Overview
Description
Statistics
- 10 Posts
- 4 Interactions
Fediverse
‼️ New Dark Web Informer Blog Post!
Title: Trusting a Cookie It Never Issued: The PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257)
💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
Hackers Exploiting Palo Alto’s PAN-OS Vulnerability to Deploy Qilin Ransomware https://cybersecuritynews.com/cve-2026-0257-qilin-ransomware/?utm_source=dlvr.it&utm_medium=%5Binfosec.exchange%5D
Palo Alto Networks GlobalProtect VPN (PAN-OS) CRITICAL vuln (CVE-2026-0257) is under active Qilin ransomware exploitation. Auth bypass allows full domain compromise. Patch ASAP (released May 13, 2026). https://radar.offseq.com/threat/critical-palo-alto-vpn-bug-now-exploited-by-qilin-ransomware-gang-32a4cdf9eafc03de #OffSeq #PANOS #Ransomware #Vuln
Hackers Exploit Palo Alto PAN-OS Flaw to Deploy Qilin Ransomware in Active Intrusions
Threat actors are actively exploiting the Palo Alto PAN-OS GlobalProtect authentication bypass vulnerability (CVE-2026-0257) to gain unauthorized accesshttps://thecybersecguru.com/news/palo-alto-pan-os-cve-2026-0257-qilin-ransomware/
Bluesky
Overview
- ServiceNow
- ServiceNow AI Platform
Description
Statistics
- 6 Posts
- 1 Interaction
Fediverse
Geopolitical tensions are escalating in the Middle East following Iranian airstrikes on US military bases. In cybersecurity, a critical ServiceNow AI Platform flaw (CVE-2026-6875) is actively being exploited for unauthenticated code execution. Meanwhile, the EU has ordered Google to open Android to rival AI assistants and share search data. A Radware survey reveals 83% of organizations are adopting generative AI faster than they can secure it.
Bluesky
Overview
Description
Statistics
- 5 Posts
Fediverse
https://www.zerodayinitiative.com/advisories/ZDI-26-444/
CVE-2026-14266
Bluesky
Overview
Description
Statistics
- 10 Posts
- 2 Interactions
Fediverse
🚨 Critical #wp2shell flaw exposes WordPress core to zero-plugin server takeover! Deep dive into how CVE-2026-63030 and CVE-2026-60137 chain together to achieve unauthenticated Pre-Auth RCE. Full technical analysis:
https://denizhalil.com/2026/07/20/wordpress-cve-2026-63030-batch-route-confusion/
wp2shell, a WordPress Core RCE chain (CVE-2026-63030, CVE-2026-60137), is exploited in the wild. Public PoC code is out. Patch WordPress now.
#wp2shell #WordPress #RCE #CVE202663030 #CVE202660137 #InfoSec #WebSecurity #PatchNow
The latest Word Press Security Issues CVE-2026-60137 and CVE-2026-63030 are really troublesome. Bad actors are really quick in finding suitable targets.
Please note that vulnerability of 7.0 through 7.0.1 had been missing in BSI's publication at first... #infosec
- Webserverlogs
`zgrep /batch/v1 *.log *.log.gz | egrep '45.79.167[.]238|34.81.132[.]62|79.177.131[.]206|15.157.135[.]170|94.100.52[.]128|172.235.128[.]52'`
- Wordpress-Verzeichnis
`find . -type f -print0 | xargs -0 md5sum | egrep '2a1410d8e2a8337ac2171cedea8c0fdc47c647a0|58eca847e9eae9e6b08cc211f1559817b71bc4cc|ebea44890f434d5d67ede22009a3f4bb5cac33f8|d9a220c8039f1c4d72cae7ccb8b3a33dec8815be|e9756e2338f84746007235e4cab7a70d5b3ca47f'`
https://www.wiz.io/blog/wp2shell-cve-2026-63030-cve-2026-60137
CISA added four flaws to its KEV catalog, including WordPress RCE (CVE-2026-63030) and Langflow RCE (CVE-2026-0770). All are exploited in the wild.
