Ghostwire — Live Cybersecurity Feed

Real-time cybersecurity news from 190+ sources. Updated every 5 minutes.

Digital security in war and conflict: challenges for civil society and tools for resilience

Access Now · Access Now Helpline Team · 2026-05-15 21:08 UTC

Join the next webinar organized by the Digital Security Helpline, to discuss key trends and strategies to keep at-risk actors safe online. The post Digital security in war and conflict: challenges for...

digital securityDigital Security HelplinehelplinePhishingSpear Phishing

Datacenters slurping up so much juice they boosted prices 75% in largest US energy market

The Register · The Register · 2026-05-15 21:02 UTC

BYO power for AI bit barns may be the best way to ease the problem, says energy watchdog

on-prem

CVE-2026-45672 - Open WebUI: Jupyter code execution works despite `ENABLE_CODE_EXECUTION=false` — feature gate bypassed

CVE Feed · CVE Feed · 2026-05-15 20:55 UTC

CVE ID :CVE-2026-45672 Published : May 15, 2026, 8:55 p.m. | 21 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-8696 - radare2 6.1.5 Use-After-Free via gdbr_pids_list()

CVE Feed · CVE Feed · 2026-05-15 20:52 UTC

CVE ID :CVE-2026-8696 Published : May 15, 2026, 8:52 p.m. | 24 minutes ago Description :radare2 6.1.5 contains a use-after-free vulnerability in the gdbr_pids_list() function within the GDB ...

CVE-2026-45400 - Open WebUI: Server-Side Request Forgery (SSRF) bypass in `validate_url`

CVE Feed · CVE Feed · 2026-05-15 20:40 UTC

CVE ID :CVE-2026-45400 Published : May 15, 2026, 8:40 p.m. | 35 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-45402 - Open WebUI: Cross-User File Access via Unchecked file_id in Folder Knowledge and Knowledge-Base Attach Endpoints

CVE Feed · CVE Feed · 2026-05-15 20:40 UTC

CVE ID :CVE-2026-45402 Published : May 15, 2026, 8:40 p.m. | 36 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-45386 - Open WebUI: An IDOR vulnerability exists in the pin_channel_message API endpoint

CVE Feed · CVE Feed · 2026-05-15 20:36 UTC

CVE ID :CVE-2026-45386 Published : May 15, 2026, 8:36 p.m. | 40 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-45397 - Open WebUI: Unauthenticated RAG Configuration Disclosure

CVE Feed · CVE Feed · 2026-05-15 20:34 UTC

CVE ID :CVE-2026-45397 Published : May 15, 2026, 8:34 p.m. | 42 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-45396 - Open WebUI: Mass Assignment via FeedbackForm extra=allow Allows Feedback User ID Spoofing and Evaluation Data Manipulation

CVE Feed · CVE Feed · 2026-05-15 20:33 UTC

CVE ID :CVE-2026-45396 Published : May 15, 2026, 8:33 p.m. | 42 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-45395 - Open WebUI: Missing `workspace.tools` Authorization Check on Tool Update Endpoint Allows Privilege Escalation to Code Execution

CVE Feed · CVE Feed · 2026-05-15 20:33 UTC

CVE ID :CVE-2026-45395 Published : May 15, 2026, 8:33 p.m. | 43 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-45387 - Open WebUI: Sharing models for others to use (read permission) also exposes model details (system prompt leakage)

CVE Feed · CVE Feed · 2026-05-15 20:32 UTC

CVE ID :CVE-2026-45387 Published : May 15, 2026, 8:32 p.m. | 44 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-45385 - Open WebUI: An IDOR vulnerability exists in the update_message_by_id API endpoint

CVE Feed · CVE Feed · 2026-05-15 20:29 UTC

CVE ID :CVE-2026-45385 Published : May 15, 2026, 8:29 p.m. | 22 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-45671 - Open WebUI: shared-chat branch ignores access_type, allowing unauthorized file deletion

CVE Feed · CVE Feed · 2026-05-15 20:16 UTC

CVE ID :CVE-2026-45671 Published : May 15, 2026, 8:16 p.m. | 59 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-45675 - Open WebUI: LDAP and OAuth First-User Race Condition Allows Multiple Admin Accounts

CVE Feed · CVE Feed · 2026-05-15 20:16 UTC

CVE ID :CVE-2026-45675 Published : May 15, 2026, 8:16 p.m. | 59 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-44564 - Open WebUI: Read-Only Users Can Modify Collaborative Documents via Socket.IO

CVE Feed · CVE Feed · 2026-05-15 20:16 UTC

CVE ID :CVE-2026-44564 Published : May 15, 2026, 8:16 p.m. | 59 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-44568 - Open WebUI: Stored XSS in Pending User Overlay via Incorrect DOMPurify Application Order

CVE Feed · CVE Feed · 2026-05-15 20:16 UTC

CVE ID :CVE-2026-44568 Published : May 15, 2026, 8:16 p.m. | 59 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-45349 - Open WebUI: Broken Access Control for Completions API

CVE Feed · CVE Feed · 2026-05-15 20:16 UTC

CVE ID :CVE-2026-45349 Published : May 15, 2026, 8:16 p.m. | 59 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-45399 - Open WebUI: Low-privilege authenticated users can enumerate and stop global background tasks, causing system-wide chat disruption

CVE Feed · CVE Feed · 2026-05-15 20:16 UTC

CVE ID :CVE-2026-45399 Published : May 15, 2026, 8:16 p.m. | 59 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-44557 - Open WebUI: Global Knowledge Base Enumeration via knowledge-bases Meta-Collection

CVE Feed · CVE Feed · 2026-05-15 20:16 UTC

CVE ID :CVE-2026-44557 Published : May 15, 2026, 8:16 p.m. | 35 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-44561 - Open WebUI: Deactivated Channel Members Retain Full Access to Group/DM Channels

CVE Feed · CVE Feed · 2026-05-15 20:16 UTC

CVE ID :CVE-2026-44561 Published : May 15, 2026, 8:16 p.m. | 59 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-44562 - Open WebUI: Model Import Overwrites Any Model Without Ownership Check

CVE Feed · CVE Feed · 2026-05-15 20:16 UTC

CVE ID :CVE-2026-44562 Published : May 15, 2026, 8:16 p.m. | 59 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-44553 - Open WebUI: Stale Admin Role in Socket.IO Session Pool Enables Post-Demotion Cross-User Note Access

CVE Feed · CVE Feed · 2026-05-15 20:16 UTC

CVE ID :CVE-2026-44553 Published : May 15, 2026, 8:16 p.m. | 35 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

CVE-2026-44552 - Open WebUI: Redis Cache Keys tool_servers and terminal_servers Missing Instance Prefix Enable Cross-Instance Cache Poisoning

CVE Feed · CVE Feed · 2026-05-15 20:16 UTC

CVE ID :CVE-2026-44552 Published : May 15, 2026, 8:16 p.m. | 35 minutes ago Description :Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Pr...

A Vulnerability in Microsoft Exchange Server Could Allow for Arbitrary Code Execution

CIS Advisories · CIS Advisories · 2026-05-15 19:48 UTC

A vulnerability has been discovered in Microsoft Exchange Server that could allow for arbitrary code execution. Microsoft Exchange Server is an enterprise-level email and collaboration platform develo...

More than $10 million stolen from crypto platform THORChain

The Record · The Record · 2026-05-15 19:31 UTC

THORChain officials said the investigation into the incident is ongoing but explained that one of their six vaults was compromised, leading to a loss of about $10.7 million.

CybercrimeNewsNews BriefsTechnology

Funnel Builder WordPress plugin bug exploited to steal credit cards

BleepingComputer · Bill Toulas · 2026-05-15 19:30 UTC

A critical vulnerability in the Funnel Builder plugin for WordPress is being actively exploited to inject malicious JavaScript snippets into WooCommerce checkout pages. [...]

Security

🔐 Единая система входа Codeby ID — как пользоваться

Codeby · Сергей Попов · 2026-05-15 19:25 UTC

FreePBX security advisory (AV26–474)

Canadian Cyber Centre · Canadian Centre for Cyber Security · 2026-05-15 19:15 UTC

Serial number: AV26–474Date: May 15, 2026 On May 15, 2026, FreePBX published a security advisory to address a critical vulnerability in the following products: FreePBX Security-Reporting userman (Fr...

Metasploit Wrap-Up 05/15/2026

Rapid7 · Martin Sutovsky · 2026-05-15 18:54 UTC

Weaponizing a text editor for fun and profitGather round, dear readers, because today, we (by we, we mean @h00die) dropped the ultimate persistence mechanism: Vim plugin persistence. And honestly, cal...

