// 1 CRITICAL · 11 ZERO-DAY · 9 CVE · 10 EXPLOIT IN THE LAST 24H
microsoft

Microsoft Open-Sources RAMPART and Clarity to Secure AI Agent Workflows

Microsoft has unveiled two open-source security tools for AI agents: RAMPART, a Pytest-native framework for build-time testing, and Cl…

May 20, 2026views - 268

ai

Trust3 AI Launches MCP Security: A Hardened Control Plane or Just Another Promise?

Trust3 AI has announced MCP Security to protect enterprise agentic workloads, focusing on connection verification, isolated tokens, an…

May 20, 2026views - 230

CYBERSEC

GitHub Breach: 3,800 Internal Repositories Stolen via Malicious VS Code Extension

GitHub has confirmed a security breach affecting approximately 3,800 internal repositories after an employee device was compromised by…

May 20, 2026views - 610

CYBERSEC

AI-Powered Honeypots: Cisco Talos Flips the Script on Automated Threats

On April 29, Cisco Talos Intelligence researchers released a proof-of-concept aimed at neutralizing offensive asymmetry in cyberspace.…

May 20, 2026views - 217

CYBERSEC

GitHub Investigates Alleged Exfiltration of 4,000 Internal Repositories by TeamPCP

GitHub is investigating claims from the threat group TeamPCP, which alleges to have exfiltrated nearly 4,000 internal repositories and…

May 20, 2026views - 215

CYBERSEC

Grafana Refuses Ransom Following GitHub Token Theft and Codebase Breach

Grafana Labs has confirmed that a stolen GitHub access token allowed attackers to exfiltrate its source code. Despite extortion attemp…

May 18, 2026views - 210

VULNCRITICAL

NGINX Rift: Critical CVE-2026-42945 Exploitation Detected In-the-Wild

The NGINX Rift vulnerability (CVE-2026-42945) has seen active exploitation since May 16, leveraging a long-dormant heap buffer overflo…

May 18, 2026views - 190

VULNEXPLOIT

DirtyDecrypt: Linux Local Privilege Escalation Exploit Surfaces for Unpatched Systems

A proof-of-concept for 'DirtyDecrypt'—a local privilege escalation flaw in the Linux kernel's RXGK module—is now public. Organizations…

May 18, 2026views - 290

CYBERSECEXPLOIT

Grafana Labs Hit by GitHub Breach: Source Code Stolen, Ransom Demands Rejected

Grafana Labs has confirmed a breach of its GitHub environment via a 'Pwn Request' vulnerability. While attackers exfiltrated proprieta…

May 17, 2026views - 739

VULNCVE

CVE-2026-7482: Technical Analysis of Ollama’s Memory Leak Vulnerability via GGUF

Technical breakdown of CVE-2026-7482 in Ollama. Discovered by Cyera, the vulnerability enables unauthenticated remote attackers to exf…

May 14, 2026views - 193

linux

Fragnesia Flaw Enables Local Root via Linux Page Cache Corruption

CVE-2026-46300 allows local root escalation on Linux by corrupting read-only files in memory. With a public PoC available and patches…

May 14, 2026views - 186

VULNCRITICAL

Exim 'Dead.Letter' Vulnerability: Critical RCE Risk for GnuTLS-Based Builds

CVE-2026-45185 is a use-after-free vulnerability in the Exim SMTP BDAT parser that allows unauthenticated RCE on GnuTLS-compiled serve…

May 13, 2026views - 185