// 1 ZERO-DAY · 1 EXPLOIT · 1 ADVISORY IN THE LAST 24H→
VULNEXPLOIT

Linux Copy Fail Risk: The Invisible 4-Byte Root Exploit

The Linux Copy Fail vulnerability allows root escalation in 4 bytes, corrupting only RAM. Discover the impact on Kubernetes and how to…

Apr 30, 2026views - 199

cybersec

Fast16, Pre-Stuxnet Malware Revealed: Analysis and Impact

Discovered Fast16, a 2005 pre-Stuxnet malware that altered scientific calculations: here is what changes in cyberwarfare history and w…

Apr 30, 2026views - 217

cybersec

FISA 702 Renewal Analysis: Senate Deadlock on Surveillance

The FISA 702 renewal in the Senate faces a deadlock over the CBDC amendment. Discover its impact on surveillance, privacy, and what to…

Apr 30, 2026views - 198

cybersecCRITICAL

RCE Vulnerability in Gemini CLI and Cursor AI: Details and Patches

Details on the critical severity vulnerability in Gemini CLI, the flaw in Cursor AI, and the hijacking of the Gemini panel in Chrome.…

Apr 30, 2026views - 215

cybersec

Cybercrime Dubai: US-China Operation Dismantles Crypto Scam Centers

Discover the details of the joint US-China raid against crypto scams in Dubai: 276 arrests and the impact on cybercrime networks.

Apr 30, 2026views - 212

cybersecCRITICAL

Qinglong RCE Vulnerability: Express.js Bypass Revealed

RCE authentication bypass discovered in Qinglong: how Express.js routing differences enabled the attack and why payload filtering fail…

Apr 30, 2026views - 283

cybersecCRITICAL

WordPress Supply Chain Attacks: Dormant Backdoors and RCE in Plugins

Technical analysis of WordPress supply chain attacks: dormant backdoors, RCE, and compromised updates in Quick Page and Essential plug…

Apr 30, 2026views - 218

cybersecZERO-DAY

Microsoft Zero-day: The Risk of the Faulty Patch Revealed

Discover the impact of the faulty Microsoft patch that left a new zero-click backdoor in Windows Shell. What to know about CVE-2026-32…

Apr 30, 2026views - 287

CYBERSEC

Ukrainian Roblox Hackers Arrested: 610,000 Accounts Stolen

Ukrainian police arrest a hacker group that stole over 610,000 Roblox accounts and resold them for cryptocurrency. Learn how they oper…

Apr 29, 2026views - 307

cybersecEXPLOIT

SAP npm Supply Chain Attack: Malware Targets CAP Packages

The Mini Shai-Hulud campaign compromises SAP npm packages, stealing credentials and establishing persistence via AI agents. Learn how…

Apr 29, 2026views - 162

network

Submarine Cable Security: Europe Bolsters Defenses with €347 Million

The EU releases its submarine cable security report with a €347M allocation, while US hyperscalers control 90% of transatlantic capaci…

Apr 29, 2026views - 182

CYBERSEC

NPM Supply Chain Attack: Malware Found in Claude Code and VS Code Extensions

A new SAP npm package supply chain attack targets AI coding agent configurations. Discover how mini Shai-Hulud steals credentials and…

Apr 29, 2026views - 2.6k

CYBERSEC

PromptMink Malware: First Malicious Commit Co-Authored by Anthropic's Claude Opus

The Famous Chollima campaign marks the first instance of a malicious commit co-authored by an AI model, affecting over 1,700 software…

Apr 29, 2026views - 172

cybersec

Black Axe: Southern Europe Leader Arrested in Switzerland

Ten arrests in Switzerland target Black Axe, a Nigerian criminal network specializing in romance scams and money laundering. Explainin…

Apr 29, 2026views - 221

CYBERSEC

Vercel Breach: The Risks of Shadow AI OAuth Exposed

The Vercel breach highlights the danger of Shadow AI integrations: how a forgotten OAuth token opened corporate doors. Here is what yo…

Apr 29, 2026views - 242

CYBERSEC

CISA Shutdown: US Cyber Defense on Standby Due to Lack of Funds

CISA.gov is no longer actively managed due to a federal funding lapse. Meanwhile, the FIRESTARTER malware threat targets critical Cisc…

Apr 29, 2026views - 1.2k

bigtech

EU Commission: Meta Accused of Failing to Protect Children Under 13

EU Commission finds DSA violations as Instagram and Facebook fail to block children under 13. Meta faces potential fines of up to 6% o…

Apr 29, 2026views - 167

CYBERSECEXPLOIT

CISA KEV: Windows and ScreenConnect Added to List of Exploited Vulnerabilities

CISA adds CVE-2024-1708 and CVE-2026-32202 to the KEV catalog. Russian APT28 and Chinese Storm-1175 leverage these flaws for espionage…

Apr 29, 2026views - 194

aiZERO-DAY

Firefox 150: Mythos AI Finds 271 Zero-Days in Paradigm Shift

Claude Mythos AI discovered 271 zero-days in Firefox 150. Learn why this marks a paradigm shift in cybersecurity and what it means for…

Apr 29, 2026views - 241

CYBERSECCRITICAL

Critical cPanel Vulnerability: Urgent Patch and Hosting Access Blocks

A critical cPanel authentication vulnerability forced providers to block access. Learn about the security risks and the importance of…

Apr 29, 2026views - 208

CYBERSEC

The Gentlemen Ransomware: Over 320 Victims and Botnet of 1,570+ Companies

The Gentlemen group becomes the second most active ransomware of 2026. Over 320 victims and a ready botnet: here is the model attracti…

Apr 29, 2026views - 239

CYBERSEC

Scattered Spider: 'Bouquet' Arrested in Helsinki Under US Charges

A 19-year-old dual US-Estonian citizen known as 'Bouquet' has been arrested in Helsinki on US charges related to the Scattered Spider…

Apr 29, 2026views - 236

CYBERSECCVE

CVE-2026-3854: Critical RCE Vulnerability on GitHub Discovered by AI

CVE-2026-3854 puts GitHub Enterprise Server at risk. Discovered via AI, it allowed RCE. Technical details and patch discrepancies insi…

Apr 28, 2026views - 254

cybersecCRITICAL

VECT 2.0 Ransomware: The Critical Bug That Permanently Destroys Encrypted Files

A design flaw turns VECT 2.0 into a wiper: files over 131KB are irreversibly destroyed. Paying the ransom recovers nothing. Here is th…

Apr 28, 2026views - 254