Thursday , August 6 2026

Recent Posts

Cisco Unified CM flaw CVE-2026-20230 exploited in attacks

CVE-2026-20230

A serious SSRF flaw, called CVE-2026-20230, in Cisco Unified Communications Manager Server is now being used in attacks. Cisco put out security updates for the CVE-2026-20230 flaw on June 3. They warned that attackers could gain full control of the device. “A vulnerability in Cisco Unified Communications Manager (Unified CM) and …

Read More »

LastPass says hackers stole customer data via Klue, supply chain breach

LastPass

LastPass has reported a security issue with its vendor, Klue. This incident allowed an attacker unauthorized access to customer data. The company confirmed that the breach did not affect its core infrastructure or password vaults. However, it highlights ongoing risks associated with SaaS integrations and OAuth token exposure. The event …

Read More »

New Apple Exploit Bypasses Boot Defenses, Possibly Affects Millions of iPhones Worldwide

Apple

Researchers at cybersecurity firm Paradigm Shift found a new flaw called usbliter8. This flaw can get around main boot protections on many older Apple devices, like iPhones with A12 and A13 chips. The study describes an attack on SecureROM, which is the first code that loads when an Apple device …

Read More »