MetasploitMetasploit Weekly Wrapup

CVE-2026-46474 - Trog::TOTP versions before 1.006 for Perl generate secrets using rand

CVE Feed · CVE Feed · 2026-05-15 18:16 UTC

CVE ID :CVE-2026-46474 Published : May 15, 2026, 6:16 p.m. | 35 minutes ago Description :Trog::TOTP versions before 1.006 for Perl generate secrets using rand. Secrets were generated using ...

Второй ежеквартальный «Хакер» ушел в печать

Xakep · Мария Нефёдова · 2026-05-15 18:00 UTC

Второй ежеквартальный номер «Хакера» уже передан в типографию. Сейчас журналы печатают, а значит, до начала рассылки заказов осталось совсем немного времени. Так как тираж ограничен, и допечатки мы не...

НовостиАнонсбумагаЖурналХакер

Microsoft Exchange, Windows 11 hacked on second day of Pwn2Own

BleepingComputer · Sergiu Gatlan · 2026-05-15 17:47 UTC

​During the second day of Pwn2Own Berlin 2026, competitors collected $385,750 in cash awards after exploiting 15 unique zero-day vulnerabilities in multiple products, including Windows 11, Microsoft E...

SecurityLinuxMicrosoft

The AWS AI Security Framework: Securing AI with the right controls, at the right layers, at the right phases

AWS Security · Riggs Goodman III · 2026-05-15 17:38 UTC

TL;DR for busy executives The AWS AI Security Framework helps security leaders move fast and stay secure with AI. Security compounds from day 1 as workloads evolve from prototype to production to scal...

Artificial IntelligenceBest PracticesIntermediate (200)Security, Identity, & ComplianceSecurity Blog

В Android 17 появится дополнительная защита от мошеннических звонков и функция Intrusion Logging

Xakep · Мария Нефёдова · 2026-05-15 17:30 UTC

В Android 17 появится система, которая сможет распознавать поддельные звонки якобы «из банка» и автоматически разрывать соединение. Также разработчики Google расширяют защиту от шпионского ПО, кражи O...

НовостиAdvanced ProtectionAndroidAndroid 17Google

CVE-2026-8695 - radare2 6.1.5 Use-After-Free via gdbr_threads_list()

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-8695 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :radare2 6.1.5 contains a use-after-free vulnerability in the gdbr_threads_list() function that...

CVE-2026-46383 - Microsoft APM: Windows absolute-path tar member overwrite during legacy-bundle probing in `apm install`

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-46383 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :Microsoft APM is an open-source, community-driven dependency manager for AI agents. Prior to ...

CVE-2026-44717 - MCP Calculate Server: Prompt Injection to RCE

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-44717 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :MCP Calculate Server is a mathematical calculation service based on MCP protocol and SymPy li...

CVE-2026-45539 - Microsoft APM: Symlinks under `.apm/prompts/` and `.apm/agents/` are dereferenced during `apm install`, copying host-local file contents into the project tree

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-45539 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :Microsoft APM is an open-source, community-driven dependency manager for AI agents. From 0.5....

CVE-2026-45038 - Tabby: Dragging and Dropping a File into Tabby Can Lead to Code Execution

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-45038 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :Tabby (formerly Terminus) is a highly configurable terminal emulator. Prior to 1.0.233, since...

CVE-2026-45037 - Tabby: Unsafe protocol handler execution via terminal linkifier allows arbitrary OS protocol invocation

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-45037 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :Tabby (formerly Terminus) is a highly configurable terminal emulator. Prior to 1.0.232, Tabby...

CVE-2026-45035 - Tabby: RCE via `tabby://run` URL Scheme

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-45035 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :Tabby (formerly Terminus) is a highly configurable terminal emulator. Prior to 1.0.233, Tabby...

CVE-2026-44774 - Traefik: Gateway API TraefikService backend accepts rest@internal, allowing unauthorized exposure of the REST provider despite providers.rest.insecure=false

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-44774 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :Traefik is an HTTP reverse proxy and load balancer. Prior to 2.11.46, 3.6.17, and 3.7.1, Trae...

CVE-2026-44714 - bitcoinj: ScriptExecution P2PKH/P2WPKH Verification Bypass

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-44714 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :The bitcoinj library is a Java implementation of the Bitcoin protocol. Prior to 0.17.1, Scrip...

CVE-2026-44699 - LibJWT: Algorithm confusion allows JWT forgery with RSA JWK as empty-key HMAC

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-44699 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :LibJWT is a C JSON Web Token Library. From 3.0.0 to 3.3.2, libjwt accepts an RSA JWK that doe...

CVE-2026-44310 - gitsign --verify panics on empty-certificate PKCS7 and exits 0, bypassing exit-code callers

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-44310 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :Gitsign is a keyless Sigstore to signing tool for Git commits with your a GitHub / OIDC ident...

CVE-2026-44309 - gitsign verify accepts signatures over go-git-normalized bytes, enabling trust confusion on malformed commits

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-44309 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :Gitsign is a keyless Sigstore to signing tool for Git commits with your a GitHub / OIDC ident...

CVE-2026-44641 - Microsoft APM: plugin.json component paths escape plugin root and copy arbitrary host files during install

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-44641 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :Microsoft APM is an open-source, community-driven dependency manager for AI agents. Prior to ...

CVE-2026-42207 - Magento LTS: Open Redirect via Unvalidated `uenc` Parameter in `stockAction()` - magento-lts

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-42207 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :Magento Long Term Support (LTS) is an unofficial, community-driven project provides an altern...

CVE-2026-42458 - Magento LTS: Reflected XSS - Import -> Data Flow (profiles)

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-42458 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :Magento Long Term Support (LTS) is an unofficial, community-driven project provides an altern...

CVE-2026-42155 - Magento LTS: Weak API Session ID — Predictable MD5 of Time-Derived Inputs

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-42155 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :Magento Long Term Support (LTS) is an unofficial, community-driven project provides an altern...

CVE-2026-41181 - Traefik: Errors middleware forwards Authorization and Cookie headers to separate error page service

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-41181 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :Traefik is an HTTP reverse proxy and load balancer. Prior to 2.11.44, 3.6.15, and 3.7.0-rc.3,...

CVE-2026-41258 - OpenMRS: Stored Velocity SSTI to RCE via ConceptReferenceRange

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-41258 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :OpenMRS is an open source electronic medical record system platform. From 2.7.0 to before 2.7...

CVE-2026-23695 - Cockpit CMS 2.14.0 Stored XSS via Set Field Display Template

CVE Feed · CVE Feed · 2026-05-15 17:16 UTC

CVE ID :CVE-2026-23695 Published : May 15, 2026, 5:16 p.m. | 1 hour, 35 minutes ago Description :Cockpit CMS through version 2.14.0, patched in commit 72a83fc, contains a stored cross-site s...

Popular node-ipc npm package compromised to steal credentials

BleepingComputer · Bill Toulas · 2026-05-15 17:10 UTC

Hackers have injected credential-stealing malware into newly published versions of node-ipc, a popular inter-process communication package, in a new supply chain attack targeting npm. [...]

Security

Turla Turns Kazuar Backdoor Into Modular P2P Botnet for Persistent Access

The Hacker News · Ravie Lakshmanan · 2026-05-15 17:10 UTC

The Russian state-sponsored hacking group known as Turla has transformed its custom backdoor Kazuar into a modular peer-to-peer (P2P) botnet that's engineered for stealth and persistent ac...

Hackers Use PyInstaller and AMSI Patching to Deliver XWorm RAT v7.4

HackRead · Deeba Ahmed · 2026-05-15 16:42 UTC

Hackers are hiding XWorm malware in PyInstaller files to bypass Windows security, steal data and remotely control devices through ads.

SecurityMalwareScams and FraudAMSICyber Attack

CVE-2026-46508 - Turborepo: VSCode Extension command injection

CVE Feed · CVE Feed · 2026-05-15 16:16 UTC

CVE ID :CVE-2026-46508 Published : May 15, 2026, 4:16 p.m. | 2 hours, 35 minutes ago Description :Turborepo is a high-performance build system for JavaScript and TypeScript codebases. Prior ...

CVE-2026-45803 - gh: GitHub Actions log output in `gh run view` allows terminal escape sequence injection

CVE Feed · CVE Feed · 2026-05-15 16:16 UTC

CVE ID :CVE-2026-45803 Published : May 15, 2026, 4:16 p.m. | 2 hours, 35 minutes ago Description :`gh` is GitHub’s official command line tool. From 1.6.0 to before 2.92.0, a security vulnera...

