Login
HN Monitor

Flaw in Claude Code GitHub Action Uncovered, Posing Repository Takeover Risk A security vulnerability has been discovered in Anthropic’s Claude Code GitHub Action, allowing attackers to potentially hijack vulnerable public repositories. The flaw, reported by security researcher RyotaK of GMO Flatt Security, could enable a malicious actor to execute arbitrary…

The cybersecurity landscape continues to present complex challenges, with a persistent blend of evolving threats and persistent vulnerabilities. This ongoing dynamic highlights the critical importance of robust security practices and continuous vigilance for organizations across all sectors. As the digital realm expands, the intricate web of threats, from sophisticated nation-state…

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability affecting the Mirasvit Cache Warmer Magento extension to its Known Exploited Vulnerabilities (KEV) catalog. The move comes after reports of attackers actively exploiting the flaw, tracked as CVE-2026-45247, in the wild, posing a significant risk to e-commerce…

A startling new vulnerability has been uncovered, allowing malicious actors to potentially hijack Google Gemini’s voice assistant on Android devices through seemingly innocuous notifications. This exploit, discovered by researchers at SafeBreach, could enable attackers to gain unauthorized access to connected devices, send fake messages, initiate calls, or even subtly alter…

A significant vulnerability found in several Microsoft 365 Android applications allowed any app on a device to access sensitive user data, including emails, files, and calendar information, without requiring authentication. This critical mobile security vulnerability, dubbed “FlagLeft” by security researchers at Enclave, was caused by a development flag inadvertently left…

Redis, a widely adopted open-source in-memory data structure store, has addressed a critical use-after-free vulnerability (CVE-2026-23479) that could allow an authenticated attacker to execute arbitrary operating system commands. The flaw, discovered by an autonomous AI bug-hunting tool named Xint Code, remained undetected in stable Redis branches for over two years…

Cybersecurity researchers have identified and disclosed details of an unpatched vulnerability in Windows that allows attackers to steal a user’s NTLMv2 hash. This critical network security flaw, residing within the Windows search URI handler, poses a significant risk by enabling unauthorized access to sensitive user credentials, potentially leading to deeper…

Cybersecurity researchers have identified a critical remote denial-of-service (DoS) vulnerability, dubbed HTTP/2 Bomb, impacting major web servers like NGINX, Apache HTTPD, Microsoft IIS, Envoy, and Cloudflare Pingora. Discovered by Calif. researchers, the exploit targets the default HTTP/2 configurations found in these widely-used servers, potentially allowing even a single attacker to…

Palo Alto Networks has issued a critical alert regarding CVE-2026-0257, a medium-severity authentication bypass vulnerability in its PAN-OS software and Prisma Access platform. The company confirmed on May 30, 2026, that this flaw is actively being exploited in the wild, allowing threat actors to bypass security controls and establish unauthorized…

Marimo Vulnerability Exploited with AI Agent for Advanced Attacks An unidentified threat actor has been observed employing a sophisticated deployment of a large language model (LLM) agent to execute post-compromise actions following the exploitation of a publicly-facing Marimo network. This marks a significant escalation in the use of artificial intelligence…

Cybercriminals are actively exploiting a critical vulnerability in Fortinet’s FortiClient Endpoint Management Server (EMS) to distribute potent credential-stealing malware. This ongoing campaign, first observed in May 2026, leverages trusted endpoint management infrastructure to compromise numerous devices, disguising malicious payloads as legitimate Fortinet updates. The exploitation of this critical pre-authentication API…

Cybersecurity threats continue to evolve, with a recent analysis revealing a rise in sophisticated attacks utilizing compromised infrastructure and social engineering tactics. From widespread command-and-control networks in the Middle East to the hijacking of legitimate software distribution channels, threat actors are demonstrating a persistent ability to exploit vulnerabilities and trust.…

Gitea Vulnerability Exposes Private Container Images A critical security flaw in Gitea, a popular open-source platform for self-hosted version control, has been disclosed, potentially exposing private container images to unauthenticated attackers. The vulnerability, identified as CVE-2026-27771, allows unauthorized access to sensitive data without any form of authentication, raising significant concerns…