Overview
Description
Statistics
- 8 Posts
- 1 Interaction
Fediverse
🚨 CISA KEV ALERT: CVE-2026-63077 exposes JetBrains TeamCity servers to unauthenticated RCE via untrusted deserialization. Active exploitation confirmed. Get the forensic breakdown, CrowdStrike CQL detection logic, and CI/CD hardening steps: https://thecybermind.co/oapr
TeamCity vulnerability CVE-2026-63077 enables unauthenticated remote code execution. CISA added it to the KEV catalog amid active exploitation.
CVE-2026-63077: CISA warnt vor aktiver Ausnutzung einer TeamCity-Sicherheitslücke
Angreifer können ohne Authentifizierung Schadcode auf dem Server ausführen.
🚨 CSUITE THREAT ADVISORY: CISA confirms active exploitation of CVE-2026-63077 in JetBrains TeamCity. Unauthenticated RCE threatens core build pipelines & supply chain integrity. Get the executive governance, risk management, and compliance brief now: https://thecybermind.co/jvee
Bluesky
Overview
Description
Statistics
- 3 Posts
Bluesky
Overview
Description
Statistics
- 3 Posts
- 2 Interactions
Fediverse
#Linux: a 13-year-old Linux kernel flaw dubbed #OVSWrap lets local users gain root privileges on most Linux distributions. CVE-2026-64531 vulnerability is in the Linux kernel’s Open vSwitch datapath:
#PrivilegeEscalation
👇
Overview
- paperclipai
- paperclip
Description
Statistics
- 2 Posts
Fediverse
CVE-2026-41679 | Paperclip AI platform CRITICAL vuln: auth bypass let attackers register, obtain API tokens, & run code as server. DNS rebinding risk in dev mode. Patch now. https://radar.offseq.com/threat/critical-paperclip-flaw-allowed-admin-access-code-execution-09ee35c54d49b29b #OffSeq #CVE #Paperclip #vuln
Overview
Description
Statistics
- 2 Posts
Fediverse
Critical Jenkins vulnerability CVE-2026-70426 lets attackers bypass the JEP-200 filter and run code on the controller. Patch now.
#Jenkins #CVE202670426 #RCE #DevSecOps #Deserialization #CyberSecurity
Overview
Description
Statistics
- 6 Posts
Fediverse
Cl0p ransomware started listing victims from their campaign of exploitation of an RCE vuln in PTC Windchill PDMlink and PTC FlexPLM. The victims seem to be anonymised for now.
Exploited bug: https://www.cve.org/CVERecord?id=CVE-2026-12569
In fact, Ransomware-ISAC warned on 22 July about the campaign by Cl0p affiliates, targeting internet-exposed PTC Windchill and FlexPLM deployments: https://ransom-isac.org/blog/clop-windchill-flexplm-exploitation/
The vuln was added to CISA's KEV in the end of June.
Bluesky
Overview
Description
Statistics
- 3 Posts
- 17 Interactions
Fediverse
Yet another linux LPE to root. "CVE-2026-64564: Linux SCTP ASCONF transport UAF leading to local privilege escalation and container escape"
#Debian stable has a fix now: linux-image-6.12.101+deb13-amd64
- sctp: don't free the ASCONF's own transport in DEL-IP processing (CVE-2026-64564)
#CVE_2026_64564 mitigation:
echo install sctp /bin/true | sudo tee /etc/modprobe.d/sctp.conf
Overview
Description
Statistics
- 1 Post
- 4 Interactions
Fediverse
🚨 CVE-2026-48282: una semplice Path Traversal può trasformarsi in una Remote Code Execution su Adobe ColdFusion.
Nel video spiego:
🔴 cos'è RDS
🔴 perché il CVSS è 10.0
🔴 come avviene la catena di attacco
🔴 cosa controllare dopo aver applicato la patch
🎥 Guarda il video:
👉 https://youtu.be/SHYU1ag3NsQ
#CyberSecurity #ColdFusion #CVE202648282 #InfoSec #BlueTeam
@sicurezza
Overview
- Red Hat
- Red Hat build of Keycloak 26.4
- rhbk/keycloak-operator-bundle
Description
Statistics
- 1 Post
- 1 Interaction
Overview
Description
Statistics
- 1 Post
- 1 Interaction