Monday, April 27, 2026
HomeUncategorized

Uncategorized

macOS SMBClient Vulnerabilities Enables RCE and Kernel Crash

A critical vulnerabilities in macOS SMBClient that could allow remote attackers to execute arbitrary code and crash systems through kernel-level exploits. The vulnerabilities affect the SMB filesystem client used by macOS to mount remote file shares, representing a significant security risk for Mac users...

CISA Alerts to Active Exploitation of PHPMailer Command Injection Vulnerability

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning regarding a critical command injection vulnerability in PHPMailer (CVE-2016-10033) that has been actively exploited in the wild. This vulnerability, now included in CISA's Known Exploited Vulnerabilities (KEV) catalog, poses significant risks to...

Exploitation of Critical Vulnerabilities in KIA Infotainment Systems via Malicious PNG File

A series of critical vulnerabilities in KIA's infotainment systems that allow attackers to inject malicious code through seemingly harmless PNG image files, potentially compromising thousands of vehicles worldwide. The research, presented at Hardwear.io USA on May 30, 2025, revealed that KIA's infotainment systems run on...

CISA Issues Alert on Active Exploitation of Zimbra Collaboration Suite Vulnerability

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical warning regarding a server-side request forgery vulnerability in Synacor's Zimbra Collaboration Suite (ZCS) that has been confirmed as exploited in active attacks. The vulnerability, tracked as CVE-2019-9621, has been added to CISA's Known...

Parrot OS 6.4 Released With Major Updates to Popular Penetration Testing Tools

The Parrot Security team has officially released Parrot OS 6.4, marking what will likely be the final version of the 6.x branch before the transition to Parrot 7.0. This latest iteration brings significant updates to core penetration testing tools, kernel improvements, and enhanced system...

Ingram Micro’s Internal Systems Disrupted by Ransomware Attack

Ingram Micro Holding Corporation (NYSE: INGM), a pivotal player in the global information technology ecosystem, has confirmed a cybersecurity incident involving a ransomware attack on certain internal systems. The company is actively investigating the breach, deploying containment and mitigation measures, and working to restore...