// 2 CRITICAL · 5 ZERO-DAY · 10 CVE · 8 EXPLOIT · 1 ADVISORY IN THE LAST 24H
VULNEXPLOIT

Dirty Frag: Linux Kernel Vulnerability Chain Exploited in the Wild for Root Access

Dirty Frag chains two Linux kernel flaws to achieve deterministic local privilege escalation. With a public PoC available and active e…

May 11, 2026views - 146

cveCVE

CVE-2026-31431: CISA Mandates Container Patch — Actively Exploited in the Wild

CISA has confirmed active exploitation of CVE-2026-31431, a critical Linux kernel vulnerability dubbed "Copy Fail." With a 732-byte Po…

May 07, 2026views - 167

malware

BRICKSTORM: CISA and NSA Alert on Evolving Rust Backdoor Targeting vSphere

Cybersecurity agencies have updated their Malware Analysis Report for BRICKSTORM, a sophisticated ELF backdoor targeting VMware vSpher…

May 06, 2026views - 154

linuxEXPLOIT

Linux ‘Copy Fail’ Under Active Attack: CISA Sets May 15 Patch Deadline

CISA has added CVE-2026-31431, known as 'Copy Fail,' to its KEV catalog following reports of active exploitation. The stealthy 732-byt…

May 04, 2026views - 352

VULNEXPLOIT

Linux Copy Fail Risk: The Invisible 4-Byte Root Exploit

The Linux Copy Fail vulnerability allows root escalation in 4 bytes, corrupting only RAM. Discover the impact on Kubernetes and how to…

Apr 30, 2026views - 89

cybersecCRITICAL

Qinglong RCE Vulnerability: Express.js Bypass Revealed

RCE authentication bypass discovered in Qinglong: how Express.js routing differences enabled the attack and why payload filtering fail…

Apr 30, 2026views - 117

CYBERSECCRITICAL

Pack2TheRoot: Critical Linux Passwordless Root Vulnerability

Pack2TheRoot (CVE-2026-41651) affects Linux PackageKit for 12 years. CVSS 8.8, local passwordless root access. Patches available: here…

Apr 24, 2026views - 113