cve-2026-55200
76 articles with this tag
✨
AI summary
Loading…
HIGH
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
CRITICAL
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
GLSA 202608-17: libssh2: Multiple Vulnerabilities
Fixing Vulns Is Harder Than Finding Them - PSW #936
Critical Zimbra Flaw Could Let Crafted Emails Run Malicious Code in User Sessions
URGENT - Progress Tells ShareFile Customers to Shut Down Storage Zone Controllers Over Security Threat
Injective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm Packages
Six New U-Boot Flaws Could Let Malicious Images Crash Devices or Run Code at Boot
Laser Attack Resets Tangem Wallet Passwords on Cards That Can't Be Patched
Researcher Details WhatsApp-to-Host Attack Chain Using Three OpenClaw Flaws
New MODBEACON RAT Uses gRPC Streaming for Encrypted C2 Traffic
Unpatched XRING Flaw in XQUIC Lets Remote Clients Crash HTTP/3 Servers
From 17,000 to 1.1 Million Assets: How Lumen Technologies Rebuilt Exposure Management at Scale
Exposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress Sites
Study of 281 Free Android VPN Apps Finds Traffic Leaks, Unencrypted Data, and Tracking
Hackers Use Fake Microsoft Entra Passkey Enrollment to Gain Microsoft 365 Access
Attackers Exploit 'Ill Bloom' Vulnerability to Drain $3.1 Million From Cryptocurrency Wallets
Ransomware Negotiator Gets 70 Months in Prison for Aiding BlackCat Attacks
Dormant GitHub Accounts Help Attackers Blend In While Mapping Corporate Orgs
New GigaWiper Windows Backdoor Bundles Disk Wiping, Fake Ransomware, and Spyware
npm 12 Disables Install Scripts by Default to Reduce Supply Chain Risk
AI Attacks Move in Minutes. Join This Webinar on Building a Defense That Keeps Up
GodDamn Ransomware Uses PoisonX Driver to Disable Endpoint Defenses
Microsoft Patches RoguePlanet Defender Flaw That Can Grant SYSTEM Privileges
Meta's New AI Image Tool Lets Others Use Your Public Instagram Photos in AI Images
Top AI Agents Built to Catch Malicious Code Can Be Tricked Into Running It
GhostApproval Symlink Flaws Could Let Malicious Repos Run Code in AI Coding Agents
Fake 7-Zip Installers Turn Devices Into Residential Proxy Nodes
AI Coding Agents Found Triggering Endpoint Security Rules Built to Catch Attackers
New HalluSquatting Attack Could Trick AI Coding Assistants Into Installing Botnet Malware
Ubiquiti Patches Critical UniFi Flaws Across Connect, Talk, Access, Protect, and OS
New Ghost Phishing Wave Is Breaking Traditional Email Security
SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking Users
GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures
The Verification Step Is the New ATO Battleground in 2026
GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code
China-Linked UAT-7810 Expands ORB Network With New LONGLEASH Malware
15-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux Distros
CISA Adds 4 Actively Exploited Adobe, Joomla, and Langflow Flaws to KEV
Rogue Agent Flaw Could Have Let Attackers Hijack Google Dialogflow CX Chatbots
RedWing MaaS Packages Android Bank Fraud as a Telegram Rental Service
DEBULL Tooling Abuses Microsoft Device-Code Flow to Target M365 Accounts
Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo Data
Court Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider Hacker
Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across Tenants
What Changes When Your Software Supply Chain Includes AI Writing Your Code?
Suspected China-Aligned Hackers Exploit Roundcube Flaws Against Universities
CERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware
BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA
Iran-Linked Hackers Use New Cavern C2 Framework to Target Israeli Organizations
16-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 Systems
Threat Actors Probe Gitea Docker Flaw CVE-2026-20896 13 Days After Disclosure
Suspected China-Nexus Hackers Use Fake Indian Tax Filing Utility to Deploy DcRAT
New TrojPix Attack Leaks Data From Air-Gapped Systems via Video Cable Emissions
New Java-Based QuimaRAT MaaS Built to Run on Windows, Linux, and macOS
Opera GX Flaw Let Malicious Sites Auto-Install Mods to Steal Data From Visited Pages
SkillCloak Lets Malicious AI Agent Skills Evade Static Scanners with Self-Extracting Packing
U.S. Government Entity Paid Kairos $1 Million in Data-Theft Extortion Case
North Korean Hackers Publish 108 Malicious Packages and Extensions in PolinRider Campaign
Unpatched Flaws Disclosed in Filesystem Bundled Into Millions of Embedded Devices
New "Bad Epoll" Linux Kernel Flaw Lets Unprivileged Users Gain Root, Hits Android
New Avalon Malware Framework Packs CrownX Ransomware Capabilities
North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer Secrets
Armored Likho Targets Government Agencies, Power Sector with BusySnake Stealer
European Parliament Member Investigating Spyware Was Hacked With Pegasus
PamStealer Uses Fake Maccy Sites and PAM Checks to Steal Mac Login Passwords
Linux Tech Segment & Vulnerabilities Galore - PSW #933
Researcher Behind 'Exploitarium' Explains Release of Undisclosed Zero-Day Exploits
Apple releases early security updates, citing AI-driven exploit acceleration
Progress Kemp LoadMaster vulnerability actively exploited
Anonymous researcher dumps zero-day exploits for multiple software products
USN-8486-1: libssh2 vulnerabilities
Anonymous researcher drops 0-day 'exploitarium' repo
⚡ Weekly Recap: Linux Kernel Flaws, AI Malware Tricks, Turla Backdoor, Infostealers and More
Multiples vulnérabilités dans Microsoft Azure Linux (29 juin 2026)
Public PoC Released for Critical libssh2 CVE-2026-55200 Client-Side SSH Flaw
CVE-2026-55200 libssh2 - Out-of-Bounds Write via Unchecked packet_length in transport.c
DSA-6365-1 libssh2 - security update