A nearly identical exploit kit that targets critical vulnerabilities in both Chromium-based browsers and older versions of Windows is being […]
Category: exploits
Microsoft Copilot reveals secret input that allowed it to be hacked
Like most AI assistants, Copilot can receive prompts that are embedded into a URL. The base part of the URL […]
Vulnerability giving attackers full control of Macs is under active exploitation
Dutch officials have warned that a high-severity macOS vulnerability that allows attackers to execute malicious code is under active exploitation. […]
Thousands of servers can be backdoored by exploiting buggy motherboard controllers
Baseboard management controllers from the world’s biggest manufacturers are a security mess. A data center corridor lined with rows of […]
Max-severity Exchange server flaw under active exploitation by Kremlin hackers
Russian state hackers are using a maximum-severity vulnerability in Microsoft Outlook’s Exchange Server to backdoor unpatched machines and steal credentials […]
Google pays $250K for Linux vulnerability allowing guest VM escapes
A Linux vulnerability that allows untrusted virtual machines to gain root access to host machines is one of two high-severity […]
Google publishes exploit code threatening millions of Chromium users
Google on Wednesday published exploit code for an unfixed vulnerability in its Chromium browser codebase that threatens millions of people […]
Linux bitten by second severe vulnerability in as many weeks
Both privilege escalation vulnerabilities stem from bugs in the kernel’s handling of page caches stored in memory, allowing untrusted users […]
The most severe Linux threat to surface in years catches the world flat-footed
Publicly released exploit code for an effectively unpatched vulnerability that gives root access to virtually all releases of Linux is […]
UNC6426 Exploits nx npm Supply-Chain Attack to Gain AWS Admin Access in 72 Hours
Ravie LakshmananMar 11, 2026DevSecOps / AI Security A threat actor known as UNC6426 leveraged keys stolen following the supply chain […]
