China-Nexus APT Exploits VMware vCenter Flaws to Deploy Babuk-Derived Ransomware
Cybersecurity researchers have attributed the exploitation of a newly patched security flaw in Broadcom VMware vCenter to a suspected China-nexus advanced persistent…
Cybersecurity researchers have attributed the exploitation of a newly patched security flaw in Broadcom VMware vCenter to a suspected China-nexus advanced persistent…
Threat actors have begun exploiting a newly disclosed Microsoft SharePoint vulnerability, CVE-2026-55040 (CVSS 9.1), following the public release of a proof-of-concept (PoC)…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a newly disclosed security flaw, CVE-2026-20316, impacting Cisco Secure Firewall Management Center…
A critical vulnerability in LiteLLM that is being actively exploited by attackers to hijack AI infrastructure and conduct attacks against third parties.
Nextcloud is a file sync and share platform that can be used as a proxy for Windmill endpoints, with exploitation observed targeting…
Threat actors are actively exploiting a critical security flaw in the ServiceNow AI Platform, identified as CVE-2026-6875, which carries a CVSS score…
NadMesh combines scanning, exploitation, and credential harvesting into a single autonomous platform, targeting services like Redis, Docker, Kubernetes, and AI applications. It…
CrowdSec reported exploitation in the wild of CVE-2026-1207, a SQL injection flaw in Django's PostGIS raster lookups, and released detection rules. This…
KEVIntel captured telemetry data revealing 12 exploitation attempts targeting CVE-2026-55040 since July 19, 2026. Eight of these attempts occurred on August 12-13,…
WireGuard is a modern VPN protocol known for its simplicity and performance. In the UAC-0145 campaign, attackers compiled a trojanized version of…