LIVE FEED
Subscribe
//

Latest Briefings

Vulnerabilities Adobe Patches 7 CVSS 10.0 Flaws in ColdFusion and Campaign Classic
CRITICAL Vulnerabilities

Adobe Patches 7 CVSS 10.0 Flaws in ColdFusion and Campaign Classic

Adobe released security updates for ColdFusion and Campaign Classic addressing 12 vulnerabilities, including seven rated at maximum severity with CVSS scores of…

by Robbie · 3 months ago
Exploits SimpleHelp Auth Bypass Exploited to Drop TaskWeaver and Djinn Stealer
CRITICAL Exploits

SimpleHelp Auth Bypass Exploited to Drop TaskWeaver and Djinn Stealer

Attackers are actively exploiting a maximum-severity authentication bypass in SimpleHelp to deliver two newly identified malware families, with the infostealer component targeting…

by Robbie · 3 months ago
Research FBI Seizes NetNut Proxy Platform and Popa Botnet Infrastructure
CRITICAL Research

FBI Seizes NetNut Proxy Platform and Popa Botnet Infrastructure

The FBI, working with Google, Lumen, and Shadowserver, seized hundreds of domains tied to NetNut and the Popa botnet, a network of…

by Robbie · 3 months ago
AI Security AI Agent Runs Autonomous Ransomware Attack Against Production Database
CRITICAL AI Security

AI Agent Runs Autonomous Ransomware Attack Against Production Database

Sysdig researchers say they have identified what may be the first ransomware attack executed end-to-end by an AI agent, with a large…

by Robbie · 3 months ago
Research FortiBleed Credential Theft Operation Tied to INC and Lynx Ransomware Groups
CRITICAL Research

FortiBleed Credential Theft Operation Tied to INC and Lynx Ransomware Groups

Researchers at SOCRadar have linked the large-scale FortiBleed FortiGate credential theft campaign to operators of the INC and Lynx ransomware-as-a-service platforms, with…

by Robbie · 3 months ago
Vulnerabilities Google Patches 382 Vulnerabilities in Chrome 151, 15 Rated Critical
CRITICAL Vulnerabilities

Google Patches 382 Vulnerabilities in Chrome 151, 15 Rated Critical

The Chrome 151 release addresses a record-setting batch of security flaws, with 358 of them discovered internally, likely aided by AI-assisted vulnerability…

by Robbie · 3 months ago
Exploits Langflow RCE Flaw Exploited to Drop Monero Miner on AI Endpoints
CRITICAL Exploits

Langflow RCE Flaw Exploited to Drop Monero Miner on AI Endpoints

Attackers are actively exploiting a critical unauthenticated remote code execution vulnerability in Langflow to deploy Monero cryptocurrency mining malware on exposed AI…

by Robbie · 3 months ago
Vulnerabilities Oracle PeopleSoft SSRF Flaw Requires No Auth, Scores 9.3 CVSS
CRITICAL Vulnerabilities

Oracle PeopleSoft SSRF Flaw Requires No Auth, Scores 9.3 CVSS

A server-side request forgery vulnerability in Oracle PeopleSoft's HttpListeningConnector can be exploited by unauthenticated remote attackers and chained with other bugs to…

by Robbie · 3 months ago
Vulnerabilities Critical libssh2 Flaw Gets Public PoC, Clients at Risk of Code Execution
CRITICAL Vulnerabilities

Critical libssh2 Flaw Gets Public PoC, Clients at Risk of Code Execution

A proof-of-concept exploit is now public for CVE-2026-55200, a critical memory corruption bug in libssh2 that allows a malicious SSH server to…

by Robbie · 3 months ago
Exploits Critical Oracle E-Business Suite Flaw Under Active Exploitation
CRITICAL Exploits

Critical Oracle E-Business Suite Flaw Under Active Exploitation

Attackers are actively exploiting CVE-2026-46817, a critical unauthenticated takeover vulnerability in Oracle E-Business Suite, weeks after Oracle shipped a patch in its…

by Robbie · 3 months ago
Exploits Nissan Employee Data Breach Tied to Oracle PeopleSoft Zero-Day Attacks
CRITICAL Exploits

Nissan Employee Data Breach Tied to Oracle PeopleSoft Zero-Day Attacks

Nissan has disclosed a breach of current and former employee records after ShinyHunters exploited a critical zero-day in Oracle PeopleSoft, part of…

by Robbie · 3 months ago
Exploits SimpleHelp Auth Bypass Exploited to Deploy Djinn Stealer and TaskWeaver
CRITICAL Exploits

SimpleHelp Auth Bypass Exploited to Deploy Djinn Stealer and TaskWeaver

Attackers are actively exploiting a critical authentication bypass in SimpleHelp RMM software to install two previously undocumented malware families targeting developer credentials,…

by Robbie · 3 months ago
1 … 8 9 10

THE 0600 BRIEF

Every critical CVE and AI-security story, in your inbox each morning.