Microsoft Entra ID CVSS 10 RCE is a trust-plane warning Security teams should treat CVE-2026-69836 as a serious [vulnerability](https://invaders.ie/resources/gl...
Lucas Oliveira
Research
CISA Warns of Active Exploitation in Zimbra Collaboration Suite CISA has added CVE-2026-73570, an operating-system command injection flaw in Zimbra Collaboratio...
Lucas Oliveira
Research
CVE-2026-24301: Microsoft Copilot CoSnitch Data Exposure CVE-2026-24301 is a newly published Microsoft Copilot vulnerability that turns a familiar enterprise ri...
Lucas Oliveira
Research
CVE-2026-33824: Windows IKE RCE Active Exploit Patch Guide | 2026 Executive Summary Since August 18, 2026, the critical CVE-2026-33824 vulnerability in Microsof...
Lucas Oliveira
Research
GitLab ships critical GraphQL patch for self-managed instances GitLab has released an out-of-band security update for Community Edition and Enterprise Edition a...
Lucas Oliveira
Research
macOS Screen Sharing CVE-2026-65400 exploited to gain root and deploy Monero miners Executive Summary Threat actors are exploiting CVE-2026-65400, a recently pa...
Lucas Oliveira
Research
SharePoint JWT Bypass Turns Patch Delay Into an Identity Risk Attackers have started targeting a critical Microsoft SharePoint Server authentication bypass afte...
Lucas Oliveira
Research
VMware vCenter RCE exploitation turns syslog exposure into persistence risk VMware vCenter administrators should treat CVE-2026-59310 as more than a routine [vu...
Lucas Oliveira
Research
SAP Commerce Cloud CVE-2026-58231 Is a Reminder That Patch Windows Are Now Measured in Days SAP's August Patch Day shipped a maximum-severity fix for SAP Commer...
Lucas Oliveira
Research
Metabase zero-day turns BI dashboards into a data-exposure path Metabase has confirmed active exploitation of CVE-2026-72898, a critical unauthenticated [SQL in...
Lucas Oliveira
Research
Swiss SharePoint breach shows why patching alone may not end the incident Switzerland's federal IT office has confirmed a cyberattack against SharePoint servers...
Lucas Oliveira
Research
Gitea Org-mode flaw turns public repositories into a server file-read risk Gitea administrators have a critical patch to verify. The project has fixed CVE-2026-...
Lucas Oliveira
Research