-
Microsoft flagged a CVSS 10.0 Entra ID flaw as exploited, then retracted it a day later. Much of the coverage never followed.
On 20 August, Microsoft published an advisory for a maximum-severity remote code execution flaw in Entra ID and marked it as exploited in the wild. On 21 August,…
-
The GitLab flaw under “active exploitation” is one firm’s honeypot data — GitLab hasn’t said a word about it
A critical GitLab flaw is being reported as under active exploitation within days of disclosure. The vulnerability is real, the patch is real, and self-managed instances should install…
-
N-able says attackers used N-central’s own remote control to reach managed endpoints and plant Cloudflare tunnels
If you are an MSP running N-central on premises, or a company whose MSP does, this is the most consequential item of the week. N-able has stated in…
-
GPUThor beats NVIDIA’s ECC for a root shell in about a minute — on four workstation cards, not the AI fleet
University of Toronto researchers have shown that non-uniform Rowhammer patterns defeat NVIDIA’s sideband ECC on GDDR6 workstation GPUs, yielding a root shell on the host in under two…
-
Carhartt’s breach is 12.9 million records, not 25 — and the gap is benchmark data someone left in production
Every headline today puts the Carhartt breach at 12.9 million accounts. That number did not come from Carhartt, which has said nothing publicly, and it did not come…
-
vCenter servers are being backdoored five days after the patch, and Broadcom still hasn’t mentioned exploitation
CISA gave federal agencies three days to fix a vCenter directory traversal flaw. A German incident response firm has since mapped 361 victim IP addresses across 47 countries,…
-
PaperCut is under active attack with no CVE, and the emergency patch skipped its own release process
Update, 29 August 2026. Both flaws now have CVE identifiers — CVE-2026-81578 and CVE-2026-82078, published by NVD on 28 August — and PaperCut has shipped a second emergency…