Your Push Notifications Aren’t Safe From the FBI
Plus: Iran’s internet blackout hits the 1,000-hour mark, cryptocurrency scams result in a record amount of money stolen from Americans, and more.
Related Vulnerabilities
- CVE-2026-5466: wolfSSL's ECCSI signature verifier `wc_VerifyEccsiHash` decodes the `r` and `s` scalars from the sig HIGH
- CVE-2026-5525: A stack-based buffer overflow vulnerability exists in Notepad++ version 8.9.3 in the file drop handl MEDIUM
- CVE-2026-4305: The Royal WordPress Backup & Restore Plugin plugin for WordPress is vulnerable to Reflected Cross-Si MEDIUM
- CVE-2026-36236: SourceCodester Engineers Online Portal v1.0 is vulnerable to SQL Injection in update_password.php vi CRITICAL
- CVE-2026-32930: Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, an Insecure Direct Obj HIGH
Related Coverage
Threat Actors