OpenZFS Authorization Bypass Vulnerability Affects Ubuntu LTS Releases
A critical flaw in OpenZFS allowed local attackers to bypass authorization controls. Patches are now available for Ubuntu 18.04 and 20.04 LTS.
Read moreSecurity insights, vulnerability roundups, and updates from the Agent Breach team.
One digest email when we publish new security articles (TL;DR plus links to read more). Unsubscribe anytime from the message footer. See our Privacy Policy.
A critical flaw in OpenZFS allowed local attackers to bypass authorization controls. Patches are now available for Ubuntu 18.04 and 20.04 LTS.
Read moreThreat actors are leveraging high-severity vulnerabilities in Langflow and Ruby on Rails to conduct credential probing and establish command-and-control infrastructure. These exploits enable remote code execution and unauthorized access.
Read moreA critical zero-day vulnerability in PaperCut print management software is under active attack. Emergency patches are available for the latest versions.
Read moreA newly patched cPanel flaw allows attackers to escalate privileges and gain full control of hosting servers. All supported cPanel & WHM versions are affected by this critical vulnerability.
Read moreSecurity researchers uncovered two hidden backdoors in China-made ZBT router firmware that allow unauthenticated attackers to gain root access. These implants pose a severe risk to enterprise network security.
Read moreMicrosoft reveals TerminalFix, a new ClickFix variant that uses fake Cloudflare CAPTCHAs to trick users into executing malicious PowerShell commands. The campaign targets Windows Terminal and PowerShell to establish reverse-tunnel backdoors.
Read moreMultiple high-severity vulnerabilities in OpenJDK 26 affect core components like JSSE, ImageIO, and Security libraries. These flaws could allow remote attackers to steal data or crash applications.
Read moreThree critical vulnerabilities in ServiceNow's AI Platform could allow unauthenticated attackers to execute code and perform SQL injection. Patches are available but require immediate deployment.
Read moreAs enterprises adopt more cloud services, securing identities across applications and infrastructure becomes increasingly complex. Identity Fabric offers a unified approach to managing and monitoring identity behavior in real time.
Read moreTwo root-level remote code execution vulnerabilities were discovered in the Unitree G1 EDU robot, one of which is exploitable over Bluetooth. These flaws could allow attackers to fully compromise the device.
Read more