CVE-2026-45773 - Turborepo: Login callback CSRF/session fixation

CVE Feed · CVE Feed · 2026-05-15 16:16 UTC

CVE ID :CVE-2026-45773 Published : May 15, 2026, 4:16 p.m. | 2 hours, 35 minutes ago Description :Turborepo is a high-performance build system for JavaScript and TypeScript codebases. Prior ...

CVE-2026-35194 - Apache Flink: Remote code execution via SQL injection in code generation

CVE Feed · CVE Feed · 2026-05-15 16:16 UTC

CVE ID :CVE-2026-35194 Published : May 15, 2026, 4:16 p.m. | 1 hour ago Description :Code injection in SQL code generation in Apache Flink 1.15.0 through 1.20.x and 2.0.0 through 2.x allows ...

CVE-2026-2031 - Google Cloud Application Integration: Exposed internal APIs allow Information Disclosure and Remote Code Execution.

CVE Feed · CVE Feed · 2026-05-15 16:16 UTC

CVE ID :CVE-2026-2031 Published : May 15, 2026, 4:16 p.m. | 1 hour ago Description :An Improper Access Control vulnerability in several internal API endpoints for Google Cloud Application In...

CVE-2026-45772 - Turborepo: Unexpected local code execution during Yarn Berry detection

CVE Feed · CVE Feed · 2026-05-15 16:16 UTC

CVE ID :CVE-2026-45772 Published : May 15, 2026, 4:16 p.m. | 2 hours, 35 minutes ago Description :Turborepo is a high-performance build system for JavaScript and TypeScript codebases. From 1...

SecWiki News 2026-05-15 Review

SecWiki · SecWiki · 2026-05-15 15:58 UTC

今日暂未更新资讯~更多最新文章,请访问SecWiki

Avada Builder WordPress plugin flaws allow site credential theft

BleepingComputer · Bill Toulas · 2026-05-15 15:56 UTC

Two vulnerabilities in the Avada Builder plugin for WordPress, with an estimated one million active installations, allow hackers to read arbitrary files and extract sensitive information from the data...

Security

На Pwn2Own Berlin показали взлом Windows 11 и Microsoft Edge

Xakep · Мария Нефёдова · 2026-05-15 15:30 UTC

В Берлине стартовало соревнование Pwn2Own Berlin 2026, посвященное взлому корпоративных технологий и ИИ. В первый день исследователи заработали 523 000 долларов США, продемонстрировав 24 уникальных 0-...

Новости0dayEdgePwn2OwnPwn2Own Berlin

Android 16 VPN Bypass Lets Apps Reveal Users’ Real IP Address

CyberPress · AnuPriya · 2026-05-15 15:27 UTC

A critical security flaw discovered in Android 16 allows malicious apps to leak a user’s real IP address even when “Always-On VPN” and “Block connections without VPN” are...

AndroidCyber Security NewsCybersecurity

CVE-2026-8669 - Imager versions through 1.030 for Perl allow a heap out of bounds (OOB) write on crafted multi-frame GIF files

CVE Feed · CVE Feed · 2026-05-15 15:16 UTC

CVE ID :CVE-2026-8669 Published : May 15, 2026, 3:16 p.m. | 1 hour, 34 minutes ago Description :Imager versions through 1.030 for Perl allow a heap out of bounds (OOB) write on crafted multi...

CVE-2026-46483 - Vim: Command injection in tar#Vimuntar via missing shellescape {special} flag

CVE Feed · CVE Feed · 2026-05-15 15:16 UTC

CVE ID :CVE-2026-46483 Published : May 15, 2026, 3:16 p.m. | 1 hour, 34 minutes ago Description :Vim is an open source, command line text editor. Prior to 9.2.0479, a command injection vulne...

CVE-2026-45736 - ws: Uninitialized memory disclosure

CVE Feed · CVE Feed · 2026-05-15 15:16 UTC

CVE ID :CVE-2026-45736 Published : May 15, 2026, 3:16 p.m. | 1 hour, 34 minutes ago Description :ws is an open source WebSocket client and server for Node.js. Prior to 8.20.1, the websocket....

CVE-2026-39054 - Pamirs Oinone Command Injection Vulnerability

CVE Feed · CVE Feed · 2026-05-15 15:16 UTC

CVE ID :CVE-2026-39054 Published : May 15, 2026, 3:16 p.m. | 1 hour, 34 minutes ago Description :Oinone Pamirs 7.0.0 contains a command injection vulnerability in CommandHelper.executeComman...

CVE-2026-38728 - Nodemailer SMTP Denial of Service Vulnerability

CVE Feed · CVE Feed · 2026-05-15 15:16 UTC

CVE ID :CVE-2026-38728 Published : May 15, 2026, 3:16 p.m. | 1 hour, 34 minutes ago Description :An issue in Nodemailer smtp_server before v.3.18.3 allows a remote attacker to cause a denial...

CVE-2026-34253 - Vorbis-tools Ogg123 Buffer Underflow Vulnerability

CVE Feed · CVE Feed · 2026-05-15 15:16 UTC

CVE ID :CVE-2026-34253 Published : May 15, 2026, 3:16 p.m. | 1 hour, 34 minutes ago Description :A buffer underflow vulnerability has been identified in the ogg123 utility from the vorbis-to...

CVE-2025-67437 - MedicarePlus Password Reset Privilege Escalation

CVE Feed · CVE Feed · 2026-05-15 15:16 UTC

CVE ID :CVE-2025-67437 Published : May 15, 2026, 3:16 p.m. | 1 hour, 34 minutes ago Description :Medical Management System a81df1ce700a9662cb136b27af47f4cbde64156b is vulnerable to Insecure ...

CVE-2025-14972 - Insufficient DPA countermeasure reseeding

CVE Feed · CVE Feed · 2026-05-15 15:16 UTC

CVE ID :CVE-2025-14972 Published : May 15, 2026, 3:16 p.m. | 1 hour, 34 minutes ago Description :* Countermeasures for DPA within SYMCRYPTO engine on SixG301xxx devices are not sufficiently...

最近NGINX漏洞编译了个最新的angie 1.11.5修复

52Pojie · chmod · 2026-05-15 15:16 UTC
『精品软件区』

台州市中考志愿模拟录取工具 V2026

52Pojie · 风子是我 · 2026-05-15 15:04 UTC

在这个版块中看到有人发了个【广州市】中考志愿模拟填报判定录取工具 V2026,刚好我也有朋友需要,广州的这个不太适合我们这里,并且没有源码,下载下来的表格没有表头,搞不清楚里面的含义,于时我自己试着写了一个html ...

『原创发布区』

Конференция «Периметр» пройдет в Москве 22 мая

Xakep · Мария Нефёдова · 2026-05-15 15:00 UTC

22 мая 2026 года в Москве состоится бесплатная конференция «Периметр», посвященная наступательной информационной безопасности и ориентированная на тех, кто привык не только читать отчеты, но и писать ...

РекламаАнонсКонференцииНовостиПериметр

[PC端] GDI绘制时钟-易语言

52Pojie · 跌宕起伏 · 2026-05-15 14:56 UTC

写了一个玩具 [GDI绘制时钟] 没啥介绍的 ,就是个玩具 娱乐娱乐就行 对了,那个GDI绘制模块 好像可以写透视外挂[反正我不知道怎么写外挂,求教] 源码及下载:https://www.lanzoux.com/iFY9t3pj893i

『精品软件区』

In Other News: Big Tech vs Canada Encryption Bill, Cisco’s Free AI Security Spec, Audi App Flaws

SecurityWeek · SecurityWeek News · 2026-05-15 14:52 UTC

Other noteworthy stories that might have slipped under the radar: Nvidia cloud gaming data breach, Android 17 security upgrades, FBI warning after ShinyHunters hacks Canvas. The post In Other News: Bi...

Artificial IntelligenceGovernmentMalware & ThreatsIn Other News

Microsoft backpedals: Edge to stop loading passwords into memory

BleepingComputer · Sergiu Gatlan · 2026-05-15 14:49 UTC

Microsoft is updating the Edge web browser to ensure it no longer loads saved passwords into process memory in clear text at startup after previously stating it was "by design." [...]

MicrosoftSecurity

LUKS 全盘解密实战笔记:内存提取主密钥 + 离线挂载

52Pojie · Vvvvvoid · 2026-05-15 14:47 UTC

[md] # LUKS 全盘解密实战笔记:内存提取主密钥 + 离线挂载 > **免责声明**:本文仅供学习计算机取证与安全防御技术,请勿用于非法用途。理解 LUKS 的弱点,才能更好地设计防御措施(如使用 TPM、避免内存长时间存 ...

