#gives


New Linux Kernel Flaw Gives ARM64 KVM Guests Read-Write Access to Host Memory

Sep 22, 2026 // 14:42

A new flaw in the Linux kernel’s KVM virtualization code for ARM64 processors can leave a freed piece of host memory exposed to a guest […]

Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs

Jul 23, 2026 // 11:10

RefluXFS, a new Linux kernel flaw disclosed on July 22 and tracked as CVE-2026-64600, lets an unprivileged local user overwrite root-owned files on an XFS […]

New Windows LegacyHive zero-day gives hackers admin privileges

Jul 17, 2026 // 14:36

A security researcher using the “Nightmare Eclipse” handle has released a Windows zero-day exploit dubbed LegacyHive that allows attackers to escalate privileges on up-to-date Windows […]

CISA gives feds 3 days to patch Check Point VPN bug exploited as zero-day

Jun 9, 2026 // 11:36

CISA has ordered U.S. government agencies to secure their Check Point Remote Access VPN and Mobile Access deployments against a critical vulnerability exploited in zero-day […]

New CIFSwitch Linux flaw gives root on multiple distributions

May 30, 2026 // 18:57

A newly discovered local privilege escalation vulnerability dubbed ‘CIFSwitch’ in the Linux kernel could allow attackers to forge CIFS authentication key descriptions, abuse the kernel’s […]

CISA gives feds 4 days to patch actively exploited cPanel plugin flaw

May 27, 2026 // 13:16

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has given U.S. federal agencies four days to secure their servers against a critical vulnerability in the […]

Max severity Cisco Secure Workload flaw gives Site Admin privileges

May 21, 2026 // 17:17

Cisco has released security updates to address a maximum-severity Secure Workload vulnerability that allows attackers to gain Site Admin privileges. Formerly known as Cisco Tetration, […]

New Windows ‘MiniPlasma’ zero-day exploit gives SYSTEM access, PoC released

May 18, 2026 // 10:17

A cybersecurity researcher has released a proof-of-concept exploit for a Windows privilege escalation zero-day dubbed “MiniPlasma” that lets attackers gain SYSTEM privileges on fully patched […]

Windows BitLocker zero-day gives access to protected drives, PoC released

May 13, 2026 // 19:56

A cybersecurity researcher has published proof-of-concept (PoC) exploits for two unpatched Microsoft Windows vulnerabilities named YellowKey and GreenPlasma, which are a BitLocker bypass and a […]

CISA gives feds four days to patch Ivanti flaw exploited as zero-day

May 8, 2026 // 15:16

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has given U.S. federal agencies four days to secure their networks against a high-severity vulnerability in Ivanti […]

1 2 Next