That old Java icon had a much bigger résumé than I gave it credit for.
LibreOffice patches CVE-2026-63277, a Calc flaw that runs remote Java code from a crafted spreadsheet; OpenOffice ...
IntroductionLR2oraja Endless Dream was suffering from a symptom where the screen would freeze for about 0.5 seconds every 60 ...
Attackers exploited two PaperCut zero-day vulnerabilities to deploy AdaptixC2 malware and compromise an education organization’s ...
Threat actors are exploiting one critical and one medium-severity vulnerability still unpatched in the AhsayCBS backup ...
ShinyHunters-linked attackers exploit CVE-2026-35273 in Oracle PeopleSoft, bypassing WAF rules to deploy web shells on dozens of systems.
Attackers exploited PaperCut MF zero-days to compromise a print server, deploy malware and reach an Active Directory domain ...
A new flaw in WordPress core let an anonymous visitor leave a comment that planted a hidden script on the page. If a logged-in administrator later opened that page, the script could run code on the ...
Our expectations for JavaScript, SQL, microservices, cloud, Docker, Java, and other parts of the ‘modern stack’ are being ...
The ShinyHunters extortion gang is using a URL-encoding trick to bypass web application firewall rules that mitigate the Oracle PeopleSoft CVE-2026-35273 flaw, allowing the threat actors to resume ...
ShinyHunters has resumed large-scale attacks against Oracle PeopleSoft, using a small change to its exploit to get past some web application ...
据国家互联网应急中心,近期,国家互联网应急中心(CNCERT)监测发现,“荐片播放器”Windows端应用程序内置后门功能,可在用户不知情的情况下采集终端信息、下载运行其他程序,并接收服务端指令执行任意代码,存在终端被远程控制、个人信息泄露等安全风险 ...