Back to Blog

#Zero-Day

20 posts
YellowKey fix lands in June baseline: patch BitLocker fleets now

YellowKey fix lands in June baseline: patch BitLocker fleets now

YellowKey fix lands in June baseline: patch BitLocker fleets now Microsoft has now closed the patch gap for CVE-2026-45585, the public BitLocker bypass widely r...

June 15, 2026
5 min read
Exchange CVE-2026-42897 patches land after active OWA exploitation

Exchange CVE-2026-42897 patches land after active OWA exploitation

Exchange CVE-2026-42897 patches land after active OWA exploitation Microsoft has now shipped the June 2026 Exchange security updates for CVE-2026-42897, ending...

June 13, 2026
5 min read
Chrome Zero-Day CVE-2026-11645 Enters KEV After Google Ships Emergency V8 Patch

Chrome Zero-Day CVE-2026-11645 Enters KEV After Google Ships Emergency V8 Patch

Chrome Zero-Day CVE-2026-11645 Enters KEV After Google Ships Emergency V8 Patch Google has patched an actively exploited [zero-day](https://invaders.ie/resource...

June 10, 2026
3 min read
Cisco SD-WAN zero-day turns earlier auth bypass flaws into root access risk

Cisco SD-WAN zero-day turns earlier auth bypass flaws into root access risk

Cisco SD-WAN zero-day turns earlier auth bypass flaws into root access risk Cisco's new CVE-2026-20245 advisory matters because it is not just another isolated...

June 6, 2026
6 min read
CVE-2026-48172 puts LiteSpeed cPanel deployments on a KEV deadline

CVE-2026-48172 puts LiteSpeed cPanel deployments on a KEV deadline

CVE-2026-48172 puts LiteSpeed cPanel deployments on a KEV deadline CVE-2026-48172 has escalated from vendor emergency to federal patching priority. On May 26, 2...

May 27, 2026
5 min read
CVE-2026-42897 makes on-prem Exchange an immediate mitigation priority

CVE-2026-42897 makes on-prem Exchange an immediate mitigation priority

CVE-2026-42897 makes on-prem Exchange an immediate mitigation priority CVE-2026-42897 is the kind of [zero-day](https://invaders.ie/resources/glossary/zero-day)...

May 16, 2026
5 min read
Dirty Frag Linux kernel zero-day gives local users a fast path to root

Dirty Frag Linux kernel zero-day gives local users a fast path to root

Dirty Frag Linux kernel zero-day gives local users a fast path to root Dirty Frag is the kind of Linux bug defenders worry about because it turns a limited foot...

May 10, 2026
5 min read
Dirty Frag Linux kernel zero-day gives local users a fast path to root

Dirty Frag Linux kernel zero-day gives local users a fast path to root

Dirty Frag Linux kernel zero-day gives local users a fast path to root Dirty Frag deserves attention because it is not a theoretical Linux bug waiting for slow...

May 8, 2026
5 min read
CVE-2026-0300 puts exposed PAN-OS User-ID portals on a zero-day attack path

CVE-2026-0300 puts exposed PAN-OS User-ID portals on a zero-day attack path

CVE-2026-0300 puts exposed PAN-OS User-ID portals on a zero-day attack path A critical point in the new PAN-OS warning is that defenders are not looking at a ro...

May 7, 2026
4 min read
Leaked Windows Defender zero-days are already being used to gain SYSTEM access

Leaked Windows Defender zero-days are already being used to gain SYSTEM access

Leaked Windows Defender zero-days are already being used to gain SYSTEM access A fast-moving Windows story matters to defenders this week for a simple reason: p...

April 17, 2026
5 min read
Storm-1175 turns patch gaps into rapid Medusa ransomware intrusions

Storm-1175 turns patch gaps into rapid Medusa ransomware intrusions

Storm-1175 turns patch gaps into rapid Medusa ransomware intrusions Storm-1175 is a financially motivated threat actor that Microsoft says has been using newly...

April 7, 2026
7 min read
CVE-2026-3502 turns TrueConf updates into a KEV-listed malware channel

CVE-2026-3502 turns TrueConf updates into a KEV-listed malware channel

CVE-2026-3502 turns TrueConf updates into a KEV-listed malware channel CVE-2026-3502 is the kind of vulnerability defenders should pay attention to even if True...

April 3, 2026
5 min read