『脱壳破解区』

RaccoonLine Publishes Analysis of VPN Data Disclosure Risks and the Shift Toward Decentralized Routing

Latest Hacking News · CyberNewswire · 2026-05-15 14:36 UTC

Rome, Italy, 15th May 2026, CyberNewswire RaccoonLine Publishes Analysis of VPN Data Disclosure Risks and the Shift Toward Decentralized Routing on Latest Hacking News | Cyber Security News, Hacking T...

Latest Cyber Security News | Network Security HackingNews

Анатомия реестра Windows[2] - структура CMHIVE в памяти

Codeby · Marylin · 2026-05-15 14:35 UTC

Gremlin Stealer Evolves into Modular Threat with Advanced Evasion Capabilities

Infosecurity Magazine · Infosecurity Magazine · 2026-05-15 14:19 UTC

A new Gremlin stealer variant has evolved into a modular toolkit with advanced evasion and data theft capabilities, according to new Unit 42 research

CVE-2026-46333 - ptrace: slightly saner 'get_dumpable()' logic

CVE Feed · CVE Feed · 2026-05-15 14:16 UTC

CVE ID :CVE-2026-46333 Published : May 15, 2026, 2:16 p.m. | 58 minutes ago Description :In the Linux kernel, the following vulnerability has been resolved: ptrace: slightly saner 'get_dump...

Cisco zero-day under ongoing attack by persistent threat group

CyberScoop · Matt Kapko · 2026-05-15 14:11 UTC

The threat group behind the attacks is also linked to a series of recently disclosed vulnerabilities in the vendor’s firewalls and SD-WAN systems. The post Cisco zero-day under ongoing attack by persi...

CybersecurityResearchThreatsCISACisco

Identity-based атаки: как атакующие используют легитимные учётные записи и как их детектировать

Codeby · Сергей Попов · 2026-05-15 14:10 UTC

Inside the REMUS Infostealer: Session Theft, MaaS, and Rapid Evolution

BleepingComputer · Sponsored by Flare · 2026-05-15 14:02 UTC

Stolen browser sessions and authentication tokens are becoming more valuable than stolen passwords. Flare explains how the REMUS infostealer evolved around session theft and operational scalability. [...

Security

Raising the bar: Quality, shared responsibility, and the future of GitHub’s bug bounty program

GitHub Security · Natalie Guevara · 2026-05-15 14:00 UTC

We're updating our bug bounty program standards to prioritize quality submissions, clarify shared responsibility boundaries, and evolve how we reward low-risk findings. The post Raising the bar: Quali...

Securitybug bountysecurity research

Microsoft security advisory (AV26-473)

Canadian Cyber Centre · Canadian Centre for Cyber Security · 2026-05-15 13:42 UTC

Serial number: AV26-473Date: May 15, 2026 On May 14, 2026, Microsoft published a security advisory to address a critical vulnerability in the following products: Microsoft Exchange Server 2016 on p...

VMware Fusion Vulnerability Lets Attackers Escalate Privileges to Root

CyberPress · AnuPriya · 2026-05-15 13:35 UTC

A newly disclosed vulnerability in VMware Fusion is raising alarms across the cybersecurity community, as it allows attackers to escalate privileges to root on affected systems, effectively granting f...

Cyber Security NewsCybersecurityVulnerability

Four OpenClaw Flaws Enable Data Theft, Privilege Escalation, and Persistence

The Hacker News · Ravie Lakshmanan · 2026-05-15 13:35 UTC

Cybersecurity researchers have disclosed a set of four security flaws in OpenClaw that could be chained to achieve data theft, privilege escalation, and persistence. The vulnerabilities, collectiv...

Гора с секретами. Скрываем процессы в Linux c помощью mount

Xakep · cu63 · 2026-05-15 13:30 UTC

Для подписчиковСокрытие процессов — классическая задача для малвари. Обычно это территория руткитов: LKM-модули, перехват syscall-таблицы, подмена обработчиков в /proc. Все это требует загрузки кода в...

ВзломLinuxВирусыВыбор редактораМалварь

下载一个优 酷视频

52Pojie · 张大发 · 2026-05-15 13:27 UTC

麻烦帮忙下载一个优 酷视频,不是VIP,就是正常视频,可以正常播放完,浏览器扩展上下载不太方便(我不会合并),应该是M3U8类,需要完整视频,然后给个网盘链接我(最好是百度网盘),谢谢! 视频网址:https://v.youku.com/v_show/id_XMzYxMjA1MTg1Ng==.html?

『悬赏问答区』

Gunra Ransomware Expands RaaS After Conti Locker Shift

GBHackers · GBHackers · 2026-05-15 13:23 UTC

Gunra ransomware is rapidly evolving into a more structured and dangerous cybercrime operation after shifting from a Conti-based locker to its own Ransomware-as-a-Service (RaaS) model. First discovere...

cyber securityCyber Security NewsRansomware

CVE-2026-7182 - Path Traversal in Diagram

CVE Feed · CVE Feed · 2026-05-15 13:16 UTC

CVE ID :CVE-2026-7182 Published : May 15, 2026, 1:16 p.m. | 1 hour, 59 minutes ago Description :Diagram's export module is vulnerable to Path Traversal in src attribute due to lack of HTML s...

CVE-2026-41553 - Remote Code Execution in PDF Export Module

CVE Feed · CVE Feed · 2026-05-15 13:16 UTC

CVE ID :CVE-2026-41553 Published : May 15, 2026, 1:16 p.m. | 1 hour, 59 minutes ago Description :PDF Export Module used in DHTMLX's products Gantt and Scheduler is vulnerable to Remote Code ...

CISA orders all federal agencies to patch exploited bug in Cisco SD-WAN systems by Sunday

The Record · The Record · 2026-05-15 13:16 UTC

Cisco released a patch for the vulnerability on Thursday, writing in an advisory that it could “allow an unauthenticated, remote attacker to bypass authentication and obtain administrative privileges ...

CybercrimeGovernmentMalwareNews

Google Project Zero Reveals Zero-Click Exploit Chain for Pixel 10

CyberPress · AnuPriya · 2026-05-15 13:14 UTC

Google Project Zero researchers have uncovered a full zero-click exploit chain targeting Pixel 10 devices, demonstrating how a remote audio decoding bug can escalate all the way to complete kernel con...

Cyber Security NewsCybersecurityVulnerability

123转到不需注册登录的地方

52Pojie · 人民不答应 · 2026-05-15 13:13 UTC
『悬赏问答区』

AL26-012 - Critical vulnerability affecting Cisco Catalyst SD-WAN - CVE-2026-20182

Canadian Cyber Centre · Canadian Centre for Cyber Security · 2026-05-15 13:03 UTC

Number: AL26-012Date: May 15, 2026 Audience This Alert is intended for IT professionals and managers. Purpose An Alert is used to raise awareness of a recently identified cyber threat that may imp...

Living Off the Pipeline: Defending Against CI/CD Subversion

SentinelOne · SentinelOne · 2026-05-15 13:00 UTC

Learn how adversaries weaponize CI/CD pipelines and how continuous behavioral monitoring helps protect against software supply chain attacks.

CompanyCI/CDshift-leftsoftware supply chainSupply Chain Attack

The Good, the Bad and the Ugly in Cybersecurity – Week 20

SentinelOne · SentinelOne · 2026-05-15 13:00 UTC

Police dismantle dark web markets, threat actors weaponize AI for zero-day exploits, and ShinyHunters extorts an edutech giant via XSS flaws.

Companycybercyber newsweekly

VMware Workstation Pro 26H1 25388281 简体中文汉化版&简体中文语言包

52Pojie · 映梓 · 2026-05-15 12:54 UTC

VMware Workstation Pro 26H1 25388281 简体中文汉化版&简体中文语言包 官方版本下载(英文版 // 26H1) https://files06.tchspt.com/down/VMware-Workstation-Full-26H1-25388281.exe 官方英文版极速云下载链 ...

『逆向资源区』

PraisonAI Vulnerability Exploited Hours After Public Disclosure

CyberPress · AnuPriya · 2026-05-15 12:49 UTC

A high-severity authentication bypass in PraisonAI is drawing urgent attention after security researchers observed active exploitation attempts within hours of public disclosure a stark reminder of ho...

Cyber Security NewsCybersecurityVulnerability

VMware Fusion Flaw Could Allow Attackers to Gain Root Privileges

GBHackers · GBHackers · 2026-05-15 12:47 UTC

A newly disclosed vulnerability in VMware Fusion has raised serious security concerns after researchers confirmed it could allow attackers to escalate privileges to root on affected systems. The flaw,...

