// 1 CRITICAL · 11 ZERO-DAY · 9 CVE · 10 EXPLOIT IN THE LAST 24H
CYBERSEC

AI-Powered Honeypots: Cisco Talos Flips the Script on Automated Threats

On April 29, Cisco Talos Intelligence researchers released a proof-of-concept aimed at neutralizing offensive asymmetry in cyberspace.…

May 20, 2026views - 217

CYBERSEC

Grafana Labs Breach: Forgotten Workflow Token Exposes Internal Repositories

Grafana Labs has disclosed a security breach involving its GitHub repositories after an overlooked CI/CD token—missed during an emerge…

May 20, 2026views - 193

CYBERSEC

GitHub Investigates Alleged Exfiltration of 4,000 Internal Repositories by TeamPCP

GitHub is investigating claims from the threat group TeamPCP, which alleges to have exfiltrated nearly 4,000 internal repositories and…

May 20, 2026views - 215

CYBERSEC

AI Productivity Facade: 18 Malicious Extensions Discovered with RAT and MitM Capabilities

Palo Alto Networks’ Unit 42 has identified 18 high-risk AI browser extensions that surveil emails, steal prompts, and compromise user…

May 20, 2026views - 151

CYBERSECZERO-DAY

BitLocker Bypassed: New Zero-Day Trio Targets Windows Following Patch Tuesday

An analysis of the YellowKey, GreenPlasma, and MiniPlasma vulnerabilities disclosed shortly after the May 2026 Patch Tuesday, impactin…

May 20, 2026views - 290

CYBERSEC

Microsoft Neutralizes Fox Tempest: Malware-Signing-as-a-Service Operation Dismantled

Microsoft has disrupted Fox Tempest, a sophisticated 'Malware-Signing-as-a-Service' operation that leveraged stolen identities to expl…

May 20, 2026views - 183

CYBERSECEXPLOIT

Verizon DBIR 2026: Vulnerability Exploitation Overtakes Credentials as Patching Cycles Falter

The 2026 Verizon DBIR marks a structural shift in the threat landscape: vulnerability exploitation (31%) has surpassed credential abus…

May 20, 2026views - 188

CYBERSECCRITICAL

Critical RCE in ChromaDB: 73% of Exposed Servers Vulnerable to CVE-2026-45829

A maximum-severity vulnerability in ChromaDB’s Python FastAPI server allows unauthenticated remote code execution. The flaw, which ste…

May 19, 2026views - 251

CYBERSEC

7-Eleven Confirms Data Breach After ShinyHunters Leaks 9.4GB of Files

7-Eleven has officially confirmed a cyberattack originating in April 2026. Following a failed ransom negotiation with the ShinyHunters…

May 19, 2026views - 512

CYBERSECCRITICAL

SEPPMail Security Crisis: Seven Critical Flaws Grant Full Access to Corporate Email

A cluster of seven vulnerabilities in the SEPPMail Secure E-Mail Gateway, including flaws with CVSS scores up to 10.0, enables unauthe…

May 19, 2026views - 362

CYBERSECCVE

NGINX Rift Under Active Exploitation: A Technical Analysis of CVE-2026-42945

A 16-year-old vulnerability in the NGINX rewrite module, dubbed NGINX Rift (CVE-2026-42945), is currently being exploited in the wild.…

May 19, 2026views - 235

CYBERSEC

Linux Kernel Page Cache Vulnerabilities: CopyFail, Fragnesia, and DirtyDecrypt LPE Risks

An analysis of the CopyFail (CVE-2026-31431), Fragnesia, and DirtyDecrypt vulnerabilities within the Linux kernel, including exploitat…

May 19, 2026views - 226