#vulnerable


Hacker uses DeepSeek AI to autonomously attack vulnerable servers

Aug 1, 2026 // 00:57

A Chinese-speaking threat actor is using the DeepSeek AI model and the open-source Hermes Agent to conduct autonomous cyberattacks on exposed servers with limited human […]

You Don’t Have to Run an Exploit to Know If You’re Vulnerable

Jul 14, 2026 // 17:16

The timeline that vulnerability management was built on has quietly disappeared. For decades, defenders could count on weeks or months between a flaw becoming public […]

Australia warns of global campaign targeting vulnerable CMS platforms

Jul 12, 2026 // 16:17

The Australian Cyber Security Centre (ACSC) issued an alert about a global exploitation campaign targeting vulnerable content management systems (CMS) and plugins. The government agency […]

Making Vulnerable Drivers Exploitable Without Hardware – The BYOVD Perspective

May 22, 2026 // 14:48

This article provides a technical analysis of how many Windows kernel mode drivers can be interacted with from user mode without the hardware they were […]

Over 10,000 Zimbra servers vulnerable to ongoing XSS attacks

Apr 24, 2026 // 16:37

Over 10,000 Zimbra Collaboration Suite (ZCS) instances exposed online are vulnerable to ongoing attacks exploiting a cross-site scripting (XSS) security flaw, according to nonprofit security organization Shadowserver. […]

Over 1,300 Microsoft SharePoint servers vulnerable to spoofing attacks

Apr 22, 2026 // 10:38

Over 1,300 Microsoft SharePoint servers exposed online remain unpatched against a spoofing vulnerability that was exploited as a zero-day and is still being abused in […]

Cryptomining Botnet Targets 1,000+ Vulnerable ComfyUI Installations.

Apr 7, 2026 // 15:49

A current operation has been detected targeting publicly accessible ComfyUI instances, a well-known platform for stable diffusion, to incorporate them into a botnet for cryptocurrency […]

ShareFile Hacking: Chain flaws for RCE before logging in. Progress ShareFile vulnerable to RCE attack chain.

Apr 2, 2026 // 17:17

A combination of two security weaknesses in Progress ShareFile, a platform for secure file sharing in businesses, can be used to steal files from affected […]

Many F5 BIG-IP APM systems vulnerable to remote code execution; 14,000+ exposed.

Apr 2, 2026 // 11:37

Shadowserver, a nonprofit that monitors internet security threats, has identified more than 14,000 BIG-IP APM installations accessible online amidst active attacks exploiting a critical vulnerability […]

Magento stores heavily targeted: PolyShell exploits hit over half of vulnerable shops.

Mar 26, 2026 // 09:37

Attacks taking advantage of the ‘PolyShell’ security flaw in Magento Open Source and Adobe Commerce version 2 are active, impacting over half of susceptible online […]

Previous 1 3 4 5 6 Next