Bluesky
Overview
Description
Statistics
- 4 Posts
- 3 Interactions
Fediverse
CVE-2026-8933 is a snap-confine privilege escalation flaw. It gives any user root on default Ubuntu Desktop 26.04, 25.10, and 24.04. Update snapd now.
#snapconfine #CVE20268933 #Ubuntu #PrivilegeEscalation #LPE #Linux #Qualys
http://securityonline.info/snap-confine-cve-2026-8933/?utm_source=mastodon&utm_medium=jetpack_social
https://www.openwall.com/lists/oss-security/2026/07/21/2
Overview
Description
Statistics
- 4 Posts
Fediverse
F5 patches a critical NGINX CVE-2026-42533 vulnerability causing remote code execution. Learn how to update your server and secure your configuration.
Bluesky
Overview
Description
Statistics
- 8 Posts
- 2 Interactions
Fediverse
🚨 Critical #wp2shell flaw exposes WordPress core to zero-plugin server takeover! Deep dive into how CVE-2026-63030 and CVE-2026-60137 chain together to achieve unauthenticated Pre-Auth RCE. Full technical analysis:
https://denizhalil.com/2026/07/20/wordpress-cve-2026-63030-batch-route-confusion/
wp2shell, a WordPress Core RCE chain (CVE-2026-63030, CVE-2026-60137), is exploited in the wild. Public PoC code is out. Patch WordPress now.
#wp2shell #WordPress #RCE #CVE202663030 #CVE202660137 #InfoSec #WebSecurity #PatchNow
The latest Word Press Security Issues CVE-2026-60137 and CVE-2026-63030 are really troublesome. Bad actors are really quick in finding suitable targets.
Please note that vulnerability of 7.0 through 7.0.1 had been missing in BSI's publication at first... #infosec
- Webserverlogs
`zgrep /batch/v1 *.log *.log.gz | egrep '45.79.167[.]238|34.81.132[.]62|79.177.131[.]206|15.157.135[.]170|94.100.52[.]128|172.235.128[.]52'`
- Wordpress-Verzeichnis
`find . -type f -print0 | xargs -0 md5sum | egrep '2a1410d8e2a8337ac2171cedea8c0fdc47c647a0|58eca847e9eae9e6b08cc211f1559817b71bc4cc|ebea44890f434d5d67ede22009a3f4bb5cac33f8|d9a220c8039f1c4d72cae7ccb8b3a33dec8815be|e9756e2338f84746007235e4cab7a70d5b3ca47f'`
https://www.wiz.io/blog/wp2shell-cve-2026-63030-cve-2026-60137
Bluesky
Overview
- Microsoft
- Microsoft SharePoint Enterprise Server 2016
Description
Statistics
- 3 Posts
- 1 Interaction
Fediverse
‼️ New Dark Web Informer Blog Post!
Title: Patching Is Not Enough: Critical SharePoint Deserialization RCE Under Active Exploitation (CVE-2026-50522)
💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
CVE-2026-50522 SharePoint RCE vulnerability exploited in the wild with public PoC exploitCVE-2026-50522, a critical SharePoint RCE flaw, is exploited in the wild. A public PoC exploit is out, so admins should patch SharePoint now.
#CVE202650522 #SharePoint #RCE #Deserialization #Microsoft #PoC #ExploitedInTheWild
Overview
- Microsoft
- Windows 10 Version 1607
Description
Statistics
- 2 Posts
- 3 Interactions
Fediverse
‼️ New Dark Web Informer Blog Post!
Title: Counting Below Zero: Integer Underflow to SYSTEM in the Windows NT Kernel (CVE-2026-42980)
💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: https://darkwebinformer.com/pricing
A public PoC for CVE-2026-42980 details a Windows privilege escalation flaw in the kernel WMI code. It grants SYSTEM on unpatched builds.
#CVE202642980 #Windows #PrivilegeEscalation #Infosec #Cybersecurity
Overview
- Foxit Software Inc.
- Foxit PDF Editor
Description
Statistics
- 2 Posts
- 1 Interaction
Fediverse
https://blog.paradoxis.nl/escalating-all-the-privileges-with-foxit-pdf-reader-cve-2026-57239-582a78b60492