CISA Warns of Active LoadMaster Attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an alert after confirming that a critical vulnerability in Progress LoadMaster is being actively exploited. The flaw, tracked as CVE-2026-8037, [...]
Critical WordPress Flaw Enables Remote Code Execution
Security researchers have uncovered a serious vulnerability chain in WordPress Core, tracked as CVE-2026-64638 and known as XSS2Shell. The flaw could allow attackers to escalate from a simple login page [...]
Windows Hello Key Flaw Opens Door to Entra ID Access
Security researcher Dirk-jan Mollema has uncovered a new technique that could allow attackers to misuse Windows Hello for Business (WHFB) to authenticate to Microsoft Entra ID services without requiring the [...]
Critical Linux Kernel Flaw Grants Root Access
A newly discovered Linux kernel vulnerability, tracked as CVE-2026-64564 and named SCTPhantom, could allow attackers with local access to gain full root privileges. Security researchers also demonstrated that the flaw [...]
Top 10 Phishing Email Red Flags You Should Never Ignore
Phishing remains one of the most successful cyberattack techniques because it exploits human trust rather than technical vulnerabilities. Every day, attackers send fraudulent emails designed to steal credentials, distribute malware, [...]