F5 BIG-IP APM reclassification to unauthenticated RCE leads to surge in web shell implants
Attackers are aggressively weaponizing a reclassified vulnerability in F5 BIG-IP to deploy web shells and establish persistent footholds in enterprise […]
Attackers are aggressively weaponizing a reclassified vulnerability in F5 BIG-IP to deploy web shells and establish persistent footholds in enterprise […]
Mass exploitation of the world most popular web hosting control panel is now imminent following the publication of a functional
Widespread cPanel exploitation expected as PoC for root-level auth bypass goes public Read More »
A critical authentication bypass vulnerability in a major cloud operations management platform has been added to the federal list of
CISA adds VMware Aria Operations authentication bypass CVE-2026-22719 to KEV catalog Read More »
A critical vulnerability in the Linux Kernel involving incorrect resource transfer between spheres has been added to the federal list
CISA adds critical Linux Kernel resource transfer flaw CVE-2026-31431 to KEV catalog Read More »
A major data breach has impacted a leading global dating platform provider, with threat actors claiming to have exfiltrated 10
ShinyHunters breach Match Group exposing 10 million user records across Tinder and Hinge Read More »
A critical vulnerability in the F5 BIG-IP Access Policy Manager ❨APM❩ has been reclassified to indicate its potential for unauthenticated
F5 BIG-IP APM vulnerability reclassified as unauthenticated RCE under active abuse Read More »
A critical vulnerability in a foundational open-source routing suite allows attackers to crash core networking infrastructure and disrupt entire autonomous
Critical OSPF integer overflow in FRRouting CVE-2026-28532 crashes core routers Read More »
A critical authentication bypass vulnerability in the world most popular web hosting control panel is under active zero-day exploitation. This
Critical cPanel and WHM authentication bypass CVE-2026-41940 exploited as zero-day Read More »
One of the largest home security providers in the United States has confirmed a major data breach impacting millions of
ADT identity breach exposes 5.5 million records following Okta vishing attack Read More »
A sophisticated Python-based backdoor is targeting developer workstations to harvest browser cookies and cloud access tokens. This malware utilizes legitimate
DEEP DOOR Python backdoor utilizes tunneling services for stealthy exfiltration Read More »