Install
Tech News, Science, Health, Reviews
- 651articles · 30d
- 2+ day agolatest article
- Aug 14, 2026earliest in window
- 88%with images
- 299avg words
- Science & Technology 209
- Arts, Culture, Entertainment & Media 200
- Games2 134
- Economy, Business & Finance 131
- Games 128
- Science & Nature 118
- News 117
- Computers & Electronics 87
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
September 2026 Patch Tuesday: ZDI Ranks Exchange Server and 20 Wormable Bugs Ahead of Zero-Days
3+ day, 10+ hour ago (605+ words) The Exchange Server situation warrants front-of-queue treatment over the two named zero-days. CVE-2026-55007 allows a remote, unauthenticated attacker to execute code on an affected Exchange server by sending an email containing a malicious Visio attachment. The code runs when the…...
North Korea Trojanized HAProxy in South Korea, Turning SSL Termination Into Wiretap
5+ day, 2+ hour ago (394+ words) This is not a design flaw in HAProxy. The filter API is working as intended. The exploitation is the binary replacement itself: an attacker who can install a recompiled version of a trusted application inherits all of that application's privileges…...
WordPress Backup Plugin Flaw: 3.25 Million Sites Exposed, Exploit Code Active
1+ week, 2+ day ago (506+ words) Security firm Wordfence published its full technical disclosure on September 2, 2026. Developer ServMask shipped a patch in version 7.110 on August 20 — thirteen days before the public advisory — but as of September 2, only about 35 percent of the install base had applied it. The…...
Dropbox Accounts Breached: Lenovo ID Email Flaw Bypassed Passwords for 17 Days
1+ week, 3+ day ago (930+ words) Every compromised account shared one characteristic: none had multi-factor authentication (MFA) enabled. That single missing layer of defense is why this attack worked. Enable it now if you have not already. The attack required no phishing, no credential stuffing, and…...
Microsoft Exchange Exploit Requires No Password: 22,000 Servers Exposed, ESU Ends October
1+ week, 3+ day ago (565+ words) CVE-2026-62911 is classified as an authentication bypass by capture-replay (CWE-294) and carries a CVSS 3.1 score of 8.0 from Microsoft — confirmed in Microsoft's Security Update Guide — and 8.1 from the Zero Day Initiative. The flaw resides in Exchange's Mailbox Replication Proxy Service — the…...
Attackers Exploit WordPress SSO Plugin; Six Paid Editions Were Never in Any Vulnerability Database
2+ week, 4+ day ago (309+ words) The attack chains two distinct vulnerabilities, tracked as CVE-2026-61979 (CVSS 8.1) and CVE-2026-15981 (CVSS 9.8), that together let an unauthenticated attacker forge a SAML authentication response and land in WordPress's administrator panel without ever possessing valid credentials. Chained together, the two bugs…...
Microsoft's SCCM Lets Attackers Compromise Enterprise Fleets for $58 Until October
4+ week, 1+ day ago (470+ words) For enterprise IT teams, the arithmetic is stark: one patch applied, three vulnerabilities intact, and the signing barrier that should block unauthorized code can be crossed with a commercially available certificate that cost the researcher $58. The full disclosure appears in…...