CVE/vulnerabilityCyber Security NewsVulnerability

吾爱首发,2026元气壁纸 Carck,支持最新版

52Pojie · JinFυ · 2026-05-15 12:46 UTC

2025年旧版已经失效,原因为官方检测到窗口被关闭或者隐藏直接会退出,此版本解决了这个问题,支持最新版。 免CB下载:https://wwbhp.lanzoul.com/iBTvF3pitvmj

『原创发布区』

Attackers replaced JDownloader installer downloads with malware

Malwarebytes Labs · Malwarebytes Labs · 2026-05-15 12:45 UTC

The JDownloader website was compromised and installer download links served malware for several days.

News compromised website JDownloader rat

Google lets Workspace admins apply one policy across all SAML apps

Help Net Security · Sinisa Markovic · 2026-05-15 12:44 UTC

Google has updated Context-Aware Access (CAA) in Google Workspace to introduce a default policy assignment for SAML applications. SAML applications are third-party or internal applications that use th...

NewsGoogleGoogle WorkspaceSSOupdate

Cisco patches another actively exploited SD-WAN zero-day (CVE-2026-20182)

Help Net Security · Zeljka Zorz · 2026-05-15 12:43 UTC

Cisco has patched yet another Catalyst SD-WAN Controller authentication bypass vulnerability (CVE-2026-20182) that has been exploited as a zero-day by “a highly sophisticated cyber threat actor&...

Don't missHot stuffNews0-dayAPT

Shai-Hulud Worm Steals Dev Secrets Across npm, GitHub, AWS & Kubernetes

GBHackers · GBHackers · 2026-05-15 12:39 UTC

Shai-Hulud is a major cybersecurity threat targeting the open-source software supply chain. Security researchers are raising alarms over “Shai-Hulud,” a self-propagating npm worm designed to steal sen...

AWScyber securityCyber Security NewsGitHub

Microsoft Reports Severe Zero-Day Flaw in On-Prem Exchange Servers

Infosecurity Magazine · Infosecurity Magazine · 2026-05-15 12:35 UTC

The zero-day vulnerability affects on-premises installations for all versions of Exchange Server 2016, 2019 and Subscription Edition

Meta’s confusing new approach to chat privacy

Malwarebytes Labs · Malwarebytes Labs · 2026-05-15 12:34 UTC

WhatsApp now offers disappearing AI chats Meta says it cannot read. While Instagram just removed the feature that stopped Meta reading your messages.

AINewsPrivacy E2EE Instagram

Уязвимость в NGINX 18-летней давности приводит к удаленному выполнению кода

Xakep · Мария Нефёдова · 2026-05-15 12:30 UTC

Исследователи из компании DepthFirst AI обнаружили в NGINX критическую уязвимость CVE-2026-42945, набравшую 9,2 балла по шкале CVSS. Проблема затрагивает все версии NGINX от 0.6.27 до 1.30.0 и существ...

НовостиNgnixПатчиУязвимости

Microsoft to automatically roll back faulty Windows drivers

BleepingComputer · Sergiu Gatlan · 2026-05-15 12:29 UTC

Microsoft is introducing a new capability that will allow it to remotely roll back problematic Windows drivers delivered through Windows Update. [...]

Microsoft

Microsoft Edge, Windows 11, and LiteLLM Hacked at Pwn2Own Berlin 2026

CyberPress · AnuPriya · 2026-05-15 12:28 UTC

Top ethical hackers wasted no time breaking into modern software and AI platforms at Pwn2Own Berlin 2026, exposing critical zero-day vulnerabilities across Microsoft Edge, Windows 11, LiteLLM, and NVI...

Cyber Security NewsCybersecurityMicrosoftWindows

CVE-2026-8503 - Apache::Session::Generate::SHA256 versions before 1.3.19 for Perl create insecure session ids

CVE Feed · CVE Feed · 2026-05-15 12:17 UTC

CVE ID :CVE-2026-8503 Published : May 15, 2026, 12:17 p.m. | 2 hours, 58 minutes ago Description :Apache::Session::Generate::SHA256 versions before 1.3.19 for Perl create insecure session id...

CVE-2026-8454 - Imager::File::GIF versions through 1.002 for Perl allow a heap out of bounds (OOB) write on crafted multi-frame GIF files

CVE Feed · CVE Feed · 2026-05-15 12:17 UTC

CVE ID :CVE-2026-8454 Published : May 15, 2026, 12:17 p.m. | 57 minutes ago Description :Imager::File::GIF versions through 1.002 for Perl allow a heap out of bounds (OOB) write on crafted m...

Google Project Zero Details Pixel 10 Zero-Click Exploit Chain

GBHackers · GBHackers · 2026-05-15 12:11 UTC

A powerful zero-click exploit chain for the Pixel 10 that can take an attacker from a remote Dolby decoding bug to full kernel control through a single vulnerable video processing driver. The work sho...

Cyber Security NewsGoogleMobile Attacks

Hackers Exploit OAuth Device Flow to Steal Microsoft 365 Tokens

GBHackers · GBHackers · 2026-05-15 12:09 UTC

Hackers are rapidly weaponizing a little-known Microsoft authentication feature to hijack enterprise accounts, as device code phishing surges across the threat landscape. The spike in activity is clos...

cyber securityCyber Security NewsMicrosoft

Microsoft Warns of Exchange Server Zero-Day Exploited in the Wild

SecurityWeek · Eduard Kovacs · 2026-05-15 12:06 UTC

Microsoft has shared mitigations for CVE-2026-42897 until a permanent patch can be released for affected Exchange Server versions. The post Microsoft Warns of Exchange Server Zero-Day Exploited in the...

Email SecurityVulnerabilitiesExchangeexploitedMicrosoft Exchange

Thinking carefully before adopting agentic AI

UK NCSC · UK NCSC · 2026-05-15 12:00 UTC

When it comes to using agentic AI, make sure you can walk before you run.

CISA Adds One Known Exploited Vulnerability to Catalog

CISA Advisories · CISA · 2026-05-15 12:00 UTC

CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-42897 Microsoft Exchange Server Cross-Site Scripting Vuln...

Cyber Pioneers Ponder Past as Prologue

Dark Reading · Kelly Jackson Higgins, Becky Bracken · 2026-05-15 12:00 UTC

Robert "RSnake" Hansen, Katie Moussouris, Rich Mogull, Richard Stiennon, and Bruce Schneier reflect on how their favorite columns penned for Dark Reading over the past 20 years have stood the test of ...

Microsoft: rilevato sfruttamento attivo della CVE-2026-41615 - Agenzia per la Cybersicurezza Nazionale - ACN

Italy ACN via Google News · Italy ACN via Google News · 2026-05-15 11:58 UTC

Microsoft: rilevato sfruttamento attivo della CVE-2026-41615 Agenzia per la Cybersicurezza Nazionale - ACN

PraisonAI Vulnerability Actively Exploited Within Hours of Being Made Public

GBHackers · GBHackers · 2026-05-15 11:57 UTC

A high-severity vulnerability in PraisonAI is drawing urgent attention after security researchers observed exploitation attempts within hours of public disclosure. The flaw, tracked as CVE-2026-44338 ...

CVE/vulnerabilityCyber Security NewsVulnerability

Vulnerabilities in DHTMLX software

CERT Poland · CERT Polska · 2026-05-15 11:55 UTC

CERT Polska has received a report about 3 vulnerabilities (CVE-2026-7182, CVE-2026-41552 and CVE-2026-41553) found in DHTMLX software.

CVEvulnerabilitywarningcve

Exploited Exchange Server flaw turns OWA inboxes into script launchpads

The Register · The Register · 2026-05-15 11:51 UTC

Microsoft mitigation may bork inline images, calendar printing while admins wait for a proper patch

on-prem

Amazon Redshift JDBC Driver Flaws Enable Remote Code Execution

CyberPress · AnuPriya · 2026-05-15 11:38 UTC

Amazon Redshift users are facing a serious security risk after researchers uncovered a high-severity vulnerability that could allow attackers to execute arbitrary code on affected systems. The flaw, t...

Cyber Security News

人工桌面 v2.2.1.4

52Pojie · 百里吟风 · 2026-05-15 11:25 UTC

《人工桌面》是上海米哈游旗下的一款动态桌面软件,以高人气的虚拟偶像“yoyo鹿鸣”为核心。通过实时渲染技术,将高精度的3D角色带到你的电脑或手机桌面。 核心亮点: 极致画质 采用UE4引擎,画质媲美预渲染CG, ...

