Kimi K3 AI Agents Discover Multiple Redis Zero-Days and Build RCE Exploit Chains
On July 23, 2026, Redis shipped seven security releases after researchers published authenticated remote code execution (RCE) proof-of-concept (PoC) exploits for stock…
On July 23, 2026, Redis shipped seven security releases after researchers published authenticated remote code execution (RCE) proof-of-concept (PoC) exploits for stock…
Researchers at Nebula Security have disclosed GhostLock (CVE-2026-43499), a 15-year-old Linux kernel vulnerability that allows any logged-in user to gain full root…
A critical use-after-free vulnerability in the Linux Kernel-based Virtual Machine (KVM) hypervisor, tracked as CVE-2026-53359 and named 'Januscape', allows a guest virtual…
A newly disclosed Linux kernel vulnerability, dubbed "Bad Epoll" and tracked as CVE-2026-46242, allows unprivileged local users to gain full root access…
Researchers from the CISPA Helmholtz Center for Information Security have uncovered six security flaws in Apple's AirDrop and Google/Samsung's Quick Share wireless…
Apple has released security updates for iOS, macOS, and Safari, patching over 30 vulnerabilities, including four WebKit flaws discovered using AI tools…
A use-after-free issue in WebKit that could lead to memory corruption when processing maliciously crafted web content. Addressed with improved memory management.
A use-after-free vulnerability in WebKit Canvas that could be exploited by malicious web content.
F5 has released security updates to address two critical vulnerabilities in NGINX Open Source that could allow remote code execution. The flaws,…
A use-after-free vulnerability in PDFium, an open-source C++ library for PDF rendering, with a CVSS score of 8.8. It could allow a…