The vulnerability in question is CVE-2026-0257 (CVSS score: 7.8), an authentication bypass flaw affecting the portal and gateway components of PAN-OS software that could be exploited by bad
Category Added in a WPeMatico Campaign
Critical Splunk Enterprise Flaw Lets Attackers Run Code Without Authentication
The vulnerability, tracked as CVE-2026-20253, is rated 9.8 on the CVSS scoring system.
“In Splunk Enterprise versions below 10.2.4 and 10.0.7, an unauthenticated user could create or truncate arbitrary
U.S. Orders Anthropic to Suspend Fable 5 and Mythos 5 Access for Foreign Nationals
The AI company said it received an order at 5:21 p.m. ET, instructing it to suspend
Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF Rootkit
The malware is a Rust binary built to harvest developer secrets. When it lands with root, it can also load an eBPF rootkit to hide itself. The AUR is Arch Linux’s community package collection, and it is separate
400+ Arch Linux AUR Packages Hijacked to Install Rust Credential Stealer
The malware is a Rust binary built to harvest developer secrets. When it lands with root, it can also load an eBPF rootkit to hide itself. The AUR is Arch Linux’s community package collection, and it is separate
Google Sues Chinese Smishing Network Accused of Using Gemini AI in Phishing
The network is said to be behind the development and management of a phishing-as-a-service (PhaaS) software kit called Outsider, per the tech giant.
“The operation weaponized Gemini to help
China-Linked Hackers Backdoored Linux Login Software to Hide for Nearly a Decade
Sygnia, which tracks the group as Velvet Ant, says it backdoored the PAM and OpenSSH components that decide who is allowed to sign in, planting its access where ordinary cleanup could not reach it. The network it targeted had no
Agentjacking Attack Tricks AI Coding Agents Into Running Malicious Code
Called Agentjacking by Tenet Security, the attack can be triggered by means of a fake error report crafted using Sentry, an open-source error-tracking and performance-monitoring platform.
“The attack
Rethinking MDR as Attackers and Defenders Embrace AI
The threat landscape has changed faster than the MDR model can adapt. Attackers are using AI to move faster, generate more
LangGraph Flaw Chain Exposes Self-Hosted AI Agents to Remote Code Execution
LangGraph is an open-source framework created by LangChain to build complex, stateful, and multi-agent artificial intelligence (AI) agentic applications.
“An SQL injection in LangGraph’s function could
