Public PoC Released for Deserialization RCE Vulnerability in Splunk Secure Gateway

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 A public proof-of-concept (PoC) exploit has been released for CVE-2026-20251, a high-severity remote code execution (RCE) vulnerability affecting Splunk Secure Gateway (SSG). The flaw, carrying a CVSS …

Hackers Exploiting Critical Oracle E-Business Suite Vulnerability Actively in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 Threat actors are actively exploiting CVE-2026-46817, a critical unauthenticated remote takeover vulnerability in Oracle E-Business Suite (EBS), with live attack activity captured across honeypot infrastructure over the …

Critical Dell Wyse Vulnerabilities Enable Remote Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 Dell Technologies has released a critical security advisory addressing multiple vulnerabilities in its Wyse Management Suite (WMS), warning that attackers could exploit these flaws to execute arbitrary …

Microsoft 365 Apps RCE Vulnerability Exploited Using a Malicious Excel File

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has disclosed a critical remote code execution vulnerability in its Office ecosystem that can be exploited through a malicious Excel file. The vulnerability, tracked as CVE-2025-60727, affects multiple versions …

Critical Gemini CLI Vulnerability Lets Attackers Execute Arbitrary Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 A critical security vulnerability in Google’s Gemini CLI has been disclosed, allowing attackers to execute arbitrary code in certain CI/CD environments, particularly GitHub Actions workflows. The issue, …

Russia-Linked Turla Uses Compromised Infrastructure to Deploy STOCKSTAY in Ukraine Operations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 Russia-linked threat group Turla has been quietly expanding its espionage arsenal with a new backdoor called STOCKSTAY, actively targeting government and military organizations in Ukraine since at …

LLM-Generated Mythic Agents Enable Disposable Red-Team Tooling From Prompt to Deployment

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 29, 2026 Red teamers and offensive security researchers have entered a new era where AI can write functional attack tools from a single sentence. A concept known as “disposable …