Aggregator
CVE-2026-37461 | gobgp 4.3.0 BGP /bgp/bgp.go ParseIP6Extended out-of-bounds
CVE-2026-42376 | D-Link DIR-456U A1 S80telnetd.sh strcmp hard-coded credentials
Submit #807746: Axle-Bucamp MCP-Docusaurus 404bc028e15ec304c9a045528560f4b5f27a17e0 Path Traversal [Accepted]
CVE-2026-42375 | D-Link DIR-600L A1 /bin/telnetd.sh strcmp hard-coded credentials
CVE-2026-42374 | D-Link DIR-600L B1 /bin/telnetd.sh strcmp hard-coded credentials (EUVD-2026-27025)
CVE-2026-42373 | D-Link DIR-605L B2 /bin/telnetd.sh strcmp hard-coded credentials (EUVD-2026-27023)
CVE-2026-42372 | D-Link DIR-605L A1 /bin/telnetd.sh strcmp hard-coded credentials
CVE-2026-29514 | NetBox up to 4.5.4 RenderTemplateMixin.get_environment_params finalize permissive list of allowed inputs (EUVD-2026-26997)
When the Watchman Gets Watched: Trellix Discloses Source Code Breach
Смартфон притворился мёртвым, но продолжил за вами следить. Разбор шпионского софта Cerberus
Progress Patches Critical MOVEit Automation Bug Enabling Authentication Bypass
New MicroStealer Malware Actively Attacking Telecom & Education Sectors
A new infostealer malware called MicroStealer has quietly entered the threat landscape and is already showing a worrying reach. First spotted in December 2025, the malware has picked up speed fast, showing up across sandbox environments within weeks of its initial appearance in the wild. What makes it stand out is its ability to fly […]
The post New MicroStealer Malware Actively Attacking Telecom & Education Sectors appeared first on Cyber Security News.
Close the security gap with higher accuracy
Trellix discloses data breach after source code repository hack
Interlock
You must login to view this content
Bluekit Phishing Kit Automates Domains, 2FA Lures, and Session Hijacking in One Panel
A newly identified phishing kit called Bluekit is changing how cybercriminals carry out phishing attacks by packing multiple attack capabilities into a single, easy-to-use operator panel. Rather than relying on separate tools stitched together from different sources, Bluekit gives attackers one centralized platform to manage everything from fake website creation to session hijacking. For years, […]
The post Bluekit Phishing Kit Automates Domains, 2FA Lures, and Session Hijacking in One Panel appeared first on Cyber Security News.