Cybersecurity
Cybersecurity collects analysis on vulnerabilities, exploits, patch management, ransomware, supply chain, AI security and threat intelligence. These articles help IT professionals, developers and security analysts follow operational threats, vendor updates and technical trends.

Bitdefender Shredder Privilege Escalation to SYSTEM: Update Immediately to 27.0.58.315
ZDI-26-448 exploits Bitdefender's File Shredder to escalate local privileges to SYSTEM. CVE-2026-6851 carries a CVSS 4.0 score of 7.0;…

CVE-2026-63077: Critical RCE in JetBrains TeamCity, CVSS 9.8
JetBrains has patched a deserialization vulnerability in TeamCity On-Premises with a CVSS 9.8 score. The unauthenticated RCE via the a…

Trend Micro Cleaner One Pro: File Cleanup Turns Into a SYSTEM-Level Attack
A vulnerability in the Junk Files Cleanup component of Trend Micro Cleaner One Pro allows a local attacker to delete arbitrary files w…

WatchGuard FireWare OS: Directory Traversal in sigd Service Opens Path to Code Execution
A directory traversal vulnerability in the sigd service of WatchGuard FireWare OS allows an authenticated remote attacker to create ar…

Three Decades of Forensic DNA Evidence Left Without Digital Signatures
A CVSS 8.2 vulnerability in Thermo Fisher Applied Biosystems software allows tampering with forensic DNA files. The patch adds digital…

Exploitarium Turns Zero-Day Disclosure into Permanent Infrastructure
The Exploitarium repository has published 204 zero-day exploits for open-source projects without vendor notification. CVE-2026-55200 a…

Fortinet CVE-2026-24858: Active Exploitation, SSO Bypass, CVSS 9.8
Fortinet has patched CVE-2026-24858, a critical authentication bypass with a CVSS 9.8 score that is under active exploitation. CISA ha…

AI Agent Prompt Injection: SOCs Are Blind to Language as a Weapon
Gartner and OWASP confirm prompt injection as the top AI threat for 2026. Traditional SOCs cannot detect attacks that weaponize natura…

GhostLock: The Exploit That Unlocks Linux in 5 Seconds — 15 Years in the Shadows
On July 7, 2026, Nebula Security disclosed GhostLock, a working exploit for CVE-2026-43499, a use-after-free in the Linux kernel's fut…

Intel and AMD Patch 70 Flaws: Two Critical CVSS 9.3 and 9.2 Bugs in GPU Drivers
On May 13, 2026, Intel and AMD released 28 advisories covering 69 vulnerabilities. Two critical flaws hit chip software drivers, not t…

PNLD Data Breach: UK Police Contacts Published on Dark Web July 26
The Police National Legal Database confirms the exfiltration of names, organizations, and work emails of officers, government staff, a…

Pass-ta-key Exposes the Gap Between FIDO2 Cryptography and Windows Implementation
Unit 42 reveals three post-compromise techniques that bypass PIN and biometrics on Chrome for Windows. Passkeys resist phishing, not m…