June 12, 2026 Microsoft has disclosed a significant security vulnerability in Microsoft Teams for Android that could allow an authenticated attacker to expose sensitive information over a network. The flaw, …
CISA Requires Federal Agencies to Patch Critical Vulnerabilities Within 3 Days
June 11, 2026 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued Binding Operational Directive (BOD) 26-04, titled “Prioritizing Security Updates Based on Risk,” compelling all Federal Civilian Executive …
GitHub to Automate Disable npm Script Installs to Block Supply Chain Attacks
June 11, 2026 GitHub has announced a major security-focused update to the Node Package Manager (npm), introducing breaking changes in the upcoming npm v12 release to reduce software supply chain …
Claude Mythos Turning N-Days Into N-Hours With Rapid Working Exploit Creation
June 11, 2026 A new study has revealed that advanced large language models (LLMs), particularly Anthropic’s Claude Mythos Preview, are dramatically accelerating the development of N-day exploits, reducing timelines from …
Cybercriminals Abuse Chinese-Language Guarantee Marketplaces to Trade Stolen Credentials
June 11, 2026 A network of Chinese-language online marketplaces operating on Telegram has quietly become one of the most powerful financial engines behind global cybercrime. These platforms, known as “guarantee” …
Ivanti Command Injection Vulnerability Exploited in Attacks Following PoC Release
June 11, 2026 Threat actors have begun actively exploiting a critical Ivanti Sentry command injection vulnerability just days after a proof-of-concept (PoC) exploit was made public, according to new internet …
PoC Exploit Released for Guest-to-Host Escape Linux Kernel Vulnerability
June 11, 2026 A proof-of-concept (PoC) exploit has been released for a critical Linux kernel vulnerability, CVE-2026-46316, that enables a guest-to-host escape in KVM environments on arm64 systems. The flaw, …
Oracle Emergency Security Update to Fix Critical RCE Vulnerability
June 11, 2026 Oracle has issued an emergency Security Alert to address a critical remote code execution vulnerability (CVE-2026-35273) affecting PeopleSoft Enterprise PeopleTools. The vulnerability carries a CVSS v3.1 score …
Ivanti Endpoint Manager Mobile Vulnerability Enables Remote Code Execution Attacks
June 11, 2026 A high-severity vulnerability, CVE-2026-6973, in Ivanti Endpoint Manager Mobile (EPMM) could allow authenticated attackers to achieve remote code execution by injecting malicious Apache configuration directives. The flaw, …
Anthropic’s Claude Fable 5 Jailbroken to Generate Stack Exploits
June 11, 2026 Anthropic launched Claude Fable 5 on June 9, 2026, as the first publicly available model in its new Mythos class, its most capable AI to date, excelling …
