Critical Oracle PeopleSoft Zero-Day RCE Vulnerability Actively Exploited by ShinyHunters
Cybersecurity researchers have identified an active exploitation campaign targeting Oracle PeopleSoft environments through a critical Remote Code Execution (RCE) vulnerability tracked as CVE-2026-35273. The flaw affects Oracle PeopleSoft PeopleTools and [...]
Critical GreatXML Vulnerability Enables Windows BitLocker Bypass via Recovery Partition XML Files
A newly disclosed Windows security vulnerability known as GreatXML has raised concerns among cybersecurity professionals. The exploit allows attackers to potentially bypass Microsoft BitLocker by abusing XML files stored within [...]
Internet Explorer Component Flaw Enables RCE Attacks
Although Internet Explorer has been retired, some of its underlying components are still present in many Windows applications. Security researchers have now demonstrated how these legacy components can be abused [...]
Google Patches 429 Chrome Security Flaws
Google has released Chrome 149 for Windows, macOS, and Linux, fixing a large number of security vulnerabilities across the browser. The update addresses a total of 429 security issues, including [...]
VMware Stored XSS Flaws Put Enterprise Environments at Risk
VMware has disclosed three high-severity security vulnerabilities affecting VMware Cloud Foundation (VCF) Operations that could allow attackers to inject malicious scripts into management interfaces. The vulnerabilities, tracked as CVE-2026-41722, CVE-2026-41723, [...]