Metabase Zero-Day Exploited in Wild Allows Admin Access Without Authentication
Metabase has disclosed a maximum-severity zero-day vulnerability in its business intelligence and data visualization software that is being actively exploited in the…
Metabase has disclosed a maximum-severity zero-day vulnerability in its business intelligence and data visualization software that is being actively exploited in the…
Framework, a PC manufacturer, was affected by the Metabase zero-day exploitation. The company alerted customers that personal information including names, login IPs,…
Sliver, an open-source command-and-control (C2) framework, is deployed as the final payload on Linux systems in the malicious npm campaign. The Linux…
Spring Boot is a popular Java framework used for building microservices and web applications. The CVE-2026-16723 exploit requires a Spring Boot executable…
Microsoft's AI agent framework that had similar command injection vulnerabilities (CVE-2026-25592, CVE-2026-26030) patched in May 2026.
OkoBot is a malware framework targeting Windows systems since April 2025, featuring over 20 payloads and implants. It includes the SeedHunter module…
Android Framework Integer Overflow Vulnerability Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of…