Get your free weekly report by email.
A high-privileged remote attacker can exploit a command injection vulnerability in the /api/datastorage/data endpoint by sending a PUT request with admin credentials allowing execution of commands ...
What Is CVE-2026-42945 (NGINX Rift)? CVE-2026-42945 (CVSSv3 8.1) is a heap memory corruption issue in NGINX’s rewrite module that can lead to a heap-based buffer overflow during rewrite processing.
What Started the Crunchyroll Breach Discussion? The story appears to have gained traction after posts shared by International Cyber Digest on X described an alleged compromise connected to Crunchyroll ...
Oracle has kicked off 2026 with a sizable security release that will immediately catch the attention of security teams. The January 2026 Critical Patch Update (CPU) delivers 337 new security patches ...
Ransomware attack on Air Canada, attributed to Thegentlemen. Domain, industry, country, and victim status tracked in real time.
Ransomware attack on Novum Energy, attributed to Global Secret Group. Domain, industry, country, and victim status tracked in real time.
Yealink SIP-T33G firmware versions 124.86.x.x prior to 124.87.0.0 contain a race condition vulnerability that allows authenticated attackers to interrupt active diagnostic processes by concurrently ...
A command injection vulnerability in Palo Alto Networks PAN-OS® software enables an authenticated administrator to bypass system restrictions and run arbitrary commands as a root user. To be able to ...
East Texas Family Medicine, a healthcare provider in the United States, was identified as a victim of the Genesis ransomware group, with the listing published on July 5, 2026. This incident was ...
The SOCRadar Dark Web Team has detected a new claim of a massive data leak targeting Banco Vimenca. Threat actors have announced that the full set of the bank’s confidential data has been released on ...
Openpanel before 2.3.0 contains an unauthenticated full-read server-side request forgery (SSRF) vulnerability in the GET /tools/site-checker endpoint (apps/api/src ...