// 1 CRITICAL · 6 ZERO-DAY · 11 CVE · 12 EXPLOIT · 1 ADVISORY IN THE LAST 24H
cveCVE

NGINX Rift: Active Exploitation of CVE-2026-42945 Detected In the Wild

In-the-wild attacks targeting CVE-2026-42945 (NGINX Rift) began on May 16, 2026. Security researchers analyze the critical heap buffer…

May 19, 2026views - 182

VULNCVE

Ollama Vulnerability: CVE-2026-7482 Risks Memory Exposure for 300,000 AI Servers

A critical heap out-of-bounds read vulnerability in Ollama (CVE-2026-7482) allows for memory leakage via GGUF files, putting API keys…

May 19, 2026views - 189

patchZERO-DAY

May Patch Tuesday: A Rare Zero-Day Break Amid Record AI Discovery Volumes

Microsoft’s May 2026 update ends a two-year streak of active zero-days, patching approximately 137 vulnerabilities. However, the integ…

May 19, 2026views - 182

zeroZERO-DAY

Active Exchange Zero-Day: Unpatched OWA Vulnerability Under Exploitation

Microsoft has confirmed CVE-2026-42897, a zero-day XSS vulnerability in on-premise Exchange servers currently under active attack. Wit…

May 18, 2026views - 204

CYBERSEC

CISA Contractor Exposed AWS GovCloud Credentials and Plaintext Passwords on GitHub for Months

A federal contractor at Nightwing exposed administrative AWS GovCloud credentials and internal passwords in plaintext on GitHub for ov…

May 18, 2026views - 255

CYBERSEC

CERT-AGID: Italian Cyberattacks Surge 13% as PagoPA and INPS Face Targeted Campaigns

CERT-AGID identified 131 malicious campaigns in Italy between May 9 and 15, 2026. The activity involved 1,382 indicators of compromise…

May 18, 2026views - 135

VULNEXPLOIT

Ollama Flaws Expose Local LLM Memory and Enable Windows Malware Persistence

Three critical CVEs in Ollama allow unauthenticated remote attackers to leak LLM process memory via crafted GGUF files and achieve per…

May 18, 2026views - 198

VULNCVE

CVE-2026-42945: Active Exploitation of NGINX Servers Underway

CVE-2026-42945 is being actively exploited in the wild, targeting NGINX rewrite modules to trigger immediate DoS or conditional RCE. C…

May 18, 2026views - 182

CYBERSEC

ShinyHunters: A Serial Extortion Campaign Targets Enterprise SaaS (May 2026)

Between May 7 and May 18, 2026, ShinyHunters targeted Canvas, 7-Eleven, and Grafana in a high-profile data extortion spree. While Inst…

May 18, 2026views - 169

CYBERSEC

Grafana Refuses Ransom Following GitHub Token Theft and Codebase Breach

Grafana Labs has confirmed that a stolen GitHub access token allowed attackers to exfiltrate its source code. Despite extortion attemp…

May 18, 2026views - 174

VULNEXPLOIT

NGINX Rift: Critical CVE-2026-42945 Exploitation Detected In-the-Wild

The NGINX Rift vulnerability (CVE-2026-42945) has seen active exploitation since May 16, leveraging a long-dormant heap buffer overflo…

May 18, 2026views - 161

VULNCRITICAL

Safari Regex Engine Vulnerability Allows Remote Code Execution via Duplicate Named Groups

Apple has patched a high-severity (CVSS 8.8) remote code execution vulnerability in Safari. The flaw involves a heap-based buffer over…

May 18, 2026views - 139

VULNEXPLOIT

DirtyDecrypt: Linux Local Privilege Escalation Exploit Surfaces for Unpatched Systems

A proof-of-concept for 'DirtyDecrypt'—a local privilege escalation flaw in the Linux kernel's RXGK module—is now public. Organizations…

May 18, 2026views - 242

CYBERSECCVE

GitHub Enterprise RCE: Critical Vulnerability (CVE-2026-3854) Demands Immediate Updates

A flaw in GitHub’s push options handling allows for Remote Code Execution on Enterprise Server instances. With technical details now p…

May 17, 2026views - 199

CYBERSEC

Cisco Talos Unveils AI-Driven Honeypot PoC to Deceive Malicious Agents

Cisco Talos researchers have demonstrated a proof-of-concept for adaptive honeypots powered by generative LLMs, designed to exploit th…

May 17, 2026views - 208

CYBERSECZERO-DAY

PAN-OS Captive Portal Zero-Day: CVE-2026-0300 Exploited in Root-Level RCE Attacks

A deep dive into the critical CVE-2026-0300 vulnerability within Palo Alto Networks PAN-OS, detailing active in-the-wild exploitation…

May 17, 2026views - 161

CYBERSECEXPLOIT

Grafana Labs Hit by GitHub Breach: Source Code Stolen, Ransom Demands Rejected

Grafana Labs has confirmed a breach of its GitHub environment via a 'Pwn Request' vulnerability. While attackers exfiltrated proprieta…

May 17, 2026views - 702

CYBERSECZERO-DAY

Unpatched BlueHammer Zero-Day Enables Rapid Windows Privilege Escalation

A functional exploit dubbed 'BlueHammer' leverages logic flaws in Microsoft Defender and Volume Shadow Copy to grant SYSTEM privileges…

May 17, 2026views - 371

CYBERSECCVE

Ivanti Endpoint Manager Under Scrutiny Following CVE-2026-8109 Authentication Bypass Reports

An analysis of the CVE-2026-8109 vulnerability in Ivanti Endpoint Manager reveals a risk of authentication bypass within the RemoteCon…

May 17, 2026views - 161

CYBERSECCRITICAL

Ivanti Releases May 2026 Security Updates: Seven CVEs and a Critical SQLi-to-RCE Vulnerability

On May 13, 2026, Ivanti patched seven security flaws across four enterprise products, including a critical SQL injection-to-RCE in its…

May 17, 2026views - 221

zeroZERO-DAY

Palo Alto Networks Zero-Day: PAN-OS Vulnerability Grants Attackers Root Perimeter Control

CVE-2026-0300 enables unauthenticated root RCE on PAN-OS firewalls. With CISA Mandating mitigation within three days, we analyze the e…

May 16, 2026views - 265

VULNZERO-DAY

Ivanti EPMM Zero-Day Under Active Exploitation: CISA Adds CVE-2026-6973 to KEV Catalog

A newly disclosed zero-day in Ivanti Endpoint Manager Mobile (EPMM), tracked as CVE-2026-6973, is being actively exploited in the wild…

May 16, 2026views - 135

VULNCVE

Ivanti EPMM RCE Under Active Exploitation as Federal Patch Deadline Lapses

CVE-2026-6973, a critical RCE vulnerability in Ivanti EPMM on-premise, is currently being exploited in the wild. The CISA remediation…

May 16, 2026views - 137

VULNCRITICAL

Apple Safari WebCore Vulnerability: ZDI-26-312 Enables Remote Code Execution

A use-after-free vulnerability in Safari’s WebCore style resolver allows for remote code execution through user interaction, affecting…

May 16, 2026views - 182