allows unauthenticated attackers to leak private repository contents by hiding malicious instructions inside a public GitHub Issue, requiring…

by Robbie · 3 months ago
AI Security Google Dialogflow CX Flaw Let Attackers Hijack AI Chatbot Conversations
CRITICAL AI Security

Google Dialogflow CX Flaw Let Attackers Hijack AI Chatbot Conversations

A vulnerability dubbed Rogue Agent allowed an attacker with edit access to one Dialogflow CX agent to silently compromise all Code Block-enabled…

by Robbie · 3 months ago
Vulnerabilities Critical Gitea Auth Bypass Flaw Under Active Exploitation
CRITICAL Vulnerabilities

Critical Gitea Auth Bypass Flaw Under Active Exploitation

A critical vulnerability in Gitea's Docker images allows attackers to impersonate any user with a single HTTP header. Exploitation began just 13…

by Robbie · 3 months ago
Vulnerabilities Januscape: 16-Year-Old Linux KVM Flaw Enables VM Escape on Intel and AMD
CRITICAL Vulnerabilities

Januscape: 16-Year-Old Linux KVM Flaw Enables VM Escape on Intel and AMD

A use-after-free bug in the Linux kernel's KVM shadow MMU lets an attacker with guest root access execute code on the host,…

by Robbie · 3 months ago
Vulnerabilities Hidden Backdoor in Tenda Router Firmware Grants Admin Access
CRITICAL Vulnerabilities

Hidden Backdoor in Tenda Router Firmware Grants Admin Access

A hardcoded secondary authentication mechanism in multiple Tenda router firmware versions allows any attacker who knows the backdoor password to gain full…

by Robbie · 3 months ago
Vulnerabilities BeyondTrust Patches Critical Auth Bypass Flaws in RS and PRA Software
CRITICAL Vulnerabilities

BeyondTrust Patches Critical Auth Bypass Flaws in RS and PRA Software

BeyondTrust has disclosed two critical authentication bypass vulnerabilities in its Remote Support and Privileged Remote Access products, urging self-hosted customers to apply…

by Robbie · 3 months ago
Exploits Max-Severity Adobe ColdFusion Flaw Exploited Within Hours of Disclosure
CRITICAL Exploits

Max-Severity Adobe ColdFusion Flaw Exploited Within Hours of Disclosure

A critical remote code execution vulnerability in Adobe ColdFusion is under active attack, with exploitation observed less than two hours after Adobe…

by Robbie · 3 months ago
Vulnerabilities Exploit Attempts Hit Gitea Docker Flaw CVE-2026-20896 Within Two Weeks of Patch
CRITICAL Vulnerabilities

Exploit Attempts Hit Gitea Docker Flaw CVE-2026-20896 Within Two Weeks of Patch

Threat actors are actively probing a critical Gitea Docker vulnerability that allows unauthenticated clients to gain elevated access by spoofing a trusted…

by Robbie · 3 months ago
Vulnerabilities 16-Year-Old Linux KVM Flaw Allows Guest VMs to Escape to Host
CRITICAL Vulnerabilities

16-Year-Old Linux KVM Flaw Allows Guest VMs to Escape to Host

A use-after-free vulnerability in Linux's KVM hypervisor, present in shared shadow MMU code for both Intel and AMD x86 systems, can be…

by Robbie · 3 months ago
1 … 6 7 8 … 10

THE 0600 BRIEF

Every critical CVE and AI-security story, in your inbox each morning.