MCPwn: Critical nginx-ui Authentication Bypass Under Active Exploitation — Full Nginx Takeover Possible
Summary A critical vulnerability in nginx-ui, the popular open-source web management interface for Nginx servers, is being actively exploited in the wild. Tracked as CVE-2026-33032 and dubbed “MCPwn” by Pluto…
cPanel & WHM Hit with Triple Vulnerability Disclosure — Arbitrary Code Execution and Privilege Escalation
Summary cPanel released emergency patches on May 8 for three newly disclosed vulnerabilities in cPanel and Web Host Manager (WHM), the control panel software that powers millions of web hosting…
DAEMON Tools Supply-Chain Attack: Trojanized Installers Served from Official Site for a Month
Security researchers at Kaspersky have uncovered a supply-chain attack targeting DAEMON Tools Lite, where trojanized Windows installers were distributed from the official website for nearly a month — from April…
AI-Driven Mass Layoffs Hit Big Tech — Cloudflare Cuts 20% After 600% Surge in Internal AI Usage
A wave of AI-attributed mass layoffs swept through the tech sector this week, with Cloudflare, Upwork, Bill Holdings, Coinbase, and Meta all announcing significant workforce reductions — and explicitly pointing…
Anthropic Secures 220,000 GPUs from SpaceX’s Colossus Data Center — Eyes Orbital AI Compute
Anthropic has signed a major compute deal with SpaceX, gaining exclusive access to the Colossus 1 data center in Memphis, Tennessee — originally built by Elon Musk’s xAI to train…
ShinyHunters Escalates Canvas LMS Attack — 275 Million Student Records at Risk as Schools Cancel Exams
The cybercrime group ShinyHunters has escalated its attack on Instructure’s Canvas learning management system, defacing the platform’s login page with a ransom demand threatening to leak data from 275 million…
Linux Kernel “Dirty Frag” Exploit Grants Root Access Across Major Distributions — No Patch Available
A new, unpatched local privilege escalation vulnerability in the Linux kernel — dubbed “Dirty Frag” — has been publicly disclosed, enabling unprivileged local users to gain root access on most…
Ivanti EPMM Zero-Day (CVE-2026-6973) Actively Exploited — CISA Orders Emergency Patching by May 10
Ivanti has released emergency patches for its Endpoint Manager Mobile (EPMM) product, addressing five vulnerabilities — including CVE-2026-6973, a high-severity zero-day that is being actively exploited in targeted attacks. The…
Tether Unveils QVAC MedPsy — Medical AI Models That Run Entirely on Smartphones
Summary Tether’s AI Research Group has unveiled QVAC MedPsy, a new class of medical language models designed to run directly on smartphones and other resource-constrained devices. According to Tether, these…
Europol IOCTA 2026: AI Is Industrializing Cybercrime at an Unprecedented Scale
Summary Europol has released its Internet Organised Crime Threat Assessment (IOCTA) 2026, titled “How Encryption, Proxies, and AI Are Expanding Cybercrime.” The annual report paints a stark picture of an…
