Splunk Enterprise Pre-Auth RCE Under Active Exploitation — Your SIEM Is the Target Now
Summary CVE-2026-20253, a critical unauthenticated remote code execution vulnerability in Splunk Enterprise, is being actively exploited in the wild. The flaw, carrying a CVSS score of 9.8, exists in the…
RoguePlanet — Unpatched Microsoft Defender Zero-Day Grants SYSTEM Access on All Windows 10 and 11
Summary A zero-day privilege escalation vulnerability tracked as CVE-2026-50656, dubbed “RoguePlanet,” has been confirmed in the Microsoft Defender Malware Protection Engine. The race condition flaw allows attackers to escalate privileges…
macOS Gaslight — North Korean Rust Backdoor Uses Prompt Injection to Fool AI Malware Analysts
Summary SentinelLABS has uncovered “macOS.Gaslight,” a sophisticated North Korea-linked Rust-based backdoor that uses a novel defensive technique: embedded prompt injection payloads designed to trick AI-assisted malware analysis tools into aborting…
CISA Warns of Triple CVSS 10.0 Ubiquiti UniFi OS Exploit Chain — Patch Deadline Tomorrow
Summary CISA has added three critical Ubiquiti UniFi OS vulnerabilities to its Known Exploited Vulnerabilities catalog, all carrying the maximum CVSS score of 10.0. The flaws — CVE-2026-34908 (access control…
Klue Supply Chain Attack Compromises Salesforce CRM Data at LastPass, Recorded Future, and Other Security Firms
Summary A supply chain attack targeting Klue, a market intelligence platform, has led to the mass exfiltration of Salesforce CRM data from hundreds of enterprise customers — including several prominent…
IBM Joins OpenAI Daybreak Cyber Partner Program — Bringing Frontier AI Models to Enterprise Application Security
Summary IBM has joined OpenAI’s Daybreak Cyber Partner Program, gaining access to frontier AI models — including GPT-5.5 with Trusted Access for Cyber — to build AI-powered application security services…
Cisco Unified CM SSRF Under Active Exploitation — Attackers Dropping Webshells for Root Access
Summary A high-severity server-side request forgery (SSRF) vulnerability in Cisco Unified Communications Manager (CUCM) and its Session Management Edition — tracked as CVE-2026-20230 (CVSS 8.6) — is now being actively…
n8n MCP Browser Flaw Allows Unauthenticated Hijacking of Real Browser Sessions — Steal Cookies, Execute JS, Exfil Credentials
Summary A critical authentication flaw in n8n’s MCP (Model Context Protocol) browser bridge — tracked as CVE-2026-54309 — allows any network-reachable attacker to establish unauthenticated MCP sessions and take full…
Transformer Co-Inventor Noam Shazeer Leaves Google DeepMind for OpenAI — Biggest AI Talent Move of 2026
Summary Noam Shazeer, co-author of the foundational 2017 paper “Attention Is All You Need” that introduced the Transformer architecture, has left Google DeepMind to join OpenAI as Lead for Architecture…
Critical LiteLLM AI Gateway RCE Chain Hits CISA KEV — Unauthenticated Takeover of AI Infrastructure
Summary A critical vulnerability chain targeting LiteLLM, one of the most popular open-source AI gateway and proxy servers, has been added to CISA’s Known Exploited Vulnerabilities (KEV) catalog with a…
