A zero-click flaw in Anthropic’s Claude Desktop Extensions allows attackers to trigger remote code execution via Google ...
LayerX, a security company based in Tel Aviv, says it has identified a zero-click remote code execution vulnerability in Claude Desktop Extensions that can be triggered by processing a Google Calendar ...
Three of those zero-days are security feature bypass flaws, which give attackers a way to slip past built-in protections in ...
Windows Remote Access Connection Manager Denial of Service Vulnerability ( CVE-2026-21525 ): This 6.2-rated bug is triggered by a null pointer dereference in Windows Remote Access Connection Manager ...
Researchers at Huntress and Microsoft have shared findings from their analysis of a new SolarWinds Web Help Desk vulnerability.
Analysis of real-world incidents reveals that attackers are chaining multiple flaws to compromise the ticketing and support ...
BeyondTrust has patched a critical RS and PRA vulnerability leading to unauthenticated remote code execution (RCE) via ...
The ransomware group breached SmarterTools through a vulnerability in the company's own SmarterMail product. SmarterTools recently disclosed a breach that occurred as a result of vulnerabilities the ...
Microsoft links SolarWinds WHD exploits to RCE, lateral movement, and domain compromise in multi-stage attacks.
BeyondTrust warned customers to patch a critical security flaw in its Remote Support (RS) and Privileged Remote Access (PRA) ...
Security researcher has disclosed a severe RCE vulnerability in AMD's AutoUpdate software after the company declined to address the critical flaw.
The Cybersecurity & Infrastructure Security Agency (CISA) in the U.S. has issued a warning about CVE-2026-24423, an ...