threat-intel KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike A zero-day vulnerability in Digital Knowledge KnowledgeDeliver LMS was exploited to deploy the Godzilla web shell and establish Cobalt Strike Beacon access. The flaw, stemming from hard-coded ASP.NET machine keys, allowed an attacker to execute remote code and compromise KnowledgeDeliver instances globally. This incide… The Hacker News · May 26, 2026 Critical CVE-2026-5426JPzero-daydeserializationasp.net