Security insights, vulnerability roundups, and updates from the Agent Breach team.
Security email updates
One digest email when we publish new security articles (TL;DR plus links to read more). Unsubscribe anytime from the message footer. See our Privacy Policy.
Multiple vulnerabilities in libsoup may allow attackers to inject HTTP headers and steal proxy credentials. These issues affect applications using the library for HTTP communication.
Attackers exploit AI tools, legacy flaws, and weak authentication in subscription software. Defenders struggle to secure constantly shifting attack surfaces.
A newly discovered vulnerability in Check Point's Security Management Server allows unauthenticated attackers to execute code as root. Organizations using Check Point's security infrastructure should apply patches immediately.
Ubuntu addresses Bubblewrap flaws leading to sandbox escapes and DoS risks. A fix for CVE-2026-87766 caused regressions, temporarily breaking Flatpak app launches.
New Android malware RatHat leverages AI for device control and abuses ADB to maintain access even after uninstallation. Security teams should monitor for unusual ADB activity and educate users on smishing risks.
Kaspersky identifies NightEagle, Hacking Cat, and Toy Ghouls deploying backdoors, ransomware, and wipers against Russian businesses. NightEagle shows new persistence and lateral movement tactics.
A severe unauthenticated command injection vulnerability in Issabel Framework is under active attack. Organizations using the open-source PBX platform should take immediate action.
Critical vulnerabilities in libheif allow attackers to crash systems or run malicious code through malformed images. Developers should update immediately to mitigate risks.
Multiple vulnerabilities in Ubuntu's python-cryptography package affect cipher operations, certificate validation, and key security—putting web applications at risk.