vulnerability CitrixBleed-ing Again? NetScaler Vulnerability Under Attack A vulnerability in Citrix's NetScaler products has quickly been exploited by attackers following the release of a proof-of-concept exploit. The flaw allows attackers to potentially gain unauthorized access to systems, hi… Dark Reading · Jul 6, 2026 High memory-disclosurecitrixvulnerability
vulnerability New CitrixBleed Vulnerability Exploited Immediately After Public Disclosure A newly discovered CitrixBleed-like vulnerability (CVE-2026-8451) in NetScaler ADC and Gateways was exploited within 24 hours of its public disclosure. The flaw, stemming from an out-of-bounds read issue in the XML parse… SecurityWeek · Jul 2, 2026 Critical CVE-2026-8451DEHKcitrixbleedsamlmemory disclosure
vulnerability Cisco Unified CM flaw CVE-2026-20230 now exploited in attacks A high-severity Server-Side Request Forgery (SSRF) vulnerability, CVE-2026-20230, in Cisco Unified Communications Manager is currently being actively exploited by threat actors. This allows attackers to gain root privile… BleepingComputer · Jun 23, 2026 High CVE-2026-20230ssrfcve-2026-20230root
threat-intel The Exploit Doesn't Exist. You Can Still Prove It Works Against You This BleepingComputer article discusses the rapidly decreasing timeframes for vulnerabilities to be exploited, driven by advancements in AI like Anthropic’s Mythos model. Traditional patching strategies are becoming inef… BleepingComputer · Jun 23, 2026 High CVE-2025-29824USaivulnerabilityexploitation
vulnerability 3 Recently Patched Fortinet FortiSandbox Vulnerabilities in Hacker Crosshairs Recent analysis reveals that three previously patched Fortinet FortiSandbox vulnerabilities – CVE-2026-39808, CVE-2026-39813, and CVE-2026-25089 – are actively being exploited in the wild. A significant number of comprom… SecurityWeek · Jun 17, 2026 High CVE-2026-39808CVE-2026-39813CVE-2026-25089USINALvulnerabilitypatchingexploitation
vulnerability CISA warns of another cPanel plugin flaw exploited in attacks The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning about a critical vulnerability (CVE-2026-48172) in the LiteSpeed cPanel user-end plugin, which is currently being actively exploited.… BleepingComputer · Jun 16, 2026 Critical CVE-2026-54420CVE-2026-48172cpanelvulnerabilityprivilege escalation
vulnerability CISA orders feds to patch actively exploited Ivanti flaw by Sunday CISA has issued a Binding Operational Directive (BOD) 26-04, mandating that federal agencies patch an actively exploited vulnerability (CVE-2026-10520) in Ivanti Sentry security gateways within three days. This vulnerabi… BleepingComputer · Jun 12, 2026 Critical CVE-2026-10520patchingcisavulnerability
vulnerability ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities The ShinyHunters extortion group exploited a zero-day vulnerability (CVE-2026-35273) in Oracle PeopleSoft to gain unauthorized access to university systems, resulting in data theft and a demand for payment. Mandiant iden… The Hacker News · Jun 11, 2026 High CVE-2026-35273GBUSzero-dayexploitationuniversity
vulnerability Max-Severity Ivanti Flaw Exploited 24 Hours After Disclosure A critical vulnerability (CVE-2026-10520) in Ivanti Sentry was exploited within 24 hours of its disclosure, highlighting the speed at which attackers can react to newly released vulnerabilities. The flaw, an OS command i… Dark Reading · Jun 11, 2026 Critical CVE-2026-10520CVE-2026-10523CVE-2026-1340vulnerabilitycommand injectionroot access
threat-intel AI Broke Vulnerability Management. That's Why CISOs Are Moving Budget to BAS. The rapid advancement of AI, particularly through tools like Anthropic's Claude Mythos Preview, has dramatically reduced the time it takes to discover and exploit vulnerabilities in software. This has collapsed the tradi… The Hacker News · Jun 11, 2026 High USGBaivulnerabilityexploitation
