Check Point has released a patch for CVE-2026-16232, a critical authentication bypass zero-day vulnerability in its SmartConsole GUI that is…
Read More »authentication bypass
BeyondTrust has issued an urgent advisory for two critical vulnerabilities in its Remote Support and Privileged Remote Access platforms that…
Read More »Attackers are exploiting CVE-2026-48558, an authentication bypass in SimpleHelp RMM, to deploy Djinn Stealer malware across Windows, macOS, and Linux…
Read More »WatchTowr researchers have published a technical deep dive and detection tool for CVE-2026-50751, a critical authentication bypass in Check Point’s…
Read More »Check Point patched a critical zero-day vulnerability (CVE-2026-50751) in its Remote Access VPN and Mobile Access products that allows unauthenticated…
Read More »Palo Alto Networks issued a security advisory on May 13 revealing that an authentication bypass vulnerability (CVE-2026-0257) in its firewall…
Read More »Cybercriminals are exploiting CVE-2026-35616, an authentication bypass vulnerability in FortiClient Enterprise Management Server (EMS), to deploy a new credential stealer…
Read More »Attackers are actively exploiting the cPanel authentication bypass vulnerability (CVE-2026-41940) to deploy "Sorry" ransomware, which encrypts files with a .sorry…
Read More »Progress Software has issued an urgent advisory for a critical authentication bypass vulnerability (CVE-2024-5806, CVSS 9.1) in MOVEit Automation's SFTP…
Read More »A nine-year-old Linux kernel privilege escalation flaw (CVE-2026-31431) and a critical cPanel authentication bypass (CVE-2026-41940) were actively exploited, with proof-of-concept…
Read More »A critical authentication bypass vulnerability in cPanel (CVE-2026-41940) is being actively exploited in mass ransomware campaigns, with attackers using a…
Read More »A critical authentication-bypass vulnerability (CVE-2026-41940) in cPanel and WebHost Manager (WHM) allows attackers to remotely seize full control over affected…
Read More »A massive 37.5x surge in device code phishing attacks has occurred this year, exploiting a legitimate OAuth feature designed for…
Read More »Cisco has patched a critical authentication bypass flaw (CVE-2026-20093) in its Integrated Management Controller, allowing unauthenticated attackers to gain administrative…
Read More »HPE has released critical security patches for its Aruba AOS-CX operating system, addressing multiple vulnerabilities including a severe authentication bypass…
Read More »A sophisticated threat actor has been exploiting a zero-day authentication bypass flaw (CVE-2026-20127) in Cisco's Catalyst SD-WAN Controller since at…
Read More »A critical authentication bypass flaw (CVE-2026-24858) in Fortinet's FortiCloud SSO was actively exploited, allowing attackers to gain administrative control over…
Read More »Fortinet has patched a critical zero-day vulnerability (CVE-2026-24858) that allowed attackers to bypass authentication and gain unauthorized administrative access to…
Read More »A critical authentication bypass vulnerability (CVE-2026-23760) in SmarterMail email servers allows attackers to reset administrator passwords and take full control…
Read More »A critical Fortinet SSO vulnerability (CVE-2025-59718) is being actively exploited via a bypass of the initial patch, allowing attackers to…
Read More »


















