Security news, decoded.
74 stories in the last 7 days, naming 204 CVEs; 60 of those CVEs are in CISA KEV.
The wire
Monday, Jun 16 stories
- Dark ReadingPatch Now: Another Palo Alto Auth Bypass Bug Under Active ExploitReported exploitedPAN-OS GlobalProtect portal
- The Hacker News
- Rapid7 Blog
- Rapid7 BlogCVE-2026-0826: How an Old Bug Can Feed AI-Powered ImpersonationResearchCVE-2026-0826 (HP Poly VVX/Trio)
- Kaspersky SecurelistContainers on fire: from container escapes to supply chain attacksResearchContainers
- The Hacker NewsCritical WP Maps Pro Flaw Actively Exploited to Create Admin AccountsReported exploitedWP Maps Pro
Saturday, May 301 story
- The Hacker NewsPAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active ExploitationReported exploitedPAN-OS
Friday, May 297 stories
- Rapid7 BlogMetasploit Wrap Up 05/29/2026RoundupMetasploit Framework
- The Hacker News
- Rapid7 Blog
- The Hacker NewsAttackers Use LLM Agent for Post-Exploitation After Marimo CVE-2026-39987 ExploitReported exploitedMarimo
- Bishop FoxLooting UniFi Controllers: Detecting and Weaponizing CVE-2026-22557PatchUniFi Network Application
- Kaspersky SecurelistWhat’s in the container? Analyzing vulnerabilities, risks and protection with Kaspersky Container Security andResearchKaspersky Container Security
- Risky Business NewsDutch police take down giant botnet of 17 million devicesReported exploitedAsocks
Thursday, May 284 stories
- The Hacker NewsThreat Actors Exploit Critical FortiClient EMS Flaw to Deploy Credential StealerReported exploitedFortiClient Endpoint Management Server (EMS)
- The Hacker NewsMicrosoft Slams Public Zero-Day Disclosures Amid GitHub Researcher Account RemovalReported exploitedMicrosoft Defender
- The Hacker NewsThreatsDay Bulletin: Claude Security Plugin, Azure Priv-Esc, Kali365 MFA Bypass, FIFA Scams +15 MoreRoundupAzure Backup for AKS
- Rapid7 Blog
Wednesday, May 274 stories
- Cisco TalosMediaArea heap-based buffer overflow vulnerabilitiesPatchMediaInfoLib
- OX Security
- OX SecurityThe CVE Is Dead. Long live the Mythos Era. - OX SecurityResearchMythos
- Risky Business NewsBadHost vulnerability bypasses authentication on AI infrastructurePatchStarlette (BadHost, CVE-2026-48710)
Tuesday, May 263 stories
- Ars Technica (Security)
- Dark ReadingMicrosoft Issues Out-of-Band SharePoint PatchPatchSharePoint Server
- Check Point ResearchAI Threat Landscape Digest March-April 2026Reported exploitedClaude Code
Monday, May 252 stories
- Check Point Research25th May – Threat Intelligence ReportReported exploitedKali365
- MandiantExploitation of KnowledgeDeliver via ViewState Deserialization VulnerabilityIncidentKnowledgeDeliver
Friday, May 224 stories
- Rapid7 BlogMetasploit Wrap Up 05/22/2026PoC publicCisco Catalyst SD-WAN Controller
- Bishop Fox
- Kaspersky SecurelistCloud Atlas activity in the second half of 2025 and early 2026: new tools and a new payloadReported exploitedVBCloud
- Bishop Fox
Wednesday, May 203 stories
- Qualys Security Blog
- Kaspersky SecurelistHow an image could compromise your Mac: understanding an ExifTool vulnerability (CVE-2026-3102)ResearchExifTool (macOS)
- ESET WeLiveSecurityWebworm: New burrowing techniquesReported exploitedWebworm
Tuesday, May 191 story
- Cisco TalosTP-Link, Photoshop, OpenVPN, Norton VPN vulnerabilitiesReported exploitedTP-Link Archer AX53
Monday, May 183 stories
- Check Point Research18th May – Threat Intelligence ReportReported exploitedLapsus$
- Kaspersky SecurelistIT threat evolution in Q1 2026. Non-mobile statisticsReported exploitedKaspersky products
- Dark Reading
Friday, May 151 story
- Rapid7 BlogMetasploit Wrap-Up 05/15/2026PoC publicMetasploit Framework
Thursday, May 141 story
- Rapid7 Blog