Metabase has released security updates after confirming active exploitation of a zero day vulnerability that allows attackers to gain administrator access without authentication.
Research presented at Black Hat USA 2026 demonstrates CSS based attack techniques affecting major webmail services, highlighting risks involving passwords, authentication tokens, and AI connected email workflows.
Researchers have disclosed DirtyClone, a Linux kernel vulnerability tracked as CVE 2026 43503 that enables local privilege escalation by corrupting cached memory through cloned network packets.
CISA adds CVE 2026 54420 affecting LiteSpeed cPanel Plugin to its Known Exploited Vulnerabilities catalog, warning of root privilege escalation risks on shared hosting servers.
Security researchers have published public exploits for Linux kernel vulnerability CVE 2026 23111, allowing local privilege escalation to root and container escape on affected systems.
Google has released its June 2026 Android security update addressing 124 vulnerabilities, including an actively exploited high severity flaw affecting Android 14, 15, and 16 devices.
New cybersecurity research highlights how vulnerable Windows kernel mode drivers may remain exploitable without dedicated hardware, raising concerns around BYOVD attacks and endpoint security risks.
Security researchers have disclosed new Windows zero day vulnerabilities affecting BitLocker and CTFMON, exposing privilege escalation and encryption bypass risks across Windows 11 and Windows Server systems.
Dirty Frag Linux kernel vulnerability enables local privilege escalation to root across major distributions including Ubuntu, RHEL, Fedora, and CentOS, with active exploitation risk.
Microsoft has released an out of band update fixing CVE 2026 40372 in ASP.NET Core, a critical privilege escalation flaw affecting DataProtection cryptography that could allow SYSTEM level access under specific conditions.
GPUBreach, a new RowHammer attack targeting GDDR6 GPUs, enables arbitrary GPU memory access and full CPU privilege escalation, posing risks for cloud AI and multi-tenant deployments.