Topic: software vulnerabilities
-
ATM Flaws Expose Software Supply Chain Weaknesses
Researcher Matt Burch identified nine critical vulnerabilities in CryptoPro Secure Disk, a widely used encryption tool that exposes ATM manufacturers and other industries to significant security risks. These flaws allowed attackers to bypass integrity checks and gain unrestricted access to encryp...
Read More » -
GPT-5.6-Cyber more compliant with security researchers
OpenAI released GPT-5.6-Cyber, a specialized model for zero-day vulnerability discovery and exploit chain construction, offering fewer refusals for high-risk security tasks and restricted to its vetted Daybreak Red tier. The model completed 95% of exploit-related requests versus 1.5% for standard...
Read More » -
AI prompts expose 'Zoomsday' hack in under 20 tries
Researchers discovered a Zoom vulnerability affecting all major platforms in just one day, using fewer than 20 prompts on publicly available AI models, and Zoom patched it on Tuesday. The flaw exploited Zoom’s annotation feature, allowing an attacker to execute malicious code on a victim’s device...
Read More » -
Cisco IMC patch, Patch Tuesday outlook, Black Hat 2026 recap
AI-powered security tools are advancing: Stairwell's Backstory maps full malware campaigns from single alerts (finding ~2.4 undocumented variants per published sample), while Stellar Cyber's Agentic Auto Triage autonomously closes false-positive tickets, saving analysts 19 minutes per hour. New v...
Read More » -
CISA: Hackers Exploiting Langflow, N-central, Tomcat Flaws
CISA has mandated that federal agencies patch three actively exploited vulnerabilities in IBM Langflow, N-central, and Apache Tomcat within 72 hours, with private sector entities strongly encouraged to remediate as well. The Langflow flaw (CVE-2025-3248) enables unauthenticated remote code execut...
Read More » -
Mythos Preview weaponizes N-day vulnerabilities in hours
Anthropic's Mythos Preview system can weaponize N-day vulnerabilities in hours, compressing what previously took days or weeks and shifting focus from zero-day to already-patched flaws. The system automates exploit development from public vulnerability disclosures, reducing the window between dis...
Read More » -
Palo Alto Warns of Active Exploit for High-Severity Bug
A critical high-severity vulnerability in Palo Alto Networks' PAN-OS software is being actively exploited, allowing attackers to execute arbitrary code or disrupt system operations. Palo Alto Networks urges all customers to immediately update to patched versions of PAN-OS to mitigate threats, as ...
Read More » -
Infostealer Hits Enterprise Devices via FortiClient EMS Flaw
Attackers are exploiting a known vulnerability in FortiClient Enterprise Management Server (CVE-2026-35616) to deliver an infostealer disguised as a legitimate Fortinet endpoint update, targeting enterprise environments. The malware silently harvests credentials, browser data, and cryptocurrency ...
Read More » -
Microsoft Criticizes "Uncoordinated" Zero-Day Disclosures
Microsoft criticized the practice of revealing zero-day vulnerabilities without prior coordination, warning it places customers in harm's way by creating unnecessary risk. The company stated that premature disclosures leave systems exposed to attacks, as malicious actors can exploit weaknesses be...
Read More » -
ECB Urges Banks to Fix Cybersecurity Flaws Found by AI
The European Central Bank has called an urgent meeting with financial institutions to address cybersecurity threats from advanced AI, particularly Anthropic's Claude Mythos Preview, which can exploit software vulnerabilities at unprecedented speed. The ECB is pushing banks to immediately fix know...
Read More » -
Microsoft warns of active Defender zero-day exploits
Microsoft has issued an urgent security update for two zero-day vulnerabilities in its Microsoft Defender antivirus engine that are actively being exploited in real-world attacks. The flaws allow attackers to bypass security checks and execute malicious code or escalate privileges, marking a rare...
Read More » -
New LiteLLM Bug Exploited Hours After Disclosure
A critical LiteLLM security flaw was disclosed, enabling attackers to bypass authentication and access or modify sensitive data in the proxy’s database, including API keys and user data. The vulnerability was exploited within hours of its public release, highlighting active monitoring of disclosu...
Read More » -
Progress Software patches stealthy WAF bypass flaw (CVE-2026-21876)
Progress Software patched five high-severity vulnerabilities in MOVEit WAF and LoadMaster, including CVE-2026-21876, a critical bypass flaw allowing unauthenticated attackers to circumvent WAF protections via crafted HTTP requests. CVE-2026-21876 affects the OWASP core rule set, was reported in J...
Read More » -
NIST Ends NVD Updates for Older Vulnerabilities
The NVD is shifting its focus to prioritize enriching data for recently disclosed and actively exploited vulnerabilities due to an overwhelming volume of new CVEs. This change means older, less critical flaws will receive less detailed analysis, though the NVD will remain the authoritative public...
Read More » -
Microsoft's April 2026 Patch Tuesday fixes 167 flaws, 2 zero-days
Microsoft's April 2026 Patch Tuesday security update addresses 167 vulnerabilities across its software. Two of the flaws were actively exploited zero-day vulnerabilities, posing a critical threat before being fixed. System administrators and users are urged to promptly deploy the updates to prote...
Read More » -
Google's March 2024 Core Update Is Complete
Google's March 2024 core algorithm update has finished rolling out, allowing website owners to fully evaluate its impact on search rankings. Google has fixed a long-standing bug in Search Console that had inflated impression data, restoring accurate performance metrics. Google's CEO warns that ad...
Read More » -
Anthropic AI Tool Finds and Fixes Critical Software Bugs
Anthropic has launched "Project Glasswing", an AI system using the "Claude Mythos Preview model" to autonomously scan for and repair previously unknown critical software vulnerabilities. The system is designed to understand code context, diagnose root causes, and generate functional patches, ...
Read More » -
Storm-1175 Uses Medusa Attack Flaws
A financially motivated group, Storm-1175, has conducted relentless Medusa ransomware attacks for three years by exploiting newly disclosed and previously unknown vulnerabilities, heavily impacting healthcare, education, and finance sectors across multiple countries. The group's consistent tactic...
Read More » -
Fix Software Weaknesses, Not Just Individual Bugs
The cybersecurity field is shifting from reactively patching individual software vulnerabilities (CVEs) to proactively addressing the root design flaws and weaknesses (CWEs) that cause them. A key evolution is the integration of CWE data into vulnerability disclosures, allowing CVEs to be mapped ...
Read More » -
Microsoft Ties Medusa Ransomware to Zero-Day Exploits
Microsoft reports that the China-based threat actor Storm-1175 has escalated its tactics by incorporating both n-day and zero-day exploits into its campaigns, which deploy Medusa ransomware. The group's use of unpatched zero-days alongside recently patched n-day vulnerabilities enables high-veloc...
Read More »