cve-2026-0257
64 articles with this tag
✨
AI summary
Loading…
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
Microsoft Restores Some GitHub Repos, Keeps Others Offline as Miasma Probe Continues
Chrome V8 Zero-Day CVE-2026-11645 Exploited in the Wild - Patch Now
WinRAR Flaw Exploited by Russia-Aligned Groups to Deploy Stealers in Ukraine
The Hidden Security Risk in Modern Networks: The Work Between Tools
Hades PyPI Attack: 19 Packages Poisoned to Auto-Run Bun Credential Stealer
New FROST Attack Lets Websites Track What Sites and Apps You Open via SSD Timing
LiteLLM Flaw CVE-2026-42271 Exploited in the Wild, Chains to Unauthenticated RCE
One-Character Linux Kernel Flaw Enables Local Root Access, Exploits Now Public
Meta Blocks NSO Group's New WhatsApp Phishing Attack, Files Contempt Order
Critical Check Point VPN Flaw Exploited to Bypass Passwords in IKEv1 Setups
May 2026 CVE Landscape
AI Phishing Is Crushing SOCs with Alert Volume: How to Reduce Tier 1 Overload
Veikleikar í Linux, Flowise, Windows NetLogon, WP Maps Pro, Oracle & Palo Alto Networks
VerdantBamboo Deploys BSD Variant of BRICKSTORM on Linux Appliances
UNC3753 Used Vishing and Physical Intrusions in U.S. Data Theft Extortion Campaign
VS Code Adds 2-Hour Extension Auto-Update Delay to Limit Supply Chain Attacks
New ChatGPT Lockdown Mode Limits Tools That Could Enable Data Exfiltration
CISA Adds Actively Exploited SolarWinds Serv-U DoS Flaw to KEV Catalog
Free Apps Are Quietly Turning Smart TVs Into Web-Scraping Proxies for AI
Miasma Worm Hits 73 Microsoft GitHub Repositories in Major Supply Chain Attack
AI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 Bugs
Cisco Catalyst SD-WAN Manager CVE-2026-20245 Flaw Actively Exploited – No Patch Available
IronWorm and New Miasma Worm Variant Hit npm in Supply Chain Attacks
Android Spyware Asin Targets Arabic Users via Fake News, PDF and War Map Apps
Threat Brief: Active Exploitation of PAN-OS CVE-2026-0257
New Threat Cluster OP-512 Targets Microsoft IIS Servers with Custom Web Shell Framework
Hackers Exploit Critical Everest Forms Pro WordPress Plugin Flaw to Take Over Sites
FIFA World Cup 2026 Scams Are Already Live: Fake Sites, Banking Malware, and Stolen Logins
PCPJack Hijacks 230 AWS, Google Cloud, and Azure Servers for Covert SMTP Relay Network
Agentic AI Is Transforming Defense, But Only Secure IT Infrastructure Will Maximize It
Cisco Patches CVE-2026-20230 in Unified CM as Exploit Code Goes Public
Claude Code GitHub Action Flaw Let One Malicious Issue Hijack Repositories
FlutterShell Backdoor Spreads to macOS via Malicious Google and YouTube Ads
China-Linked TA4922 Expands Phishing Attacks to UK, Germany, Italy, and South Africa
Hackers Spied on a Stock Exchange Executive's Outlook Mailbox for Five Months
Fake Sites Mimicking Open-Source Tools Rank High on Google to Deliver Malware via TDS
CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV Catalog
DoJ Disrupts Southeast Asia Crypto Fraud Networks, Freezes $3.8 Million in Assets
Autonomous AI Tool Finds 2-Year-Old RCE Flaw in Redis (CVE-2026-23479)
Microsoft 365 Android Apps Let Any App Steal Account Tokens via Leftover Debug Flag
Google DoubleClick Abused in New Malspam Campaign to Deliver DesckVB RAT
WhatsApp, Slack Notifications Could Hijack Google Gemini on Android
One-Click GitHub Dev Attack Lets Attackers Steal Full GitHub OAuth Tokens
Beyond the Zero-Day: See Your Network Like an Attacker | Webinar with HD Moore
Unpatched Windows Search URI Vulnerability Lets Attackers Steal NTLMv2 Hashes
New HTTP/2 Bomb Vulnerability Allows Remote DoS on NGINX, Apache, IIS, Envoy & Cloudflare
Weedhack Attacks Minecraft Users, CountLoader Hits 86K, Miners Spread via Pirated Content
Attackers exploit Palo Alto GlobalProtect flaw days after disclosure
Attackers are exploiting Palo Alto Networks defect that initially flew under the radar
PAN-OS authentication bypass bug added to list of exploited vulnerabilities
Bulletin d'actualité CERTFR-2026-ACT-024 (01 juin 2026)
Patch Now: Another Palo Alto Auth Bypass Bug Under Active Exploit
1st June – Threat Intelligence Report
⚡ Weekly Recap: New Linux Flaw, PAN-OS Exploit, AI-Powered Attacks, OAuth Phishing and More
Palo Alto VPN bug graduates from advisory to active exploitation
Recent Palo Alto Networks Vulnerability Exploited for Weeks
Hackers are exploiting Palo Alto GlobalProtect VPN authentication bypass (CVE-2026-0257)
Palo Alto Warns High-Severity Bug Is Being Actively Exploited
Palo Alto GlobalProtect VPN auth bypass flaw now exploited in attacks
PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation
CISA Adds One Known Exploited Vulnerability to Catalog
Rapid7 Observed Exploitation of PAN-OS GlobalProtect Authentication Bypass Vulnerability (CVE-2026-0257)
Multiples vulnérabilités dans les produits Palo Alto Networks (15 mai 2026)
Palo Alto Products Multiple Vulnerabilities