『精品软件区』

Indian Uber rival Rapido raises $240M at $3B valuation

TechCrunch · Jagmeet Singh · 2026-05-15 11:24 UTC

Rapido has driven its growth by enabling ride-hailing for lower-cost and more flexible modes of transport such as motorbikes and autorickshaws.

FundraisingTransportationOlaRapidoride-hailing apps

[Перевод] В логах Kibana лежат тест-кейсы. Вот CLI, чтобы их достать. С auth, заскрабленным по умолчанию

Habr InfoSec · golikovichev · 2026-05-15 11:23 UTC

Каждый спринт мы экспортируем JSON из Kibana, листаем сотни записей и говорим себе, что потом превратим их в тест-кейсы, но потом никогда не наступает.Логи содержат реальные API-вызовы. Настоящие endp...

qa testingpythonopen sourcelogging

Комплексный подход к корпоративной кибербезопасности. Разговор с директором UserGate uFactor Дмитрием Шулининым

Habr InfoSec · Lexx_Nimofff · 2026-05-15 11:17 UTC

Привет, Хабр! Находясь на конференции UserGate Conf, я думал: а с кем бы поговорить на тему современных киберугроз и построения эффективной защиты. Поэтому выбор пал на человека, кто каждый день сталк...

socusergateкибербезопасность

Akamai to acquire LayerX for $205 million

Help Net Security · Industry News · 2026-05-15 11:17 UTC

Akamai has entered into a definitive agreement to acquire LayerX, a provider of browser-based AI usage control and secure enterprise browser (SEB) technology. LayerX’s solutions will extend Akamai’s p...

Industry newsAkamaiLayerX

CERT-SE:s veckobrev v.20

CERT Sweden · CERT-SE · 2026-05-15 11:15 UTC

Denna vecka vill vi tipsa om att vi har publicerat enkla och korta ”Tabletop”-övningar för hantering av utpressningsangrepp, överbelastningsangrepp och nätfiske. Du hittar övningarna här: https://www....

Multiple cPanel Bugs Allow Access to Critical System Resources

CyberPress · AnuPriya · 2026-05-15 11:12 UTC

A wave of critical security flaws in cPanel & WHM is putting millions of hosted websites at risk, and at least one vulnerability is already being weaponized in the wild before patches were even releas...

Cyber Security NewsCybersecurityVulnerability

American Lending Center Data Breach Affects 123,000 Individuals

SecurityWeek · Eduard Kovacs · 2026-05-15 11:06 UTC

The non-bank lender discovered a ransomware attack nearly one year ago, but only recently completed its investigation. The post American Lending Center Data Breach Affects 123,000 Individuals appeared...

Data BreachesRansomwareALCAmerican Lending Centerdata breach

Bypassing On-Camera Age-Verification Checks

Bruce Schneier · Bruce Schneier · 2026-05-15 11:06 UTC

Some AI-based video age-verification checks can be fooled with a fake mustache.

OpenClaw 曝出四大漏洞可导致数据窃取、权限提升与持久化攻击

FreeBuf · FreeBuf · 2026-05-15 11:05 UTC

OpenClaw四大漏洞可致数据窃取、权限提升与持久化攻击,速修复!

数据安全

Centris 2 Folding Ebike Review: Compact, Sturdy, Budget-Friendly

Feed: All Latest · Maggie Slepian · 2026-05-15 11:02 UTC

The budget-friendly Centris 2 ebike can fit the back seat of a car and has narrow handlebars for miles of easy riding—until it needs a recharge, that is.

GearGear / ReviewsGear / Products / Outdoor

The perfect commuter bike? Velotric's Discover 3 makes its case.

Ars Technica · John Timmer · 2026-05-15 11:00 UTC

A customized mid-motor and Shimano's new Cues components are a winning combination.

CarsFeaturescommute bikee-bikeShimano

Build a Radio Wave Detector With Balls of Aluminum Foil!

Feed: All Latest · Rhett Allain · 2026-05-15 11:00 UTC

Here’s how you can hack together a radio transmitter and receiver out of stuff you have at home—and explore the weirdness of wireless.

ScienceScience / Physics and Math

What 45 Days of Watching Your Own Tools Will Tell You About Your Real Attack Surface

The Hacker News · Unknown · 2026-05-15 11:00 UTC

In Your Biggest Security Risk Isn't Malware — It's What You Already Trust, we made a simple argument: the most dangerous activity inside most organizations no longer looks like an attack. It looks lik...

Vulnerability in SzafirHost software

CERT Poland · CERT Polska · 2026-05-15 10:55 UTC

Unrestricted Upload of File with Dangerous Type vulnerability (CVE-2026-44088) has been found in SzafirHost software.

CVEvulnerabilitywarningcve

Vulnerabilidad en Microsoft Exchange Server LOCAL explotada mediante un correo electrónico manipulado

Segu-Info · SeguInfo · 2026-05-15 10:54 UTC

Microsoft ha revelado una nueva vulnerabilidad de seguridad que afecta a las versiones locales de Exchange Server y que, según la compañía, está siendo explotada activamente. La vulnerabilid...

TanStack Supply Chain Attack Hits Two OpenAI Employee Devices, Forces macOS Updates

The Hacker News · Ravie Lakshmanan · 2026-05-15 10:54 UTC

OpenAI has disclosed that two of its employee devices in its corporate environment were impacted via the Mini Shai-Hulud supply chain attack on TanStack, but noted that no user data, production system...

无需下载!钉钉加密文件可在线“解密预览”

NSFOCUS · NSFOCUS · 2026-05-15 10:51 UTC

如今钉钉已成为企业日常办公、协同沟通的主流工具,很多用户在钉钉聊天中传输各类办公文件。而对于其中的加密文件,用Read More

安全分享技术产品

Thieves unlock stolen iPhones using cheap tools sold on Telegram

Help Net Security · Sinisa Markovic · 2026-05-15 10:50 UTC

Helping a friend recover a stolen phone, Infoblox researchers uncovered a thriving Telegram-based underground marketplace selling unlocking tools and phishing infrastructure used to monetize stolen iP...

NewsApplecybercrimeInfobloxiPhone

OrBit Rootkit Targets Linux to Steal SSH and Sudo Credentials

GBHackers · GBHackers · 2026-05-15 10:49 UTC

Hackers are continuing to abuse a stealthy Linux rootkit known as OrBit to harvest SSH and sudo credentials, with new research showing the threat has quietly evolved over four years while remaining ac...

cyber securityCyber Security NewsLinux

79 Chrome Vulnerabilities Patched, Including 14 Critical Flaws – Update Now

CyberPress · AnuPriya · 2026-05-15 10:49 UTC

Google has released a major Chrome security update, fixing 79 vulnerabilities in its Stable channel, including 14 critical flaws that could allow attackers to execute arbitrary code or crash systems. ...

Cyber Security NewsCybersecurityGoogleVulnerability

Rilevato sfruttamento di vulnerabilità in prodotti Cisco - Agenzia per la Cybersicurezza Nazionale - ACN

Italy ACN via Google News · Italy ACN via Google News · 2026-05-15 10:42 UTC

Rilevato sfruttamento di vulnerabilità in prodotti Cisco Agenzia per la Cybersicurezza Nazionale - ACN

Ghostwriter group resumes attacks on Ukrainian Government targets

Security Affairs · Pierluigi Paganini · 2026-05-15 10:36 UTC

ESET uncovered new Ghostwriter (aka FrostyNeighbor) activity targeting Ukrainian government organizations in a campaign active since March 2026. ESET researchers published a new report documenting fre...

APTBreaking NewsCyber warfareHackingIntelligence

The 5 Best Outdoor Griddles and Flat Top Grills (2026)

Feed: All Latest · Matthew Korfhage · 2026-05-15 10:32 UTC

A big backyard griddle can change a summer. I made dozens of tacos, burgers, and pancakes to find the best setup.

GearGear / Buying GuidesGear / Products / HomeGear / Products / Outdoor

CalPhishing Scam Uses EvilTokens Kit, Outlook Invites to Steal M365 Sessions

HackRead · Deeba Ahmed · 2026-05-15 10:30 UTC

Hackers are exploiting Outlook calendar invites and device code phishing to steal M365 session tokens, bypass MFA and breach enterprise accounts.

SecurityPhishing ScamScams and FraudCalPhishingCyber Attack

Код червя Shai-Hulud опубликовали на GitHub

Xakep · Мария Нефёдова · 2026-05-15 10:30 UTC

Новая волна атак малвари Shai-Hulud затронула сотни пакетов в npm и PyPI. Хакеры из группировки TeamPCP скомпрометировали популярные проекты, включая TanStack и Mistral AI, встроили в них стилер для к...

