CISA flags two-year-old Oracle flaw as actively exploited in attacks
(bleepingcomputer.com)
121.
122.
Google fixes one actively exploited Android zero-day, 124 flaws
(bleepingcomputer.com)
123.
124.
Race Against Time: Why Faster Vulnerability Alerts Matter
(bleepingcomputer.com)
125.
126.
The solution might be cancelling my AI subscription
(news.ycombinator.com)
127.
WP Maps Pro bug exploited to create admin accounts on WordPress sites
(bleepingcomputer.com)
128.
Palo Alto GlobalProtect VPN auth bypass flaw now exploited in attacks
(bleepingcomputer.com)
129.
Microsoft 0-day feud escalates as researcher threatens another exploit dump
(news.ycombinator.com)
130.
CVE-Bench: testing LLM agents on real-world vulnerability patches
(news.ycombinator.com)
131.
132.
133.
Tuning LLVM's SLP Vectorizer Cost Model
(news.ycombinator.com)
134.
Hackers exploit FortiClient EMS flaw to push infostealer malware
(bleepingcomputer.com)
135.
136.
AI-Assisted Exploit Development Outpaces Scanner Detection
(darkreading.com)
137.
CISA gives feds 4 days to patch actively exploited cPanel plugin flaw
(bleepingcomputer.com)
138.
139.
140.
141.
KnowledgeDeliver flaw exploited as a zero-day to install web shells
(bleepingcomputer.com)
142.
BadHost – CVE-2026-48710: Starlette Host-Header Auth Bypass
(news.ycombinator.com)
143.
CISA orders feds to patch actively exploited Drupal vulnerability
(bleepingcomputer.com)
144.
CVE-2026-28952: Apple macOS 26.5 Kernel Vuln found by Claude
(news.ycombinator.com)
145.
Ghost CMS SQL injection flaw exploited in large-scale ClickFix campaign
(bleepingcomputer.com)
146.
Trend Micro warns of Apex One zero-day exploited in the wild
(bleepingcomputer.com)
147.
Drupal: Critical SQL injection flaw now targeted in attacks
(bleepingcomputer.com)
148.
149.
Max severity Cisco Secure Workload flaw gives Site Admin privileges
(bleepingcomputer.com)
150.
Microsoft warns of new Defender zero-days exploited in attacks
(bleepingcomputer.com)
Today's top topics:
apple