A new proof-of-concept for CVE-2026-33112 puts Microsoft SharePoint’s deserialization surface back under the microscope, with the practical risk centered on authenticated code execution in on-premises servers.
A fresh ransomware listing tied to a Laos mining brand shows how extortion crews use public naming and opaque identifiers to pressure targets before any compromise is proven.
ACN CSIRT Italia flagged 13 vulnerabilities in libexpat, including 9 rated high severity, highlighting how a small C parser can become a high-priority item for defenders.
A critical deserialization bug in Jenkins places controller-side XML handling under scrutiny, with reported live attack attempts raising the stakes for exposed installations.
A deserialization flaw tied to Jenkins config.xml shows how a routine admin file can turn into a high-risk route to code execution inside CI/CD systems.
A reported Windows zero-day called GreatXML puts a sharp spotlight on a familiar but overlooked danger: the recovery tools meant to help a machine can also become the place where encryption trust is tested.
A reported Windows bypass tied to Defender Offline Scan and WinRE shows how encrypted disks can still inherit risk from the machinery built to repair them.
A reported proof-of-concept turns Microsoft’s recovery machinery into the security story, showing how a trusted maintenance path may matter as much as the encryption it protects.
Public proof-of-concept code for three patched Notepad++ flaws turns a familiar Windows editor into a reminder that local trust boundaries can be just as dangerous as remote ones.
Version 8.9.6.1 closes three vulnerabilities in the Windows editor, including two that can lead to arbitrary code execution, and the case shows why configuration files deserve the same scrutiny as executable code.
Critical flaws in the automation platform underline how an ordinary workflow editor can become a dangerous execution surface when input handling, parser trust, and code-capable features meet.
An alleged Stormous dump tied to FANASA.com underscores how leaked fiscal files, if genuine, can feed phishing, supplier fraud, and tax-themed abuse long after the first intrusion.