Cisco has updated to fix four security issues affecting Identity Services and Webex Services. These flaws could let someone run harmful code and pretend to be any user in the service. The details of the vulnerabilities are below: CVE-2026-20184 (CVSS score: 9.8): An improper check of certificates in the single …
Read More »Microsoft April 2026 Patch Tuesday fixes 167 flaws, 2 actively exploited 0 days
Microsoft’s April 2026 security update has fixed 167 flaws in its products. This update includes 2 serious zero-day threats and another flaw that needs urgent attention from organizations. Zero-Day Under Active Exploitation The main flaw this month is CVE-2026-32201, a flaw in Microsoft SharePoint Server that is being actively used …
Read More »
ALERT
Fortinet Patched 11 flaws in it’s multiple products including FortiOS, FortiAnalyzer
Fortinet put out a large set of security warnings on April 14, 2026. These warnings cover 11 flaws in different products, with two marked as Critical, two as High, and seven as Medium or Low. The reports impact FortiSandbox, FortiAnalyzer, FortiManager, FortiOS, FortiProxy, FortiPAM, and FortiSwitchManager, urging business admins to …
Read More »
ALERT
Zombie Microsoft flaws resurface, enabling criminals and ransomware
Crooks are taking advantage of four Microsoft flaws – one fixed 14 years ago and another linked to ransomware – as reported by the top U.S. cyber defense agency, which on Monday told federal agencies they have two weeks to fix them. The four security issues added to CISA’s Known …
Read More »Global “Error524” Smishing Campaign Targeting Bangladesh
A global smishing scam dubbed “Error524” is hitting many countries, including Bangladesh. BGD e-Gov CIRT said, this scam uses Phishing-as-a-Service (PhaaS) tools to send SMS messages with harmful links. These links redirect victims to highly convincing phishing websites designed to steal: Personal information Banking credentials Payment card data This campaign …
Read More »
ALERT
OpenAI Warns macOS Users to Update ChatGPT Over Axios Breach
OpenAI has shared details about a security issue linked to Axios, a popular third-party JavaScript library, which is part of a larger attack on software supply chains found on March 31, 2026. The company stated in a news release that there is no proof that anyone accessed its user data, …
Read More »TP Link released security advisory for 5 High-Severity Flaws
TP-Link has given an urgent security warning about its Archer AX53 v1.0 router. There are 5 different flaws that could let hackers take over the device or steal private information. These issues affect important parts like tmpserver, dnsmasq, and OpenVPN. The biggest threats found are OS Command Injection in the …
Read More »
ALERT
Palo Alto, Sonicwall, Ivanti and GitLab patches multiple flaws
Palo Alto fixes multiple flaws, including CVE-2026-0232 which impacts the Cortex XDR Agent on Windows computers. There is an issue with a safety feature that lets a local Windows admin turn off the agent completely. Another vulnerability, tracked as CVE-2026-0233, allows a local Windows user to “execute arbitrary code with …
Read More »Palo Alto Fixes 3 Security Flaws: Agent Disabling to System Privileges
Palo Alto Networks has issued important updates to fix 3 different flaws in its security products. These issues affect the Cortex XDR Agent, the Autonomous Digital Experience Manager (ADEM), and Cortex XSOAR/XSIAM platforms. The flaws include ways to skip local protection and access resources without permission. The first flaw, known …
Read More »IBM Identity and Verify Access Vulns Allow to Access Sensitive Data
A security bulletin alert points out several flaws in IMB Verify Identity Access and Security Verify Access products. Tracked as CVE-2026-2862 and CVE-2026-1491, these flaws in HTTP request smuggling come from problems with reverse proxy management and have a CVSS score of 5.3. A remote attacker who is not logged in …
Read More »
InfoSecBulletin Cybersecurity for mankind