// 4 CVE · 3 EXPLOIT · 1 ADVISORY IN THE LAST 24H
CYBERSEC

Google Gemini Hijacked via Messaging Notifications: The 'Dual Illusion' Attack

SafeBreach researchers have demonstrated how the Google Gemini voice assistant on Android can be hijacked through indirect prompt inje…

Jun 04, 2026views - 638

VULN

Microsoft Refuses to Patch Windows Search URI Flaw Enabling NTLM Hash Theft

Huntress has disclosed an unpatched vulnerability in the Windows search: URI handler that allows attackers to steal NTLMv2 hashes via…

Jun 03, 2026views - 57

CYBERSEC

Cybanetix Launches Managed AI Service: AI-Native MDR Powered by Four-Vendor Stack

Cybanetix has unveiled its Managed AI Service, integrating NOMA, SentinelOne, Microsoft, and Exabeam under a unified 24/7 SOC with a s…

Jun 02, 2026views - 22

CYBERSECCRITICAL

Microsoft Patched a Critical SharePoint RCE but Omitted the CVE from Official Documentation

CVE-2026-45659, a CVSS 8.8 SharePoint Server RCE, was missing from Microsoft’s May 2026 security update list. While the patch was dist…

Jun 01, 2026views - 47

CYBERSEC

Poisoned AI Chatbots: A New Vector for High-Performance GPU Cryptojacking

Microsoft has identified an active campaign that manipulates AI chatbot recommendations to distribute GPU-based cryptojacking malware…

May 31, 2026views - 24

googleCRITICAL

Chrome 148: Google Patches 151 Vulnerabilities, Including 22 Critical Flaws

Google has released Chrome 148, addressing 151 security vulnerabilities with 22 rated at maximum criticality. The update includes over…

May 29, 2026views - 12

CYBERSECEXPLOIT

Apple macOS USD Library Flaw Enables Information Disclosure and Exploit Chaining

A vulnerability in the macOS Universal Scene Description (USD) library (ZDI-26-315) allows for out-of-bounds reads and potential code…

May 26, 2026views - 62

CYBERSECZERO-DAY

Windows Hit by Post-Patch Tuesday Zero-Day Blitz

Security researcher Chaotic Eclipse has disclosed three new Windows zero-day vulnerabilities following the May 2026 Patch Tuesday. To…

May 25, 2026views - 479

CYBERSECZERO-DAY

YellowKey: Microsoft Issues Emergency Mitigations for BitLocker Bypass

Microsoft issued temporary mitigations on May 20 for CVE-2026-45585, a BitLocker bypass vulnerability exploited through the Windows Re…

May 25, 2026views - 170

CYBERSECCVE

CISA Adds Microsoft Defender DoS Flaw to KEV Catalog with June 3 Deadline

CISA has added CVE-2026-45498, a Denial of Service vulnerability in Microsoft Defender, to its Known Exploited Vulnerabilities catalog…

May 24, 2026views - 42

CYBERSECCVE

CVE-2026-41091: Microsoft Defender Engine Exploited for SYSTEM Privilege Escalation

A link-following vulnerability in the Microsoft Malware Protection Engine enables local privilege escalation to SYSTEM. An analysis of…

May 24, 2026views - 189

CYBERSECCRITICAL

May 2026 Patch Tuesday: 137 Flaws and the Domain Controller Threat

Microsoft's May 2026 security update addresses 137 vulnerabilities, including 31 critical flaws. While no zero-days were reported, una…

May 23, 2026views - 18