● On the wire
Cisco IOS XE Software Security Hardening Release: August 2026//Can AI do novel security research? Meet the HTTP Terminator//Debian Incus Significant Privilege Escalation Vulnerabilities DSA-6407-1//LLM Heist: Hijacking LiteLLM for Traffic Interception, Key Theft, and Tool-Call Injection//Why “AI Pentesting” is the Wrong Term (And Why We Need AI Red Teaming)//Cisco IOS XE Software Web-Based Management Interface Denial of Service Vulnerability//Debian Chromium Important Code Execution Denial of Service DSA-6408-1//Debian aom Critical Denial of Service CVE-2026-56208 DSA-6411-1//Cisco Integrated Management Controller Argument Injection Vulnerabilities//Cisco Integrated Management Controller Cross-Site Scripting Vulnerability//Debian botan3 Important Denial of Service Bypass Issues DSA-6412-1//DoGNAVY CyberGym Technical Report//Cisco IOS Software and IOS XE Software Extensible Messaging Client Protocol Denial of Service Vulnerability//Debian PHP 8.4 Critical Denial of Service SQL Injection Issues DSA-6406-1//Cisco IOS XE Software Blocks Extensible Exchange Protocol Denial of Service Vulnerability//Cisco IOS XE Software Security Hardening Release: August 2026//Can AI do novel security research? Meet the HTTP Terminator//Debian Incus Significant Privilege Escalation Vulnerabilities DSA-6407-1//LLM Heist: Hijacking LiteLLM for Traffic Interception, Key Theft, and Tool-Call Injection//Why “AI Pentesting” is the Wrong Term (And Why We Need AI Red Teaming)//Cisco IOS XE Software Web-Based Management Interface Denial of Service Vulnerability//Debian Chromium Important Code Execution Denial of Service DSA-6408-1//Debian aom Critical Denial of Service CVE-2026-56208 DSA-6411-1//Cisco Integrated Management Controller Argument Injection Vulnerabilities//Cisco Integrated Management Controller Cross-Site Scripting Vulnerability//Debian botan3 Important Denial of Service Bypass Issues DSA-6412-1//DoGNAVY CyberGym Technical Report//Cisco IOS Software and IOS XE Software Extensible Messaging Client Protocol Denial of Service Vulnerability//Debian PHP 8.4 Critical Denial of Service SQL Injection Issues DSA-6406-1//Cisco IOS XE Software Blocks Extensible Exchange Protocol Denial of Service Vulnerability//
Check Point SmartConsole: bypass di autenticazione attivamente sfruttato
Top story — News

Check Point SmartConsole: authentication bypass actively exploited

Check Point has fixed a critical vulnerability in the SmartConsole login process, tracked as CVE-2026-16232, which allows an unauthenticated attacker to obtain an application token and gain access with full administrative privileges. Reports indicate that the bug is already being exploited in the wild, although the direct impact currently concerns only a limited number of customers. The flaw affects Security…

Read the article →
From the newsroom
Ransomware sulla filiera del freddo in Giappone
News

Ransomware on Japan’s cold chain

A ransomware attack hit a Japanese food logistics company, causing delays and disruptions in the distribution chain for frozen products to thousands of customers. Among those affected are said to be major restaurant chains,…

Read the article →
Spotlight
More news