Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
A critical remote code execution vulnerability in Gitea has moved from disclosure to active exploitation less than a month after a patch became available. Tracked as CVE-2026-60004 and rated 9.8 on the CVSS scale, the flaw allows an attacker with ordinary repository write access to plant an executable Git hook and run arbitrary shell commands with the privileges of the Gitea service account.
Most compromises do not rely on advanced techniques or cutting-edge tools. Cyber threat actors scan the internet looking for exposed, well-known software vulnerabilities to exploit.
The CERT Coordination Center (CERT/CC) has disclosed two unpatched vulnerabilities in Kaltura HTML5 video player library tracked as CVE-2026-19913 and CVE-2026-19912. Both flaws stem from unsafe deserialization in the mwEmbedLoader.php endpoint, allowing a remote, unauthenticated attacker to read arbitrary files from a server and execute code.
The article explores how AI can transform SOC operations by moving from alert backlog management to AI-driven hypothesis generation, reducing analyst fatigue and improving threat detection rates through automated correlation and prioritization.
The adversary-in-the-middle (AitM) phishing service lowers the barrier to entry for actors to create attacks and steal more than just user credentials.
Attackers are now exploiting a critical-severity vulnerability in the Gitea self-hosted Git service, according to the U.S. Cybersecurity and Infrastructure Security Agency (CISA).