НовостиMalwareMistral AIShai-HuludTanStack

Claude Code's product lead talks usage limits, transparency, and the "lean harness"

Ars Technica · Samuel Axon · 2026-05-15 10:30 UTC

"We have no grand plan," says Anthropic's Cat Wu—but that's by design.

AIagentic AIAnthropicCat WuClaude

Trump's Federal Gas Tax Holiday Isn't Likely to Bring Down Prices

Feed: All Latest · Molly Taft · 2026-05-15 10:30 UTC

Reducing the fee will only have a marginal impact on prices while depriving the government of revenue to maintain roads.

ScienceScience / Environment

Microsoft Warns HPE Operations Agent Abused in Malware-Free Attacks

GBHackers · GBHackers · 2026-05-15 10:18 UTC

Microsoft has revealed a stealthy intrusion campaign where attackers bypassed traditional malware and exploits, instead abusing trusted enterprise tools to silently infiltrate networks. The technique ...

cyber securityCyber Security NewsMalwareMicrosoft

CVE-2026-41970 - Apache Distributed File System Out-of-Bounds Write Vulnerability

CVE Feed · CVE Feed · 2026-05-15 10:16 UTC

CVE ID :CVE-2026-41970 Published : May 15, 2026, 10:16 a.m. | 4 hours, 58 minutes ago Description :Out-of-bounds write vulnerability in the distributed file system module. Impact: Successful...

CVE-2026-41966 - "Microsoft Smart Sensing Service Authorization Bypass"

CVE Feed · CVE Feed · 2026-05-15 10:16 UTC

CVE ID :CVE-2026-41966 Published : May 15, 2026, 10:16 a.m. | 4 hours, 58 minutes ago Description :Permission control vulnerability in the smart sensing service. Impact: Successful exploitat...

CVE-2026-41965 - Apache Web Server Use-After-Free (UAF) Buffer Overflow

CVE Feed · CVE Feed · 2026-05-15 10:16 UTC

CVE ID :CVE-2026-41965 Published : May 15, 2026, 10:16 a.m. | 4 hours, 58 minutes ago Description :Use-After-Free (UAF) vulnerability in the web. Impact: Successful exploitation of this vuln...

CVE-2026-41969 - Apache Airflow Permission Escalation

CVE Feed · CVE Feed · 2026-05-15 10:16 UTC

CVE ID :CVE-2026-41969 Published : May 15, 2026, 10:16 a.m. | 4 hours, 58 minutes ago Description :Permission control vulnerability in the projection module. Impact: Successful exploitation ...

CVE-2026-41971 - "Apache Security Control Module Permission Bypass"

CVE Feed · CVE Feed · 2026-05-15 10:16 UTC

CVE ID :CVE-2026-41971 Published : May 15, 2026, 10:16 a.m. | 4 hours, 58 minutes ago Description :Permission control vulnerability in the security control module. Impact: Successful exploit...

CVE-2026-41968 - "Qualtrics Design Module Unauthenticated Remote Access Vulnerability"

CVE Feed · CVE Feed · 2026-05-15 10:16 UTC

CVE ID :CVE-2026-41968 Published : May 15, 2026, 10:16 a.m. | 4 hours, 58 minutes ago Description :Permission control vulnerability in the manufacturability design module. Impact: Successful...

CVE-2026-41963 - Media Platform Stack Overflow Vulnerability

CVE Feed · CVE Feed · 2026-05-15 10:16 UTC

CVE ID :CVE-2026-41963 Published : May 15, 2026, 10:16 a.m. | 4 hours, 58 minutes ago Description :Stack overflow vulnerability in the media platform. Impact: Successful exploitation of this...

CVE-2026-41961 - Google Contacts Permission Control Vulnerability

CVE Feed · CVE Feed · 2026-05-15 10:16 UTC

CVE ID :CVE-2026-41961 Published : May 15, 2026, 10:16 a.m. | 4 hours, 58 minutes ago Description :Permission control vulnerability in contacts. Impact: Successful exploitation of this vulne...

CVE-2026-41960 - Apache Kafka Kerberos Authentication Bypass

CVE Feed · CVE Feed · 2026-05-15 10:16 UTC

CVE ID :CVE-2026-41960 Published : May 15, 2026, 10:16 a.m. | 4 hours, 58 minutes ago Description :Permission control vulnerability in calls. Impact: Successful exploitation of this vulnerab...

四步轻松搞定防钓鱼 !CACTER 反钓鱼演练系统迭代上线

4Hou · CACTER邮件安全 · 2026-05-15 10:15 UTC

每天上班打开企业邮箱,总能看到各类陌生邮件:发票报销、福利补贴、奖金申领、系统通知…… 看着像内部正规消息,实则很多都是伪装到位的钓鱼陷阱。员工稍有不慎点击链接、下载附件,就可能造成信息泄露、财务损失,给企业埋下巨大安全隐患。 很多企业管理者都面临这样的难题:员工防钓鱼意识不足、极易误入钓鱼陷阱,传统安全培训枯燥脱离实际,还没法用数据量化防护效果。为此,CACTER 反钓鱼演练系统(PhishSi...

OpenAI caught in TanStack npm supply chain chaos after employee devices compromised

The Register · The Register · 2026-05-15 10:08 UTC

Attackers stole a limited amount of internal credential material after malware hidden in poisoned packages reached two staff machines

security

Cisco Catalyst SD-WAN Controller 0-Day Exploited for Admin Access

CyberPress · AnuPriya · 2026-05-15 10:08 UTC

A maximum-severity zero-day vulnerability in Cisco’s Catalyst SD-WAN platform is being actively exploited in the wild, giving attackers full administrative control over enterprise networks, with...

Cyber Security NewsCybersecurityVulnerability

Top 10 Best Account Takeover Protection Tools in 2026

CyberPress · Varshini · 2026-05-15 10:07 UTC

Account Takeover (ATO) attacks are one of the fastest-growing cyber threats targeting businesses and individuals worldwide. Attackers use automated bots, credential stuffing, phishing, and brute force...

Cyber Security NewsCybersecurityTop 10

Gremlin Stealer's Evolved Tactics: Hiding in Plain Sight With Resource Files

Unit 42 · Pranay Kumar Chhaparwal and Mark Lim · 2026-05-15 10:00 UTC

Unit 42 analyzes the evolution of Gremlin stealer. This variant uses advanced obfuscation, crypto clipping and session hijacking to compromise data. The post Gremlin Stealer's Evolved Tactics: Hi...

MalwareThreat ResearchAPICryptocurrencygremlin stealer

Gremlin Stealer's Evolved Tactics: Hiding in Plain Sight With Resource Files

Unit42 · Pranay Kumar Chhaparwal and Mark Lim · 2026-05-15 10:00 UTC

Unit 42 analyzes the evolution of Gremlin stealer. This variant uses advanced obfuscation, crypto clipping and session hijacking to compromise data. The post Gremlin Stealer's Evolved Tactics: Hi...

MalwareThreat ResearchAPICryptocurrencygremlin stealer

A Woman Was in the US Legally. She Was Deported Anyway

Feed: All Latest · Vittoria Elliott · 2026-05-15 10:00 UTC

María de Jesús Estrada Juárez was applying for her green card and thought she was doing everything right. Instead, she was arrested and deported to Mexico.

Politics

Unpatched Microsoft Exchange Server vulnerability exploited (CVE-2026-42897)

Help Net Security · Zeljka Zorz · 2026-05-15 09:58 UTC

A critical cross-site scripting (XSS) vulnerability (CVE-2026-42897) in Microsoft Exchange Server is being exploited by attackers, Microsoft warned on Thursday. A permanent fix is still in the works. ...

Don't missHot stuffNewsMicrosoftMicrosoft Exchange

Страшно, когда не видно: темные тайны систем виртуализации

Habr InfoSec · ptsecurity (Positive Technologies) · 2026-05-15 09:48 UTC

Привет, Хабр! Меня зовут Данил Зарипов, я эксперт центра безопасности (PT ESC) Positive Technologies. Эту статью мы подготовили вместе с моим коллегой Кириллом Масловым, продуктовым экспертом по напра...

управление уязвимостямиasset managementvmwareмоделирование атакуязвимости

TeamPCP Ups the Game, Releases Shai-Hulud Worm’s Source Code

SecurityWeek · Ionut Arghire · 2026-05-15 09:47 UTC

The hacking group is encouraging miscreants to use the code in supply chain attacks, promising monetary rewards. The post TeamPCP Ups the Game, Releases Shai-Hulud Worm’s Source Code appeared first on...

