Wednesday , June 24 2026

Recent Posts

“nginx-poolslip” NGINX 0-Day Affects Millions of NGINX Servers To RCE

nginx-poolslip

A security flaw dubbed nginx-poolslip has been revealed in NGINX version 1.31.0, the newest stable version of the most used web server software. The discovery, made by security researcher Vega of the NebSec security team, was announced via X (formerly Twitter) on May 21, 2026, sending shockwaves through the global …

Read More »

Microsoft Defender 0-Days Being Actively Exploited

Microsoft Defender

Two new Microsoft Defender flaws have been found, and they are being used by attackers. This allows local attackers to gain SYSTEM level access and could interrupt protection on Windows systems. The bugs are called CVE‑2026‑41091 (Elevation of Privilege) and CVE‑2026‑45498 (Denial of Service). They were shared on May 19, …

Read More »

CVE-2024-12802
Incomplete patching allows hackers to bypass SonicWall VPN MFA

VPN

Threat actors guessed VPN passwords and got around multi-factor authentication (MFA) on SonicWall Gen6 SSL-VPN devices to use tools for ransomware attacks. During the break-ins, the hacker spent 30 to 60 minutes logging in, checking the network, testing old passwords in internal systems, and logging out. SonicWall said in a …

Read More »