05/18/2026
Grafana says stolen GitHub token let hackers steal codebase
Grafana says stolen GitHub token let hackers steal codebase
Grafana Labs disclosed that hackers have downloaded its source code after breaching its GitHub environment using a stolen access token.
05/15/2026
Zero-day exploit completely defeats default Windows 11 BitLocker protections
https://buff.ly/72Cc1Dp
Zero-day exploit completely defeats default Windows 11 BitLocker protections
It's not entirely clear how the exploit works. Microsoft says it's investigating.
05/14/2026
New critical Exim mailer flaw allows remote code ex*****on
New critical Exim mailer flaw allows remote code ex*****on
A critical vulnerability affecting certain configurations of the Exim open-source mail transfer agent could be exploited by an unauthenticated remote attacker to execute arbitrary code.
05/13/2026
Patch Tuesday, May 2026 Edition
Patch Tuesday, May 2026 Edition – Krebs on Security
May 12, 2026 2 Comments Artificial intelligence platforms may be just as susceptible to social engineering as human beings, but they are proving remarkably good at finding security vulnerabilities in human-made computer code. That reality is on full display this month with some of the more widely-us...
05/12/2026
State of ransomware in 2026
Reviewing the trends in ransomware attacks in 2026
Kaspersky researchers are sharing insights into the main ransomware trends for 2026: EDR killers on the rise, switching from data encryption to data leaks, and more.
05/12/2026
Linux bitten by second severe vulnerability in as many weeks
Linux bitten by second severe vulnerability in as many weeks
Production-version patches are coming online and should be installed pronto.
05/11/2026
Hotfix Update Exchange SE (May2026)
Hotfix Update Exchange SE (May2026)
The Exchange product group released the May 2026 Hotfix update for Exchange Server SE. Hotfix updates do not contain security fixes, but address issues. They also might introduce or add support for…
05/08/2026
Canvas Breach Disrupts Schools & Colleges Nationwide
Canvas Breach Disrupts Schools & Colleges Nationwide – Krebs on Security
May 7, 2026 18 Comments An ongoing data extortion attack targeting the widely-used education technology platform Canvas disrupted classes and coursework at school districts and universities across the United States today, after a cybercrime group defaced the service’s login page with a ransom dema...
05/07/2026
New Cisco DoS flaw requires manual reboot to revive devices
New Cisco DoS flaw requires manual reboot to revive devices
Cisco patched a Crosswork Network Controller and Network Services Orchestrator denial-of-service vulnerability that requires manually rebooting targeted systems for recovery.
05/07/2026
Exploits and vulnerabilities in Q1 2026
The vulnerability landscape in Q1 2026
This report provides statistical data on published vulnerabilities and exploits we researched during Q1 2026. It also includes summary data on the use of C2 frameworks in APT attacks.