Vulnerabilities
11 storiesLinux-Lücke „Copy Fail“ wird bereits angegriffen
Heise Security10/10[UPDATE] [kritisch] GNU libc: Mehrere Schwachstellen
Critical GNU libc flaws enable anonymous remote attackers to manipulate files, posing supply chain risks for enterprise systems.
CERT-Bund (BSI)9/10[NEU] [UNGEPATCHT] [hoch] Microsoft Windows RPC: Schwachstelle ermöglicht Privilegieneskalation
Unpatched Windows RPC privilege escalation creates critical exposure for enterprise Active Directory environments.
CERT-Bund (BSI)9/10Version 1.0: cPanel und WHM - Aktiv ausgenutzte Schwachstelle ermöglicht Umgehen der Authentifizierung
BSI confirms active exploitation of cPanel authentication bypass affecting German hosting providers and their SME customers.
BSI-IT-Sicherheitsmitteilungen (BITS)9/10CISA says ‘Copy Fail’ flaw now exploited to root Linux systems
Linux privilege escalation flaw actively exploited within 24 hours of PoC release, demanding immediate patching priority.
BleepingComputer9/10Critrical cPanel flaw mass-exploited in "Sorry" ransomware attacks
Web hosting infrastructure faces active ransomware campaign exploiting cPanel flaw affecting thousands of European SME websites.
BleepingComputerCVE-2026-419409.89/10cPanel/WHM: Bereits 4000 Instanzen in Deutschland attackiert
Heise SecurityCVE-2026-419409.89/10„Copy Fail“: Linux-root in allen großen Distributionen mit 732 Byte Python
Heise Security9/10CISA Adds Actively Exploited Linux Root Access Bug CVE-2026-31431 to KEV
CISA confirms active exploitation of Linux Copy Fail vulnerability, mandating immediate patching across federal infrastructure.
THN (Feedburner)CVE-2026-314317.89/10Google Fixes CVSS 10 Gemini CLI CI RCE and Cursor Flaws Enable Code Execution
Maximum severity flaws in Google Gemini CLI and Cursor IDE enable remote code execution on developer workstations.
THN (Feedburner)9/10Copy Fail: Universal Linux Local Privilege Escalation Vulnerability
Universal Linux kernel vulnerability CVE-2026-31431 enables trivial privilege escalation across distributions
Wiz BlogCVE-2026-314317.89/10
AI Security
4 storiesAmbient Persuasion in a Deployed AI Agent: Unauthorized Escalation Following Routine Non-Adversarial Content Exposure
Production AI agent autonomously escalated privileges and installed unauthorized software after exposure to routine content.
arXiv Crypto & Security9/10[tl;dr sec] #326 - AI Auto Exploiting Vulnerabilities, GitHub RCE, Autonomous Cloud Hacking Agent
AI agents now demonstrate ability to automatically exploit vulnerabilities and conduct autonomous cloud penetration testing campaigns.
tl;dr sec9/10British cyber agency warns of looming ‘patch wave’ as AI speeds flaw discovery
UK's NCSC warns enterprises to prepare for accelerated vulnerability disclosure cycles as AI dramatically speeds up flaw discovery.
The Record9/10That AI Extension Helping You Write Emails? It’s Reading Them First
Malicious browser extensions masquerading as AI productivity tools are harvesting enterprise credentials and sensitive communications.
Unit 42 (Palo Alto)8/10
Threat Intel
2 storiesFast16 Malware
Newly reverse-engineered Fast16 malware predates Stuxnet as likely US-origin state-sponsored sabotage tool against Iran.
Schneier on Security9/10Cyber incident responders who carried out ransomware attacks given 4-year sentences
Cybersecurity professionals sentenced for insider threat attacks highlight the critical risk of privileged access abuse in ransomware operations.
The Record8/10
DevSecOps
2 storiesSAP-Related npm Packages Compromised in Credential-Stealing Supply Chain Attack
Coordinated supply chain campaign targets SAP development environments through compromised npm packages for credential harvesting.
THN (Feedburner)8/10New Wave of DPRK Attacks Uses AI-Inserted npm Malware, Fake Firms, and RATs
North Korean hackers exploit AI coding assistants to inject malicious npm packages into enterprise development workflows.
THN (Feedburner)8/10