Aggregator
CVE-2026-32298 | ANGEET ES3 KVM os command injection (EUVD-2026-12614)
CVE-2026-32295 | JetKVM up to 0.5.3 excessive authentication (EUVD-2026-12608)
Submit #772854: itsourcecode University Management System V1.0 cross site scripting [Accepted]
CVE-2026-32293 | GL-iNet Comet KVM up to 1.7.1 certificate validation
Submit #772839: portabilis i-educar 2.11 Injection [Accepted]
CVE-2026-32290 | GL-iNet Comet KVM data authenticity
CVE-2026-32294 | JetKVM up to 0.5.3 data authenticity
CVE-2026-32292 | GL-iNet Comet KVM up to 1.7.1 excessive authentication
CVE-2026-32297 | ANGEET ES3 KVM Configuration File missing authentication (EUVD-2026-12612)
CVE-2026-32296 | Sipeed NanoKVM up to 2.3.0 Wi-Fi Configuration Endpoint missing authentication (EUVD-2026-12610)
CVE-2026-25769 | Wazuh up to 4.14.2 deserialization (GHSA-3gm7-962f-fxw5)
CVE-2026-25770 | Wazuh up to 4.14.2 ossec.conf path traversal (GHSA-r4f7-v3p6-79jm)
CVE-2026-21570 | Atlassian Bamboo Data Center up to 9.6.23/10.2.15/12.1.2 privilege escalation
CVE-2026-4354 | TRENDnet TEW-824DRU 1.010B01/1.04B01 Web Interface apply_sec.cgi sub_420A78 Language cross site scripting
Submit #772660: TRENDnet TEW-824DRU v1.04B01 Denial of Service [Accepted]
GitHub security advisory (AV26-246)
Iranian Cyber Ops Maintain US Network Footholds, Target Cameras for Regional Surveillance
Iran’s cyber operations took a sharp turn in early 2026, with state-linked threat actors quietly embedding themselves inside US and Canadian networks while also targeting internet-connected surveillance cameras across the Middle East for battlefield intelligence. The Iranian APT group MuddyWater, tied to Iran’s Ministry of Intelligence and Security (MOIS), maintained unauthorized access to multiple American […]
The post Iranian Cyber Ops Maintain US Network Footholds, Target Cameras for Regional Surveillance appeared first on Cyber Security News.
Google Warns Ransomware Actors Are Shifting Tactics as Profits Fall and Data Theft Rises
The ransomware threat landscape entered a new phase in 2025. Once a highly reliable criminal business model built on encrypting victim files and collecting ransom payments, it is now under significant financial pressure. Ransom payment rates have hit historic lows, average demands have dropped sharply, and organizations are recovering from attacks more effectively than in […]
The post Google Warns Ransomware Actors Are Shifting Tactics as Profits Fall and Data Theft Rises appeared first on Cyber Security News.