Security Bulletin
26 May 2026
Biztonsági szemle
Microsoft Issues Out-of-Band SharePoint Patch
SharePoint access often means access to the keys of the kingdom, something attackers and defenders understand all too well.
26 May 2026
Biztonsági szemle
Detectify launches MCP server to integrate security testing into AI coding workflows
The Detectify MCP Server utilizes the Model Context Protocol (MCP), an open standard adopted across the AI industry for agent-tool communication.
26 May 2026
Biztonsági szemle
CypherLoc scareware tricks millions into identity theft traps
The CypherLoc attack begins with a phishing email containing a malicious link or attachment.
26 May 2026
Biztonsági szemle
Critical vulnerability in Universal Robots' PolyScope OS allows remote command execution
The vulnerability, tracked as CVE-2026-8153 with a CVSS score of 9.8, affects all PolyScope software versions prior to 5.25.1.
26 May 2026
Biztonsági szemle
Zero-day vulnerability in Japanese LMS exploited to deploy Cobalt Strike
The vulnerability, CVE-2026-5426, stems from the use of hard-coded ASP.NET machine keys within the LMS.
26 May 2026
Biztonsági szemle
The Oncology Institute reports patient data potentially exposed in third-party vendor breach
The Oncology Institute disclosed on May 20, 2026, that Kroll, a third-party administrator for an unnamed vendor, detected unauthorized access to systems that may have affected patient data.
26 May 2026
Biztonsági szemle
Zero-click attack hijacks WhatsApp accounts on iOS 16
The attack exploits vulnerabilities in iOS 16, specifically CVE-2025-43300 within the ImageIO framework and potentially CVE-2025-55177, to gain unauthorized access to WhatsApp sessions.
26 May 2026
Biztonsági szemle
North Korea's Lazarus Group uses new RemotePE malware against financial targets
RemotePE is deployed through a multi-stage attack chain involving two loaders, DPAPILoader and RemotePELoader.
26 May 2026
Biztonsági szemle
Mainframe Security Gaps: Why Your IAM Strategy is Failing (And How to Fix It) - WC #1
26 May 2026
Biztonsági szemle
OnlyFans user data advertised on cybercrime forum, seller claims no direct breach
A user on a cybercrime forum is selling a database of 340 million records allegedly linked to OnlyFans users for approximately $76,000.
26 May 2026
Biztonsági szemle
Ghost CMS vulnerability exploited in large-scale campaign
The vulnerability, identified as CVE-2026-26980, affects Ghost versions 3.24.0 through 6.19.0, allowing unauthenticated attackers to steal admin API keys.
26 May 2026
Biztonsági szemle
Securing campus and branch networks from boot to transport with full-stack PQC
Quantum threats are driving the need for post-quantum cryptography across the network stack, as attackers can capture encrypted data today and decrypt it in the future. Discover how Cisco full-stack PQC helps protect both devices and data.
Pagination
- Previous page ‹‹
- Page 112
- Next page ››