Firefox 148 Introduces Sanitizer API for XSS Protection
Firefox 148 brings the new Sanitizer API, the first browser implementation to help developers block cross-site scripting (XSS) attacks easily. This standard tool cleans dangerous…
Firefox 148 brings the new Sanitizer API, the first browser implementation to help developers block cross-site scripting (XSS) attacks easily. This standard tool cleans dangerous…
Anthropic’s Claude Code contains critical vulnerabilities CVE-2025-59536 and CVE-2026-21852 that allow attackers to execute remote code and steal API keys through malicious repository files. Check…
A critical flaw in GNU Inetutils telnet daemon affects versions through 2.7. Tracked as CVE-2026-24061, it allows remote attackers to gain root access without authentication.…
More than half (53%) of national security organizations rely on manual methods for sensitive data transfers. This creates exploitable gaps amid rising cyberattacks and geopolitical…
A public proof-of-concept exploit now exists for CVE-2026-2636 in Windows Common Log File System (CLFS) driver. Any low-privileged user can trigger an unrecoverable Blue Screen…
Google Threat Intelligence disrupted a Chinese state-linked hacking group called UNC2814. The group breached 53 telecom providers and government bodies across 42 countries. This cyber…
Kali Linux now supports Anthropic’s Claude AI for penetration testing through the Model Context Protocol (MCP). Security professionals can use natural language prompts to run…
Cisco disclosed CVE-2026-20127, a critical zero-day vulnerability in Catalyst SD-WAN Controller and Manager, on February 25, 2026. Attackers exploited it since at least 2023 to…
A hacker used Anthropic’s Claude AI over a month to find vulnerabilities, write exploit code, and steal sensitive data from Mexican government agencies. The campaign…
]Hackers can hijack Palo Alto Networks’ Cortex XDR Live Terminal feature for command-and-control communications. The trusted EDR tool runs attacker commands without detection. InfoGuard Labs…