#bypass


Hackers exploit auth bypass flaw in Burst Statistics WordPress plugin

May 15, 2026 // 00:17

Hackers are leveraging a critical authentication bypass vulnerability in the WordPress plugin Burst Statistics to obtain admin-level access to websites. Burst Statistics is a privacy-focused […]

Hackers Used AI to Develop First Known Zero-Day 2FA Bypass for Mass Exploitation

May 12, 2026 // 00:08

Google on Monday disclosed that it identified an unknown threat actor using a zero-day exploit that it said was likely developed with an artificial intelligence […]

Progress Patches Critical MOVEit Automation Bug Enabling Authentication Bypass

May 4, 2026 // 20:28

Progress Software has released updates to address two security flaws in MOVEit Automation, including a critical bug that could result in an authentication bypass. MOVEit […]

Progress warns of critical MOVEit Automation auth bypass flaw

May 4, 2026 // 15:36

Progress Software warned customers to patch a critical authentication bypass vulnerability in its MOVEit Automation enterprise-grade managed file transfer (MFT) application. MOVEit Automation automates complex […]

cPanel, WHM emergency update fixes critical auth bypass bug

Apr 29, 2026 // 18:57

A critical vulnerability affecting all but the latest versions of cPanel and the WebHost Manager (WHM) dashboard could be exploited to obtain access to the […]

Payouts King ransomware uses QEMU VMs to bypass endpoint security

Apr 18, 2026 // 00:38

The Payouts King ransomware is using the QEMU emulator as a reverse SSH backdoor to run hidden virtual machines on compromised systems and bypass endpoint […]

Critical Nginx UI auth bypass flaw now actively exploited in the wild

Apr 16, 2026 // 09:38

A critical vulnerability in Nginx UI with Model Context Protocol (MCP) support is now being exploited in the wild for full server takeover without authentication. […]

Compromised Credentials Bypass MFA; Attackers Still Gain Access.

Apr 9, 2026 // 18:37

The data leak at Figure compromised 967,200 email accounts without relying on any software flaws. Understanding the implications of this, and why typical MFA solutions […]

Docker Flaw (CVE-2026-34040): Authorization Bypass Leads to Host Control.

Apr 7, 2026 // 18:18

A critical flaw has been found in Docker Engine, potentially enabling attackers to bypass security authorization plugins (AuthZ) in certain situations. Identified as CVE-2026-34040 (CVSS […]

TP-Link urges users to fix a serious security hole in routers; authentication bypass is possible.

Mar 25, 2026 // 14:17

TP-Link has issued fixes for several security weaknesses in its Archer NX router products, including a critical one that could allow unauthorized individuals to bypass […]

Previous 1 … 6 7 8 9 Next