// 1 CRITICAL · 11 ZERO-DAY · 9 CVE · 10 EXPLOIT IN THE LAST 24H
CYBERSECZERO-DAY

Microsoft Retracts Legal Threats Against Researchers Following Zero-Day Disclosure Backlash

Microsoft threatened criminal prosecution against researcher Nightmare-Eclipse for publishing six Windows zero-days before walking bac…

Jun 04, 2026views - 1.4k

CYBERSECCVE

Edge Vulnerability CVE-2026-45492: Origin Validation Error Bypasses Windows VBS

A flaw in Microsoft Edge’s cross-device sign-in mechanism, tracked as CVE-2026-45492, allows attackers to bypass Windows Virtualizatio…

Jun 04, 2026views - 1k

CYBERSEC

Google Gemini Hijacked via Messaging Notifications: The 'Dual Illusion' Attack

SafeBreach researchers have demonstrated how the Google Gemini voice assistant on Android can be hijacked through indirect prompt inje…

Jun 04, 2026views - 875

CYBERSECCVE

CVE-2026-20230: Public PoC for Cisco Unified CM Vulnerability Risks Remote Root Access

Cisco disclosed on June 3, 2026, that proof-of-concept code is available for CVE-2026-20230, a critical SSRF vulnerability in Unified…

Jun 04, 2026views - 1.3k

CYBERSEC

Why CVSS Scores Fail the Factory Floor: A New Framework for OT Vulnerability Management

An OT security practitioner has introduced a five-step framework to evaluate the actual exploitability of vulnerabilities in manufactu…

Jun 04, 2026views - 308

CYBERSEC

CISA to Issue Mandatory AI Security Directive for Federal Agencies by Friday

CISA Acting Director Nick Andersen announced that a Binding Operational Directive (BOD) implementing the new AI Executive Order will b…

Jun 04, 2026views - 176

CYBERSECCRITICAL

Kemp LoadMaster API Flaw Enables Authenticated RCE: CVSS 8.8 Vulnerability Patched

CVE-2026-3517 in Progress Software Kemp LoadMaster allows authenticated users to execute arbitrary code via command injection in the c…

Jun 03, 2026views - 184

CYBERSECZERO-DAY

AI Zero-Days and OT Vulnerabilities: ESET’s May 2026 Security Briefing

Tony Anscombe’s latest roundup highlights critical failures in Polish water plants, Google’s discovery of the first AI-generated zero-…

Jun 03, 2026views - 164

CYBERSECZERO-DAY

Tuskira Unveils Quell: AI Agent Designed to Mitigate Zero-Days Before Patches Exist

Tuskira has launched Quell, an AI agent that maps attack paths and orchestrates compensating controls to neutralize zero-day threats a…

Jun 02, 2026views - 189

CYBERSECEXPLOIT

Gamaredon APT Weaponizes WinRAR Path Traversal Bug for Ukrainian Espionage

The Gamaredon APT group is exploiting CVE-2025-8088, a path traversal vulnerability in WinRAR, to deploy a modular malware suite again…

Jun 02, 2026views - 198

CYBERSECEXPLOIT

CISA Warns of Active Exploitation for Two-Year-Old Oracle WebLogic Flaw

CISA has added CVE-2024-21182 to its Known Exploited Vulnerabilities (KEV) catalog, confirming active exploitation of an Oracle WebLog…

Jun 02, 2026views - 234

CYBERSEC

Cybanetix Launches Managed AI Service: AI-Native MDR Powered by Four-Vendor Stack

Cybanetix has unveiled its Managed AI Service, integrating NOMA, SentinelOne, Microsoft, and Exabeam under a unified 24/7 SOC with a s…

Jun 02, 2026views - 224