Aggregator
CVE-2026-43477 | Linux Kernel up to 6.18.19/6.19.8 vrr privilege escalation
CVE-2020-37218 | Hdwplayer com_hdwplayer 4.2 on Joomla search.php hdwplayersearch sql injection (Exploit 48242)
CVE-2026-43483 | Linux Kernel up to 6.19.8 KVM update_cr8_intercept privilege escalation
CVE-2026-43479 | Linux Kernel up to 6.18.18/6.19.8 net/core/dev.c netif_napi_del privilege escalation
WhatsApp adds Incognito Chat for private Meta AI conversations
The company launched Incognito Chat with Meta AI, a feature that lets users hold AI conversations the platform itself cannot read. The rollout will reach WhatsApp and the standalone Meta AI app over the coming months. How Incognito Chat works Incognito Chat runs on top of Meta’s Private Processing technology, the same infrastructure the company introduced earlier for AI tools in WhatsApp. Messages sent through an Incognito Chat are handled inside a secure environment that … More →
The post WhatsApp adds Incognito Chat for private Meta AI conversations appeared first on Help Net Security.
Weekly Threat Bulletin – May 13th, 2026
CVE-2026-8463 | LEONT Crypt::Argon2 up to 0.030 on Perl argon2_verify length buffer over-read
CVE-2026-8369 | OpenThread NAT64 Translator input validation
CVE-2026-37430 | Qihang wms ShopOrderImportController.java unrestricted upload
CVE-2026-39806 | mtrudel bandit up to 1.11.0 TCP Connection socket.ex do_read_chunked_data infinite loop
CVE-2026-37428 | Qihang wms SysDeptMapper.xml datascope sql injection
CVE-2026-4609 | metagauss ProfileGrid Plugin up to 5.9.8.4 on WordPress pm_invite_user authorization
CVE-2026-4608 | metagauss ProfileGrid Plugin up to 5.9.8.4 on WordPress sql injection
CVE-2026-4607 | metagauss ProfileGrid Plugin up to 5.9.8.4 on WordPress authorization
CVE-2026-39803 | mtrudel bandit up to 1.11.0 Standard Phoenix Endpoint socket.ex allocation of resources
CVE-2026-37429 | Qihang wms SysUserMapper.xml datascope sql injection
Microsoft fixes Windows Autopatch bug installing restricted drivers
How Top SOCs and MSSPs Prevent Phishing Incidents Missed by Email Filters
Email filters are important, but they can’t remove phishing risk on their own. Today’s campaigns are built to slip through the cracks, using fresh domains, CAPTCHA checks, fake login pages, OTP theft, and even legitimate RMM tools. For security leaders, the bigger issue is business exposure. One missed email can slow response, create uncertainty, and leave teams unsure […]
The post How Top SOCs and MSSPs Prevent Phishing Incidents Missed by Email Filters appeared first on Cyber Security News.
Foxconn Confirms Cyberattack After Nitrogen Ransomware Gang Claim
Foxconn has officially confirmed a cyberattack targeting its North American operations after the Nitrogen ransomware gang publicly listed the company on its data leak site, claiming to have stolen a staggering 8 terabytes of sensitive data. The Nitrogen ransomware group made its move on Monday, posting Foxconn on its breach and extortion portal and asserting […]
The post Foxconn Confirms Cyberattack After Nitrogen Ransomware Gang Claim appeared first on Cyber Security News.