// 1 CRITICAL · 11 ZERO-DAY · 9 CVE · 10 EXPLOIT IN THE LAST 24H
CYBERSEC

ChatGPhish: ChatGPT Summaries Weaponized as Phishing Traps

The ChatGPhish vulnerability exploits ChatGPT's renderer to inject malicious links and QR codes during web page summarization. OpenAI…

May 29, 2026views - 222

CYBERSECCRITICAL

LLM Agent Conducts Autonomous Post-Exploitation via Marimo RCE

Sysdig documents the first case of an LLM agent completely replacing a human operator in post-exploitation following a critical RCE on…

May 29, 2026views - 201

CYBERSEC

Dutch Authorities Dismantle Massive 17-Million Device Botnet

Dutch police and the NCSC-NL have seized over 200 servers and neutralized a botnet comprising 17 million infected devices. While autho…

May 29, 2026views - 298

CYBERSEC

Carnival Confirms Social Engineering Breach Impacting 6 Million People

Carnival Corporation has confirmed a data breach affecting 5.99 million individuals following a social engineering attack on an employ…

May 29, 2026views - 394

CYBERSEC

Trojan Detection: 33 Behavioral Signals May Challenge Complex Machine Learning Models

A new framework utilizing 33 refined behavioral features aims to detect Windows Trojans with competitive performance on standard enter…

May 29, 2026views - 196

CYBERSECZERO-DAY

Palo Alto Networks Sets Patch Record as Frontier AI Reshapes Vulnerability Discovery

Palo Alto Networks has released its May 2026 Patch Wednesday, disclosing 26 CVEs across more than 130 products. For the first time, th…

May 27, 2026views - 296

CYBERSECCRITICAL

Siemens Simcenter Femap Memory Corruption Vulnerability: Coordinated Disclosure Set for May 2026

A high-severity memory corruption vulnerability in Simcenter Femap’s IPT file parser (ZDI-26-317) leaves users with a nine-month expos…

May 27, 2026views - 213

CYBERSECZERO-DAY

Adobe ColdFusion: Security Update Addresses Reported Authentication Bypass

Advisory ZDI-26-263 describes a reported remote authentication bypass in Adobe ColdFusion. With a CVSS score of 6.5, the vulnerability…

May 27, 2026views - 234

CYBERSECEXPLOIT

Cisco SD-WAN: Potential Targeted Activity Involving Controllers

A report describes potential exploitation of SD-WAN vulnerabilities, noting activity attributed to a group designated as UAT-8616 and…

May 27, 2026views - 202

CYBERSECEXPLOIT

Apple macOS USD Library Flaw Enables Information Disclosure and Exploit Chaining

A vulnerability in the macOS Universal Scene Description (USD) library (ZDI-26-315) allows for out-of-bounds reads and potential code…

May 26, 2026views - 254

CYBERSEC

Nimbus Manticore: Iranian APT Leverages AI-Assisted Backdoors to Target Aviation and Software Sectors

The Iranian threat group Nimbus Manticore has expanded its operations, targeting aviation and software entities across Saudi Arabia, A…

May 26, 2026views - 260

CYBERSEC

India’s CERT-In Mandates 12-Hour Patch Window to Counter AI-Driven Exploitation

A new 38-page blueprint from CERT-In slashes the remediation window to just 12 hours for exposed systems, citing the rapid weaponizati…

May 26, 2026views - 201