Intro
A sophisticated, high-resilience malicious campaign was identified by Atos Threat Research Center (TRC) in March 2026. This operation specifically targets the high-privilege professional accounts of enterprise administrators, DevOps engineers, and security analysts by impersonating administrative utilities they rely on for daily operations. By integrating Search Engine Order (SEO)
A joint international operation involving U.S. and Chinese authorities arrested at least 276 suspects and shut down nine cryptocurrency investment fraud centers. [...]
在其设施遭袭受损之后,数据中心开发商 Pure Data 暂停所有中东项目投资。Pure Data 在欧洲、亚洲和中东运营或开发逾 1GW 的数据中心。数据中心作为基础设施成为了战争中的一个重要目标。亚马逊 AWS 在中东有三座数据中心遭到袭击,导致中东客户的服务出现大规模中断,迫使亚马逊宣布免除其中东云区域客户所有费用,导致其损失了约 1.5 亿美元。Pure Data 位于阿布扎比 Yas Island 的数据中心园区遭到了弹片的袭击。该公司没有披露发生的时间以及受损情况。
A vulnerability, which was classified as problematic, was found in Little CMS up to 2.18. This impacts an unknown function of the file cmscgats.c of the component ParseCube. Executing a manipulation can lead to integer overflow.
This vulnerability is tracked as CVE-2026-42798. The attack is restricted to local execution. No exploit exists.
You should upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in OPPO ColorOS Assistant up to 1.4.25. This affects an unknown function. Performing a manipulation results in relative path traversal.
This vulnerability is identified as CVE-2026-22070. The attack is only possible with local access. There is not any exploit available.
It is advisable to upgrade the affected component.
A vulnerability classified as critical was found in ASR Kestrel up to 1/9. The impacted element is an unknown function of the file Code/Nr/nr_fw/RA/src/NrPwrCtrl.C of the component nr_fw. Such manipulation leads to out-of-bounds read.
This vulnerability is referenced as CVE-2026-42799. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is advised.
A vulnerability classified as critical has been found in FreeBSD. The affected element is an unknown function of the component Message Handler. This manipulation causes heap-based buffer overflow.
The identification of this vulnerability is CVE-2026-35547. The attack needs to be done within the local network. There is no exploit available.
It is suggested to install a patch to address this issue.
A vulnerability described as problematic has been identified in Wireshark up to 4.4.14/4.6.4. Impacted is an unknown function of the component GSM RP Protocol Dissector. The manipulation results in uninitialized pointer.
This vulnerability was named CVE-2026-6870. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability marked as problematic has been reported in Wireshark up to 4.4.14/4.6.4. This issue affects some unknown processing of the component WebSocket Protocol Dissector. The manipulation leads to improperly controlled sequential memory allocation.
This vulnerability is uniquely identified as CVE-2026-6869. The attack is possible to be carried out remotely. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability labeled as problematic has been found in Wireshark up to 4.4.14/4.6.4. This vulnerability affects unknown code of the component SMB2 Protocol Dissector. Executing a manipulation can lead to improperly controlled sequential memory allocation.
This vulnerability is handled as CVE-2026-6867. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.
A vulnerability identified as critical has been detected in Wireshark up to 4.4.14/4.6.4. This affects an unknown part of the component BEEP Protocol Dissector. Performing a manipulation results in stack-based buffer overflow.
This vulnerability is known as CVE-2026-6538. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.
A vulnerability categorized as problematic has been discovered in 4D Server up to 20 R6 on Windows. Affected by this issue is some unknown functionality of the component XML Parser. Such manipulation leads to xml external entity reference.
This vulnerability is traded as CVE-2024-39847. The attack may be launched remotely. There is no exploit available.
It is advisable to upgrade the affected component.
A vulnerability was found in Wireshark up to 4.4.14/4.6.4. It has been rated as critical. Affected by this vulnerability is an unknown functionality of the component ZigBee Protocol Dissector. This manipulation causes stack-based buffer overflow.
This vulnerability appears as CVE-2026-6537. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is advised.
A vulnerability was found in Wireshark up to 4.6.4. It has been declared as problematic. Affected is an unknown function of the component DLMS COSEM Protocol. The manipulation results in infinite loop.
This vulnerability is reported as CVE-2026-6536. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.
A vulnerability was found in Wireshark up to 4.4.14/4.6.4. It has been classified as problematic. This impacts an unknown function of the component zlib Decompression Handler. The manipulation leads to improperly controlled sequential memory allocation.
This vulnerability is documented as CVE-2026-6535. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.