Archive
All articles, newest first. Page 63.

CVE-2026-25874: Unpatched Critical RCE Found in Hugging Face LeRobot
A critical CVSS 9.3 flaw hits Hugging Face's LeRobot. Learn about the RCE risks and the month-long patch delay following initial discl…

Paragon Spyware: A Year of Silence on the Italian Investigation
Paragon Solutions has not responded to the Italian judiciary on Graphite spyware used against journalists. Here is why the case remain…

Entra ID Vulnerability: Patch for Agent ID Privilege Escalation
Microsoft fixed a vulnerability in Entra ID's Agent ID Administrator role. The bug allowed high-privilege service principal takeover.…

PyPI: Package with 1.1 Million Downloads Hacked to Distribute Infostealer
A PyPI package with 1.1 million monthly downloads was compromised to distribute an infostealer. Analysis of the software supply chain…

Chinese Hacker Extradited to the US: The Xu Zewei Case
Xu Zewei, an alleged Hafnium member arrested in Milan, was extradited to the US. Accused of stealing COVID research, the case sparks a…

GlassWorm v2: 73 Fake VS Code Extensions Discovered on Open VSX
A cluster of 73 malicious extensions linked to GlassWorm v2 discovered on Open VSX. Attackers use sleeper packages to evade security c…

IRSF Fraud via Fake CAPTCHAs: Analysis of the Campaign Active Since 2020
Over 120 campaigns use Keitaro TDS to distribute IRSF scams via fake CAPTCHAs. 17 countries hit, costs up to $30 per victim. Here are…

2023 Flashback: ChatGPT, the Privacy Authority Block, and Data Management
2023 Retrospective: From the Italian Privacy Authority’s ChatGPT ban for non-compliance to the technical glitch exposing Plus users' d…

April 2026 CISA KEV: 12 Vulnerabilities in a Week, Ransomware Alert
CISA added 12 exploited vulnerabilities to the KEV catalog from April 20-24, 2026. SimpleHelp, D-Link, and Samsung are among the affec…

Pack2TheRoot: Critical Linux Passwordless Root Vulnerability
Pack2TheRoot (CVE-2026-41651) affects Linux PackageKit for 12 years. CVSS 8.8, local passwordless root access. Patches available: here…