Malware & ThreatsSupply Chain SecuritymalwareShai-Huludsource code

Rocky Linux launches opt-in security repository for urgent fixes

Help Net Security · Sinisa Markovic · 2026-05-15 09:43 UTC

Rocky Linux has introduced a Security Repository that allows the distribution to ship urgent security fixes ahead of upstream Enterprise Linux when public exploit code exists and upstream patches are ...

NewscybersecurityLinuxoperating system

AI Governance по‑инженерному: что должен знать архитектор

Habr InfoSec · sproshchaev (OTUS) · 2026-05-15 09:40 UTC

Представьте: вы запускаете генеративную AI‑фичу в проде. Всё работает как часы. А через месяц получаете иск, потому что ваша модель насоветовала клиентам того, чего не существует в реальных политиках ...

AI Governanceуправление ИИбезопасность AI-системLLMархитектура AI-продукта

Microsoft warns of Exchange zero-day flaw exploited in attacks

BleepingComputer · Sergiu Gatlan · 2026-05-15 09:40 UTC

On Thursday, Microsoft shared mitigations for a high-severity Exchange Server vulnerability exploited in attacks that allow threat actors to execute arbitrary code via cross-site scripting (XSS) while...

MicrosoftSecurity

Ghost Bits 幽灵比特绕过攻击爆发!你的IPS可能已失效

NSFOCUS · NSFOCUS · 2026-05-15 09:33 UTC

网安圈最新高危风险:Ghost Bits(幽灵比特)编码绕过 安全检测环节判定为正常字符,后端执行却变为攻击 Read More

安全分享数智安全

The US Is Using AI to Hunt Down Insider Trading on Polymarket

Feed: All Latest · Kate Knibbs · 2026-05-15 09:30 UTC

CFTC chairman Michael Selig sat down with WIRED to discuss how the agency scours Polymarket and other prediction markets for illegal activity.

BusinessBusiness / Regulation

C盘爆红,想从其他盘扩展空间到C,原生扩展卷无法选择

52Pojie · a95519 · 2026-05-15 09:29 UTC
『悬赏问答区』

国际认可 | 绿盟科技入选Gartner®《网络威胁情报技术魔力象限》远见者象限

NSFOCUS · NSFOCUS · 2026-05-15 09:26 UTC

2026年5月4日,国际知名研究与咨询机构Gartner®发布Gartner® Magic QuadrantTRead More

威胁通告安全分享技术产品

CVE-2026-8425 - Notify Odoo <= 1.0.1 - Cross-Site Request Forgery to Settings Update

CVE Feed · CVE Feed · 2026-05-15 09:16 UTC

CVE ID :CVE-2026-8425 Published : May 15, 2026, 9:16 a.m. | 5 hours, 59 minutes ago Description :The Notify Odoo plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versi...

CVE-2026-7563 - Classified Listing <= 5.3.10 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Modification via add_order_note and send_email_to_user_by_moderator AJAX Actions

CVE Feed · CVE Feed · 2026-05-15 09:16 UTC

CVE ID :CVE-2026-7563 Published : May 15, 2026, 9:16 a.m. | 5 hours, 59 minutes ago Description :The Classified Listing – AI-Powered Classified ads & Business Directory Plugin plugin for Wor...

CVE-2026-8398 - AVB Disc Soft DAEMON Tools Lite Supply Chain Trojanization

CVE Feed · CVE Feed · 2026-05-15 09:16 UTC

CVE ID :CVE-2026-8398 Published : May 15, 2026, 9:16 a.m. | 5 hours, 59 minutes ago Description :A supply chain attack compromised the official installation packages of DAEMON Tools Lite (Wi...

CVE-2026-7046 - NEX-Forms – Ultimate Forms Plugin for WordPress <= 9.1.12 - Authenticated (Administrator+) SQL Injection via 'table' Parameter

CVE Feed · CVE Feed · 2026-05-15 09:16 UTC

CVE ID :CVE-2026-7046 Published : May 15, 2026, 9:16 a.m. | 3 hours, 58 minutes ago Description :The NEX-Forms – Ultimate Forms Plugin for WordPress plugin for WordPress is vulnerable to tim...

CVE-2026-6415 - Advanced Custom Fields: Font Awesome Field <= 5.0.2 - Authenticated (Subscriber+) Stored Cross-Site Scripting via JSON Field

CVE Feed · CVE Feed · 2026-05-15 09:16 UTC

CVE ID :CVE-2026-6415 Published : May 15, 2026, 9:16 a.m. | 3 hours, 58 minutes ago Description :The Advanced Custom Fields: Font Awesome plugin for WordPress is vulnerable to Stored Cross-S...

CVE-2026-5229 - Receive Notifications After Form Submitting – Form Notify for Any Forms <= 1.1.10 - Unauthenticated Authentication Bypass via LINE OAuth Callback

CVE Feed · CVE Feed · 2026-05-15 09:16 UTC

CVE ID :CVE-2026-5229 Published : May 15, 2026, 9:16 a.m. | 3 hours, 58 minutes ago Description :The Form Notify plugin for WordPress is vulnerable to Authentication Bypass in versions up to...

CVE-2026-6403 - Quick Playground <= 1.3.3 - Unauthenticated Path Traversal to Arbitrary File Read via 'stylesheet' Parameter

CVE Feed · CVE Feed · 2026-05-15 09:16 UTC

CVE ID :CVE-2026-6403 Published : May 15, 2026, 9:16 a.m. | 1 hour, 32 minutes ago Description :The Quick Playground plugin for WordPress is vulnerable to Path Traversal in versions up to an...

CVE-2026-6228 - Frontend Admin by DynamiApps <= 3.28.36 - Unauthenticated Privilege Escalation via Edit User Form

CVE Feed · CVE Feed · 2026-05-15 09:16 UTC

CVE ID :CVE-2026-6228 Published : May 15, 2026, 9:16 a.m. | 3 hours, 58 minutes ago Description :The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to Privilege Escalation i...

CVE-2026-4683 - Smartcat Translator for WPML <= 3.1.77 - Missing Authorization to Unauthenticated Plugin Settings Update

CVE Feed · CVE Feed · 2026-05-15 09:16 UTC

CVE ID :CVE-2026-4683 Published : May 15, 2026, 9:16 a.m. | 1 hour, 32 minutes ago Description :The Smartcat Translator for WPML plugin for WordPress is vulnerable to unauthorized modificati...

CVE-2026-44088 - Remote Code Execution in SzafirHost

CVE Feed · CVE Feed · 2026-05-15 09:16 UTC

CVE ID :CVE-2026-44088 Published : May 15, 2026, 9:16 a.m. | 1 hour, 32 minutes ago Description :SzafirHost verifies the signature of the downloaded JAR file using class JarInputStream (read...

[Перевод] Иголка в стоге сена: как LLM помогают искать уязвимости

Habr InfoSec · srzybnev (Бастион) · 2026-05-15 09:10 UTC

За последние несколько недель я отправил довольно много репортов об уязвимостях. Небольшая их часть уже исправлена и раскрыта через бюллетени безопасности. Все они найдены исключительно с помощью LLM,...

aillmanthropicopenaiappsec

Hack the Elephant One Bite at a Time: JPEG-Related Memory-Safety Bugs in PHP

PT SWARM · admin · 2026-05-15 09:09 UTC

PHP is one of the world&#8217;s most popular programming languages. The PHP core itself is rarely perceived as an attack surface — attention usually shifts to frameworks and third-party libraries. How...

UncategorizedWeb Application Security

Microsoft Edge, Windows 11, and LiteLLM Fall to Exploits at Pwn2Own Berlin 2026

GBHackers · GBHackers · 2026-05-15 09:09 UTC

The world’s top ethical hackers wasted no time breaking into modern software and AI systems on the opening day of Pwn2Own Berlin 2026, exposing critical zero-day vulnerabilities in Microsoft Edge, Win...

Cyber Security NewsMicrosoftWindows

Go进阶 IM系统设计与落地,单体到微服务深度剖析

52Pojie · bappyfei · 2026-05-15 09:08 UTC
『悬赏问答区』

桌面时钟工具 TheAeroClock v9.27

52Pojie · naixubao · 2026-05-15 09:06 UTC
『精品软件区』

音视频时长统计工具 v20260515

52Pojie · nide312 · 2026-05-15 09:02 UTC

这是一个在某个文件夹下计算各种音频视频文件总时长的工具,依赖ffmpeg(ffprobe.exe)程序。 网盘下载1:https://down666.lanzoul.com/b01klakdg 提取码:8gg7 ------旧版网盘下载1:https://down666.lanzoul.co ...

『精品软件区』