The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added six vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of…
active exploitationAjax.NETAjax.NET ProfessionalCISA
Security researcher Malcolm Stagg has disclosed a new attack class called NatJack that exploits network address translation (NAT) connection state to hijack…
AppleBlack Hat USA 2026CVE-2026-50522CVE-2026-56181
A newly disclosed Linux kernel vulnerability, dubbed Zapscape and tracked as CVE-2026-64561, could allow an attacker with kernel privileges inside an L1…
A newly disclosed memory corruption vulnerability in the Linux kernel's Open vSwitch (OVS) datapath, tracked as CVE-2026-64531 and codenamed OVSwrap, allows unprivileged…
The vulnerability CVE-2026-53264 was independently reported by Kyle Zeng (KyleBot) shortly before the TyphoonPwn 2026 competition. Lee Jia Jie later published a…