vulnerability CISA Adds Cisco, Chrome, and Arista Flaws to KEV Catalog Amid Active Exploitation CISA has added three newly exploited vulnerabilities to its KEV catalog, impacting Cisco, Google Chrome, and Arista Networks. These vulnerabilities – one in Cisco SD-WAN Manager, another in Chrome’s V8 engine, and a thir… The Hacker News · Jun 10, 2026 High CVE-2026-20245CVE-2026-11645CVE-2026-7473cvesd-wanchrome
threat-intel Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards Anthropic has released Claude Fable 5, its most powerful AI model, alongside a specialized version called Claude Mythos 5 designed for cybersecurity professionals. Fable 5 incorporates cyber-focused classifiers to mitiga… The Hacker News · Jun 10, 2026 High CVE-2026-4747UKaicybersecurityjailbreak
threat-intel Claude Mythos Turns N-Days Into N-Hours With Rapid Exploit Creation Anthropic’s Claude Mythos AI model has demonstrated the ability to rapidly generate working exploits for known vulnerabilities in software like Firefox and Windows, significantly accelerating the attack process. The mode… SecurityWeek · Jun 9, 2026 High USaiexploitationn-day
vulnerability Cisco Catalyst SD-WAN Manager CVE-2026-20245 Flaw Actively Exploited – No Patch Available A high-severity vulnerability, CVE-2026-20245, in Cisco Catalyst SD-WAN Manager has been actively exploited by threat actors. The flaw, stemming from insufficient input validation, allows authenticated attackers to execu… The Hacker News · Jun 6, 2026 Critical CVE-2026-20245CVE-2026-20182CVE-2026-20127sd-wancvezero-day
threat-intel Threat Brief: Active Exploitation of PAN-OS CVE-2026-0257 Palo Alto Networks Unit 42 has identified active exploitation of CVE-2026-0257, a PAN-OS vulnerability related to GlobalProtect authentication, by an unidentified threat actor. The vulnerability allows unauthorized VPN c… Palo Alto Unit 42 · Jun 5, 2026 High CVE-2026-0257vpnauthenticationvulnerability
threat-intel AI-Driven Exploitation is Destroying Vulnerability Management. Here’s How to Handle It. This article discusses the accelerating pace of vulnerability exploitation driven by the use of AI by both attackers and defenders. The traditional approach of simply ‘patching faster’ is no longer sufficient due to the… The Hacker News · Jun 2, 2026 High INaivulnerabilityexploitation
threat-intel Race Against Time: Why Faster Vulnerability Alerts Matter This article highlights the critical importance of rapid vulnerability alerts in cybersecurity, emphasizing the increasing speed at which vulnerabilities are being discovered and exploited. The average time to exploitati… BleepingComputer · Jun 1, 2026 High USvulnerabilityexploitationcybersecurity
threat-intel Critical Windows Netlogon RCE flaw now exploited in attacks A critical Remote Code Execution (RCE) vulnerability (CVE-2026-41089) in Windows Netlogon is now being actively exploited in attacks, according to Belgium's national cybersecurity authority, the Centre for Cybersecurity… BleepingComputer · Jun 1, 2026 Critical CVE-2026-41089CVE-2026-45585CVE-2026-33825BErcenetlogonwindows
vulnerability Critical WP Maps Pro Flaw Actively Exploited to Create Admin Accounts A critical security flaw (CVE-2026-8732) in the WP Maps Pro WordPress plugin has been actively exploited to create administrator accounts on vulnerable websites. The vulnerability stems from a flaw in the plugin's tempor… The Hacker News · Jun 1, 2026 Critical CVE-2026-8732wordpresspluginvulnerability
threat-intel Exploits and vulnerabilities in Q1 2026 This Securelist report analyzes vulnerability trends and exploitation activity during Q1 2026, focusing on the expansion of exploit kits targeting Microsoft Office, Windows, and Linux operating systems. The report highli… Securelist · May 7, 2026 High CVE-2018-0802CVE-2017-11882CVE-2017-0199USvulnerabilityexploitationrce