Install
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Apple's Last Actively Exploited Bug Disclosure Was iOS 26.2, Nine Months Ago
13+ hour, 51+ min ago (203+ words) The most recent Apple security document to say a bug may have been exploited is iOS 26.2, published December 12, 2025. Both flagged issues sat in WebKit, and Apple credited Google’s Threat Analysis Group on each one. Six Apple releases since then, running…...
Hackers exploit Tencent app flaw to deploy GrayRabbit malware
18+ hour, 56+ min ago (593+ words) Passkey-themed phishing attacks lead to Microsoft 365 data theft Trezor: 347,000 users targeted in phishing attacks after Brevo breach Hackers exploit Tencent app flaw to deploy GrayRabbit malware Stick with the language lessons that come from linguists in this app deal Dutch…...
iOS 18.7.10: About 120 Security Fixes for iPhone XS and Three Other Devices
1+ day, 7+ hour ago (276+ words) iOS 18.7.10 and iPadOS 18.7.10, released August 17, 2026, list on the order of 120 CVE entries across more than 30 components, according to Apple’s own support article at support.apple.com/en-us/148287. The release is available for exactly four devices: iPhone XS, iPhone XS Max,…...
Apple Is Patching Three Different Versions of macOS at the Same Time
1+ day, 5+ hour ago (393+ words) The Mac Observer The Good Daughter Release Date: Peacock’s Rose Byrne and Meghann Fahy Drama Crystal Lake Release Date: What Peacock Has Confirmed About the Friday the 13th Prequel The Traitors: New Blood Release Date and NBC Premiere Schedule Chad Powers…...
Still Current, Still Patched or Neither: Apple's Three States of Software Support
1+ day, 5+ hour ago (272+ words) Apple’s software support is not a single on-or-off switch. Reading Apple’s own security releases index shows three distinct states a device can occupy at any moment: still receiving the current operating system, still receiving security-only patches on an older branch,…...
The PaperCut Pipeline: How Two Vulnerabilities Became an Automated RCE Factory
1+ day, 23+ hour ago (148+ words) Two PaperCut vulnerabilities are now chained into a fully automated attack pipeline with in-memory persistence—and 47% of installations can't patch. On August 26, security researchers at Huntress identified anomalous activity in customer logs involving base64-encoded commands like whoami and tasklist. This…...
StyleSmuggler Turns Adobe Commerce’s Own Template Engine Into an Unauthenticated RCE Chain
3+ day, 6+ hour ago (117+ words) CVE-2026-75650 lets attackers inject PHP through Magento's email template system, then triggers execution automatically. Multiple threat groups are already inside. The authentication gap has reached the payment layer. Simultaneously, a separate attacker group has been observed dropping a 485-byte PHP…...
Windows Weekly 1000: Ensheepified
3+ day, 9+ hour ago (212+ words) Leo, Richard, and Paul celebrate the 1000th episode of the podcast and discuss Windows 11, IFA, AI and dev, XBOX and gaming and more. Stream this episode and subscribe Enjoy Windows Weekly on YouTube The canary in the coal mine has finally…...
Microsoft Patch Tuesday: 974 Bugs, 2 Zero-Days [2026]
3+ day, 23+ hour ago (711+ words) The scale of this release, reported first by CyberScoop and detailed further by Help Net Security, has turned a routine monthly ritual into a stress test for enterprise patch management. Security teams are no longer just racing a clock, they…...
CVE-2026-75650 Adobe Commerce Zero-Day: Patch Isn't Enough
4+ day, 16+ hour ago (897+ words) Adobe patched the actively exploited CVE-2026-75650 Magento zero-day, but compromised stores still need malware hunting and broad credential rotation. Adobe has patched CVE-2026-75650, a critical Adobe Commerce and Magento Open Source vulnerability that attackers were exploiting before a fix was…...