Security researcher Chaotic Eclipse (aka Nightmare-Eclipse) has released a proof-of-concept (PoC) exploit called LegacyHive, targeting a Windows User Profile Service (ProfSvc) arbitrary…
SAP has released its July 2026 security updates, addressing multiple vulnerabilities including a critical out-of-bounds write flaw in SAP NetWeaver Application Server…
The CERT Coordination Center (CERT/CC) has issued a warning about an undocumented authentication backdoor in multiple versions of Tenda router firmware. The…
BeyondTrust has released security updates to address multiple critical vulnerabilities in its Remote Support (RS) and Privileged Remote Access (PRA) products. The…
AI SecurityAnthropicAnthropic Claude Opus 4.8authentication bypass
An unknown threat actor is exploiting CVE-2026-48558, a critical authentication bypass vulnerability in SimpleHelp (CVSS 10.0), to deliver two new malware families:…
AI Securityauthentication bypassBlackpoint CyberCISA